A buffer overflow in the ReadyBootDxe driver in some Lenovo Notebook products may allow an attacker with local privileges to execute arbitrary code.
References
Link | Resource |
---|---|
https://support.lenovo.com/us/en/product_security/LEN-91369 | Vendor Advisory |
Configurations
Configuration 1 (hide)
AND |
|
Configuration 2 (hide)
AND |
|
Configuration 3 (hide)
AND |
|
Configuration 4 (hide)
AND |
|
Configuration 5 (hide)
AND |
|
Configuration 6 (hide)
AND |
|
Information
Published : 2023-01-26 13:15
Updated : 2023-02-03 11:50
NVD link : CVE-2022-1890
Mitre link : CVE-2022-1890
JSON object : View
CWE
CWE-787
Out-of-bounds Write
Products Affected
lenovo
- yoga_c640-13iml
- thinkbook_14-iil
- thinkbook_14-iml_firmware
- thinkbook_14-iil_firmware
- thinkbook_15-iml_firmware
- yoga_c640-13iml_lte
- thinkbook_15-iil
- yoga_c640-13iml_firmware
- thinkbook_14-iml
- thinkbook_15-iml
- thinkbook_15-iil_firmware
- yoga_c640-13iml_lte_firmware