cbcvebase.
CVE-2020-8321
published 2020-06-09

CVE-2020-8321: A potential vulnerability in the SMI callback function used in the System Lock Preinstallation driver in some Lenovo Notebook and ThinkStation models may allow…

medium6.7CVSS 3.1
AVLACLPRHUINSUCHIHAH
A potential vulnerability in the SMI callback function used in the System Lock Preinstallation driver in some Lenovo Notebook and ThinkStation models may allow arbitrary code execution.

Affected

12 ranges
VendorProductVersion rangeFixed in
lenovobios
lenovothinkstation_p410_firmware< s00kya7as00kya7a
lenovothinkstation_p500_firmware< a4kt67aa4kt67a
lenovothinkstation_p510_firmware< s00kya7as00kya7a
lenovothinkstation_p520_firmware< 2020-09-012020-09-01
lenovothinkstation_p520c_firmware< 2020-09-012020-09-01
lenovothinkstation_p700_firmware< a5kta7aa5kta7a
lenovothinkstation_p710_firmware< s01kt67as01kt67a
lenovothinkstation_p720_firmware< 2020-09-012020-09-01
lenovothinkstation_p900_firmware< a6kta7aa6kta7a
lenovothinkstation_p910_firmware< s02kt67as02kt67a
lenovothinkstation_p920_firmware< 2020-09-012020-09-01