New Lenovo UEFI firmware updates fix Secure Boot bypass flaws
7 Articles
7 Articles
Certain Lenovo PCs have dangerous vulnerabilities in the firmware. Which models are affected and what to do.


Critical security flaws found in Lenovo AIO PCs! What to do if affected
Lenovo is warning users that several BIOS security vulnerabilities have been discovered in Lenovo IdeaCentre and Yoga All-In-One desktops. The support document states that local attackers can execute malicious code in System Management Mode (SMM). This access is often not recognized and is difficult to reverse as it involves an even higher authorization level than the kernel level. Even a complete reinstallation of the system is therefore not su…
Lenovo IdeaCentre and Yoga BIOS Flaws Allow Attackers to Run Arbitrary Code
Security researchers have discovered critical BIOS vulnerabilities affecting Lenovo’s IdeaCentre and Yoga All-in-One desktop computers that could allow privileged attackers to execute arbitrary code and potentially compromise system security at the firmware level. Critical Security Flaws Discovered in Popular Desktop Models The vulnerabilities, disclosed through Lenovo Security Advisory LEN-201013 and Insyde Security Advisory INSYDE-SA-2025007, …
Lenovo is warning users of various Ideacentre and Lenovo Yoga all-in-one laptops that several security vulnerabilities have been discovered in their firmware. The support notice states that these vulnerabilities could allow attackers to inject malicious code and execute it in System Management Mode (SMM). This access often goes undetected and is difficult to reverse, as it involves a privilege level even higher than the kernel level. Even a comp…
Different all-in-one PC models from Lenovo are vulnerable. The description of the gaps suggests leveraging Secure Boot.
Coverage Details
Bias Distribution
- 100% of the sources are Center
Factuality
To view factuality data please Upgrade to Premium