Lenovo Updates
3078Warning Date
Severity Level
Warning Number
Target Sector
13 February, 2020
● Medium
2020-913
All
Description:
Lenovo has released security updates to address several vulnerabilities in the following products:
- Lenovo Desktop
- Lenovo ThinkCentre
- Lenovo ThinkStation
- Brocade - 300 FC SAN Switch
- Brocade - 6505 FC SAN Switch
- Brocade - 6510 FC SAN Switch
- Lenovo - B300 FC SAN Switch
- Lenovo – B320 FC SAN Switch
- Lenovo - B6505 FC SAN Switch
- Lenovo - B6510 FC SAN Switch
- ThinkSystem DB400D FC Switch
- ThinkSystem DB610S FC Switch
- ThinkSystem DB620S FC Switch
- ThinkSystem DB630S FC Switch
- ThinkSystem DB800D FC Switch
- Web interface of Lenovo EZ Media & Backup Center, ix2 & ix2-dl
- Lenovo XClarity Controller (XCC)
Threats:
Attacker could exploit these vulnerabilities by doing the following:
- Unauthorized disclosure of information.
- Denial of service attack (DoS).
- Escalation of privilege.
- Execute arbitrary code.
Best practice and Recommendations:
The CERT team encourages users to review Lenovo security advisory and apply the necessary updates: