Published On: June 30th, 2017

Lenovo Firmware Updates for the May 2017 Intel AMT Vulnerability
Update vulnerable firmware and remove vulnerable software as documented in Intel Security Advisory INTEL-SA-00075

  • Assess the system’s vulnerability
  • Abort the mitigation steps if the system is not vulnerable
  • Run the Intel Unprovisioning Tool
  • Remove the Local Manageability Service (LMS), if installed
  • Check hardware compatibility for firmware updates
  • Suppress the BitLocker recovery prompt during the next reboot, only on BitLocker protected systems
    • The BitLocker recovery prompt is often triggered by BIOS and firmware updates
  • Choose the installer based on the system model and OS architecture
  • Choose the firmware image based on the existing Management Engine power package
  • Install the Intel MEI firmware
  • Prompt to restart the computer, only in interactive mode
Supported Models
ThinkPad Helix (1st Gen: 3697, 3698, 3701, 3702)
ThinkPad Helix (2nd Gen: 20CG, 20CH)
ThinkPad L470
ThinkPad P40 Yoga
ThinkPad P50
ThinkPad P50s
ThinkPad P51s
ThinkPad P70
ThinkPad S1
ThinkPad S3
ThinkPad T420
ThinkPad T420i
ThinkPad T420s
ThinkPad T420si
ThinkPad T430
ThinkPad T430i
ThinkPad T430s
ThinkPad T430si
ThinkPad T431s
ThinkPad T440
ThinkPad T440p
ThinkPad T440s
ThinkPad T460
ThinkPad T460p
ThinkPad T460s
ThinkPad T470
ThinkPad T470s
ThinkPad T520
ThinkPad T520i
ThinkPad T530
ThinkPad T530i
ThinkPad T540p
ThinkPad T550
ThinkPad T560
ThinkPad T570
ThinkPad W520
ThinkPad W530
ThinkPad W540
ThinkPad W541
ThinkPad W550s
ThinkPad X1
ThinkPad X1 Carbon (1st Gen: 34xx)
ThinkPad X1 Carbon (2nd Gen: 20A7, 20A8)
ThinkPad X1 Carbon (3rd Gen: 20BS, 20BT)
ThinkPad X1 Carbon (4th Gen: 20FB, 20FC)
ThinkPad X1 Carbon (5th Gen: 20HQ, 20HR, 20K3, 20K4)
ThinkPad X1 Helix
ThinkPad X1 Helix 3G
ThinkPad X1 Hybrid
ThinkPad X1 Tablet (1st Gen: 20GG, 20GH)
ThinkPad X1 Yoga (1st Gen: 20FQ, 20FR)
ThinkPad X1 Yoga (2nd Gen: 20JD, 20JE, 20JF, 20JG)
ThinkPad X220
ThinkPad X220 Tablet
ThinkPad X220i
ThinkPad X220i Tablet
ThinkPad X230
ThinkPad X230 Tablet
ThinkPad X230i
ThinkPad X230i Tablet
ThinkPad X230s
ThinkPad X240
ThinkPad X240s
ThinkPad X250
ThinkPad X260
ThinkPad X270
ThinkPad Yoga 14  
ThinkPad Yoga 260
ThinkPad Yoga 460
Command line arguments
<none> - Minimally interactive install
/u - Unattended install
/s - Silent install
Exit codes
324 - Aborting the mitigation steps because the risk assessment returned "Check with OEM".  Are we missing Intel AMT/MEI/SOL drivers?
325 - Failed to read the assessment results
Common exit codes

Share This Story, Choose Your Platform!

Have more questions?

This site is protected by reCAPTCHA and the
Google Privacy Policy and Terms of Service apply.