CVE-2024-26836

In the Linux kernel, the following vulnerability has been resolved: platform/x86: think-lmi: Fix password opcode ordering for workstations The Lenovo workstations require the password opcode to be run before the attribute value is changed (if Admin password is enabled). Tested on some Thinkpads to confirm they are OK with this order too.
Configurations

Configuration 1 (hide)

OR cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:6.8:rc1:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:6.8:rc2:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:6.8:rc3:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:6.8:rc4:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:6.8:rc5:*:*:*:*:*:*

History

02 Apr 2025, 13:18

Type Values Removed Values Added
References () https://git.kernel.org/stable/c/2bfbe1e0aed00ba51d58573c79452fada3f62ed4 - () https://git.kernel.org/stable/c/2bfbe1e0aed00ba51d58573c79452fada3f62ed4 - Patch
References () https://git.kernel.org/stable/c/2deb10a99671afda30f834e95e5b992a805bba6a - () https://git.kernel.org/stable/c/2deb10a99671afda30f834e95e5b992a805bba6a - Patch
References () https://git.kernel.org/stable/c/6f7d0f5fd8e440c3446560100ac4ff9a55eec340 - () https://git.kernel.org/stable/c/6f7d0f5fd8e440c3446560100ac4ff9a55eec340 - Patch
CWE NVD-CWE-noinfo
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 7.8
First Time Linux linux Kernel
Linux
CPE cpe:2.3:o:linux:linux_kernel:6.8:rc5:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:6.8:rc3:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:6.8:rc1:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:6.8:rc2:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:6.8:rc4:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*

Information

Published : 2024-04-17 10:15

Updated : 2025-04-02 13:18


NVD link : CVE-2024-26836

Mitre link : CVE-2024-26836

CVE.ORG link : CVE-2024-26836


JSON object : View

Products Affected

linux

  • linux_kernel