Description
An ErrorMessage driver stack-based buffer overflow vulnerability in BIOS of some ThinkPad models could allow an attacker with local access to elevate their privileges and execute arbitrary code.
Published: 2023-06-05
Score: 6.7 Medium
EPSS: < 1% Very Low
KEV: No
Impact: n/a
Action: n/a
AI Analysis

No analysis available yet.

Remediation

Vendor Solution

Update system firmware to the version (or newer) indicated for your model in the related Lenovo product security advisory:  https://support.lenovo.com/us/en/product_security/LEN-124495 https://support.lenovo.com/us/en/product_security/LEN-124495

Tracking

Sign in to view the affected projects.

Advisories
Source ID Title
EUVD EUVD EUVD-2022-50892 An ErrorMessage driver stack-based buffer overflow vulnerability in BIOS of some ThinkPad models could allow an attacker with local access to elevate their privileges and execute arbitrary code.
History

Wed, 08 Jan 2025 16:15:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'total'}, 'version': '2.0.3'}


Subscriptions

Lenovo Ideacentre 3-07ada05 Ideacentre 3-07ada05 Firmware Ideacentre 3-07imb05 Ideacentre 3-07imb05 Firmware Ideacentre 3 07ach7 Ideacentre 3 07ach7 Firmware Ideacentre 3 07iab7 Ideacentre 3 07iab7 Firmware Ideacentre 5-14acn6 Ideacentre 5-14acn6 Firmware Ideacentre 5-14are05 Ideacentre 5-14are05 Firmware Ideacentre 5-14imb05 Ideacentre 5-14imb05 Firmware Ideacentre 5-14iob6 Ideacentre 5-14iob6 Firmware Ideacentre 510s-07icb Ideacentre 510s-07icb Firmware Ideacentre 510s-07ick Ideacentre 510s-07ick Firmware Ideacentre 5 14iab7 Ideacentre 5 14iab7 Firmware Ideacentre 720-18apr Ideacentre 720-18apr Firmware Ideacentre Aio 3-22imb05 Ideacentre Aio 3-22imb05 Firmware Ideacentre Aio 3-22itl6 Ideacentre Aio 3-22itl6 Firmware Ideacentre Aio 3-24alc6 Ideacentre Aio 3-24alc6 Firmware Ideacentre Aio 3-24imb05 Ideacentre Aio 3-24imb05 Firmware Ideacentre Aio 3-24itl6 Ideacentre Aio 3-24itl6 Firmware Ideacentre Aio 3-27alc6 Ideacentre Aio 3-27alc6 Firmware Ideacentre Aio 3-27imb05 Ideacentre Aio 3-27imb05 Firmware Ideacentre Aio 3-27itl6 Ideacentre Aio 3-27itl6 Firmware Ideacentre Aio 3 21itl7 Ideacentre Aio 3 21itl7 Firmware Ideacentre Aio 3 22iap7 Ideacentre Aio 3 22iap7 Firmware Ideacentre Aio 3 24iap7 Ideacentre Aio 3 24iap7 Firmware Ideacentre Aio 3 27iap7 Ideacentre Aio 3 27iap7 Firmware Ideacentre Aio 5 24iah7 Ideacentre Aio 5 24iah7 Firmware Ideacentre Aio 5 27iah7 Ideacentre Aio 5 27iah7 Firmware Ideacentre C5-14imb05 Ideacentre C5-14imb05 Firmware Ideacentre Creator 5-14iob6 Ideacentre Creator 5-14iob6 Firmware Ideacentre G5-14amr05 Ideacentre G5-14amr05 Firmware Ideacentre G5-14imb05 Ideacentre G5-14imb05 Firmware Ideacentre Gaming 5-14acn6 Ideacentre Gaming 5-14acn6 Firmware Ideacentre Gaming 5-14iob6 Ideacentre Gaming 5-14iob6 Firmware Ideacentre Gaming 5 17acn7 Ideacentre Gaming 5 17acn7 Firmware Ideacentre Gaming 5 17iab7 Ideacentre Gaming 5 17iab7 Firmware Ideacentre Mini 5-01imh05 Ideacentre Mini 5-01imh05 Firmware Ideacentre Mini 5 01iaq7 Ideacentre Mini 5 01iaq7 Firmware Legion C530-19icb Legion C530-19icb Firmware Legion R5-28imb05 Legion R5-28imb05 Firmware Legion T5-26amr5 Legion T5-26amr5 Firmware Legion T5-26iob6 Legion T5-26iob6 Firmware Legion T5-28icb05 Legion T5-28icb05 Firmware Legion T5-28imb05 Legion T5-28imb05 Firmware Legion T530-28icb Legion T530-28icb Firmware Legion T7-34iaz7 Legion T7-34iaz7 Firmware Legion T7-34imz5 Legion T7-34imz5 Firmware Lenovo Legion T5 26iab7 Lenovo Legion T5 26iab7 Firmware Thinkcentre M600 Thinkcentre M600 Firmware Thinkcentre M60e Tiny Thinkcentre M60e Tiny Firmware Thinkcentre M625q Thinkcentre M625q Firmware Thinkcentre M70c Thinkcentre M70c Firmware Thinkcentre M70q Thinkcentre M70q Firmware Thinkcentre M70q Gen 2 Thinkcentre M70q Gen 2 Firmware Thinkcentre M70q Gen 3 Thinkcentre M70q Gen 3 Firmware Thinkcentre M70s Thinkcentre M70s Firmware Thinkcentre M70s Gen 3 Thinkcentre M70s Gen 3 Firmware Thinkcentre M70t Thinkcentre M70t Firmware Thinkcentre M70t Gen 3 Thinkcentre M70t Gen 3 Firmware Thinkcentre M720e Thinkcentre M720e Firmware Thinkcentre M720q Thinkcentre M720q Firmware Thinkcentre M720s Thinkcentre M720s Firmware Thinkcentre M720t Thinkcentre M720t Firmware Thinkcentre M725s Thinkcentre M725s Firmware Thinkcentre M75n Thinkcentre M75n Firmware Thinkcentre M75s-1 Thinkcentre M75s-1 Firmware Thinkcentre M75s Gen 2 Thinkcentre M75s Gen 2 Firmware Thinkcentre M75t Gen 2 Thinkcentre M75t Gen 2 Firmware Thinkcentre M80q Thinkcentre M80q Firmware Thinkcentre M80q Gen 3 Thinkcentre M80q Gen 3 Firmware Thinkcentre M80s Thinkcentre M80s Firmware Thinkcentre M80s Gen 3 Thinkcentre M80s Gen 3 Firmware Thinkcentre M80t Thinkcentre M80t Firmware Thinkcentre M80t Gen 3 Thinkcentre M80t Gen 3 Firmware Thinkcentre M90a Thinkcentre M90a Firmware Thinkcentre M90a Gen 2 Thinkcentre M90a Gen 2 Firmware Thinkcentre M90a Gen 3 Thinkcentre M90a Gen 3 Firmware Thinkcentre M90a Pro Gen 3 Thinkcentre M90a Pro Gen 3 Firmware Thinkcentre M90q Gen 2 Thinkcentre M90q Gen 2 Firmware Thinkcentre M90q Gen 3 Thinkcentre M90q Gen 3 Firmware Thinkcentre M90q Tiny Thinkcentre M90q Tiny Firmware Thinkcentre M90s Thinkcentre M90s Firmware Thinkcentre M90s Gen 3 Thinkcentre M90s Gen 3 Firmware Thinkcentre M90t Thinkcentre M90t Firmware Thinkcentre M90t Gen 3 Thinkcentre M90t Gen 3 Firmware Thinkcentre M920q Thinkcentre M920q Firmware Thinkcentre M920s Thinkcentre M920s Firmware Thinkcentre M920t Thinkcentre M920t Firmware Thinkcentre M920x Thinkcentre M920x Firmware Thinkcentre M920z Thinkcentre M920z Firmware Thinkcentre Neo 30a 22 Gen 3 Thinkcentre Neo 30a 22 Gen 3 Firmware Thinkcentre Neo 30a 24 Gen 3 Thinkcentre Neo 30a 24 Gen 3 Firmware Thinkcentre Neo 30a 27 Gen 3 Thinkcentre Neo 30a 27 Gen 3 Firmware Thinkcentre Neo 50s Gen 3 Thinkcentre Neo 50s Gen 3 Firmware Thinkcentre Neo 50t Gen 3 Thinkcentre Neo 50t Gen 3 Firmware Thinkcentre Neo 70t Gen 3 Thinkcentre Neo 70t Gen 3 Firmware Thinkcentre T540-15ama G Thinkcentre T540-15ama G Firmware Thinkstation P320 Thinkstation P320 Firmware Thinkstation P330 Thinkstation P330 Firmware Thinkstation P330 Gen 2 Thinkstation P330 Gen 2 Firmware Thinkstation P330 Tiny Thinkstation P330 Tiny Firmware Thinkstation P340 Thinkstation P340 Firmware Thinkstation P340 Tiny Thinkstation P340 Tiny Firmware Thinkstation P350 Thinkstation P350 Firmware Thinkstation P350 Tiny Thinkstation P350 Tiny Firmware Thinkstation P360 Thinkstation P360 Firmware Thinkstation P360 Tiny Thinkstation P360 Tiny Firmware V30a-22itl V30a-22itl Firmware V30a-24itl V30a-24itl Firmware V35s-07ada V35s-07ada Firmware V50s-07imb V50s-07imb Firmware V50t-13imb V50t-13imb Firmware V50t-13iob G2 V50t-13iob G2 Firmware V530s-07icb V530s-07icb Firmware V530s-07icr V530s-07icr Firmware V55t Gen 2 13acn V55t Gen 2 13acn Firmware
cve-icon MITRE

Status: PUBLISHED

Assigner: lenovo

Published:

Updated: 2025-01-08T15:55:59.489Z

Reserved: 2022-12-29T17:29:25.495Z

Link: CVE-2022-48181

cve-icon Vulnrichment

Updated: 2024-08-03T15:02:36.753Z

cve-icon NVD

Status : Modified

Published: 2023-06-05T22:15:11.383

Modified: 2024-11-21T07:32:55.820

Link: CVE-2022-48181

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.

Weaknesses