First published: Thu Aug 17 2023(Updated: )
A vulnerability was reported in BIOS for ThinkPad P14s Gen 2, P15s Gen 2, T14 Gen 2, and T15 Gen 2 that could cause the system to recover to insecure settings if the BIOS becomes corrupt.
Credit: psirt@lenovo.com psirt@lenovo.com
Affected Software | Affected Version | How to fix |
---|---|---|
Lenovo Thinkpad T15 Gen 2 Firmware | ||
Lenovo Thinkpad T15 Gen 2 | ||
Lenovo Thinkpad P14s Gen 2 Firmware | ||
Lenovo Thinkpad P14s Gen 2 | ||
Lenovo Thinkpad P15s Gen 2 Firmware | ||
Lenovo Thinkpad P15s Gen 2 | ||
Lenovo Thinkpad T14 Gen 2 Firmware | ||
Lenovo Thinkpad T14 Gen 2 |
Update system firmware to the version (or newer) indicated for your model in the Product Impact section in LEN-134879.
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2023-4030 is a vulnerability in the BIOS of ThinkPad P14s Gen 2, P15s Gen 2, T14 Gen 2, and T15 Gen 2 laptops that could result in the system recovering to insecure settings if the BIOS becomes corrupt.
CVE-2023-4030 affects the BIOS firmware of Lenovo ThinkPad P14s Gen 2, P15s Gen 2, T14 Gen 2, and T15 Gen 2 laptops.
The severity of CVE-2023-4030 is rated as high with a severity value of 7.8.
To fix the BIOS vulnerability, users should install the latest firmware update provided by Lenovo.
More information about CVE-2023-4030 can be found on Lenovo's Product Security website.