Known Vulnerabilities for Thinkpad L470 Firmware by Lenovo
Listed below are 9 of the newest known vulnerabilities associated with "Thinkpad L470 Firmware" by "Lenovo".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2021-3786 | A potential vulnerability in the SMI callback function used in CSME configuration of some Lenovo Notebook and ThinkPad system... | 5.5 - MEDIUM | 2021-11-12 | 2021-11-26 |
| CVE-2021-3599 | A potential vulnerability in the SMI callback function used to access flash device in some ThinkPad models may allow an attac... | 6.7 - MEDIUM | 2021-11-12 | 2021-11-24 |
| CVE-2020-8323 | A potential vulnerability in the SMI callback function used in the Legacy SD driver in some Lenovo ThinkPad, ThinkStation, an... | 6.7 - MEDIUM | 2020-06-09 | 2020-06-22 |
| CVE-2020-8320 | An internal shell was included in BIOS image in some ThinkPad models that could allow escalation of privilege. | 6.8 - MEDIUM | 2020-06-09 | 2020-06-17 |
| CVE-2019-19705 | Realtek Audio Drivers for Windows, as used on the Lenovo ThinkPad X1 Carbon 20A7, 20A8, 20BS, and 20BT before 6.0.8882.1 and ... | 7.8 - HIGH | 2022-12-26 | 2023-01-06 |
| CVE-2019-10724 | There is a vulnerability with the Dolby DAX2 API system services in which a low-privileged user can terminate arbitrary proce... | 6.5 - MEDIUM | 2019-08-29 | 2020-08-24 |
| CVE-2019-6188 | The BIOS tamper detection mechanism was not triggered in Lenovo ThinkPad T460p, BIOS versions up to R07ET90W, and T470p, BIOS... | 9.8 - CRITICAL | 2019-11-12 | 2020-08-24 |
| CVE-2019-6172 | A potential vulnerability in the SMI callback function used in Legacy USB driver using passed parameter without sufficient ch... | 6.4 - MEDIUM | 2019-11-12 | 2020-12-08 |
| CVE-2019-6170 | A potential vulnerability in the SMI callback function used in the Legacy USB driver using boot services structure in runtime... | 6.4 - MEDIUM | 2019-11-12 | 2020-12-08 |
Known Affected Configurations (CPE V2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Operating System | Lenovo | Thinkpad L470 Firmware | 2020-07-10 | All | All | All |