Vulnerabilities > Lenovo > Thinkpad L14 GEN 2 Firmware

DATE CVE VULNERABILITY TITLE RISK
2023-10-30 CVE-2022-4574 Unspecified vulnerability in Lenovo products
An SMI handler input validation vulnerability in the BIOS of some ThinkPad models could allow an attacker with local access and elevated privileges to execute arbitrary code.
local
low complexity
lenovo
6.7
2023-08-17 CVE-2023-4029 Classic Buffer Overflow vulnerability in Lenovo products
A buffer overflow has been identified in the BoardUpdateAcpiDxe driver in some Lenovo ThinkPad products which may allow an attacker with local access and elevated privileges to execute arbitrary code.
local
low complexity
lenovo CWE-120
6.7
2023-01-30 CVE-2022-40134 Out-of-bounds Read vulnerability in Lenovo products
An information leak vulnerability in the SMI Set BIOS Password SMI Handler in some Lenovo models may allow an attacker with local access and elevated privileges to read SMM memory.
local
low complexity
lenovo CWE-125
4.4