Unrated severityNVD Advisory· Published Apr 22, 2022· Updated Aug 3, 2024
CVE-2021-3972
CVE-2021-3972
Description
A potential vulnerability by a driver used during manufacturing process on some consumer Lenovo Notebook devices' BIOS that was mistakenly not deactivated may allow an attacker with elevated privileges to modify secure boot setting by modifying an NVRAM variable.
Affected products
1- Range: various
Patches
Vulnerability mechanics
References
1- support.lenovo.com/us/en/product_security/LEN-73440mitrex_refsource_MISC
News mentions
0No linked articles in our index yet.