![]() |
[Infosec] Lenovo UEFI vulnerabilities found - Printable Version +- Sinisterly (https://sinister.ly) +-- Forum: General (https://sinister.ly/Forum-General) +--- Forum: World News (https://sinister.ly/Forum-World-News) +--- Thread: [Infosec] Lenovo UEFI vulnerabilities found (/Thread-Infosec-Lenovo-UEFI-vulnerabilities-found) |
[Infosec] Lenovo UEFI vulnerabilities found - ConcernedCitizen - 04-24-2022 Quote:ESET researchers have discovered and analyzed three vulnerabilities affecting various Lenovo consumer laptop models. The first two of these vulnerabilities – CVE-2021-3971, CVE-2021-3972 – affect UEFI firmware drivers originally meant to be used only during the manufacturing process of Lenovo consumer notebooks. Unfortunately, they were mistakenly included also in the production BIOS images without being properly deactivated. These affected firmware drivers can be activated by attacker to directly disable SPI flash protections (BIOS Control Register bits and Protected Range registers) or the UEFI Secure Boot feature from a privileged user-mode process during OS runtime. It means that exploitation of these vulnerabilities would allow attackers to deploy and successfully execute SPI flash or ESP implants, like LoJax or our latest UEFI malware discovery ESPecter, on the affected devices.https://www.welivesecurity.com/2022/04/19/when-secure-isnt-secure-uefi-vulnerabilities-lenovo-consumer-laptops/ RE: [Infosec] Lenovo UEFI vulnerabilities found - mothered - 04-25-2022 The vulnerabilities are critical. Hopefully each one will be attended to In a very timely manner. RE: [Infosec] Lenovo UEFI vulnerabilities found - ConcernedCitizen - 04-25-2022 They are executed early in the boot process, before transferring control to the operating system, which means that they can bypass almost all security measures and mitigations higher in the stack that could prevent their operating system payloads from being executed. Updates will be pushed according to Lenovo in around May, at the earliest. https://support.lenovo.com/gb/en/product_security/len-73440 |