First published: Thu Aug 17 2023(Updated: )
A buffer overflow has been identified in the SetupUtility driver in some Lenovo Notebook products which may allow an attacker with local access and elevated privileges to execute arbitrary code.
Credit: psirt@lenovo.com
Affected Software | Affected Version | How to fix |
---|---|---|
Lenovo Legion 5 Pro 16IAH7H | <j2cn51ww | |
Lenovo Legion 5 Pro 16IAH7H Firmware | ||
Lenovo Legion 5 Pro 16IAH7H | <j2cn51ww | |
Lenovo Legion 5 Pro 16IAH7H | ||
Lenovo Legion 5 Pro 16ARH7H Firmware | ||
Lenovo Legion 5 Pro 16ARH7H | ||
Lenovo Legion 5 Pro 16ARH7H | ||
Lenovo Legion 5 Pro 16ARH7H Firmware | ||
Lenovo Legion 5 15ARH7H Firmware | ||
Lenovo Legion 5 15ARH7H Firmware | ||
Lenovo Legion 5 15ARH7H | ||
Lenovo Legion 5 | ||
Lenovo Legion 5 Firmware | <j2cn51ww | |
Lenovo Legion 5 | ||
Lenovo Legion 5 15IAH7H Firmware | <j2cn51ww | |
Lenovo Legion 5 15IAH7H Firmware | ||
Lenovo Legion 5 Pro 16ACH6 Firmware | ||
Lenovo Legion 5 Pro 16ACH6H | ||
Lenovo Legion 5 Pro 16ACH6H | ||
Lenovo Legion 5 Pro 16ACH6H | ||
Lenovo Legion 5 Pro 16ITH6H Firmware | ||
Lenovo Legion 5 Pro 16ITH6 | ||
Lenovo Legion 5 Pro 16ITH6H Firmware | ||
Lenovo Legion 5 Pro 16ITH6 | ||
Lenovo Legion 5-15ACH6A Firmware | ||
Lenovo Legion 5-15ACH6 Firmware | ||
Lenovo Legion 5-15ACH6 Firmware | ||
Lenovo Legion 5-15ACH6A Firmware | ||
Lenovo Legion 5 - 17ACH6H | ||
Lenovo Legion 5-15ACH6H Firmware | ||
Lenovo Legion 5 15ITH6 Firmware | ||
Lenovo Legion 5 15ITH6 Firmware | ||
Lenovo Legion 5 15ITH6H | ||
Lenovo Legion 5 15ITH6H | ||
Lenovo Legion 5-17ACH6H Firmware | ||
Lenovo Legion 5-17ACH6 Firmware | ||
Lenovo Legion 5-17ACH6H Firmware | ||
Lenovo Legion 5 - 17ACH6H | ||
Lenovo Legion 5-17ITH6H Firmware | ||
Lenovo Legion 5 | ||
Lenovo Legion 5 Firmware | ||
Lenovo Legion 5-17ITH6H Firmware | ||
Lenovo Legion S7 16ARHA7 Firmware | ||
Lenovo Legion S7 16ARHA7 Firmware | ||
Lenovo Legion 7 16ACHG6 Firmware | ||
Lenovo Legion 7 16ACHG6 Firmware | ||
Lenovo Legion 7-16ITHG6 | ||
Lenovo Legion 7 16ITHG6 Firmware | ||
Lenovo Legion Pro 5 16IRX8 | <kwcn37ww | |
Lenovo Legion Pro 5 16IRX8 | ||
Lenovo Legion Pro 7 16IRX8H Firmware | <kwcn37ww | |
Lenovo Legion Pro 7 16IRX8 Firmware | ||
Lenovo Legion Pro 7 16IRX8H Firmware | <kwcn37ww | |
Lenovo Legion Pro 7 16IRX8 | ||
Lenovo Legion S7 16ARHA7 | ||
Lenovo Legion S7 | ||
Lenovo ThinkBook 16p G3 ARH | ||
Lenovo ThinkBook 16p G3 ARH Firmware | ||
Lenovo Thinkbook 15p G2 ITH Firmware | ||
Lenovo Thinkbook 15p G2 ITH Firmware |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2023-34419 is a buffer overflow vulnerability in the SetupUtility driver in some Lenovo Notebook products.
CVE-2023-34419 affects Lenovo Legion 5 Pro 16iah7h firmware versions up to j2cn51ww.
Yes, Lenovo Legion 5 Pro 16iah7h firmware versions up to j2cn51ww are vulnerable to CVE-2023-34419.
CVE-2023-34419 has a severity rating of 6.7 (medium severity).
To fix CVE-2023-34419, it is recommended to update your Lenovo Legion 5 Pro 16iah7h firmware to a version beyond j2cn51ww.