CVE-2024-10254

Severity
4.7MEDIUM
EPSS
0.1%
top 68.71%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedJan 14
Latest updateJan 15

Description

A potential buffer overflow vulnerability was reported in PC Manager, Lenovo Browser, and Lenovo App Store that could allow a local attacker to cause a system crash.

CVSS vector

CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:N/I:N/A:HExploitability: 1.0 | Impact: 3.6

Affected Packages3 packages

CVEListV5lenovo/browser< 9.0.5.12181
CVEListV5lenovo/app_store< 9.0.20
CVEListV5lenovo/pc_manager< 5.1.90.12092

🔴Vulnerability Details

2
GHSA
GHSA-xh3p-2mwr-7hg5: A potential buffer overflow vulnerability was reported in PC Manager, Lenovo Browser, and Lenovo App Store that could allow a local attacker to cause2025-01-15
CVEList
CVE-2024-10254: A potential buffer overflow vulnerability was reported in PC Manager, Lenovo Browser, and Lenovo App Store that could allow a local attacker to cause2025-01-14