Vulnerability Description
A denial of service vulnerability was reported in Lenovo System Update before version 5.07.0084 that could allow service log files to be written to non-standard locations.
CVSS Score
MEDIUM
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Lenovo | System Update | < 5.07.0084 |
| Lenovo | B Series | - |
| Lenovo | C100 | - |
| Lenovo | C200 | - |
| Lenovo | E Series | - |
| Lenovo | J100 | - |
| Lenovo | J105 | - |
| Lenovo | J110 | - |
| Lenovo | J115 | - |
| Lenovo | J200 | - |
| Lenovo | J200P | - |
| Lenovo | J205 | - |
| Lenovo | K Series | - |
| Lenovo | N100 | - |
| Lenovo | N200 | - |
| Lenovo | S200 | - |
| Lenovo | S200P | - |
| Lenovo | S205 | - |
| Lenovo | Thinkcentre | - |
| Lenovo | Thinkpad | - |
Related Weaknesses (CWE)
References
- https://support.lenovo.com/solutions/LEN-27348Vendor Advisory
- https://support.lenovo.com/solutions/LEN-27348Vendor Advisory
FAQ
What is CVE-2019-6163?
CVE-2019-6163 is a vulnerability with a CVSS score of 5.5 (MEDIUM). A denial of service vulnerability was reported in Lenovo System Update before version 5.07.0084 that could allow service log files to be written to non-standard locations.
How severe is CVE-2019-6163?
CVE-2019-6163 has been rated MEDIUM with a CVSS base score of 5.5/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2019-6163?
Check the references section above for vendor advisories and patch information. Affected products include: Lenovo System Update, Lenovo B Series, Lenovo C100, Lenovo C200, Lenovo E Series.