VYPR
Medium severity6.4NVD Advisory· Published Nov 12, 2019· Updated Jun 17, 2026

CVE-2019-6172

CVE-2019-6172

Description

A potential vulnerability in the SMI callback function used in Legacy USB driver using passed parameter without sufficient checking in some Lenovo ThinkPad models may allow arbitrary code execution.

Affected products

394

Patches

Vulnerability mechanics

References

1

News mentions

0

No linked articles in our index yet.