Lenovo Patches Critical UEFI Flaws Exposing AIO Desktops to Secure Boot Bypass
Lenovo has rolled out urgent firmware updates to fix six high-severity vulnerabilities in its all-in-one desktops, allowing attackers to bypass Secure Boot protections and plant undetectable malware. Discovered by Binarly, these flaws stem from insecure customizations in the UEFI firmware, echoing similar supply chain weaknesses recently found in Gigabyte hardware. The patches highlight the escalating risks in firmware security, where exploits can persist even after OS reinstallation.