Blog | G5 Cyber Security

Lenovo releases updates to fix Secure Boot flaw in servers and other issues

Lenovo has released security patches that address the High severity vulnerability CVE-2017-3775 in the Secure Boot function on some System x servers. The flaw could be easily exploited by an attacker entering very large user ID or password in order to overrun the programs buffer. Lenovo also issued a patch to address the CVE-2018-9063 buffer overflow in Lenovo System Update Drive Mapping Utility. The vulnerability impacts a dozen models, including Flex System x240 M5 and NeXtScale nx360 M5 devices.”]

Source: https://securityaffairs.co/wordpress/72335/security/lenovo-security-updates.html

Exit mobile version