ThinkCentre Neo 50q Gen4 and IdeaCentre Mini5i (2024)

Lenovo (ThinkCentre) ThinkCentre Neo 50q Gen4 and IdeaCentre Mini5i

System Firmware 1.0.0.23 for ThinkCentre Neo 50q Gen4 and IdeaCentre Mini5i

Atom Feed

Version 65559

2024-06-06 06:04:11

This stable release fixes the following issues:

  • Add windows uefi ca 2023.
  • Fix post Logo somtimes don't move.
Urgency low
Fixed issues:
  • CVE-2023-28389

    Incorrect default permissions in some Intel(R) CSME installer software before version 2328.5.5.0 may allow an authenticated user to potentially enable escalation of privilege via local access.

  • CVE-2023-27502

    Insertion of sensitive information into log file for some Intel(R) Local Manageability Service software before version 2316.5.1.2 may allow an authenticated user to potentially enable information disclosure via local access.

  • CVE-2023-28746

    Information exposure through microarchitectural state after transient execution from some register files for some Intel(R) Atom(R) Processors may allow an authenticated user to potentially enable information disclosure via local access.

  • CVE-2023-39368

    Protection mechanism failure of bus lock regulator for some Intel(R) Processors may allow an unauthenticated user to potentially enable denial of service via network access.

  • CVE-2023-38575

    Non-transparent sharing of return predictor targets between contexts in some Intel(R) Processors may allow an authorized user to potentially enable information disclosure via local access.

  • CVE-2023-23583

    Sequence of processor instructions leads to unexpected behavior for some Intel(R) Processors may allow an authenticated user to potentially enable escalation of privilege and/or information disclosure and/or denial of service via local access.

  • CVE-2023-22655

    Protection mechanism failure in some 3rd and 4th Generation Intel(R) Xeon(R) Processors when using Intel(R) SGX or Intel(R) TDX may allow a privileged user to potentially enable escalation of privilege via local access.

  • CVE-2023-22329

    Improper input validation in the BIOS firmware for some Intel(R) Processors may allow an authenticated user to potentially enable denial of service via adjacent access.

  • CVE-2023-22329

    Improper input validation in the BIOS firmware for some Intel(R) Processors may allow an authenticated user to potentially enable denial of service via adjacent access.

  • CVE-2023-25756

    Out-of-bounds read in the BIOS firmware for some Intel(R) Processors may allow an authenticated user to potentially enable escalation of privilege via adjacent access.

  • LEN-141563
  • LEN-141777
  • LEN-147504
  • LEN-153507
  • LEN-152500
  • LEN-149663
  • LEN-141562
  • LEN-141561
  • LEN-146616
  • LEN-146615
  • CVE-2023-45733

    Hardware logic contains race conditions in some Intel(R) Processors may allow an authenticated user to potentially enable partial information disclosure via local access.

  • CVE-2023-49141
  • CVE-2023-22329

    Improper input validation in the BIOS firmware for some Intel(R) Processors may allow an authenticated user to potentially enable denial of service via adjacent access.

  • CVE-2023-25756

    Out-of-bounds read in the BIOS firmware for some Intel(R) Processors may allow an authenticated user to potentially enable escalation of privilege via adjacent access.

  • CVE-2023-32282

    Race condition in BIOS firmware for some Intel(R) Processors may allow a privileged user to potentially enable escalation of privilege via local access.

  • CVE-2023-35191

    Uncontrolled resource consumption for some Intel(R) SPS firmware versions may allow a privileged user to potentially enable denial of service via network access.

  • CVE-2023-32633

    Improper input validation in the Intel(R) CSME installer software before version 2328.5.5.0 may allow an authenticated user to potentially enable escalation of privilege via local access.

  • CVE-2023-25756

    Out-of-bounds read in the BIOS firmware for some Intel(R) Processors may allow an authenticated user to potentially enable escalation of privilege via adjacent access.

  • CVE-2022-36765

    EDK2 is susceptible to a vulnerability in the CreateHob() function, allowing a user to trigger a integer overflow to buffer overflow via a local network. Successful exploitation of this vulnerability may result in a compromise of confidentiality, integrity, and/or availability.

  • CVE-2022-36764
  • CVE-2022-36763
Licenses
  • ThinkCentre Neo 50q Gen4 and IdeaCentre Mini5i (2) Proprietary, distributed by agreement
Security
Release Gating

Download Archive Firmware Details Compare with previous

Version 65558

2024-03-25 10:01:07

This stable release fixes the following issues:

  • Fix some BIOS setup issues.
  • Enchance some WMI item.
  • Add Microsoft Corp KEK 2K Ca 2023.
Urgency low
Fixed issues:
Licenses
  • ThinkCentre Neo 50q Gen4 and IdeaCentre Mini5i (13) Proprietary, distributed by agreement
Security
Release Gating

Download Archive Firmware Details Compare with previous

Version 65556 — not be suitable for production systems

2024-02-19 10:30:01

This stable release fixes the following issues:

  • Add Microsoft Corp KEK 2K CA 2023.
Urgency low
Licenses
  • ThinkCentre Neo 50q Gen4 and IdeaCentre Mini5i (24) Proprietary, distributed by agreement
Security
Release Gating

Download Archive Firmware Details Compare with previous

Version 65555

2023-11-08 10:14:22

This stable release fixes the following issues:

  • Autopilot marker fix.
Urgency low
Fixed issues:
Licenses
  • ThinkCentre Neo 50q Gen4 and IdeaCentre Mini5i (35) Proprietary, distributed by agreement
Security
Release Gating

Download Archive Firmware Details

LVFS © 2015 Richard Hughes with icons from Font Awesome and GeoIP data from IP2Location.

Linux Vendor Firmware Service Project a Series of LF Projects, LLC :: Charter

ThinkCentre Neo 50q Gen4 and IdeaCentre Mini5i (2024)

References

Top Articles
Latest Posts
Article information

Author: Domingo Moore

Last Updated:

Views: 5676

Rating: 4.2 / 5 (73 voted)

Reviews: 88% of readers found this page helpful

Author information

Name: Domingo Moore

Birthday: 1997-05-20

Address: 6485 Kohler Route, Antonioton, VT 77375-0299

Phone: +3213869077934

Job: Sales Analyst

Hobby: Kayaking, Roller skating, Cabaret, Rugby, Homebrewing, Creative writing, amateur radio

Introduction: My name is Domingo Moore, I am a attractive, gorgeous, funny, jolly, spotless, nice, fantastic person who loves writing and wants to share my knowledge and understanding with you.