In the Linux kernel, the following vulnerability has been resolved:
platform/x86: think-lmi: Fix password opcode ordering for workstations
The Lenovo workstations require the password opcode to be run before
the attribute value is changed (if Admin password is enabled).
Tested on some Thinkpads to confirm they are OK with this order too.
References
Configurations
Configuration 1 (hide)
|
History
02 Apr 2025, 13:18
Type | Values Removed | Values Added |
---|---|---|
References | () https://git.kernel.org/stable/c/2bfbe1e0aed00ba51d58573c79452fada3f62ed4 - Patch | |
References | () https://git.kernel.org/stable/c/2deb10a99671afda30f834e95e5b992a805bba6a - Patch | |
References | () https://git.kernel.org/stable/c/6f7d0f5fd8e440c3446560100ac4ff9a55eec340 - Patch | |
CWE | NVD-CWE-noinfo | |
CVSS |
v2 : v3 : |
v2 : unknown
v3 : 7.8 |
First Time |
Linux linux Kernel
Linux |
|
CPE | cpe:2.3:o:linux:linux_kernel:6.8:rc5:*:*:*:*:*:* cpe:2.3:o:linux:linux_kernel:6.8:rc3:*:*:*:*:*:* cpe:2.3:o:linux:linux_kernel:6.8:rc1:*:*:*:*:*:* cpe:2.3:o:linux:linux_kernel:6.8:rc2:*:*:*:*:*:* cpe:2.3:o:linux:linux_kernel:6.8:rc4:*:*:*:*:*:* cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:* |
Information
Published : 2024-04-17 10:15
Updated : 2025-04-02 13:18
NVD link : CVE-2024-26836
Mitre link : CVE-2024-26836
CVE.ORG link : CVE-2024-26836
JSON object : View
Products Affected
linux
- linux_kernel
CWE