ZeroHour

CVE-2022-4433

CVSS 3.1
4.4 medium
EPSS
<1%p8
Published
()
Modified
Description

A buffer over-read vulnerability was reported in the ThinkPadX13s BIOS LenovoSetupConfigDxe driver that could allow a local attacker with elevated privileges to cause information disclosure.

Vendors
lenovo
Products
thinkpad x13s firmware
Weakness
CWE-126, CWE-125
Vector
CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:N/A:N

In the news