PT-2019-18003 · Lenovo · Lenovo Thinkpad

Published

2019-11-12

·

Updated

2020-12-08

·

CVE-2019-6172

CVSS v3.1

6.4

Medium

VectorAV:L/AC:H/PR:H/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Lenovo ThinkPad (affected versions not specified)
Description A potential issue in the SMI callback function used in the Legacy USB driver may allow arbitrary code execution due to insufficient checking of passed parameters.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-2019-6172

Affected Products

Lenovo Thinkpad