Home

Description

A potential buffer overflow vulnerability was reported in the Lenovo Virtual Bus driver used in Smart Connect that could allow a local authenticated user to corrupt memory and cause a Windows blue screen error.

PUBLISHED Reserved 2026-01-29 | Published 2026-03-11 | Updated 2026-03-12 | Assigner lenovo




MEDIUM: 6.9CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:N/VI:L/VA:H/SC:N/SI:N/SA:N

MEDIUM: 6.1CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:H

Problem types

CWE-122: Heap-based Buffer Overflow

Product status

Default status
unaffected

Any version before 09.0.1.002.000
affected

Credits

Lenovo thanks Yaron Dinkin & Eyal Kraft from Hexaplex AI for reporting these issues. finder

References

support.lenovo.com/us/en/product_security/LEN-209683

cve.org (CVE-2026-1652)

nvd.nist.gov (CVE-2026-1652)

Download JSON