Onsitego Blog
  • Contact Us
No Result
View All Result
  • Home
  • News
  • Reviews
  • Buying Guide
  • Explainers
  • How-To
Onsitego Blog
  • Home
  • News
  • Reviews
  • Buying Guide
  • Explainers
  • How-To
No Result
View All Result
Onsitego Blog
No Result
View All Result
Home News

Hundreds Of Lenovo Laptop Models Face Security Issues Due To UEFI Flaws

Anu JoybyAnu Joy
22/04/2022
in News
0 0
0
Hundreds Of Lenovo Laptop Models Face Security Issues Due To UEFI Flaws
WhatsAppFacebookTwitter

Last Updated on April 22, 2022 by Anu Joy

Lenovo has issued a security advisory on vulnerabilities that affect its Unified Extensible Firmware Interface (UEFI) which is loaded on nearly 100 of its laptop models. The affected laptops include the IdeaPad 3, Legion 5 Pro, and Yoga Slim.

Table of Contents

Toggle
  • Three Vulnerabilities Affecting Lenovo Laptops Revealed
    • Subscribe to Onsitego
    • Protect Your Laptop with Onsitego's Extended Warranty
  • How To Protect Your Lenovo Laptop

Three Vulnerabilities Affecting Lenovo Laptops Revealed

Subscribe to Onsitego

Get the latest technology news, reviews, and opinions on tech products right into your inbox


    Researchers at ESET, an internet security company, had discovered three vulnerabilities that impact the UEFI Secure Boot feature, which allows the system to only load code trusted by the Original Equipment Manufacturer (OEM) when it boots. These threats were relayed to Lenovo back in October 2021.

    The laptop maker acknowledged these issues and assigned the following three CVEs (Common Vulnerabilities and Exposures)—CVE-2021-3970, CVE-2021-3971, and CVE-2021-3972. Additionally, it published a security advisory regarding the same on Monday.

    CVE-2021-3971 (SecureBackDoor), and CVE-2021-3972 (ChgBootDxeHook) lets malicious actors switch off the protection for the SPI flash memory chip where the UEFI firmware is stored. This disables the UEFI Secure Boot feature. These vulnerabilities were introduced when two UEFI firmware drivers were accidentally included in the firmware. These drivers are typically used only while manufacturing the laptop. These security issues passed by undetected by security software since they execute early on in the boot process, even before the operating system is loaded.

    Also Read
    Acer Predator Helios 300 SpatialLabs Edition with 12th Gen Core i9 Processor Launched In India

    Protect Your Laptop with Onsitego's Extended Warranty

    • Extends Manufacturer's Warranty
    • Covers Malfunctions & Breakdowns
    • Free, At-Home Service

    The third security vulnerability has been labelled as CVE-2021-3970 (LenovoVariableSmm). Once the attacker gains entry into the system, they will be able to execute arbitrary code with elevated privileges.

    How To Protect Your Lenovo Laptop

    You can check if your Lenovo laptop is affected by the security vulnerabilities here. To protect your Lenovo laptop from the aforementioned vulnerabilities, the company recommends users of affected devices to update their system firmware to the latest version. Lenovo’s support page has step-by-step instructions on downloading the latest firmware. Owners of laptops that have reached End of Development Support (EODS) can use a TPM-aware full-disk encryption to make disk data inaccessible to security threats.

    5 - 1

    Thank You For Your Vote!

    Sorry You have Already Voted!

    Follow Onsitego on Facebook, Instagram, Twitter, and YouTube to get the latest news, reviews, maintenance tips, and videos about your favourite gadgets and appliances.

    Tags: laptopslenovouefi
    SendShareTweet

    Discussion about this post

    About Onsitego

    • About Onsitego
    • What We Do
    • The Team
    • Write For Us
    • Talk To An Expert
    • Become An Affiliate Partner
    • Subscribe To RSS Feeds

    Water Purifier Services

    UV & RO Service in Mumbai
    UV & RO Service in Delhi NCR
    UV & RO Service in Bangalore
    UV & RO Service in Pune
    UV & RO Service in Hyderabad
    UV & RO Service in Chennai

    You Might be interested in

    • Air Conditioner Protection Plans
    • Refrigerator Protection Plans
    • Washing Machine Protection Plans
    • Television Protection Plans
    • Digital Camera Protection Plans
    • Laptop Protection Plans
    • Tablet Protection Plans
    • Mobile Protection Plans

    Our Servicers

    AC Repair & Service in Mumbai
    AC Repair & Service in Delhi NCR
    AC Repair & Service in Bangalore
    AC Repair & Service in Pune
    AC Repair & Service in Hyderabad
    AC Repair & Service in Chennai

    Laptop Repair Service in Mumbai
    Laptop Repair Service in Bangalore
    Laptop Repair Service in Delhi NCR

    • About
    • Contact

    © 2022 Onsitego Blog | Electronic news, views and reviews of the best selling gadgets and home appliances..

    Welcome Back!

    Login to your account below

    Forgotten Password? Sign Up

    Create New Account!

    Fill the forms below to register

    All fields are required. Log In

    Retrieve your password

    Please enter your username or email address to reset your password.

    Log In
    No Result
    View All Result
    • Home
    • News
    • Reviews
    • Buying Guide
    • Explainers
    • How-To

    © 2022 Onsitego Blog | Electronic news, views and reviews of the best selling gadgets and home appliances..