CVE-2024-11679: Lenovo System x3550 m5
Medium severity, CVSS 4.4. EPSS: 0.2% chance of exploitation in the next 30 days.
An input validation weakness was reported in the TpmSetup module for some legacy System x server products that could allow a local attacker with elevated privileges to read the contents of memory.
Affected products
- Lenovo System x3550 m5: before 4.40 (fixed in 4.40)
- Lenovo System x3560 m5: before 4.20 (fixed in 4.20)
Published 2025-04-11. Last modified 2026-06-17.