A potential buffer overflow vulnerability was reported in the Lenovo Virtual Bus driver used in Smart Connect that could allow a local authenticated user to corrupt memory and cause a Windows blue screen error.

Project Subscriptions

Vendors Products
Smart Connect Subscribe
Advisories

No advisories yet.

Fixes

Solution

Update Smart Connect to version 09.0.1.002.000. Smart Connect is updated automatically.


Workaround

No workaround given by the vendor.

History

Wed, 11 Mar 2026 20:45:00 +0000

Type Values Removed Values Added
Description A potential buffer overflow vulnerability was reported in the Lenovo Virtual Bus driver used in Smart Connect that could allow a local authenticated user to corrupt memory and cause a Windows blue screen error.
First Time appeared Lenovo
Lenovo smart Connect
Weaknesses CWE-122
CPEs cpe:2.3:a:lenovo:smart_connect:*:*:windows:*:*:*:*:*
Vendors & Products Lenovo
Lenovo smart Connect
References
Metrics cvssV3_1

{'score': 6.1, 'vector': 'CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:H'}

cvssV4_0

{'score': 6.9, 'vector': 'CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:N/VI:L/VA:H/SC:N/SI:N/SA:N'}


Projects

Sign in to view the affected projects.

cve-icon MITRE

Status: PUBLISHED

Assigner: lenovo

Published:

Updated: 2026-03-11T20:21:32.839Z

Reserved: 2026-01-29T19:17:33.220Z

Link: CVE-2026-1652

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Received

Published: 2026-03-11T21:16:14.427

Modified: 2026-03-11T21:16:14.427

Link: CVE-2026-1652

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.

Weaknesses