Description
A vulnerability was reported in various BIOS versions of older ThinkPad systems that could allow a user with administrative privileges or physical access the ability to update the Embedded Controller with unsigned firmware.
Published: 2019-08-19
Score: 6.8 Medium
EPSS: < 1% Very Low
KEV: No
Impact: n/a
Action: n/a
AI Analysis

No analysis available yet.

Remediation

Vendor Solution

Update to the version of BIOS (or later) described for your system in the Product Impact section of LEN-27764.

Tracking

Sign in to view the affected projects.

Advisories
Source ID Title
EUVD EUVD EUVD-2019-15738 A vulnerability was reported in various BIOS versions of older ThinkPad systems that could allow a user with administrative privileges or physical access the ability to update the Embedded Controller with unsigned firmware.
History

No history.

Subscriptions

Lenovo 20a7 20a7 Firmware 20a8 20a8 Firmware 20a9 20a9 Firmware 20aa 20aa Firmware 20ab 20ab Firmware 20ac 20ac Firmware 20aj 20aj Firmware 20ak 20ak Firmware 20al 20al Firmware 20am 20am Firmware 20an 20an Firmware 20aq 20aq Firmware 20ar 20ar Firmware 20aw 20aw Firmware 20b0 20b0 Firmware 20b3 20b3 Firmware 20b6 20b6 Firmware 20b7 20b7 Firmware 20be 20be Firmware 20bf 20bf Firmware 20bg 20bg Firmware 20bl 20bl Firmware 20bm 20bm Firmware 20bu 20bu Firmware 20bv 20bv Firmware 20bw 20bw Firmware 20bx 20bx Firmware 20d9 20d9 Firmware 20da 20da Firmware 20dc 20dc Firmware 20dd 20dd Firmware 20de 20de Firmware 20df 20df Firmware 20dg 20dg Firmware 20dh 20dh Firmware 20dj 20dj Firmware 20dq 20dq Firmware 20dr 20dr Firmware 20ds 20ds Firmware 20dt 20dt Firmware 20e0 20e0 Firmware 20ef 20ef Firmware 20eg 20eg Firmware 20et 20et Firmware 20eu 20eu Firmware 20ev 20ev Firmware 20ew 20ew Firmware 20ex 20ex Firmware 20ey 20ey Firmware 20f1 20f1 Firmware 20f2 20f2 Firmware 20f5 20f5 Firmware 20f6 20f6 Firmware 20fm 20fm Firmware 20fn 20fn Firmware 20fu 20fu Firmware 20fv 20fv Firmware 20fw 20fw Firmware 20fx 20fx Firmware 20g4 20g4 Firmware 20g5 20g5 Firmware 20g8 20g8 Firmware 20g9 20g9 Firmware 20ga 20ga Firmware 20gb 20gb Firmware 20h1 20h1 Firmware 20h2 20h2 Firmware 20h4 20h4 Firmware 20h5 20h5 Firmware 20h6 20h6 Firmware 20h8 20h8 Firmware 20hm 20hm Firmware 20hn 20hn Firmware 20hs 20hs Firmware 20ht 20ht Firmware 20hu 20hu Firmware 20hv 20hv Firmware 20j1 20j1 Firmware 20j2 20j2 Firmware 20j4 20j4 Firmware 20j5 20j5 Firmware 20j6 20j6 Firmware 20j7 20j7 Firmware 20ja 20ja Firmware 20jh 20jh Firmware 20jj 20jj Firmware 20jq 20jq Firmware 20jr 20jr Firmware 20ju 20ju Firmware 20jv 20jv Firmware 20k5 20k5 Firmware 20k6 20k6 Firmware 20kc 20kc Firmware 20kd 20kd Firmware 20kl 20kl Firmware 20km 20km Firmware 20kn 20kn Firmware 20kq 20kq Firmware 20ks 20ks Firmware 20kt 20kt Firmware 20ku 20ku Firmware 20kv 20kv Firmware 20l2 20l2 Firmware 20lh 20lh Firmware 20lj 20lj Firmware 20lm 20lm Firmware 20ln 20ln Firmware 20lq 20lq Firmware 20lr 20lr Firmware 20ls 20ls Firmware 20lt 20lt Firmware 20lx 20lx Firmware 20m5 20m5 Firmware 20m6 20m6 Firmware 20m7 20m7 Firmware 20m8 20m8 Firmware 20mu 20mu Firmware 20mv 20mv Firmware 20mw 20mw Firmware 20mx 20mx Firmware 20n8 20n8 Firmware 20n9 20n9 Firmware 20ng 20ng Firmware 20nn 20nn Firmware 20nq 20nq Firmware 20nr 20nr Firmware 20ns 20ns Firmware 20nt 20nt Firmware 20nu 20nu Firmware 230x 230x Firmware 232x 232x Firmware 233x 233x Firmware 234x 234x Firmware 235x 235x Firmware 239x 239x Firmware 242x 242x Firmware 243x 243x Firmware 244x 244x Firmware 246x 246x Firmware 247x 247x Firmware 248x 248x Firmware 30eh 30eh Firmware 336x 336x Firmware 337x 337x Firmware 343x 343x Firmware 344x 344x Firmware 34xx 34xx Firmware 3xxx 3xxx Firmware
cve-icon MITRE

Status: PUBLISHED

Assigner: lenovo

Published:

Updated: 2024-09-16T20:03:17.346Z

Reserved: 2019-01-11T00:00:00.000Z

Link: CVE-2019-6171

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2019-08-19T15:15:11.653

Modified: 2024-11-21T04:46:05.243

Link: CVE-2019-6171

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.

Weaknesses