Six-year old bug will likely live forever in Lenovo, Intel products
ID: dda2d70b-289b-56b2-95bd-d61f687f5135
STIX ID: report--dda2d70b-289b-56b2-95bd-d61f687f5135
Feed Name: CyberScoop
Threat Score
Binarly reported that a Lighttpd vulnerability patched in 2018 was not assigned a CVE and that AMI's MegaRAC firmware still contains the vulnerable Lighttpd build; as a result, numerous Intel and Lenovo devices—including products now end-of-life—are likely to remain exposed to potential buffer-overflow exploitation, with Binarly identifying over 2,000 affected devices.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
