Close Menu
TechUpdateAlert

    Subscribe to Updates

    Get the latest creative news from FooBar about art, design and business.

    What's Hot

    Elon Musk’s X Plans to Display Ads on Grok Answers; Grok Imagine Temporarily Goes Free for US Users

    August 8, 2025

    I Built a Powerful Gaming PC Solely to Run AI Models. Here’s Why

    August 8, 2025

    Qualcomm just hinted at a full-blown server invasion with new CPUs and racks, and nobody’s ready for it

    August 8, 2025
    Facebook X (Twitter) Instagram
    Trending
    • Elon Musk’s X Plans to Display Ads on Grok Answers; Grok Imagine Temporarily Goes Free for US Users
    • I Built a Powerful Gaming PC Solely to Run AI Models. Here’s Why
    • Qualcomm just hinted at a full-blown server invasion with new CPUs and racks, and nobody’s ready for it
    • Meet the OnePlus Nord 5: Big on Power, Easy on Your Wallet
    • Microsoft’s new Copilot 3D feature is great for Ikea, bad for my dog
    • Meta Reportedly Acquires AI Audio Startup WaveForms Amid Ongoing Talent War
    • Buying a laptop for college? Focus on these 6 crucial features
    • Nintendo’s new Hello, Mario! app lets kids play with Mario’s face
    Facebook X (Twitter) Instagram Pinterest Vimeo
    TechUpdateAlertTechUpdateAlert
    • Home
    • Gaming
    • Laptops
    • Mobile
    • Software
    • Reviews
    • AI & Tech
    • Gadgets
    • How-To
    TechUpdateAlert
    Home»AI & Tech»Critical security flaws found in Lenovo AIO PCs! What to do if affected
    AI & Tech

    Critical security flaws found in Lenovo AIO PCs! What to do if affected

    techupdateadminBy techupdateadminJuly 31, 2025No Comments2 Mins Read
    Share Facebook Twitter Pinterest LinkedIn Tumblr Reddit Telegram Email
    Lenovo Yoga AIO PC
    Share
    Facebook Twitter LinkedIn Pinterest Email

    Lenovo is warning users that several BIOS security vulnerabilities have been discovered in Lenovo IdeaCentre and Yoga All-In-One desktops. The support document states that local attackers can execute malicious code in System Management Mode (SMM).

    This access is often not recognized and is difficult to reverse as it involves an even higher authorization level than the kernel level. Even a complete reinstallation of the system is therefore not sufficient to detect and remove any deeply embedded malware once it has been injected, which makes these vulnerabilities particularly dangerous.

    Which Lenovo models are affected?

    The security vulnerabilities—labeled CVE-2025-4421, CVE-2025-4422, CVE-2025-4423, CVE-2025-4424, CVE-2025-4425, and CVE-2025-4426—were discovered by security researchers from Binarly and reported to Lenovo back in April. Four of them were given high severity ratings.

    According to Lenovo, the following models are known to be affected:

    • Lenovo IdeaCentre AIO 3 24ARR9
    • Lenovo IdeaCentre AIO 3 27ARR9
    • Lenovo Yoga AIO 27IAH10
    • Lenovo Yoga AIO 32ILL10
    • Lenovo Yoga AIO 9 32IRH8

    The vulnerability rests in the Insyde BIOS firmware, which isn’t provided by Lenovo itself but rather the Taiwanese company Insyde. That said, devices from other manufacturers don’t appear to be running this particular UEFI version and are therefore not at risk.

    What you can do if you’re affected

    Lenovo is working on offering comprehensive patches for the security flaws. However, these are currently only available for the two IdeaCentre models. Owners of vulnerable Lenovo Yoga AIO desktops will likely have to wait until September for corresponding updates to be ready.

    To download the appropriate patch for your device, you need to find your exact model on Lenovo’s support website, then click on “Drivers and software” and then on “Manual update.” Compare the minimum version for your device in this support document with the latest version published on the support website, then download and install the latest version.

    Alternatively, you can also use Lenovo’s update management tool if you have already installed it. You should also check that your PC is still secure and use a reliable antivirus program to reduce the risk of an attack if your device cannot yet be patched.

    affected AIO Critical flaws Lenovo PCs security
    Share. Facebook Twitter Pinterest LinkedIn Tumblr Email
    Previous ArticleThe Best Cheap Headphones We’ve Tried
    Next Article Xbox Game Pass Adds Grounded 2 and Other Games This Month
    techupdateadmin
    • Website

    Related Posts

    AI & Tech

    Buying a laptop for college? Focus on these 6 crucial features

    August 8, 2025
    AI & Tech

    China cracks down on Nvidia’s secret chip features as global tech power balance begins to shift

    August 8, 2025
    AI & Tech

    Instagram’s New Map Feature Is Freaking People Out. But You Can Turn It Off

    August 8, 2025
    Add A Comment
    Leave A Reply Cancel Reply

    Top Posts

    Apple Pencil With ‘Trackball’ Tip, Ability to Draw on Any Surface Described in Patent Document

    July 9, 20253 Views

    Samsung Galaxy Z Fold 7 and Galaxy Z Flip 7: First Impressions

    July 9, 20253 Views

    The Bezos-funded climate satellite is lost in space

    July 9, 20252 Views
    Stay In Touch
    • Facebook
    • YouTube
    • TikTok
    • WhatsApp
    • Twitter
    • Instagram
    Latest Reviews

    Subscribe to Updates

    Get the latest tech news from FooBar about tech, design and biz.

    Most Popular

    Best Fitbit fitness trackers and watches in 2025

    July 9, 20250 Views

    There are still 200+ Prime Day 2025 deals you can get

    July 9, 20250 Views

    The best earbuds we’ve tested for 2025

    July 9, 20250 Views
    Our Picks

    Elon Musk’s X Plans to Display Ads on Grok Answers; Grok Imagine Temporarily Goes Free for US Users

    August 8, 2025

    I Built a Powerful Gaming PC Solely to Run AI Models. Here’s Why

    August 8, 2025

    Qualcomm just hinted at a full-blown server invasion with new CPUs and racks, and nobody’s ready for it

    August 8, 2025

    Subscribe to Updates

    Get the latest creative news from FooBar about art, design and business.

    Facebook X (Twitter) Instagram Pinterest
    • About Us
    • Contact us
    • Privacy Policy
    • Disclaimer
    • Terms and Conditions
    © 2025 techupdatealert. Designed by Pro.

    Type above and press Enter to search. Press Esc to cancel.