Security Advisory

CVE-2021-3971

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2022-04-22 20:30:38
Last updated 2024-08-03 17:09:09
Assigner lenovo
State PUBLISHED

Description

A potential vulnerability by a driver used during older manufacturing processes on some consumer Lenovo Notebook devices that was mistakenly included in the BIOS image could allow an attacker with elevated privileges to modify firmware protection region by modifying an NVRAM variable.