CVE-2021-3462
https://notcve.org/view.php?id=CVE-2021-3462
A privilege escalation vulnerability in Lenovo Power Management Driver for Windows 10, prior to version 1.67.17.54, that could allow unauthorized access to the driver's device object. Una vulnerabilidad de escalada de privilegios en Lenovo Power Management Driver para Windows 10, anteriores a versión 1.67.17.54, que podría permitir el acceso no autorizado al objeto del dispositivo del controlador • https://support.lenovo.com/us/en/product_security/LEN-59174 • CWE-276: Incorrect Default Permissions •
CVE-2021-3463
https://notcve.org/view.php?id=CVE-2021-3463
A null pointer dereference vulnerability in Lenovo Power Management Driver for Windows 10, prior to version 1.67.17.54, that could cause systems to experience a blue screen error. Una vulnerabilidad de desreferencia de puntero null en Lenovo Power Management Driver para Windows 10, anteriores a versión 1.67.17.54, que podría causar que los sistemas experimenten un error de pantalla azul • https://support.lenovo.com/us/en/product_security/LEN-59174 • CWE-476: NULL Pointer Dereference •
CVE-2020-8341
https://notcve.org/view.php?id=CVE-2020-8341
In Lenovo systems, SMM BIOS Write Protection is used to prevent writes to SPI Flash. While this provides sufficient protection, an additional layer of protection is provided by SPI Protected Range Registers (PRx). After resuming from S3 sleep mode in various versions of BIOS for some Lenovo ThinkPad systems, the PRx is not set. This does not impact the SMM BIOS Write Protection, which keeps systems protected. En los sistemas Lenovo, SMM BIOS Write Protection es usada para impedir escrituras en la SPI Flash. • https://support.lenovo.com/us/en/product_security/LEN-30042 •
CVE-2020-8335
https://notcve.org/view.php?id=CVE-2020-8335
The BIOS tamper detection mechanism was not triggered in Lenovo ThinkPad A285, BIOS versions up to r0xuj70w; A485, BIOS versions up to r0wuj65w; T495 BIOS versions up to r12uj55w; T495s/X395, BIOS versions up to r13uj47w, while the emergency-reset button is pressed which may allow for unauthorized access. El mecanismo de detección de alteraciones del BIOS no fue activado en Lenovo ThinkPad A285, versiones de BIOS hasta r0xuj70w; A485, versiones de BIOS hasta r0wuj65w; T495 versiones de BIOS hasta r12uj55w; T495s/X395 versiones de BIOS hasta r13uj47w, mientras es presionado el botón de reinicio de emergencia que puede permitir un acceso no autorizado • https://support.lenovo.com/us/en/product_security/LEN-30042 •
CVE-2020-8334
https://notcve.org/view.php?id=CVE-2020-8334
The BIOS tamper detection mechanism was not triggered in Lenovo ThinkPad T495s, X395, T495, A485, A285, A475, A275 which may allow for unauthorized access. El mecanismo de detección de manipulación del BIOS no se activó en Lenovo ThinkPad T495s, X395, T495, A485, A285, A475, A275, lo que puede permitir un acceso no autorizado • https://support.lenovo.com/us/en/product_security/LEN-30042 • CWE-754: Improper Check for Unusual or Exceptional Conditions •