CVE-2020-8322: Medium severity lenovo 330-14ast firmware vulnerability
A potential vulnerability in the SMI callback function used in the Legacy USB driver in some Lenovo Notebook and ThinkStation models may allow arbitrary code execution.
Affected Software
Remediation
Information
Event History
Frequently Asked Questions
What is the severity of CVE-2020-8322?
CVE-2020-8322 has a critical severity rating due to the potential for arbitrary code execution.
How do I fix CVE-2020-8322?
To resolve CVE-2020-8322, users should update the affected Lenovo firmware to the latest version provided by Lenovo.
Which Lenovo devices are affected by CVE-2020-8322?
CVE-2020-8322 affects specific models including the Lenovo 330-14AST, 330-15AST, and various others listed in Lenovo's security advisory.
What can happen if CVE-2020-8322 is exploited?
Exploitation of CVE-2020-8322 could allow an attacker to execute arbitrary code with elevated privileges on affected Lenovo devices.
Is there a workaround for CVE-2020-8322?
Currently, the best mitigation for CVE-2020-8322 is to apply the necessary firmware updates from Lenovo.