CVE-2026-1652: Lenovo Smart Connect

Medium severity, CVSS 6.1. EPSS: 0.1% chance of exploitation in the next 30 days.

A potential buffer overflow vulnerability was reported in the Lenovo Virtual Bus driver used in Smart Connect that could allow a local authenticated user to corrupt memory and cause a Windows blue screen error.

Affected products

  • Lenovo Smart Connect: before 09.0.1.002.000 (fixed in 09.0.1.002.000)

Published 2026-03-11. Last modified 2026-08-20.