A potential vulnerability in a driver used during manufacturing process on the Ideapad Y700-14ISK that was mistakenly not deactivated may allow an attacker with elevated privileges to modify secure boot setting by modifying an NVRAM variable.
References
Link | Resource |
---|---|
https://support.lenovo.com/us/en/product_security/LEN-94952 | Vendor Advisory |
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: lenovo
Published: 2023-01-23T16:27:12.970Z
Updated: 2023-01-26T06:03:10.975661Z
Reserved: 2022-10-07T19:59:51.458Z
Link: CVE-2022-3432
JSON object: View
NVD Information
Status : Analyzed
Published: 2023-01-26T21:15:51.060
Modified: 2023-02-03T18:24:45.757
Link: CVE-2022-3432
JSON object: View
Redhat Information
No data.
CWE