CVE-2024-11679: Lenovo System x3550 m5

Medium severity, CVSS 4.4. EPSS: 0.2% chance of exploitation in the next 30 days.

An input validation weakness was reported in the TpmSetup module for some legacy System x server products that could allow a local attacker with elevated privileges to read the contents of memory.

Affected products

  • Lenovo System x3550 m5: before 4.40 (fixed in 4.40)
  • Lenovo System x3560 m5: before 4.20 (fixed in 4.20)

Published 2025-04-11. Last modified 2026-06-17.