Close Menu
TechUpdateAlert

    Subscribe to Updates

    Get the latest creative news from FooBar about art, design and business.

    What's Hot

    My Health Anxiety Means I Won’t Use Apple’s or Samsung’s Smartwatches. Here’s Why

    December 22, 2025

    You can now buy the OnePlus 15 in the US and score free earbuds if you hurry

    December 22, 2025

    Today’s NYT Connections: Sports Edition Hints, Answers for Dec. 22 #455

    December 22, 2025
    Facebook X (Twitter) Instagram
    Trending
    • My Health Anxiety Means I Won’t Use Apple’s or Samsung’s Smartwatches. Here’s Why
    • You can now buy the OnePlus 15 in the US and score free earbuds if you hurry
    • Today’s NYT Connections: Sports Edition Hints, Answers for Dec. 22 #455
    • Android might finally stop making you tap twice for Wi-Fi
    • Today’s NYT Mini Crossword Answers for Dec. 22
    • Waymo’s robotaxis didn’t know what to do when a city’s traffic lights failed
    • Today’s NYT Wordle Hints, Answer and Help for Dec. 22 #1647
    • You Asked: OLED Sunlight, VHS on 4K TVs, and HDMI Control Issues
    Facebook X (Twitter) Instagram Pinterest Vimeo
    TechUpdateAlertTechUpdateAlert
    • Home
    • Gaming
    • Laptops
    • Mobile
    • Software
    • Reviews
    • AI & Tech
    • Gadgets
    • How-To
    TechUpdateAlert
    Home»AI & Tech»Critical security flaws found in Lenovo AIO PCs! What to do if affected
    AI & Tech

    Critical security flaws found in Lenovo AIO PCs! What to do if affected

    techupdateadminBy techupdateadminJuly 31, 2025No Comments2 Mins Read
    Share Facebook Twitter Pinterest LinkedIn Tumblr Reddit Telegram Email
    Lenovo Yoga AIO PC
    Share
    Facebook Twitter LinkedIn Pinterest Email

    Lenovo is warning users that several BIOS security vulnerabilities have been discovered in Lenovo IdeaCentre and Yoga All-In-One desktops. The support document states that local attackers can execute malicious code in System Management Mode (SMM).

    This access is often not recognized and is difficult to reverse as it involves an even higher authorization level than the kernel level. Even a complete reinstallation of the system is therefore not sufficient to detect and remove any deeply embedded malware once it has been injected, which makes these vulnerabilities particularly dangerous.

    Which Lenovo models are affected?

    The security vulnerabilities—labeled CVE-2025-4421, CVE-2025-4422, CVE-2025-4423, CVE-2025-4424, CVE-2025-4425, and CVE-2025-4426—were discovered by security researchers from Binarly and reported to Lenovo back in April. Four of them were given high severity ratings.

    According to Lenovo, the following models are known to be affected:

    • Lenovo IdeaCentre AIO 3 24ARR9
    • Lenovo IdeaCentre AIO 3 27ARR9
    • Lenovo Yoga AIO 27IAH10
    • Lenovo Yoga AIO 32ILL10
    • Lenovo Yoga AIO 9 32IRH8

    The vulnerability rests in the Insyde BIOS firmware, which isn’t provided by Lenovo itself but rather the Taiwanese company Insyde. That said, devices from other manufacturers don’t appear to be running this particular UEFI version and are therefore not at risk.

    What you can do if you’re affected

    Lenovo is working on offering comprehensive patches for the security flaws. However, these are currently only available for the two IdeaCentre models. Owners of vulnerable Lenovo Yoga AIO desktops will likely have to wait until September for corresponding updates to be ready.

    To download the appropriate patch for your device, you need to find your exact model on Lenovo’s support website, then click on “Drivers and software” and then on “Manual update.” Compare the minimum version for your device in this support document with the latest version published on the support website, then download and install the latest version.

    Alternatively, you can also use Lenovo’s update management tool if you have already installed it. You should also check that your PC is still secure and use a reliable antivirus program to reduce the risk of an attack if your device cannot yet be patched.

    affected AIO Critical flaws Lenovo PCs security
    Share. Facebook Twitter Pinterest LinkedIn Tumblr Email
    Previous ArticleThe Best Cheap Headphones We’ve Tried
    Next Article Xbox Game Pass Adds Grounded 2 and Other Games This Month
    techupdateadmin
    • Website

    Related Posts

    Gadgets

    Lenovo Legion Pro 5 gaming laptop deal packs OLED, RTX 5060, and 32GB RAM

    December 20, 2025
    Gadgets

    The RAM shortage is here to stay, raising prices on PCs and phones

    December 19, 2025
    Gadgets

    iOS 26.2 adds an AirDrop security tool that you shouldn’t ignore on your iPhone

    December 14, 2025
    Add A Comment
    Leave A Reply Cancel Reply

    Top Posts

    NYT Strands hints and answers for Monday, August 11 (game #526)

    August 11, 202545 Views

    These 2 Cities Are Pushing Back on Data Centers. Here’s What They’re Worried About

    September 13, 202542 Views

    Today’s NYT Connections: Sports Edition Hints, Answers for Sept. 4 #346

    September 4, 202540 Views
    Stay In Touch
    • Facebook
    • YouTube
    • TikTok
    • WhatsApp
    • Twitter
    • Instagram
    Latest Reviews

    Subscribe to Updates

    Get the latest tech news from FooBar about tech, design and biz.

    Most Popular

    Best Fitbit fitness trackers and watches in 2025

    July 9, 20250 Views

    There are still 200+ Prime Day 2025 deals you can get

    July 9, 20250 Views

    The best earbuds we’ve tested for 2025

    July 9, 20250 Views
    Our Picks

    My Health Anxiety Means I Won’t Use Apple’s or Samsung’s Smartwatches. Here’s Why

    December 22, 2025

    You can now buy the OnePlus 15 in the US and score free earbuds if you hurry

    December 22, 2025

    Today’s NYT Connections: Sports Edition Hints, Answers for Dec. 22 #455

    December 22, 2025

    Subscribe to Updates

    Get the latest creative news from FooBar about art, design and business.

    Facebook X (Twitter) Instagram Pinterest
    • About Us
    • Contact us
    • Privacy Policy
    • Disclaimer
    • Terms and Conditions
    © 2026 techupdatealert. Designed by Pro.

    Type above and press Enter to search. Press Esc to cancel.