Close Menu
TechUpdateAlert

    Subscribe to Updates

    Get the latest creative news from FooBar about art, design and business.

    What's Hot

    I Didn’t Know This 5-Minute Bedtime Task Would Help Me Sleep Better

    August 8, 2025

    21 Best Festival Accessories and Gear (2025): The Essentials and the Fun Stuff

    August 8, 2025

    Panasonic ShinobiPro MiniLED TVs Launched in India Alongside New 2025 P-Series Models

    August 8, 2025
    Facebook X (Twitter) Instagram
    Trending
    • I Didn’t Know This 5-Minute Bedtime Task Would Help Me Sleep Better
    • 21 Best Festival Accessories and Gear (2025): The Essentials and the Fun Stuff
    • Panasonic ShinobiPro MiniLED TVs Launched in India Alongside New 2025 P-Series Models
    • Ready or Not Regains Flagship Xbox Feature, Play Anywhere
    • Here’s how I stop spam emails from ever reaching my inbox
    • Breath Work, Biohacking, and Cryotherapy: New Buzzwords for Modern Business Travelers
    • Apple Must Allow Alternative Browser Engines on iOS by December Under Japan’s New Mobile Software Competition Act
    • Samsung Galaxy Buds 3 Series Update Adds Google Gemini Support on Phones Running One UI 8
    Facebook X (Twitter) Instagram Pinterest Vimeo
    TechUpdateAlertTechUpdateAlert
    • Home
    • Gaming
    • Laptops
    • Mobile
    • Software
    • Reviews
    • AI & Tech
    • Gadgets
    • How-To
    TechUpdateAlert
    Home»AI & Tech»Critical security flaws found in Lenovo AIO PCs! What to do if affected
    AI & Tech

    Critical security flaws found in Lenovo AIO PCs! What to do if affected

    techupdateadminBy techupdateadminJuly 31, 2025No Comments2 Mins Read
    Share Facebook Twitter Pinterest LinkedIn Tumblr Reddit Telegram Email
    Lenovo Yoga AIO PC
    Share
    Facebook Twitter LinkedIn Pinterest Email

    Lenovo is warning users that several BIOS security vulnerabilities have been discovered in Lenovo IdeaCentre and Yoga All-In-One desktops. The support document states that local attackers can execute malicious code in System Management Mode (SMM).

    This access is often not recognized and is difficult to reverse as it involves an even higher authorization level than the kernel level. Even a complete reinstallation of the system is therefore not sufficient to detect and remove any deeply embedded malware once it has been injected, which makes these vulnerabilities particularly dangerous.

    Which Lenovo models are affected?

    The security vulnerabilities—labeled CVE-2025-4421, CVE-2025-4422, CVE-2025-4423, CVE-2025-4424, CVE-2025-4425, and CVE-2025-4426—were discovered by security researchers from Binarly and reported to Lenovo back in April. Four of them were given high severity ratings.

    According to Lenovo, the following models are known to be affected:

    • Lenovo IdeaCentre AIO 3 24ARR9
    • Lenovo IdeaCentre AIO 3 27ARR9
    • Lenovo Yoga AIO 27IAH10
    • Lenovo Yoga AIO 32ILL10
    • Lenovo Yoga AIO 9 32IRH8

    The vulnerability rests in the Insyde BIOS firmware, which isn’t provided by Lenovo itself but rather the Taiwanese company Insyde. That said, devices from other manufacturers don’t appear to be running this particular UEFI version and are therefore not at risk.

    What you can do if you’re affected

    Lenovo is working on offering comprehensive patches for the security flaws. However, these are currently only available for the two IdeaCentre models. Owners of vulnerable Lenovo Yoga AIO desktops will likely have to wait until September for corresponding updates to be ready.

    To download the appropriate patch for your device, you need to find your exact model on Lenovo’s support website, then click on “Drivers and software” and then on “Manual update.” Compare the minimum version for your device in this support document with the latest version published on the support website, then download and install the latest version.

    Alternatively, you can also use Lenovo’s update management tool if you have already installed it. You should also check that your PC is still secure and use a reliable antivirus program to reduce the risk of an attack if your device cannot yet be patched.

    affected AIO Critical flaws Lenovo PCs security
    Share. Facebook Twitter Pinterest LinkedIn Tumblr Email
    Previous ArticleThe Best Cheap Headphones We’ve Tried
    Next Article Xbox Game Pass Adds Grounded 2 and Other Games This Month
    techupdateadmin
    • Website

    Related Posts

    AI & Tech

    I Didn’t Know This 5-Minute Bedtime Task Would Help Me Sleep Better

    August 8, 2025
    AI & Tech

    Apple Must Allow Alternative Browser Engines on iOS by December Under Japan’s New Mobile Software Competition Act

    August 8, 2025
    Gaming

    This PC security guru fell for a scam. Here are 3 lessons from his mistake

    August 8, 2025
    Add A Comment
    Leave A Reply Cancel Reply

    Top Posts

    Apple Pencil With ‘Trackball’ Tip, Ability to Draw on Any Surface Described in Patent Document

    July 9, 20253 Views

    Samsung Galaxy Z Fold 7 and Galaxy Z Flip 7: First Impressions

    July 9, 20253 Views

    The Bezos-funded climate satellite is lost in space

    July 9, 20252 Views
    Stay In Touch
    • Facebook
    • YouTube
    • TikTok
    • WhatsApp
    • Twitter
    • Instagram
    Latest Reviews

    Subscribe to Updates

    Get the latest tech news from FooBar about tech, design and biz.

    Most Popular

    Best Fitbit fitness trackers and watches in 2025

    July 9, 20250 Views

    There are still 200+ Prime Day 2025 deals you can get

    July 9, 20250 Views

    The best earbuds we’ve tested for 2025

    July 9, 20250 Views
    Our Picks

    I Didn’t Know This 5-Minute Bedtime Task Would Help Me Sleep Better

    August 8, 2025

    21 Best Festival Accessories and Gear (2025): The Essentials and the Fun Stuff

    August 8, 2025

    Panasonic ShinobiPro MiniLED TVs Launched in India Alongside New 2025 P-Series Models

    August 8, 2025

    Subscribe to Updates

    Get the latest creative news from FooBar about art, design and business.

    Facebook X (Twitter) Instagram Pinterest
    • About Us
    • Contact us
    • Privacy Policy
    • Disclaimer
    • Terms and Conditions
    © 2025 techupdatealert. Designed by Pro.

    Type above and press Enter to search. Press Esc to cancel.