A local privilege escalation vulnerability in the ThinkPad Hybrid USB-C with USB-A Dock Firmware Update Tool could allow an attacker with local access to execute code with elevated privileges during the package upgrade or installation.
Advisories
Source ID Title
EUVD EUVD EUVD-2022-51903 A local privilege escalation vulnerability in the ThinkPad Hybrid USB-C with USB-A Dock Firmware Update Tool could allow an attacker with local access to execute code with elevated privileges during the package upgrade or installation.
Fixes

Solution

Customers should update their ThinkPad Dock Firmware Update Tool to version v1.0.35_v2 or later


Workaround

No workaround given by the vendor.

History

Wed, 08 Jan 2025 17:15:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'total'}, 'version': '2.0.3'}


cve-icon MITRE

Status: PUBLISHED

Assigner: lenovo

Published:

Updated: 2025-01-08T16:27:54.836Z

Reserved: 2022-12-16T19:33:47.531Z

Link: CVE-2022-4569

cve-icon Vulnrichment

Updated: 2024-08-03T01:41:45.585Z

cve-icon NVD

Status : Modified

Published: 2023-06-05T21:15:10.413

Modified: 2024-11-21T07:35:30.753

Link: CVE-2022-4569

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.