2023-10-18
|
CVE-2023-26300
|
A potential security vulnerability has been identified in the system BIOS for certain HP PC products which might allow escalation of privilege. HP is releasing firmware updates to mitigate the potential vulnerability.
|
200_g4_22_all\-In\-One_pc_\(Rom_family_ssid_86f0\)_firmware, 200_g4_22_all\-In\-One_pc_\(Rom_family_ssid_86f2\)_firmware, 200_g4_22_all\-In\-One_pc_\(Rom_family_ssid_86f3\)_firmware, 200_pro_g4_22_all\-In\-One_pc_\(Rom_family_ssid_86f0\)_firmware, 200_pro_g4_22_all\-In\-One_pc_\(Rom_family_ssid_86f2\)_firmware, 200_pro_g4_22_all\-In\-One_pc_\(Rom_family_ssid_86f3\)_firmware, 205_g4_22_all\-In\-One_pc_\(Rom_family_ssid_86f0\)_firmware, 205_g4_22_all\-In\-One_pc_\(Rom_family_ssid_86f2\)_firmware, 205_g4_22_all\-In\-One_pc_\(Rom_family_ssid_86f3\)_firmware, 205_g8_24_all\-In\-One_pc_\(Rom_family_ssid_8923\)_firmware, 205_g8_24_all\-In\-One_pc_\(Rom_family_ssid_8924\)_firmware, 205_pro_g4_22_all\-In\-One_pc_\(Rom_family_ssid_86f0\)_firmware, 205_pro_g4_22_all\-In\-One_pc_\(Rom_family_ssid_86f2\)_firmware, 205_pro_g4_22_all\-In\-One_pc_\(Rom_family_ssid_86f3\)_firmware, 205_pro_g8_24_all\-In\-One_pc_\(Rom_family_ssid_8923\)_firmware, 205_pro_g8_24_all\-In\-One_pc_\(Rom_family_ssid_8924\)_firmware, 240_g10_firmware, 240_g6_firmware, 240_g7_firmware, 240_g9_firmware, 245_firmware, 245_g10_firmware, 245_g7_firmware, 245_g8_firmware, 245_g9_firmware, 246_g6_firmware, 246_g7_firmware, 247_g8_firmware, 250_g10_firmware, 250_g6_firmware, 250_g7_firmware, 250_g9_firmware, 255_g10_firmware, 255_g6_firmware, 255_g7_firmware, 255_g8_\(Rom_family_ssid_87d1\)_firmware, 255_g8_\(Rom_family_ssid_8905\)_firmware, 255_g8_\(Rom_family_ssid_890e\)_firmware, 255_g8_firmware, 255_g9_firmware, 256_g6_firmware, 256_g7_firmware, 258_g6_firmware, 258_g7_firmware, 285_g6_microtower_\(Rom_family_ssid_871e\)_firmware, 285_g8_microtower_\(Rom_family_ssid_870e\)_firmware, 285_pro_g6_microtower_\(Rom_family_ssid_871e\)_firmware, 285_pro_g8_microtower_\(Rom_family_ssid_870e\)_firmware, 295_g8_microtower_\(Rom_family_ssid_870e\)_firmware, 340_g7_firmware, 348_g7_firmware, 470_g10_firmware, 470_g7_firmware, 470_g9_firmware, Desktop_pro_a_300_g3_firmware, Desktop_pro_a_g3_firmware, Desktop_pro_a_g3_microtower_firmware, Pro_sff_280_g9_desktop_\(Rom_family_ssid_89b4\)_firmware, Pro_sff_280_g9_desktop_\(Rom_family_ssid_8bc3\)_firmware, Pro_sff_290_g9_desktop_\(Rom_family_ssid_89b4\)_firmware, Pro_sff_290_g9_desktop_\(Rom_family_ssid_8bc3\)_firmware, Pro_sff_zhan_66_g9_desktop_\(Rom_family_ssid_89b4\)_firmware, Pro_sff_zhan_66_g9_desktop_\(Rom_family_ssid_8bc3\)_firmware, Pro_tower_200_g9_desktop_\(Rom_family_ssid_89b3\)_firmware, Pro_tower_200_g9_desktop_\(Rom_family_ssid_89b4\)_firmware, Pro_tower_200_g9_desktop_\(Rom_family_ssid_8bc3\)_firmware, Pro_tower_280_g9_desktop_\(Rom_family_ssid_89b3\)_firmware, Pro_tower_280_g9_desktop_\(Rom_family_ssid_89b4\)_firmware, Pro_tower_290_g9_desktop_\(Rom_family_ssid_89b3\)_firmware, Pro_tower_290_g9_desktop_\(Rom_family_ssid_89b4\)_firmware, Pro_tower_290_g9_desktop_\(Rom_family_ssid_8bc3\)_firmware, Pro_tower_zhan_99_g9_desktop_\(Rom_family_ssid_89b3\)_firmware, Pro_tower_zhan_99_g9_desktop_\(Rom_family_ssid_89b4\)_firmware, Pro_tower_zhan_99_g9_desktop_\(Rom_family_ssid_8b3c\)_firmware, Proone_240_g10_\(Rom_family_ssid_8b4c\)_firmware, Proone_240_g10_\(Rom_family_ssid_8b4d\)_firmware, Proone_240_g9_\(Rom_family_ssid_89eb\)_firmware, Stream_11_pro_g4_firmware, Stream_11_pro_g5_firmware, T638_thin_client_firmware, Vr_backpack_g2_\(Rom_family_ssid_8590\)_firmware, Zbook_15_g5_mobile_workstation_firmware, Zhan_66_pro_a_g10_\(Rom_family_ssid_8b4e\)_firmware, Zhan_66_pro_a_g1_r_microtower_firmware, Zhan_66_pro_a_g4_all\-In\-One_pc_\(Rom_family_ssid_8923\)_firmware, Zhan_66_pro_a_g4_all\-In\-One_pc_\(Rom_family_ssid_8924\)_firmware, Zhan_99_g3_mobile_workstation_firmware, Zhan_99_g4_mobile_workstation_firmware, Zhan_99_pro_a_g2_microtower_\(Rom_family_ssid_871e\)_firmware
|
7.8
|
|
|
2023-02-12
|
CVE-2022-43779
|
A potential Time-of-Check to Time-of-Use (TOCTOU) vulnerability has been identified in certain HP PC products using AMI UEFI Firmware (system BIOS) which might allow arbitrary code execution, denial of service, and information disclosure. AMI has released updates to mitigate the potential vulnerability.
|
218_pro_g5_mt_firmware, 260_g2_desktop_mini_firmware, 260_g3_desktop_mini_firmware, 260_g4_desktop_mini_firmware, 280_g3_microtower_pc_firmware, 280_g3_pci_microtower_pc_firmware, 288_pro_g3_microtower_pc_firmware, 290_g1_microtower_firmware, 348_g4_firmware, Desktop_pro_300_g3_firmware, Desktop_pro_a_300_g3_firmware, Desktop_pro_a_g2_firmware, Desktop_pro_a_g2_microtower_firmware, Desktop_pro_a_g3_firmware, Desktop_pro_a_g3_microtower_firmware, Desktop_pro_g3_firmware, Desktop_pro_g3_microtower_firmware, Desktop_pro_microtower_firmware, Rp2_retail_system_2000_firmware, Rp2_retail_system_2020_firmware, Rp2_retail_system_2030_firmware, Zhan_66_pro_a_g1_microtower_firmware, Zhan_66_pro_a_g1_r_microtower_firmware, Zhan_66_pro_g1_r_microtower_firmware, Zhan_86_pro_g1_microtower_firmware
|
7.0
|
|
|