VYPR
Medium severity5.9NVD Advisory· Published Oct 2, 2018· Updated Jun 17, 2026

CVE-2018-9069

CVE-2018-9069

Description

In some Lenovo IdeaPad consumer notebook models, a race condition in the BIOS flash device locking mechanism is not adequately protected against, potentially allowing an attacker with administrator access to alter the contents of BIOS.

Affected products

2
  • Lenovo/IdeaPadllm-fuzzy2 versions
    (expand)+ 1 more
    • (no CPE)
    • (no CPE)range: various

Patches

Vulnerability mechanics

References

1

News mentions

0

No linked articles in our index yet.

CVE-2018-9069 · Medium · VYPR