Skip to content

Commit

Permalink
Ensure we display the last x230t BIOS version that can actually be used
Browse files Browse the repository at this point in the history
  • Loading branch information
hamishcoleman committed Nov 2, 2019
1 parent 335f46a commit a1f9fd6
Showing 1 changed file with 1 addition and 1 deletion.
2 changes: 1 addition & 1 deletion README.md
Expand Up @@ -12,7 +12,7 @@ this, you will not be able to patch your EC.
| t530, t530i | BIOS 2.76 (G4ETB6WW) EC 1.13 (G4HT39WW) | BIOS 2.77 (G4ETB7WW) EC 1.14 (G4HT40WW) | |
| w530 | BIOS 2.75 (G5ETB5WW) EC 1.13 (G4HT39WW) | BIOS 2.76 (G5ETB6WW) EC 1.14 (G4HT40WW) | |
| x230 | BIOS 2.76 (G2ETB6WW) EC 1.14 (G2HT35WW) | BIOS 2.77 (G2ETB7WW) EC 1.15 (G2HT36WW) | |
| x230t | BIOS 2.74 (GCETB3WW) EC 1.14 (GCHT25WW) | BIOS 2.75 (GCETB5WW) EC 1.15 (GCHT26WW) | |
| x230t | BIOS 2.73 (GCETB3WW) EC 1.14 (GCHT25WW) | BIOS 2.75 (GCETB5WW) EC 1.15 (GCHT26WW) | |

Basically, any BIOS update package where the changelog mentions CVE-2019-6171
will have this lockdown.
Expand Down

2 comments on commit a1f9fd6

@suddenlyfleck
Copy link

@suddenlyfleck suddenlyfleck commented on a1f9fd6 Nov 27, 2019

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Thanks you for your work and for compiling this information!

Could you explain, what the problem with version 2.74 is?

According to the changelogs, I see CVE-2019-6171 appearing only in 2.75. The fixes in 2.74 seem worthwhile to me.

Edit: Installing 2.73 for now.

@hamishcoleman
Copy link
Owner Author

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

The binary files distributed by Lenovo for the BIOS 2.74 contain no EC firmware, so there is no way for us to build a patched EC firmware based on the BIOS 2.74 image. That being said, I fully expect that upgrading to BIOS 2.74 and then using a patched EC built on the 2.73 would work fine - but I have no way to test this.

Please sign in to comment.