cbcvebase.
CVE-2022-48188
published 2023-06-05

CVE-2022-48188: A buffer overflow vulnerability in the SecureBootDXE BIOS driver of some Lenovo Desktop and ThinkStation models could allow an attacker with local access to…

high7.8CVSS 3.1
AVLACLPRLUINSUCHIHAH
A buffer overflow vulnerability in the SecureBootDXE BIOS driver of some Lenovo Desktop and ThinkStation models could allow an attacker with local access to elevate their privileges to execute arbitrary code.

Affected

32 ranges· showing 25
VendorProductVersion rangeFixed in
lenovoideacentre_510s-07icb_firmware< m22kt48am22kt48a
lenovoideacentre_510s-07icb_firmware< m22kt49am22kt49a
lenovoideacentre_510s-07ick_firmware< m30kt28am30kt28a
lenovoideacentre_510s-07ick_firmware< m1zkt40am1zkt40a
lenovoideacentre_720-18apr_firmware< m25kt63am25kt63a
lenovoideacentre_aio_3-22itl6_firmware< o5akt33o5akt33
lenovoideacentre_aio_3-24itl6_firmware< o5akt33o5akt33
lenovoideacentre_aio_3-27itl6_firmware< o5akt33o5akt33
lenovoideacentre_aio_3_21itl7_firmware< o5akt33o5akt33
lenovothinkcentre_m720e_firmware< m1zkt40am1zkt40a
lenovothinkcentre_m720q_firmware< m1ukt70am1ukt70a
lenovothinkcentre_m720s_firmware< m1ukt70am1ukt70a
lenovothinkcentre_m720t_firmware< m1ukt70am1ukt70a
lenovothinkcentre_m725s_firmware< m25kt63am25kt63a
lenovothinkcentre_m75s_gen_2_firmware< m46kt30am46kt30a
lenovothinkcentre_m75s_gen_2_firmware< m3bkt30am3bkt30a
lenovothinkcentre_m75t_gen_2_firmware< m46kt30am46kt30a
lenovothinkcentre_m75t_gen_2_firmware< m3akt4cam3akt4ca
lenovothinkcentre_m920q_firmware< m1ukt70am1ukt70a
lenovothinkcentre_m920s_firmware< m1ukt70am1ukt70a
lenovothinkcentre_m920t_firmware< m1ukt70am1ukt70a
lenovothinkcentre_m920x_firmware< m1ukt70am1ukt70a
lenovothinkcentre_m920z_firmware< m1mkt55am1mkt55a
lenovothinkstation_bios
lenovothinkstation_p330_tiny_firmware< m1ukt70am1ukt70a