Lenovo Update
2997Warning Date
Severity Level
Warning Number
Target Sector
16 January, 2020
● Medium
2020-806
All
Description:
Lenovo has released security Updates to address vulnerabilities in DLL search path and symbolic link of Lenovo products.
Threats:
Attacker could exploit these vulnerabilities by doing the following:
- Escalation of privilege. Only during software installation.
Best practice and Recommendations:
The CERT team encourages users to review Lenovo security advisory and apply the necessary Updates:
https://support.lenovo.com/us/en/product_security/LEN-27431