Vulnerabilities > Lenovo > Ideacentre AIO 3 22Iap7 Firmware
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2023-11-08 | CVE-2023-43571 | Unspecified vulnerability in Lenovo products A buffer overflow was reported in the BiosExtensionLoader module in some Lenovo Desktop products that may allow a local attacker with elevated privileges to execute arbitrary code. | 6.7 |
2023-11-08 | CVE-2023-43572 | Out-of-bounds Read vulnerability in Lenovo products A buffer over-read was reported in the BiosExtensionLoader module in some Lenovo Desktop products that may allow a local attacker with elevated privileges to disclose sensitive information. | 4.4 |
2023-11-08 | CVE-2023-43573 | Unspecified vulnerability in Lenovo products A buffer overflow was reported in the LEMALLDriversConnectedEventHook module in some Lenovo Desktop products that may allow a local attacker with elevated privileges to execute arbitrary code. | 6.7 |
2023-11-08 | CVE-2023-43574 | Out-of-bounds Read vulnerability in Lenovo products A buffer over-read was reported in the LEMALLDriversConnectedEventHook module in some Lenovo Desktop products that may allow a local attacker with elevated privileges to disclose sensitive information. | 4.4 |
2023-11-08 | CVE-2023-43575 | Unspecified vulnerability in Lenovo products A buffer overflow was reported in the UltraFunctionTable module in some Lenovo Desktop products that may allow a local attacker with elevated privileges to execute arbitrary code. | 6.7 |
2023-11-08 | CVE-2023-43576 | Unspecified vulnerability in Lenovo products A buffer overflow was reported in the WMISwSmi module in some Lenovo Desktop products that may allow a local attacker with elevated privileges to execute arbitrary code. | 6.7 |
2023-11-08 | CVE-2023-43577 | Unspecified vulnerability in Lenovo products A buffer overflow was reported in the ReFlash module in some Lenovo Desktop products that may allow a local attacker with elevated privileges to execute arbitrary code. | 6.7 |
2023-11-08 | CVE-2023-43578 | Unspecified vulnerability in Lenovo products A buffer overflow was reported in the SmiFlash module in some Lenovo Desktop products that may allow a local attacker with elevated privileges to execute arbitrary code. | 6.7 |
2023-11-08 | CVE-2023-43579 | Unspecified vulnerability in Lenovo products A buffer overflow was reported in the SmuV11Dxe driver in some Lenovo Desktop products that may allow a local attacker with elevated privileges to execute arbitrary code. | 6.7 |
2023-11-08 | CVE-2023-43580 | Unspecified vulnerability in Lenovo products A buffer overflow was reported in the SmuV11DxeVMR module in some Lenovo Desktop products that may allow a local attacker with elevated privileges to execute arbitrary code. | 6.7 |