CVE-2025-8061

A potential insufficient access control vulnerability was reported in the Lenovo Dispatcher 3.0 and Dispatcher 3.1 drivers used by some Lenovo consumer notebooks that could allow an authenticated local user to execute code with elevated privileges. The Lenovo Dispatcher 3.2 driver is not affected. This vulnerability does not affect systems when the Windows feature Core Isolation Memory Integrity is enabled. Lenovo systems preloaded with Windows 11 have this feature enabled by default.
Configurations

No configuration.

History

11 Sep 2025, 19:15

Type Values Removed Values Added
New CVE

Information

Published : 2025-09-11 19:15

Updated : 2025-09-11 19:15


NVD link : CVE-2025-8061

Mitre link : CVE-2025-8061

CVE.ORG link : CVE-2025-8061


JSON object : View

Products Affected

No product.

CWE
CWE-782

Exposed IOCTL with Insufficient Access Control