BIOS Changes History General Information: M1ZJ9xxUSA is Flash CD ROM image. M1ZJTxxUSA is Flash in DOS zip package. M1ZJYxxUSA is Flash in Windows utility. M1ZKTxxA is the binary image. (BIOS) NOTE: All changes carry forward. That is, if a change is added in 01,it is also in 02, 03 etc. This file will be updated from the beginning with first Production BIOS release CHANGES for M1ZKT43A - Fixed AutoPilot. CHANGES for M1ZKT42A - Support SCCM parameter. - Enhancement to address security vulnerability CVE-2022-40982,CVE-2022-37343,CVE-2022-44611,CVE-2022-27879,CVE-2022-38083, CVE-2022-43505,CVE-2022-36392,CVE-2022-38102,CVE-2022-29871. CHANGES for M1ZKT41A - Fixed the system hang on debug code "62h". CHANGES for M1ZKT40A - Y22Q1 Atredis ST50v2. - Binarly Claim Case. - Vulnerable UEFI Bootloaders. - GeniricSio Information Disclosure. - MeBackupStorage Variable Buffer Overflow. CHANGES for M1ZKT39A - Two beeps occur. - Y22Q1 Security Review. - Y22Q1 Seucurity issue. - Y22Q2 Seucurity issue. - Y22Q2 Seucurity issue. - ST50v2 #1 - #11. CHANGES for M1ZKT38A - 2021.1 IPU. - Diagnostics. - 2021 Q1 Security update. - Smbios. - Password. - Y21 Q3 security update. - 2021.2 IPU. CHANGES for M1ZKT37A - Record. - Ns21Changes. - Y20Q4 Security CHANGES for M1ZKT36A - Flash issue. - BIOS Setup. - Security - OA3 CHANGES for M1ZKT35A - 2020.1 IPU. - Q4 2019 Security Review. - Update HDP security password. - Q3-20 Security Review. - Update smart usb - Intel-bios-advisory - Rowhammer - oa3info - Intel NDA - PXE boot - Diagnostics CHANGES for M1ZKT34A - Update security solution. - Update security 20Q1. - Fixed readme not match. - Update MCU. CHANGES for M1ZKT33A - Update security solution. - Fixed System UUID. CHANGES for M1ZKT32A - Lenovo request Patch update : computrace permanently disable - 20.03.01 - V03 - D20190705(Modify Update) - Fix issue: The Discrete TPM 1.2 is still disabled when enabled Device Guard. - Fix issue: "Do NOT Power Off System is flashing BIOS" is shown when update ME by WFU.. - Lenovo request Patch update : after perdiscpt update OA2 return 18 error - Fix issue: "HSTI validation failed" when run \DG_Readiness_Tool_v3.6.ps1 -Capable windows Power shell. - Lenovo request Security update : Stack Buffer Overflow in OEMPWDCKEntry - Lenovo request Security update TPM Disable Flag - Lenovo request Security update Reference Code SMI handler Audit - Lenovo request Security update:Lenovo inquiry on TXT releated to Bitlocker issue at HSBC - Lenovo request Security update:Windows Driver Update - Lenovo request Security update:Lack of address validation in OEMSWSMI handlers CHANGES for M1ZKT31A - Lenovo request update : AFU tool SCCM support - Lenovo request Patch update : 20.03.01 computrace permanently disable - Lenovo request Patch update : enable bios rollback under MFG Mode - Support Lenovo new test case : Fix Report error message invalid parameter when change BIOS item in the column B of "Common WMI Test Item-0321.xlsx" by CFGWINGUI - Lenovo request : HSTI function support - Lenovo request Patch update : sr tool set pap fail after Cpt PermanentlyDisable - Lenovo request Patch update : computrace permanently disable - 20.03.01 - V02 - D20190703 CHANGES for M1ZKT30A - Lenovo request Security update : Update Microcode to M2A906E9_000000B4(KabyLake) - Update Lenovo Diagnostics to 04.08.000. - Lenovo request Security update : LEN-26798-26928 Aptio 5.x SA50067 -AMT SMM Callout - Fix ECR514677 [Lenovo Bidding Box B250][BIOS]"DMI Data write failed"occurred when flash bios via JT package with updating SN&MTM number. - Fix ECR514718/ITT145830 Missing the information "This file will be updated from the beginning with first Production BIOS release" at changes.txt of JT/JY/J9 package. CHANGES for M1ZKT29A - Update Lenovo Diagnostics to 04.07.002. - Lenovo request Tool Update : AFU5.09.02.1384.09.LV.B190114. - Lenovo request Security Patch : LEN-26460-26545. - Lenovo request : Use MFGdone setting, control ECR489662 Solution. CHANGES for M1ZKT28A - Fix "Customized BIOS Logo is stretched". - Fix iPXE imaging hangs at handoff to OS boot. CHANGES for M1ZKT27A - BIOS System Event Log had be cleared after update BIOS by JY package and WFU package. CHANGES for M1ZKT26A - Disable TpmClearOnRollBackSupport. - Fix "Alert! Suggest to clean or change your Dust Filter!" appeared in POST screen after changed "Dust Shield Alert" to Enabled then clear CMOS battery. - Fix The Boot Mode is UEFI Only when change CSM from disabled to enabled under OS Optimized Defaults Enabled. CHANGES for M1ZKT25A - Update RabdonNumberGen moudle from 00 to 01 for RS5 requirements. - Add Patch SA50054_v2 - Fix Boot Mode change to Auto when set CSM from Disabled to Enabled - Fix Device Guard would change to Disabled after Switch TPM from 1.2 to 2.0 - Fix The Optane Memory show incorrect after BBR CHANGES for M1ZKT24A - Update MCU to 0x8E(KBL),0xC6(SKL)) - Update Type1 SKU Number. - Remove hotkey F2 PBR patch code. - Add Security LEN-22673 USRT Mantis EDKII - Update readme.txt of JY package. - Update readme.txt of J9/JT package. - Fix RW Type1 family didn't changed after run "smb.nsh default.ini" - Fix Can not boot to Diagnostic after press F10 without monitor connected. CHANGES for M1ZKT23A - Add alwaysdisable TPM function. - System can not boot to desktop load default bios if Intel Optane is enabled. - Fix The bios settings don't match with CfgwinGUI_x64/listall settings.txt. - Fix SATA Drive 1 and SATA Drive 2 show "None" in System Summary - Fix Lack Windows Boot Manager in boot sequence after change SATA mode to RST. CHANGES for M1ZKT22A - Fix Lack of "intel Rapid Storage Technology" item after SATA mode set to RST - Move Network 3 and Network 4 to Excluded from boot order - Fix It will show error when open Intel Optane Memory App. - Fix Optane Memory show in Boot Sequence after change SATA mode to RST. CHANGES for M1ZKT21A - Update RST driver to 16.0.2.1086. - Add PBR patch code. - Add Security LEN-20503 - Update WU warning message - Fix Lenovo Logo shows a little right side when press F11. CHANGES for M1ZKT20A - Update MCU to 0x84(KabyLake) - Add logo patch code. - Add WFU patch code. - Fix Time & Date format is not correct - Update readme.txt of JY package. CHANGES for M1ZKT19A - Update MCU to 0x80(KBL) 0xC2(SKL) - Fix TPM2.0 can not down to TPM1.2 under shell. - Fix Device of M.2 SSD changed not show POST error - Fix Can not boot to "System Recovery Options" page when press F12. - Fix It also can boot Network when run bootdev.nsh -pxe disable. - Remove linkage between CSM and PXE IPV4/IPV6 Network Stack - Fix The USB function also can be used when disabled USB port. - Fix Can not switch TPM via CFGWIN.exe on JW package. - Fix "Configure SATA as" can load defaults by pressing F9. - Fix Eslogo still display after flash user-defined logo CHANGES for M1ZKT18A - Initial Production BIOS release