Both tech giants Qualcomm and Lenovo have released several firmware fixes at the same time. Users with Qualcomm chipsets and Lenovo ThinkPad X13 owners should update their firmware regularly.
Qualcomm, Lenovo Bug Fixes
Recent firmware upgrades were released by , the Chinese tech giant and Qualcomm, an American technology company that powers a variety of phones and computers with its chipsets.
Qualcomm’s recommends patching 20 vulnerabilities that affect different chipsets. The affected products are from a variety of technology areas. They include automotive, Android connectivity, WLAN and powerline communication. Kernel is also included.
Although the bulletin does not contain detailed descriptions of vulnerability, it provides information about their nature. These three have critical security ratings that include:
- CVE-2022-33218: CVSS rating High, 8.2CVSS score; Technology: Automotive: Memory corruption vulnerability due improper input validation
- CVE-2022-33219; CVSS rating Critical; CVSS Score 9.3 Technology: Automotive: Memory corruption caused by integer overflow. Register a new listener using a shared buffer.
- CVE-2022-33265; CVSS rating: High;CVSS score 7.3 Technology: Powerline Communications Firmware: Memory corruption caused by information exposure when sending multiple MMEs using a single device.
The updates also address 17 additional high-security rating vulnerabilities, which Qualcomm confirmed to the appropriate vendors.
These five issues also impact Lenovo ThinkPadX13 laptops. They include:
- CVE-2022-050516, CVE-2022-050517 (CVSS Rating: High; Score 8.4 in CVSS; Technology: Boot; Memory Corruption in Core Due to Stack-Based
- CVE-2022-40520: (CVSS rating High; CVSS score 8.4 Technology: Connectivity: Memory corruption caused by a stack-based buffer overload in Core
- CVE-2022-050518, CVE-2022-050519 (CVSS rating Medium; CVSS score 6.8 Technology: Boot). Information disclosure due buffer overread in Core
According to the advisory for ThinkPadX13s BIOS, Lenovo also has patches. Users are urged to update their BIOS to 1.47 (N3HET75W), or later by the tech company.
We would love to hear your comments.