PT-2016-6324 · Lenovo · Lenovo Bios

Published

2016-09-22

·

Updated

2016-09-23

·

CVE-2016-5247

CVSS v2.0

7.2

High

VectorAV:L/AC:L/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions Lenovo BIOS versions (affected versions not specified)
Description The issue concerns the BIOS for various Lenovo devices, potentially allowing local users or physically proximate attackers to bypass the Secure Boot protection mechanism. This could be achieved by leveraging an AMI test key.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2016-5247

Affected Products

Lenovo Bios