Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1336 CNY

100%

CVE-2026-10589

CVSS 6.0 · Medium EPSS 0.11% · P1

Possible ATT&CK Techniques 1AI

T1055.008 · Ptrace System Calls

Affected Version Matrix 60

VendorProductVersion RangeStatus
LenovoIdeaPad 5 15ABA7 BIOS< KACN29WWaffected
LenovoIdeaPad Pro 5 16AGP11 BIOS≤ T8CN19WWaffected
LenovoIdeaPad Pro 5 16ASP10 BIOS≤ R1CN24WWaffected
LenovoIdeaPad Pro 5 16IAH10 BIOS≤ PZCN27WWaffected
LenovoIdeaPad Pro 5 16IMH9 BIOS≤ MECN68WWaffected
LenovoIdeaPad Pro 5 16IPH11 BIOS< S4CN62WWaffected
LenovoIdeaPad Pro 5 16IRH8 BIOS≤ KZCN46WWaffected
LenovoIdeaPad Slim 3 14ITN9 BIOS< QUCN20WWaffected
LenovoIdeaPad Slim 3 15AMN8 BIOS< L1CN51WWaffected
LenovoIdeaPad Slim 3 16ARP10 BIOS< QBCN30WWaffected
LenovoIdeaPad Slim 3 16IRH10R BIOS≤ QDCN23WWaffected
LenovoIdeaPad Slim 3 16IRH8 BIOS< LTCN44WWaffected
LenovoIdeaPad Slim 3 16IRU9 BIOS< P2CN27WWaffected
LenovoLegion 5 15AHP10 BIOS< RGCN35WWaffected
LenovoLegion 5 15AKP10 BIOS≤ RYCN22WWaffected
LenovoLegion 5 15APH9 BIOS< PJCN18WWaffected
LenovoLegion 5 15IAX10 BIOS≤ S2CN15WWaffected
LenovoLegion 5 15IRX10 BIOS≤ QNCN28WWaffected
LenovoLegion 5 15IRX9 BIOS≤ PTCN14WWaffected
LenovoLegion 7 16AGP11 BIOS≤ TPCN27WWaffected
LenovoLegion 7 16IAX10 BIOS≤ RXCN18WWaffected
LenovoLegion 9 16IRX9 BIOS≤ NXCN20WWaffected
LenovoLegion Pro 5 16ADR10 BIOS≤ U5CN07WWaffected
≤ RLCN21WWaffected
LenovoLegion Pro 5 16AFR10 BIOS≤ RECN14WWaffected
LenovoLegion Pro 5 16ARX8 BIOS≤ LPCN59WWaffected
LenovoLegion Pro 5 16IAX10 BIOS≤ Q6CN26WWaffected
LenovoLegion Pro 5 16IRX10 BIOS≤ S9CN13WWaffected
LenovoLegion Pro 5 16IRX9 BIOS< N0CN35WWaffected
LenovoLegion Pro 7 16ADR10H BIOS< SJCN17WWaffected
LenovoLegion Pro 7 16AFR10H BIOS< SMCN20WWaffected
LenovoLegion Pro 7 16ARX8H BIOS≤ LPCN45WWaffected
≤ LPCN59WWaffected
LenovoLegion Pro 7 16IAX10H BIOS≤ Q7CN31WWaffected
LenovoLegion Pro 7 16IRX9H BIOS≤ N2CN26WWaffected
LenovoLegion Slim 5 14APH8 BIOS≤ MACN33WWaffected
LenovoLenovo S14 G3 IAP BIOS≤ JKCN49WWaffected
LenovoLenovo V14 G6 ITN BIOS< RHCN20WWaffected
LenovoLenovo V15 G2 IJL Laptop BIOS< HTCN49WWaffected
LenovoLenovo V15 G4 AMN BIOS< L1CN72WWaffected
LenovoLenovo V15 G4 IAH BIOS< MCCN39WWaffected
LenovoLenovo V15 G5 IRL BIOS< PMCN38WWaffected
LenovoLenovo V15 G6 ARP BIOS≤ TYCN15WWaffected
LenovoLOQ 15ARP10E BIOS< SUCN18WWaffected
LenovoLOQ 15IAX9E BIOS≤ Q8CN17WWaffected
LenovoThinkBook 16p G5 IRX BIOS< P5CN31WWaffected
LenovoThinkBook 16p G6 ADR BIOS< R7CN26WWaffected
LenovoThinkBook 16p G6 IAX BIOS< R2CN57WWaffected
LenovoThinkBook Plus G4 IRU BIOS≤ LUCN47WWaffected
LenovoThinkBook Plus G5 Tab&ThinkBook Plus G5 Station BIOS≤ P8CN42WWaffected
LenovoThinkBook Plus G6 Rollable BIOS≤ QWCN34WWaffected
LenovoYoga 9 14IRP8 BIOS< L4CN31WWaffected
LenovoYoga 9 2-in-1 14ILL10 BIOS≤ Q9CN22WWaffected
LenovoYoga 9 2-in-1 14IMH9 BIOS≤ NNCN31WWaffected
LenovoYoga Book 9 13IMU9 BIOS≤ NVCN24WWaffected
LenovoYoga Book 9 14IAH10 BIOS≤ QEME23WWaffected
≤ QECN21WWaffected
LenovoYoga Pro 7 15IPH11 BIOS< TNCN37WWaffected
LenovoYoga Pro 9 14IRP8 BIOS≤ MBCN33WWaffected
LenovoYoga Pro 9 16IMH9 BIOS≤ NKCN30WWaffected
Get alerts for future matching vulnerabilitiesLog in to subscribe

I. Basic Information for CVE-2026-10589

Vulnerability Information

Have questions about the vulnerability? See if Shenlong's analysis helps!
View Shenlong Deep Dive ↗

Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.

Vulnerability Title
N/A
Source: CVE Program / CVE List V5
Vulnerability Description
A potential out of bounds write vulnerability could allow a local privileged attacker to execute code in System Management Mode.
Source: CVE Program / CVE List V5
CVSS Information
CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:N/I:H/A:H
Source: CVE Program / CVE List V5
Vulnerability Type
N/A
Source: CVE Program / CVE List V5
Vulnerability Title
Lenovo BIOS 缓冲区错误漏洞
Source: CNNVD (China National Vulnerability Database)
Vulnerability Description
Lenovo bios是中国Lenovo公司的一套基础输入输出系统。 Lenovo BIOS存在缓冲区错误漏洞,该漏洞源于越界写入问题,可能导致拥有本地特权的攻击者在内核管理模式下执行代码。以下版本受到影响:Yoga Pro 7 15IPH11 BIOS TNCN37WW之前版本、IdeaPad Pro 5 16IPH11 BIOS S4CN62WW之前版本、Legion 7 16AGP11 BIOS TPCN27WW及之前版本、IdeaPad Pro 5 16AGP11 BIOS T8CN19WW及之前
Source: CNNVD (China National Vulnerability Database)
CVSS Information
N/A
Source: CNNVD (China National Vulnerability Database)
Vulnerability Type
N/A
Source: CNNVD (China National Vulnerability Database)

Affected Products

VendorProductAffected VersionsCPESubscribe
LenovoYoga Pro 7 15IPH11 BIOS 0 ~ TNCN37WW -
LenovoIdeaPad Pro 5 16IPH11 BIOS 0 ~ S4CN62WW -
LenovoLegion 7 16AGP11 BIOS 0 ~ TPCN27WW -
LenovoIdeaPad Pro 5 16AGP11 BIOS 0 ~ T8CN19WW -
LenovoLegion Pro 5 16ADR10 BIOS 0 ~ U5CN07WW -
LenovoLenovo V15 G6 ARP BIOS 0 ~ TYCN15WW -
LenovoLOQ 15ARP10E BIOS 0 ~ SUCN18WW -
LenovoYoga Book 9 14IAH10 BIOS 0 ~ QEME23WW -
LenovoLegion Pro 7 16AFR10H BIOS 0 ~ SMCN20WW -
LenovoLegion Pro 5 16AFR10 BIOS 0 ~ RECN14WW -
LenovoLegion Pro 7 16ADR10H BIOS 0 ~ SJCN17WW -
LenovoLenovo V15 G4 AMN BIOS 0 ~ L1CN72WW -
LenovoThinkBook Plus G6 Rollable BIOS 0 ~ QWCN34WW -
LenovoLegion 5 15IAX10 BIOS 0 ~ S2CN15WW -
LenovoLegion 5 15AKP10 BIOS 0 ~ RYCN22WW -
LenovoLegion 5 15IRX10 BIOS 0 ~ QNCN28WW -
LenovoLegion Pro 5 16IRX10 BIOS 0 ~ S9CN13WW -
LenovoThinkBook 16p G6 ADR BIOS 0 ~ R7CN26WW -
LenovoLegion Pro 5 16ADR10 BIOS 0 ~ RLCN21WW -
LenovoLegion 5 15AHP10 BIOS 0 ~ RGCN35WW -
LenovoLegion Pro 7 16IRX9H BIOS 0 ~ N2CN26WW -
LenovoLegion 9 16IRX9 BIOS 0 ~ NXCN20WW -
LenovoIdeaPad Slim 3 16IRU9 BIOS 0 ~ P2CN27WW -
LenovoLegion Pro 5 16IRX9 BIOS 0 ~ N0CN35WW -
LenovoIdeaPad Pro 5 16IMH9 BIOS 0 ~ MECN68WW -
LenovoLegion Pro 7 16ARX8H BIOS 0 ~ LPCN45WW -
LenovoThinkBook Plus G4 IRU BIOS 0 ~ LUCN47WW -
LenovoLegion Slim 5 14APH8 BIOS 0 ~ MACN33WW -
LenovoThinkBook Plus G5 Tab&ThinkBook Plus G5 Station BIOS 0 ~ P8CN42WW -
LenovoLegion Pro 7 16ARX8H BIOS 0 ~ LPCN59WW -
LenovoLenovo V15 G4 IAH BIOS 0 ~ MCCN39WW -
LenovoLenovo V15 G5 IRL BIOS 0 ~ PMCN38WW -
LenovoYoga Pro 9 14IRP8 BIOS 0 ~ MBCN33WW -
LenovoIdeaPad Slim 3 16IRH8 BIOS 0 ~ LTCN44WW -
LenovoIdeaPad Pro 5 16IRH8 BIOS 0 ~ KZCN46WW -
LenovoIdeaPad Slim 3 15AMN8 BIOS 0 ~ L1CN51WW -
LenovoYoga 9 14IRP8 BIOS 0 ~ L4CN31WW -
LenovoLegion Pro 5 16ARX8 BIOS 0 ~ LPCN59WW -
LenovoLenovo S14 G3 IAP BIOS 0 ~ JKCN49WW -
LenovoIdeaPad 5 15ABA7 BIOS 0 ~ KACN29WW -
LenovoThinkBook 16p G5 IRX BIOS 0 ~ P5CN31WW -
LenovoLenovo V15 G2 IJL Laptop BIOS 0 ~ HTCN49WW -
LenovoYoga Pro 9 16IMH9 BIOS 0 ~ NKCN30WW -
LenovoThinkBook 16p G6 IAX BIOS 0 ~ R2CN57WW -
LenovoLegion 7 16IAX10 BIOS 0 ~ RXCN18WW -
LenovoLegion Pro 5 16IAX10 BIOS 0 ~ Q6CN26WW -
LenovoLegion Pro 7 16IAX10H BIOS 0 ~ Q7CN31WW -
LenovoIdeaPad Slim 3 16IRH10R BIOS 0 ~ QDCN23WW -
LenovoLegion 5 15IRX9 BIOS 0 ~ PTCN14WW -
LenovoLenovo V14 G6 ITN BIOS 0 ~ RHCN20WW -
LenovoYoga Book 9 14IAH10 BIOS 0 ~ QECN21WW -
LenovoIdeaPad Slim 3 14ITN9 BIOS 0 ~ QUCN20WW -
LenovoIdeaPad Slim 3 16ARP10 BIOS 0 ~ QBCN30WW -
LenovoIdeaPad Pro 5 16ASP10 BIOS 0 ~ R1CN24WW -
LenovoLegion 5 15APH9 BIOS 0 ~ PJCN18WW -
LenovoYoga 9 2-in-1 14ILL10 BIOS 0 ~ Q9CN22WW -
LenovoYoga Book 9 13IMU9 BIOS 0 ~ NVCN24WW -
LenovoIdeaPad Pro 5 16IAH10 BIOS 0 ~ PZCN27WW -
LenovoLOQ 15IAX9E BIOS 0 ~ Q8CN17WW -
LenovoYoga 9 2-in-1 14IMH9 BIOS 0 ~ NNCN31WW -

II. Public POCs for CVE-2026-10589

#POC DescriptionSource LinkShenlong Link
AI-Generated POCPremium

No public POC found.

Login to generate AI POC

III. Intelligence Information for CVE-2026-10589

登录查看更多情报信息。

Vendor Advisories for CVE-2026-10589 (1)

Same Patch Batch · Lenovo · 2026-07-16 · 9 CVEs total

CVE-2026-131047.3 HIGHLenovo app store 权限许可和访问控制问题漏洞
CVE-2026-131037.3 HIGHLenovo app store 路径遍历漏洞
CVE-2026-90467.0 HIGHLenovo Legion Zone 权限许可和访问控制问题漏洞
CVE-2026-105876.0 MEDIUMLenovo Yoga Pro 7 15IPH11 BIOS 缓冲区错误漏洞
CVE-2026-65115.5 MEDIUMLenovo Smart Connect 授权问题漏洞
CVE-2026-105904.4 MEDIUMLenovo Yoga Pro 7 15IPH11 BIOS 安全漏洞
CVE-2026-105884.4 MEDIUMLenovo Yoga Pro 7 15IPH11 BIOS 信息泄露漏洞
CVE-2026-14371Lenovo XClarity Integrator for Microsoft Windows Admin Center 命令注入漏洞

IV. Related Vulnerabilities

V. Comments for CVE-2026-10589

No comments yet


Leave a comment