First published: Wed Nov 08 2023(Updated: )
A vulnerability was reported in some ThinkPad BIOS that could allow a physical or local attacker with elevated privileges to tamper with BIOS firmware.
Credit: psirt@lenovo.com
Affected Software | Affected Version | How to fix |
---|---|---|
All of | ||
All of | ||
<1.19 | ||
All of | ||
All of | ||
All of | ||
All of | ||
All of | ||
All of | ||
All of | ||
All of | ||
<1.23 | ||
All of | ||
<1.1 | ||
All of | ||
<1.23 | ||
All of | ||
<1.1 | ||
All of | ||
All of | ||
<1.19 | ||
All of | ||
All of | ||
All of | ||
<1.19 | ||
All of | ||
All of | ||
Update system firmware to the version (or newer) indicated for your model in the advisory: https://support.lenovo.com/us/en/product_security/LEN-141775
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID is CVE-2023-5078.
The severity of CVE-2023-5078 is medium.
Lenovo Thinkpad X13 Gen 3 is affected by CVE-2023-5078.
A physical or local attacker with elevated privileges can exploit CVE-2023-5078 to tamper with BIOS firmware.
You can find more information about CVE-2023-5078 at the following link: [CVE-2023-5078](https://support.lenovo.com/us/en/product_security/LEN-141775)