CVE Vulnerabilities

CVE-2022-48189

Published: Oct 30, 2023 | Modified: Nov 03, 2023
CVSS 3.x
6.7
MEDIUM
Source:
NVD
CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H
CVSS 2.x
RedHat/V2
RedHat/V3
Ubuntu

An SMM driver input validation vulnerability in the BIOS of some ThinkPad models could allow an attacker with local access and elevated privileges to execute arbitrary code.

Affected Software

Name Vendor Start Version End Version
Thinkpad_e14_firmware Lenovo * 1.23 (excluding)

References