The package of code with the SMM vulnerability was …
The package of code with the SMM vulnerability was developed on top of a common code base provided to the IBV by Intel. Importantly, because Lenovo did not develop the vulnerable SMM code and is
still in the process of determining the identity of the original author,
it does not know its originally intended purpose.
System Management Mode (SMM) BIOS Vulnerability – Lenovo Support