Privilege Escalation Vulnerabilities Found in Lenovo System Update

By Sofiane Talmat @_Sud0

Lenovo released a new version
of the Lenovo System Update advisory (https://support.lenovo.com/ar/es/product_security/lsu_privilege) about
two new privilege escalation vulnerabilities I had reported to Lenovo a couple
of weeks ago (CVE-2015-8109, CVE-2015-8110). IOActive and Lenovo have issued
advisories on these issues.

<