- Flexera Community
- :
- Software Vulnerability Management
- :
- Software Vulnerability Management Forum
- :
- Lenovo System Update vulnerability - 5.7.0.136?
- Subscribe to RSS Feed
- Mark Topic as New
- Mark Topic as Read
- Float this Topic for Current User
- Subscribe
- Mute
- Printer Friendly Page
- Mark as New
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
A security advisory for older versions of Lenovo System Update is being detected for devices in my network.
Flexera's associated security advisory recommends updating to the following version (or newer):
5.07.0106
The latest available update I've installed, from Lenovo, is detected by Flexera SVM as:
5.7.0.136
Lenovo's website, shows the latest version as:
5.07.0136 (Windows also reports this installed version number)
This is the latest version available. However, due to the version numbering , it seems like SVM is picking up the latest version of system update as an older revision?
- Tags:
- lenovo
- Mark as New
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Thanks for reporting this, it seems like the vendor messed up with product versioning metadata and therefore SVM is flagging the latest version as insecure. Please open a ticket with Flexera SVM support via your Flexera Support community portal and our file signature team will look into this and will get back to you.
- Mark as New
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Thanks for reporting this, it seems like the vendor messed up with product versioning metadata and therefore SVM is flagging the latest version as insecure. Please open a ticket with Flexera SVM support via your Flexera Support community portal and our file signature team will look into this and will get back to you.
- Mark as New
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
OK, will do. Thanks!
