"value":"\nA buffer overflow vulnerability was reported\n\nin a system recovery bootloader that was part of the Lenovo preloaded Windows 7 and 8 operating systems from 2012 to 2014\n\n\n that could allow a privileged attacker with local access to execute arbitrary code. \n\n"
"value":"\n\n\n\nConcerned customers can follow Microsoft's guidance to apply the April 9, 2024 Windows security updates. Please refer to KB5025885 to enable the latest protections: <a target=\"_blank\" rel=\"nofollow\" href=\"https://support.microsoft.com/en-us/topic/kb5025885-how-to-manage-the-windows-boot-manager-revocations-for-secure-boot-changes-associated-with-cve-2023-24932-41a975df-beb2-40c1-99a3-b3ff139f832d\">https://support.microsoft.com/en-us/topic/kb5025885-how-to-manage-the-windows-boot-manager-revocatio...</a>\n\n<a target=\"_blank\" rel=\"nofollow\" href=\"https://msrc.microsoft.com/update-guide/vulnerability/CVE-2024-23594\"></a><br>"
}
],
"value":"\n\n\nConcerned customers can follow Microsoft's guidance to apply the April 9, 2024 Windows security updates. Please refer to KB5025885 to enable the latest protections: https://support.microsoft.com/en-us/topic/kb5025885-how-to-manage-the-windows-boot-manager-revocatio... https://support.microsoft.com/en-us/topic/kb5025885-how-to-manage-the-windows-boot-manager-revocations-for-secure-boot-changes-associated-with-cve-2023-24932-41a975df-beb2-40c1-99a3-b3ff139f832d \n\n https://msrc.microsoft.com/update-guide/vulnerability/CVE-2024-23594 \n"
}
],
"credits":[
{
"lang":"en",
"value":"Lenovo thanks Zammis Clark for reporting this issue."