Lenovo Rescue and Recovery version 4.20 suffers from a heap overflow in the file system filter kernel driver which could allow an attacker to overwrite kernel memory leading to elevation of privilege.
You can download this advisory from the following link: https://packetstormsecurity.com/files/download/70851/2008-002-lenovornr.txt
Source: https://packetstormsecurity.com/files/70851/Trustix-Secure-Linux-Security-Advisory-2008.2.html

