An SMM driver input validation vulnerability in the BIOS of some ThinkPad models could allow an attacker with local access and elevated privileges to execute arbitrary code.

Project Subscriptions

Vendors Products
Thinkpad E14 Subscribe
Thinkpad E14 Firmware Subscribe
Thinkpad E14 Gen 2 Subscribe
Thinkpad E14 Gen 2 Firmware Subscribe
Thinkpad E14 Gen 4 Subscribe
Thinkpad E14 Gen 4 Firmware Subscribe
Thinkpad E15 Subscribe
Thinkpad E15 Firmware Subscribe
Thinkpad E15 Gen 2 Subscribe
Thinkpad E15 Gen 2 Firmware Subscribe
Thinkpad E15 Gen 4 Subscribe
Thinkpad E15 Gen 4 Firmware Subscribe
Thinkpad E490 Subscribe
Thinkpad E490 Firmware Subscribe
Thinkpad E490s Subscribe
Thinkpad E490s Firmware Subscribe
Thinkpad E590 Subscribe
Thinkpad E590 Firmware Subscribe
Thinkpad L13 Gen 3 Subscribe
Thinkpad L13 Gen 3 Firmware Subscribe
Thinkpad L13 Yoga Gen 3 Subscribe
Thinkpad L13 Yoga Gen 3 Firmware Subscribe
Thinkpad L14 Subscribe
Thinkpad L14 Firmware Subscribe
Thinkpad L15 Subscribe
Thinkpad L15 Firmware Subscribe
Thinkpad L15 Gen 2 Subscribe
Thinkpad L15 Gen 2 Firmware Subscribe
Thinkpad L15 Gen 3 Subscribe
Thinkpad L15 Gen 3 Firmware Subscribe
Thinkpad L490 Subscribe
Thinkpad L490 Firmware Subscribe
Thinkpad L590 Subscribe
Thinkpad L590 Firmware Subscribe
Thinkpad P14s Gen 1 Subscribe
Thinkpad P14s Gen 1 Firmware Subscribe
Thinkpad P14s Gen 2 Subscribe
Thinkpad P14s Gen 2 Firmware Subscribe
Thinkpad P14s Gen 3 Subscribe
Thinkpad P14s Gen 3 Firmware Subscribe
Thinkpad P15 Gen 1 Subscribe
Thinkpad P15 Gen 1 Firmware Subscribe
Thinkpad P15 Gen 2 Subscribe
Thinkpad P15 Gen 2 Firmware Subscribe
Thinkpad P15s Gen 1 Subscribe
Thinkpad P15s Gen 1 Firmware Subscribe
Thinkpad P15s Gen 2 Subscribe
Thinkpad P15s Gen 2 Firmware Subscribe
Thinkpad P15v Gen 1 Subscribe
Thinkpad P15v Gen 1 Firmware Subscribe
Thinkpad P15v Gen 2 Subscribe
Thinkpad P15v Gen 2 Firmware Subscribe
Thinkpad P15v Gen 3 Subscribe
Thinkpad P15v Gen 3 Firmware Subscribe
Thinkpad P16 Gen 1 Subscribe
Thinkpad P16 Gen 1 Firmware Subscribe
Thinkpad P16s Gen 1 Subscribe
Thinkpad P16s Gen 1 Firmware Subscribe
Thinkpad P17 Gen 1 Subscribe
Thinkpad P17 Gen 1 Firmware Subscribe
Thinkpad P17 Gen 2 Subscribe
Thinkpad P17 Gen 2 Firmware Subscribe
Thinkpad P1 Gen 2 Subscribe
Thinkpad P1 Gen 2 Firmware Subscribe
Thinkpad P1 Gen 3 Subscribe
Thinkpad P1 Gen 3 Firmware Subscribe
Thinkpad P1 Gen 4 Subscribe
Thinkpad P1 Gen 4 Firmware Subscribe
Thinkpad P1 Gen 5 Subscribe
Thinkpad P1 Gen 5 Firmware Subscribe
Thinkpad P43s Subscribe
Thinkpad P43s Firmware Subscribe
Thinkpad P53 Subscribe
Thinkpad P53 Firmware Subscribe
Thinkpad P53s Subscribe
Thinkpad P53s Firmware Subscribe
Thinkpad P73 Subscribe
Thinkpad P73 Firmware Subscribe
Thinkpad T14 Gen 1 Subscribe
Thinkpad T14 Gen 1 Firmware Subscribe
Thinkpad T14 Gen 2 Subscribe
Thinkpad T14 Gen 2 Firmware Subscribe
Thinkpad T14 Gen 3 Subscribe
Thinkpad T14 Gen 3 Firmware Subscribe
Thinkpad T14s Subscribe
Thinkpad T14s Firmware Subscribe
Thinkpad T14s Gen 2 Subscribe
Thinkpad T14s Gen 2 Firmware Subscribe
Thinkpad T14s Gen 3 Subscribe
Thinkpad T14s Gen 3 Firmware Subscribe
Thinkpad T15 Subscribe
Thinkpad T15 Firmware Subscribe
Thinkpad T15 Gen 2 Subscribe
Thinkpad T15 Gen 2 Firmware Subscribe
Thinkpad T15g Gen 1 Subscribe
Thinkpad T15g Gen 1 Firmware Subscribe
Thinkpad T15g Gen 2 Subscribe
Thinkpad T15g Gen 2 Firmware Subscribe
Thinkpad T15p Gen 1 Subscribe
Thinkpad T15p Gen 1 Firmware Subscribe
Thinkpad T15p Gen 2 Subscribe
Thinkpad T15p Gen 2 Firmware Subscribe
Thinkpad T15p Gen 3 Subscribe
Thinkpad T15p Gen 3 Firmware Subscribe
Thinkpad T16 Gen 1 Subscribe
Thinkpad T16 Gen 1 Firmware Subscribe
Thinkpad T490 Subscribe
Thinkpad T490 Firmware Subscribe
Thinkpad T490s Subscribe
Thinkpad T490s Firmware Subscribe
Thinkpad T590 Subscribe
Thinkpad T590 Firmware Subscribe
Thinkpad Thinkpad R14 Gen 2 Subscribe
Thinkpad Thinkpad R14 Gen 2 Firmware Subscribe
Thinkpad Thinkpad R14 Gen 4 Subscribe
Thinkpad Thinkpad R14 Gen 4 Firmware Subscribe
Thinkpad Thinkpad S3 2nd Gen Subscribe
Thinkpad Thinkpad S3 2nd Gen Firmware Subscribe
Thinkpad X12 Detachable Gen 1 Subscribe
Thinkpad X12 Detachable Gen 1 Firmware Subscribe
Thinkpad X13 Subscribe
Thinkpad X13 Firmware Subscribe
Thinkpad X13 Gen 2 Subscribe
Thinkpad X13 Gen 2 Firmware Subscribe
Thinkpad X13 Gen 3 Subscribe
Thinkpad X13 Gen 3 Firmware Subscribe
Thinkpad X13 Yoga Gen 1 Subscribe
Thinkpad X13 Yoga Gen 1 Firmware Subscribe
Thinkpad X13 Yoga Gen 2 Subscribe
Thinkpad X13 Yoga Gen 2 Firmware Subscribe
Thinkpad X13 Yoga Gen 3 Subscribe
Thinkpad X13 Yoga Gen 3 Firmware Subscribe
Thinkpad X1 Carbon 10th Gen Subscribe
Thinkpad X1 Carbon 10th Gen Firmware Subscribe
Thinkpad X1 Carbon 7th Gen Subscribe
Thinkpad X1 Carbon 7th Gen Firmware Subscribe
Thinkpad X1 Carbon 8th Gen Subscribe
Thinkpad X1 Carbon 8th Gen Firmware Subscribe
Thinkpad X1 Carbon 9th Gen Subscribe
Thinkpad X1 Carbon 9th Gen Firmware Subscribe
Thinkpad X1 Extreme 2nd Gen Subscribe
Thinkpad X1 Extreme 2nd Gen Firmware Subscribe
Thinkpad X1 Extreme 3rd Gen Subscribe
Thinkpad X1 Extreme 3rd Gen Firmware Subscribe
Thinkpad X1 Extreme 4th Gen Subscribe
Thinkpad X1 Extreme 4th Gen Firmware Subscribe
Thinkpad X1 Extreme Gen 5 Subscribe
Thinkpad X1 Extreme Gen 5 Firmware Subscribe
Thinkpad X1 Nano Gen 1 Subscribe
Thinkpad X1 Nano Gen 1 Firmware Subscribe
Thinkpad X1 Nano Gen 2 Subscribe
Thinkpad X1 Nano Gen 2 Firmware Subscribe
Thinkpad X1 Titanium Subscribe
Thinkpad X1 Titanium Firmware Subscribe
Thinkpad X1 Yoga 4th Gen Subscribe
Thinkpad X1 Yoga 4th Gen Firmware Subscribe
Thinkpad X1 Yoga 5th Gen Subscribe
Thinkpad X1 Yoga 5th Gen Firmware Subscribe
Thinkpad X1 Yoga 6th Gen Subscribe
Thinkpad X1 Yoga 6th Gen Firmware Subscribe
Thinkpad X1 Yoga 7th Gen Subscribe
Thinkpad X1 Yoga 7th Gen Firmware Subscribe
Thinkpad X390 Subscribe
Thinkpad X390 Firmware Subscribe
Thinkpad X390 Yoga Subscribe
Thinkpad X390 Yoga Firmware Subscribe
Thinkpad Z13 Gen 1 Subscribe
Thinkpad Z13 Gen 1 Firmware Subscribe
Thinkpad Z16 Gen 1 Subscribe
Thinkpad Z16 Gen 1 Firmware Subscribe
Advisories
Source ID Title
EUVD EUVD EUVD-2022-50900 An SMM driver input validation vulnerability in the BIOS of some ThinkPad models could allow an attacker with local access and elevated privileges to execute arbitrary code.
Fixes

Solution

Update system firmware to the version (or newer) indicated for your model in the Product Impact section of LEN-106014.


Workaround

No workaround given by the vendor.

History

No history.

Projects

Sign in to view the affected projects.

cve-icon MITRE

Status: PUBLISHED

Assigner: lenovo

Published:

Updated: 2024-09-09T15:02:40.079Z

Reserved: 2022-12-29T17:29:25.497Z

Link: CVE-2022-48189

cve-icon Vulnrichment

Updated: 2024-08-03T15:10:57.676Z

cve-icon NVD

Status : Modified

Published: 2023-10-30T15:15:39.203

Modified: 2024-11-21T07:32:56.753

Link: CVE-2022-48189

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.

Weaknesses