English Community

Software and Operating SystemSecurity & Malware
All Forum Topics
Options

11 Posts

12-10-2017

PT

39 Signins

243 Page Views

  • Posts: 11
  • Registered: ‎12-10-2017
  • Location: PT
  • Views: 243
  • Message 1 of 10

X201 - How to fix Intel ME Security Flaw

2017-12-10, 22:17 PM

Hi,

 

I have just bought on Ebay a Lenovo Thinkpad X201, and run the Intel tool to check if it was vulnerable to the recent discovered security flaw on Intel ME (Critical Firmware Update - Intel-SA-00086) as described on the link bellow:

 

https://www.intel.com/content/www/us/en/support/articles/000025619/software.html

 

The result was that my X201 is vulnerable! So, this is a huge security problem and I need a way to resolve it.

 

I have already run all Windows 10 updates + Lenovo Companion app and it says no more updates are available. I have also search on Lenovo drivers and even on Lenovo dedicated page to this security issue on the link bellow but my model (X201) is not listed:

 

https://support.lenovo.com/pt/en/product_security/len-17297

 

My question is if anyone knows a solution for this security issue on X201? Any help or advice is really appreciated.

 

Note: On Intel check tool, it says my Intel ME driver current version is 6.1.10.1052

 

Thanks!

Reply
Options

2026 Posts

07-22-2010

US

9915 Signins

166532 Page Views

  • Posts: 2026
  • Registered: ‎07-22-2010
  • Location: US
  • Views: 166532
  • Message 2 of 10

Re: X201 - How to fix Intel ME Security Flaw

2017-12-10, 22:41 PM

I think the reason its not on the Lenovo list is your processor is not affected.  Based on the intel link you provided it affects 6th, 7th and 8th generation intel chips.  I do not believe the X201 has those chips.

 

 


 If a post answers your question, please mark it as an”Accepted Solution“!
 If a post helps you, please click the star to give it a "Kudo"!


 I do not work for, nor do I speak for Lenovo. I will not respond to unsolicited private messages. Questions belong in the forum so it may   help other forum members as well.
T14, T490, TP 25 Retro, X1 Yoga 3rd Gen, W510 850 EVO, A30p
 Retired 385D, A20p, A21p


Using Browser Search to find your answers in Lenovo and Moto Community

Reply
Options

11 Posts

12-10-2017

PT

39 Signins

243 Page Views

  • Posts: 11
  • Registered: ‎12-10-2017
  • Location: PT
  • Views: 243
  • Message 3 of 10

Re: X201 - How to fix Intel ME Security Flaw

2017-12-11, 0:45 AM

Hi,

 

The CPU on my X201 is a I5 M520 @ 2.4Ghz.

 

And when running the official Intel tool it says my system is vulnerable.

 

Any other idea or advise? Thanks

Reply
Options

4345 Posts

07-24-2013

CH

13000 Signins

377298 Page Views

  • Posts: 4345
  • Registered: ‎07-24-2013
  • Location: CH
  • Views: 377298
  • Message 4 of 10

Re: X201 - How to fix Intel ME Security Flaw

2017-12-11, 8:06 AM

My understanding (from what I read in the net) is the same as what the above poster said, only 6th gen CPU's and above are affected.

 

Your X201 has the first gen Core i processor, so there's nothing you have to do.

 

-


Using Search to find your answers in Lenovo and Moto Community
Reply
Options

11 Posts

12-10-2017

PT

39 Signins

243 Page Views

  • Posts: 11
  • Registered: ‎12-10-2017
  • Location: PT
  • Views: 243
  • Message 5 of 10

Re: X201 - How to fix Intel ME Security Flaw

2017-12-11, 18:16 PM

Hi @Tasurinchi

 

I had also think that... but so how does the Intel oficial detection tool says my system is vulnerable? I also have a Thinkpad T430 and I run there the Intel tool and it says is not vulnerable. So the Intel tool is working.

 

Any other idea or advise? Also anyone that has a X201 can please run the Intel tool to check results on ther end?

 

I really need to resolve this, because with the security flaw the laptop is useless...

 

Thanks

Reply
Options

2026 Posts

07-22-2010

US

9915 Signins

166532 Page Views

  • Posts: 2026
  • Registered: ‎07-22-2010
  • Location: US
  • Views: 166532
  • Message 6 of 10

Re: X201 - How to fix Intel ME Security Flaw

2017-12-11, 19:54 PM

Hi,  I personally think that the detection tool is looking for a specific patched firmware to see if you are vulnerable or not.  Since the X201 does not have that firmware or driver it assumes its vulnerable.  It assumes if its not patched you are vulnerable even though the patch does not apply to your series chip.  See the FAQ from the link you posted.  The only way to know for sure is to contact Intel and confirm what their detection tool is looking for.

 


 If a post answers your question, please mark it as an”Accepted Solution“!
 If a post helps you, please click the star to give it a "Kudo"!


 I do not work for, nor do I speak for Lenovo. I will not respond to unsolicited private messages. Questions belong in the forum so it may   help other forum members as well.
T14, T490, TP 25 Retro, X1 Yoga 3rd Gen, W510 850 EVO, A30p
 Retired 385D, A20p, A21p


Using Browser Search to find your answers in Lenovo and Moto Community

Reply
Options

11 Posts

12-10-2017

PT

39 Signins

243 Page Views

  • Posts: 11
  • Registered: ‎12-10-2017
  • Location: PT
  • Views: 243
  • Message 7 of 10

Re: X201 - How to fix Intel ME Security Flaw

2017-12-11, 20:28 PM

Hi @green5178

 

Thanks for the information and advise. Yes, it may be the lack of one of that drivers, but i'm not a computer expert.. so seeing this information contradict each other it worries me. 

 

I guess you gues are right, but I would like to have an official confirmation from Lenovo official staff. Does anyone knows the best way to get an official information from Lenovo about his?

 

Also if anyone has any further information or advise fell free to say.

 

Thanks

Reply
Options

1 Posts

01-03-2018

GB

3 Signins

32 Page Views

  • Posts: 1
  • Registered: ‎01-03-2018
  • Location: GB
  • Views: 32
  • Message 8 of 10

ThinkPad X201 - How to fix Intel ME security fix

2018-01-03, 18:14 PM

Hi,

 

I've recently checked Intel's product webpage about the issue (Intel SA-00086) and saw that ALL Intel Core CPUs from 1st - 8th gen are affacted. 

 

"Systems using Intel ME Firmware versions 6.x-11.x, servers using SPS Firmware version 4.0, and systems using TXE version 3.0 are impacted. You may find these firmware versions on certain processors from the:

  • 1st, 2nd, 3rd, 4th, 5th, 6th, 7th, and 8th generation Intel® Core™ Processor Families
  • Intel® Xeon® Processor E3-1200 v5 and v6 Product Family
  • Intel® Xeon® Processor Scalable Family
  • Intel® Xeon® Processor W Family
  • Intel Atom® C3000 Processor Family
  • Apollo Lake Intel Atom® Processor E3900 series
  • Apollo Lake Intel® Pentium® Processors
  • Intel® Pentium® Processor G Series
  • Intel® Celeron® G, N, and J series Processors

To determine if the identified vulnerabilities impact your system, download and run the Intel-SA-00086 Detection tool using the links below." (Intel support page)

 

I've ran the detection tool and it says that I'm affected. I can't find a update via Lenovo's website or Lenovo Vantage. How can I fix this problem?

 

 

 

Reply
Options

3815 Posts

12-02-2007

US

9029 Signins

188553 Page Views

  • Posts: 3815
  • Registered: ‎12-02-2007
  • Location: US
  • Views: 188553
  • Message 9 of 10

Re: X201 - How to fix Intel ME Security Flaw

2018-01-17, 10:32 AM

[Moved to Security & Malware section for visibility.  AG]



I am a volunteer and neither a Lenovo nor a Microsoft employee.

L380 YogaP72 (20MB-*)P50 (20EN-*)S230u (3347-4HU)T23 (2648-LU7)T42 (2378-R4U)T43p (2678-H7U)T61p (6459-CTO)W510 (4318-CTO)W530 (2441-4R3)W530 (2441-4R3)X100e (3508-CTO)X120e (0596-CTO)X220 (4286-CTO)X250 (20CM-*)Yoga 370

  Communities:   English    Deutsche    Español    Português    Русскоязычное    Česká    Slovenská    Українська   Język Polski    Moto English


Need an answer, fast? Try using Browser Search to find it in the Lenovo and Moto Community
Reply
Options

10 Posts

09-21-2017

NL

13 Signins

107 Page Views

  • Posts: 10
  • Registered: ‎09-21-2017
  • Location: NL
  • Views: 107
  • Message 10 of 10

Re: X201 - How to fix Intel ME Security Flaw

2018-03-18, 19:15 PM

According to Intel's Microcode Update Guidance (march 2018) the Arrandale processors are in Beta/Pre-Beta. I'm more worried that Lenovo wont bother to release updates.

Reply
Forum Home

Community Guidelines

Please review our Guidelines before posting.

Learn More

Check out current deals!

Go Shop
X

Save

X

Delete