ZeroHour

CVE-2023-34419

CVSS 3.1
6.7 medium
EPSS
<1%p9
Published
()
Modified
Description

A buffer overflow has been identified in the SetupUtility driver in some Lenovo Notebook products which may allow an attacker with local access and elevated privileges to execute arbitrary code.

Vendors
lenovo
Products
legion 5 pro 16iah7h firmware, legion 5 pro 16iah7 firmware, legion 5 pro 16arh7 firmware, legion 5 pro 16arh7h firmware, legion 5 15arh7 firmware, legion 5 15arh7h firmware, legion 5 15iah7h firmware, legion 5 15iah7 firmware, legion 5 pro-16ach6 firmware, legion 5 pro-16ach6h firmware, legion 5 pro-16ith6 firmware, legion 5 pro-16ith6h firmware
Weakness
CWE-120
Vector
CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.