Lenovo Updates
2613Warning Date
Severity Level
Warning Number
Target Sector
14 October, 2020
● High
2020-1918
All
Description:
Lenovo has released a security update to address several vulnerabilities in the following products:
- Lenovo Vantage HardwareScan Plugin
- ThinkPad
- Brocade Fabric OS and SANnav
- Cloud Networking Operating System (CNOS)
Threats:
An attacker could exploit these vulnerabilities by doing the following:
- Execute arbitrary code - remotely
- Elevate privileges
- Denial of service attack (DoS)
- Unauthorized disclosure of information
Best practice and Recommendations:
The CERT team encourages users to review Lenovo security advisory and apply the necessary updates:
- https://support.lenovo.com/us/en/product_security/LEN-44423
- https://support.lenovo.com/us/en/product_security/LEN-46654
- https://support.lenovo.com/us/en/product_security/LEN-32702
- https://support.lenovo.com/us/en/product_security/LEN-38625
- https://support.lenovo.com/us/en/product_security/LEN-44421
- https://support.lenovo.com/us/en/product_security/LEN-48228