logo

Six-year old bug will likely live forever in Lenovo, Intel products

ID: dda2d70b-289b-56b2-95bd-d61f687f5135

STIX ID: report--dda2d70b-289b-56b2-95bd-d61f687f5135

Feed Name: CyberScoop

Threat Score
60/100

Date Published: 2024-04-11

Date Updated: 2026-04-21

Author: Christian Vasquez

...
...

Binarly reported that a Lighttpd vulnerability patched in 2018 was not assigned a CVE and that AMI's MegaRAC firmware still contains the vulnerable Lighttpd build; as a result, numerous Intel and Lenovo devices—including products now end-of-life—are likely to remain exposed to potential buffer-overflow exploitation, with Binarly identifying over 2,000 affected devices.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.