Lenovo Alert
2723Warning Date
Severity Level
Warning Number
Target Sector
9 February, 2022
● High
2022-4347
All
Description:
Lenovo has released security updates to address multiple vulnerabilities in the following products:
- Converged HX
- Desktop
- Desktop - All in One
- Hyperscale
- Lenovo Notebook
- Smart Edge
- Smart Office
- Storage
- System x
- ThinkAgile
- ThinkPad
- ThinkServer
- ThinkStation
- ThinkSystem
- Lenovo Notebook
- Tablets
- ThinkPad
- Commercial IoT Solutions
Threats:
Attacker could exploit these vulnerabilities by doing the following:
- Execute arbitrary code
- Elevate privileges
Best practice and Recommendations:
The CERT team encourages users to review Lenovo security advisory and apply the necessary updates:
- https://support.lenovo.com/us/en/product_security/LEN-77639
- https://support.lenovo.com/us/en/product_security/LEN-77636
- https://support.lenovo.com/us/en/product_security/LEN-76842
- https://support.lenovo.com/us/en/product_security/LEN-76841
- https://support.lenovo.com/us/en/product_security/LEN-75197
- https://support.lenovo.com/us/en/product_security/LEN-73438
- https://support.lenovo.com/us/en/product_security/LEN-73437
- https://support.lenovo.com/us/en/product_security/LEN-68030
- https://support.lenovo.com/us/en/product_security/LEN-62745
- https://support.lenovo.com/us/en/product_security/LEN-48101