• Home
  • Latest
  • Fortune 500
  • Finance
  • Tech
  • Leadership
  • Lifestyle
  • Rankings
  • Multimedia
TechLenovo

Another Huge Security Hole Has Been Discovered on Lenovo Computers

By
Kif Leswing
Kif Leswing
Down Arrow Button Icon
By
Kif Leswing
Kif Leswing
Down Arrow Button Icon
December 8, 2015, 10:42 AM ET
Lenovo laptop computers sit on display at the company's headquarters in Beijing, China, on Tuesday, Nov. 11, 2014.
Lenovo laptop computers sit on display at the company's headquarters in Beijing, China, on Tuesday, Nov. 11, 2014. Photograph by Tomohiro Ohsumi—Bloomberg via Getty Images

Certain Lenovo computers can be hijacked by malicious websites because of security flaws in software that comes preinstalled from the factory. The world’s biggest PC maker issued a workaround for the problem Tuesday.

The security issue was first published by Carnegie Mellon’s Computer Emergency Readiness Team. From the vulnerability note:

By convincing a user who has launched the Lenovo Solution Center to view a specially crafted HTML document (e.g., a web page or an HTML email message or attachment), an attacker may be able to execute arbitrary code with SYSTEM privileges. Additionally, a local user can execute arbitrary code with SYSTEM privileges.

According to the warning, Lenovo’s software contains three vulnerabilities that hackers could exploit to run their own code on an affected Lenovo computer.

The company has responded by instructing its users to uninstall Lenovo Solution Center, which comes on many Lenovo laptops and desktops. The software provides a dashboard for users to monitor system health and, ironically, security, but the program has been called bloatware, a term that describes unnecessary software that computer makers preinstall on your system.

Lenovo’s response instructs users to simply uninstall the program:

Lenovo was recently alerted by a cyber-security threat intelligence partner and US-CERT to a vulnerability report concerning its Lenovo Solution Center (LSC) application. We are urgently assessing the vulnerability report and will provide an update and applicable fixes as rapidly as possible. To remove the potential risk posed by this vulnerability, users can uninstall the Lenovo Solution Center application using the add/remove programs function.

This is the third time this year that Lenovo (LNVGY) has landed in hot water because of security risks stemming from its preinstalled software. In February, researchers discovered a preloaded piece of software called Superfish that essentially allowed hackers to read encrypted web-browsing data, even online passwords. When Superfish worked correctly, it injected ads on websites like Google. “We messed up badly,” Lenovo CTO Peter Hortensius admitted earlier this year.

In August, Lenovo computers were discovered automatically downloading a piece of software called Lenovo Service Engine, which would reinstall itself even if the computer was wiped and Windows was reinstalled.

Lenovo posted its first quarterly loss in six years in November. The company said PC sales declined 17% year over year during the third quarter, but it’s hard to tell how much of that is due to its recent security fiascos as the entire PC industry is currently contracting.

Lenovo’s not the only PC maker guilty of making its systems’ security weaker by preinstalling bloatware. The researcher who discovered the Lenovo Solution Center issue also pointed to two “lower-impact” flaws in support tools that come preinstalled on Toshiba and Dell computers. If security is your top priority, it’s wise to uninstall any software you don’t use, or purchase one of Microsoft’s Signature PCs, which come free of preinstalled manufacturer software.

Lenovo CEO Yang Yuanqing talks about Apple’s approach to China in this Fortune video:

Subscribe to Data Sheet, Fortune’s daily newsletter on the business of technology.

About the Author
By Kif Leswing
See full bioRight Arrow Button Icon

Latest in Tech

InnovationRobots
Even in Silicon Valley, skepticism looms over robots, while ‘China has certainly a lot more momentum on humanoids’
By Matt O'Brien and The Associated PressDecember 13, 2025
2 hours ago
Sarandos
Arts & EntertainmentM&A
It’s a sequel, it’s a remake, it’s a reboot: Lawyers grow wistful for old corporate rumbles as Paramount, Netflix fight for Warner
By Nick LichtenbergDecember 13, 2025
6 hours ago
Oracle chairman of the board and chief technology officer Larry Ellison delivers a keynote address during the 2019 Oracle OpenWorld on September 16, 2019 in San Francisco, California.
AIOracle
Oracle’s collapsing stock shows the AI boom is running into two hard limits: physics and debt markets
By Eva RoytburgDecember 13, 2025
7 hours ago
robots
InnovationRobots
‘The question is really just how long it will take’: Over 2,000 gather at Humanoids Summit to meet the robots who may take their jobs someday
By Matt O'Brien and The Associated PressDecember 12, 2025
20 hours ago
Man about to go into police vehicle
CryptoCryptocurrency
Judge tells notorious crypto scammer ‘you have been bitten by the crypto bug’ in handing down 15 year sentence 
By Carlos GarciaDecember 12, 2025
21 hours ago
three men in suits, one gesturing
AIBrainstorm AI
The fastest athletes in the world can botch a baton pass if trust isn’t there—and the same is true of AI, Blackbaud exec says
By Amanda GerutDecember 12, 2025
21 hours ago

Most Popular

placeholder alt text
Economy
Tariffs are taxes and they were used to finance the federal government until the 1913 income tax. A top economist breaks it down
By Kent JonesDecember 12, 2025
1 day ago
placeholder alt text
Success
Apple cofounder Ronald Wayne sold his 10% stake for $800 in 1976—today it’d be worth up to $400 billion
By Preston ForeDecember 12, 2025
1 day ago
placeholder alt text
Success
40% of Stanford undergrads receive disability accommodations—but it’s become a college-wide phenomenon as Gen Z try to succeed in the current climate
By Preston ForeDecember 12, 2025
1 day ago
placeholder alt text
Economy
For the first time since Trump’s tariff rollout, import tax revenue has fallen, threatening his lofty plans to slash the $38 trillion national debt
By Sasha RogelbergDecember 12, 2025
21 hours ago
placeholder alt text
Economy
The Fed just ‘Trump-proofed’ itself with a unanimous move to preempt a potential leadership shake-up
By Jason MaDecember 12, 2025
19 hours ago
placeholder alt text
Success
At 18, doctors gave him three hours to live. He played video games from his hospital bed—and now, he’s built a $10 million-a-year video game studio
By Preston ForeDecember 10, 2025
3 days ago
Rankings
  • 100 Best Companies
  • Fortune 500
  • Global 500
  • Fortune 500 Europe
  • Most Powerful Women
  • Future 50
  • World’s Most Admired Companies
  • See All Rankings
Sections
  • Finance
  • Leadership
  • Success
  • Tech
  • Asia
  • Europe
  • Environment
  • Fortune Crypto
  • Health
  • Retail
  • Lifestyle
  • Politics
  • Newsletters
  • Magazine
  • Features
  • Commentary
  • Mpw
  • CEO Initiative
  • Conferences
  • Personal Finance
  • Education
Customer Support
  • Frequently Asked Questions
  • Customer Service Portal
  • Privacy Policy
  • Terms Of Use
  • Single Issues For Purchase
  • International Print
Commercial Services
  • Advertising
  • Fortune Brand Studio
  • Fortune Analytics
  • Fortune Conferences
  • Business Development
About Us
  • About Us
  • Editorial Calendar
  • Press Center
  • Work At Fortune
  • Diversity And Inclusion
  • Terms And Conditions
  • Site Map

© 2025 Fortune Media IP Limited. All Rights Reserved. Use of this site constitutes acceptance of our Terms of Use and Privacy Policy | CA Notice at Collection and Privacy Notice | Do Not Sell/Share My Personal Information
FORTUNE is a trademark of Fortune Media IP Limited, registered in the U.S. and other countries. FORTUNE may receive compensation for some links to products and services on this website. Offers may be subject to change without notice.