VYPR

Thinkcentre M625q Firmware

by Lenovo

CVEs (28)

  • CVE-2019-6170MedNov 12, 2019
    risk 0.42cvss 6.4epss 0.00

    A potential vulnerability in the SMI callback function used in the Legacy USB driver using boot services structure in runtime phase in some Lenovo ThinkPad models may allow arbitrary code execution.

  • CVE-2019-6190MedFeb 14, 2020
    risk 0.33cvss 5.0epss 0.00

    Lenovo was notified of a potential denial of service vulnerability, affecting various versions of BIOS for Lenovo Desktop, Desktop - All in One, and ThinkStation, that could cause PCRs to be cleared intermittently after resuming from sleep (S3) on systems with Intel TXT enabled.

  • CVE-2023-43574MedNov 8, 2023
    risk 0.29cvss 4.4epss 0.00

    A buffer over-read was reported in the LEMALLDriversConnectedEventHook module in some Lenovo Desktop products that may allow a local attacker with elevated privileges to disclose sensitive information.

  • CVE-2023-43572MedNov 8, 2023
    risk 0.29cvss 4.4epss 0.00

    A buffer over-read was reported in the BiosExtensionLoader module in some Lenovo Desktop products that may allow a local attacker with elevated privileges to disclose sensitive information.

  • CVE-2023-43568MedNov 8, 2023
    risk 0.29cvss 4.4epss 0.00

    A buffer over-read was reported in the LemSecureBootForceKey module in some Lenovo Desktop products that may allow a local attacker with elevated privileges to disclose sensitive information.

  • CVE-2022-40136MedJan 30, 2023
    risk 0.29cvss 4.4epss 0.00

    An information leak vulnerability in SMI Handler used to configure platform settings over WMI in some Lenovo models may allow an attacker with local access and elevated privileges to read SMM memory.

  • CVE-2022-40135MedJan 30, 2023
    risk 0.29cvss 4.4epss 0.00

    An information leak vulnerability in the Smart USB Protection SMI Handler in some Lenovo models may allow an attacker with local access and elevated privileges to read SMM memory.

  • CVE-2022-40134MedJan 30, 2023
    risk 0.29cvss 4.4epss 0.00

    An information leak vulnerability in the SMI Set BIOS Password SMI Handler in some Lenovo models may allow an attacker with local access and elevated privileges to read SMM memory.

Page 2 of 2