A potential vulnerability was reported in some Lenovo Tablets that could allow a local authenticated user or application to gain access to sensitive device specific information.
Advisories

No advisories yet.

Fixes

Solution

Update to the version (or newer) indicated for your model in the Product Impact section in the advisory:  https://support.lenovo.com/us/en/product_security/LEN-202383 See details on updating your Lenovo Android device here https://pcsupport.lenovo.com/us/en/solutions/ht117027 .


Workaround

No workaround given by the vendor.

History

Mon, 03 Nov 2025 22:15:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Mon, 03 Nov 2025 21:45:00 +0000

Type Values Removed Values Added
Description A potential vulnerability was reported in some Lenovo Tablets that could allow a local authenticated user or application to gain access to sensitive device specific information.
Weaknesses CWE-256
References
Metrics cvssV3_1

{'score': 5.5, 'vector': 'CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N'}

cvssV4_0

{'score': 6.8, 'vector': 'CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:H/VI:N/VA:N/SC:N/SI:N/SA:N'}


cve-icon MITRE

Status: PUBLISHED

Assigner: lenovo

Published:

Updated: 2025-11-03T21:47:52.661Z

Reserved: 2025-09-30T16:21:23.339Z

Link: CVE-2025-11193

cve-icon Vulnrichment

Updated: 2025-11-03T21:47:47.523Z

cve-icon NVD

Status : Received

Published: 2025-11-03T22:18:34.037

Modified: 2025-11-03T22:18:34.037

Link: CVE-2025-11193

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.