Summary of Changes
Where: < > Package version
UEFI: UEFI BIOS version
ECP: Embedded Controller Program version
[Important] Important update
(New) New function or enhancement
(Fix) Correction to existing function
<2.85>
UEFI: 2.85 / ECP: 1.07
- [Important] Update includes a security fix.
- [Important] Security fix addresses LEN-27764 ThinkPad Embedded Controller Update
Vulnerability(CVE-2019-6171). Refer to Lenovo's Security Advisory page for
additional information.
(
https://support.lenovo.com/us/en/solutions/len-27764)
<2.84>
UEFI: 2.84 / ECP: 1.06
- [Important] Enhancement to address security vulnerability CVE-2018-12126.
(
https://cve.mitre.org//cgi-bin//cvename.cgi?name=CVE-2018-12126)
- [Important] Enhancement to address security vulnerability CVE-2018-12127.
(
https://cve.mitre.org//cgi-bin//cvename.cgi?name=CVE-2018-12127)
- [Important] Enhancement to address security vulnerability CVE-2018-12130.
(
https://cve.mitre.org//cgi-bin//cvename.cgi?name=CVE-2018-12130)
Refer to Lenovo's Security Advisory page for additional information about
LEN-26696 "Microarchitectural Data Sampling (MDS) Side Channel Vulnerabilities"
(
https://support.lenovo.com/us/en/product_security/LEN-26696).
- (New) Updated the CPU microcode.
<2.83>
UEFI: 2.83 / ECP: 1.06
- [Important] Update includes a security fix.
- (Fix) Fixed an issue where Windows 10 may fail to startup on the systems
that have less than 8 GB of RAM after installing KB4467691.
<2.82>
UEFI: 2.82 / ECP: 1.06
- [Important] Security fix addresses LEN-22660 TianoCore EDK II BIOS
Vulnerabilities. Refer to Lenovo's Security Advisory page for
additional information.
(
https://support.lenovo.com/us/en/solutions/LEN-22660)
- (Fix) Fixed an issue where BIOS silent update might fail with system account.
<2.81>
UEFI: 2.81 / ECP: 1.06
- [Important] Security fix addresses LEN-22133 Speculative Execution Side Channel Variants 4
and 3a (CVE-2018-3639, CVE-2018-3640). Refer to Lenovo's Security Advisory page
for additional information. (
https://support.lenovo.com/product_security/home)
<2.80>
UEFI: 2.80 / ECP: 1.06
- [Important] Security fix addresses LEN-19568 Intel Active Management Technology
MEBx Access Control Bypass.
- (Fix) Fixed an issue where network boot might happened at reboot after resume from
suspend by Wake On LAN.
<2.79>
UEFI: 2.79 / ECP: 1.06
- [Important] Enhancement to address CVE-2017-5715.
<2.78>
UEFI: 2.78 / ECP: 1.06
- [Important] Update includes a security fix.
(Note)
If the UEFI BIOS has been updated to version 2.78 or higher, it is no longer
able to roll back to the version before 2.78 for security improvement.
<2.76>
UEFI: 2.76 / ECP: 1.06
- (Fix) Fix an issue where UEFI BIOS update will be started at resume from sleep
state when BIOS update utility is executed in unattended mode and the
computer goes to sleep state before system reboot/shutdown.
<2.75>
UEFI: 2.75 / ECP: 1.06
- [Important] Security fix addresses LEN-8324 System Management Mode (SMM) BIOS
Vulnerability and some security fixes.
(Note) If the UEFI BIOS has been updated to version 2.75 or higher, it is
no longer able to roll back to the version before 2.75 for security
improvement.
- (New) Updated the Diagnostics module to version 2.09.09.
<2.74>
UEFI: 2.74 / ECP: 1.06
-[Important] Update includes security fixes.
<2.73>
UEFI: 2.73 / ECP: 1.06
- (New) Updated the CPU microcode.
- (New) Updated the Computrace module to 945_VN.