QID 375632

Date Published: 2021-08-11

QID 375632: Lenovo BIOS Escalation of Privilege Vulnerability (LEN-50824)

Potential security vulnerabilities in Intel BIOS platform sample code for some Intel Processors that may allow escalation of privilege.

Affected Products:
ThinkStation P340 Tiny
ThinkStation P320 Tiny
ThinkStation P330 Tiny
ThinkStation P310
ThinkStation P320
ThinkStation P330
ThinkStation P720
ThinkStation P920
QID Detection Logic
: This QID checks if Vulnerable versions of BIOS installed on windows system.

Successful exploitation could compromise confidentiality, integrity and availability

  • CVSS V3 rated as High - 7.8 severity.
  • CVSS V2 rated as Medium - 4.6 severity.
  • Solution
    Customers are recommended to update bios firmware. Refer to LEN-50824 for bios updates.

    CVEs related to QID 375632

    Software Advisories
    Advisory ID Software Component Link
    LEN-50824 URL Logo support.lenovo.com/us/en/product_security/LEN-50824