Digital Times Nigeria
  • Home
  • Telecoms
    • Broadband
  • Business
    • Banking
    • Finance
  • Editorial
    • Opinion
    • Big Story
  • TechExtra
    • Fintech
    • Innovation
  • Interview
  • Media
    • Social
    • Broadcasting
Facebook X (Twitter) Instagram
Trending
  • Konga Yakata, Nigeria’s Biggest Indigenous Shopping Festival Set To Return
  • All Set For GOCOP 2025 Annual Conference Focused On Nigeria’s Governance Realities
  • Google Gives African Varsity Students Free Access To AI Tools
  • DPI, Verod Capital Face Shareholder Rights Suit Over Pan African Towers Deal
  • Futurex Partners Spire Solutions For Enterprise Encryption Delivery Across Middle East & Africa
  • BREAKING: Nnaji, Nigeria’s Minister Of Innovation, Science & Technology, Resigns Amid Certificate Forgery Scandal
  • Forget The Career Ladder, Build A Web
  • 2025 Digital Nigeria International Conference & Exhibition Date Announced
Facebook X (Twitter) Instagram
Digital Times NigeriaDigital Times Nigeria
  • Home
  • Telecoms
    • Broadband
  • Business
    • Banking
    • Finance
  • Editorial
    • Opinion
    • Big Story
  • TechExtra
    • Fintech
    • Innovation
  • Interview
  • Media
    • Social
    • Broadcasting
Digital Times Nigeria
Home » Lenovo Discovers Vulnerabilities In Products, As NCC-CSIRT Urges Firmware Update
Telecoms

Lenovo Discovers Vulnerabilities In Products, As NCC-CSIRT Urges Firmware Update

DigitalTimesNGBy DigitalTimesNG29 September 2022No Comments2 Mins Read1 Views
Facebook Twitter Pinterest Telegram LinkedIn Tumblr WhatsApp Email
AI
Prof. Umar Garba Danbatta, Executive Vice Chairman of the NCC
Share
Facebook Twitter LinkedIn Pinterest Telegram Email WhatsApp

Equipment manufacturer, Lenovo, has disclosed several vendor vulnerabilities in some of its products, which it said could lead to information disclosure, privilege escalation, and denial of service.

The vulnerabilities primarily affect Lenovo Products (Desktop, Desktop-All in One, Hyperscale, Lenovo Notebook, Smart Office, Storage, ThinkAgile, ThinkPad, ThinkServer, ThinkStation, and ThinkSystem).

In its recent advisory, the Nigerian Communications Commission’s Computer Security Incident Response Team (NCC-CSIRT), rated the probability of the vulnerability as high with an equally high damage potential, and, therefore, urged users of affected products to update their firmware.

The advisory cited the Lenovo report, first published in the second week of this month, indicating that the vulnerabilities are caused by flaws in the System Management Interrupt (SMI) Set BIOS Password SMI Handler, other systems used to configure platform settings over Windows Management Instrumentation (WMI) and a buffer overflow flaw in WMI SMI Handler.

Successful exploitation of the vulnerabilities could allow an authenticated local attacker to bypass security restrictions, gain elevated privileges and execute arbitrary code on the targeted system.

The attacker could also send a specially crafted request to the targeted user to gain sensitive information, which could result in unauthorized Information disclosure, privilege escalation and denial of service on the targeted system.

According to NCC-CSIRT, the solution to addressing the vulnerabilities is for users to update their system firmware to the newer version(s) indicated for their product model.

The CSIRT is the telecom sector’s cyber security incidence centre set up by the NCC to focus on incidents in the telecom sector and as they may affect telecom consumers and citizens at large.

READ ALSO  NCC Holds Public Inquiries On 3 Draft Regulatory Instruments October 25

The CSIRT also works collaboratively with the Nigeria Computer Emergency Response Team (ngCERT), established by the Federal Government to reduce the volume of future computer risk incidents by preparing, protecting, and securing Nigerian cyberspace to forestall attacks, and problems or related events.

 

 

#Firmware Update #Lenovo #NCC-CSIRT #Products #Vulnerabilities
Share. Facebook Twitter Pinterest LinkedIn Tumblr Email
Previous ArticleeCommerce App Marketers Spent $6.1 Billion On Global User Acquisition- Report
Next Article Survey: Data Breaches Top List Of Security Concerns For Nigerian CIOs
DigitalTimesNG
  • X (Twitter)

Related Posts

Will Nigeria’s 9mobile Enjoy Success After Rebrand As T2 Mobile?

9 September 2025

Just In: MTN Apologises As Fibre Cut Cripples Services In Enugu, Benue States

6 September 2025

NCC Moves To Strengthen Cybersecurity Framework As Telecoms Face Growing Threats

1 September 2025

MTN Strengthens Network Infrastructure In Northeast, Restores Services After Upgrade

25 August 2025

T2 Unveils Nigeria’s First Electronic KYC SIM Registration Web App

20 August 2025

MTN Group Restructures Executive Leadership

19 August 2025

Comments are closed.

Categories
About
About

Digital Times Nigeria (www.digitaltimesng.com) is an online technology publication of Digital Times Media Services.

Facebook X (Twitter) Instagram
Latest Posts

Konga Yakata, Nigeria’s Biggest Indigenous Shopping Festival Set To Return

9 October 2025

All Set For GOCOP 2025 Annual Conference Focused On Nigeria’s Governance Realities

9 October 2025

Google Gives African Varsity Students Free Access To AI Tools

9 October 2025
Popular Posts

Building Explainable AI (XAI) Dashboards For Non-Technical Stakeholders

2 May 2022

Building Ethical AI Starts With People: How Gabriel Ayodele Is Engineering Trust Through Mentorship

8 January 2024

Gabriel Tosin Ayodele: Leading AI-Powered Innovation In Web3

8 November 2022
© 2025 Digital Times NG.
  • Advert Rate
  • Terms of Use
  • Advertisement
  • Private Policy
  • Contact Us

Type above and press Enter to search. Press Esc to cancel.