VYPR

Thinkpad X1 Carbon \(20bx\) Firmware

by Lenovo

CVEs (2)

  • CVE-2020-8323MedJun 9, 2020
    risk 0.42cvss 6.4epss 0.00

    A potential vulnerability in the SMI callback function used in the Legacy SD driver in some Lenovo ThinkPad, ThinkStation, and Lenovo Notebook models may allow arbitrary code execution.

  • CVE-2020-8335MedSep 1, 2020
    risk 0.40cvss 6.1epss 0.00

    The BIOS tamper detection mechanism was not triggered in Lenovo ThinkPad A285, BIOS versions up to r0xuj70w; A485, BIOS versions up to r0wuj65w; T495 BIOS versions up to r12uj55w; T495s/X395, BIOS versions up to r13uj47w, while the emergency-reset button is pressed which may…