9
CVE-2019-16284
- EPSS 0.32%
- Veröffentlicht 05.11.2019 21:15:13
- Zuletzt bearbeitet 21.11.2024 04:30:27
- Quelle hp-security-alert@hp.com
- Teams Watchlist Login
- Unerledigt Login
A potential security vulnerability has been identified in multiple HP products and versions which involves possible execution of arbitrary code during boot services that can result in elevation of privilege. The EFI_BOOT_SERVICES structure might be overwritten by an attacker to execute arbitrary SMM (System Management Mode) code. A list of affected products and versions are available in https://support.hp.com/rs-en/document/c06456250.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Hp ≫ 260 G1 Dm Firmware Version < 2.27
Hp ≫ 280 Pro G1 Firmware Version < 80.3
Hp ≫ 285 G2 Firmware Version < a0.23
Hp ≫ 340 G3 Firmware Version < f.48
Hp ≫ 340 G4 Firmware Version < f.55
Hp ≫ 346 G3 Firmware Version < f.48
Hp ≫ 346 G4 Firmware Version < f.46
Hp ≫ 348 G3 Firmware Version < f.48
Hp ≫ 348 G4 Firmware Version < f.55
Hp ≫ Elite Slice Firmware Version < 2.42
Hp ≫ Elite X2 1011 G1 Firmware Version < 1.27
Hp ≫ Elite X2 1012 G1 Firmware Version < 1.42
Hp ≫ Elitebook 1030 G1 Firmware Version < 1.42
Hp ≫ Elitebook 1040 G2 Firmware Version < 1.17
Hp ≫ Elitebook 720 G1 Firmware Version < 1.48
Hp ≫ Elitebook 720 G2 Firmware Version < 1.29
Hp ≫ Elitebook 740 G1 Firmware Version < 1.48
Hp ≫ Elitebook 740 G2 Firmware Version < 1.29
Hp ≫ Elitebook 750 G1 Firmware Version < 1.48
Hp ≫ Elitebook 750 G2 Firmware Version < 1.29
Hp ≫ Elitebook 820 G1 Firmware Version < 1.48
Hp ≫ Elitebook 820 G2 Firmware Version < 1.29
Hp ≫ Elitebook 820 G3 Firmware Version < 1.42
Hp ≫ Elitebook 828 G3 Firmware Version < 1.42
Hp ≫ Elitebook 840 G1 Firmware Version < 1.48
Hp ≫ Elitebook 840 G2 Firmware Version < 1.29
Hp ≫ Elitebook 840 G3 Firmware Version < 1.42
Hp ≫ Elitebook 848 G3 Firmware Version < 1.42
Hp ≫ Elitebook 850 G1 Firmware Version < 1.48
Hp ≫ Elitebook 850 G2 Firmware Version < 1.29
Hp ≫ Elitebook 850 G3 Firmware Version < 1.42
Hp ≫ Elitebook Folio 1020 G1 Firmware SwEdition- Version < 1.24
Hp ≫ Elitebook Folio 1020 G1 Firmware SwEditionspecial Version < 1.24
Hp ≫ Elitebook Folio 1040 G1 Firmware Version < 1.44
Hp ≫ Elitebook Folio 1040 G3 Firmware Version < 1.42
Hp ≫ Elitebook Folio 9480m Firmware Version < 1.49
Hp ≫ Elitebook Folio G1 Firmware Version < 1.42
Hp ≫ Elitebook Revolve 810 G2 Firmware Version < 1.45
Hp ≫ Elitebook Revolve 810 G3 Firmware Version < 1.2
Hp ≫ Elitedesk 800 G2 Dm Firmware Version < 2.42
Hp ≫ Elitedesk 800 G2 Sff Firmware Version < 2.42
Hp ≫ Elitedesk 800 G2 Twr Firmware Version < 2.42
Hp ≫ Eliteone 800 G2 Aio Firmware Version < 2.42
Hp ≫ Elitepad 1000 G2 Firmware Version < 1.48
Hp ≫ Mp9 G2 Retail System Firmware Version < 2.42
Hp ≫ Pro Tablet 10 Ee G1 Firmware Version < 1.31
Hp ≫ Pro Tablet 608 G1 Firmware Version < 1.21
Hp ≫ Pro Tablet 610 G1 Firmware Version < f.16
Hp ≫ Pro X2 612 G1 Firmware Version < 1.48
Hp ≫ Probook 11 G1 Firmware SwEditioneducation Version < 1.17
Hp ≫ Probook 11 G2 Firmware SwEditioneducation Version < 1.42
Hp ≫ Probook 430 G1 Firmware Version < 1.49
Hp ≫ Probook 430 G2 Firmware Version < 1.52
Hp ≫ Probook 430 G3 Firmware Version < 1.42
Hp ≫ Probook 440 G1 Firmware Version < 1.49
Hp ≫ Probook 440 G2 Firmware Version < 1.52
Hp ≫ Probook 440 G3 Firmware Version < 1.42
Hp ≫ Probook 450 G1 Firmware Version < 1.49
Hp ≫ Probook 450 G2 Firmware Version < 1.52
Hp ≫ Probook 450 G3 Firmware Version < 1.42
Hp ≫ Probook 470 G1 Firmware Version < 1.49
Hp ≫ Probook 470 G2 Firmware Version < 1.52
Hp ≫ Probook 470 G3 Firmware Version < 1.42
Hp ≫ Probook 640 G1 Firmware Version < 1.49
Hp ≫ Probook 640 G2 Firmware Version < 1.42
Hp ≫ Probook 650 G1 Firmware Version < 1.49
Hp ≫ Probook 650 G2 Firmware Version < 1.42
Hp ≫ Probook X360 11 G1 Firmware SwEditioneducation Version < 1.3
Hp ≫ Prodesk 400 G1 Dm Firmware Version < 2.27
Hp ≫ Prodesk 400 G2 Dm Firmware Version < 2.42
Hp ≫ Prodesk 400 G2.5 Sff Firmware Version < 2.26
Hp ≫ Prodesk 400 G3 Sff Firmware Version < 2.42
Hp ≫ Prodesk 405 G2 Mt Firmware Version < 2.29
Hp ≫ Prodesk 485 G2 Mt Firmware Version < 2.29
Hp ≫ Prodesk 480 G3 Sff Firmware Version < 2.42
Hp ≫ Prodesk 490 G2 Mt Firmware Version < 2.31
Hp ≫ Prodesk 490 G3 Sff Firmware Version < 2.42
Hp ≫ Prodesk 498 G2 Mt Firmware Version < 2.31
Hp ≫ Prodesk 498 G3 Sff Firmware Version < 2.42
Hp ≫ Prodesk 600 G2 Dm Firmware Version < 2.42
Hp ≫ Prodesk 600 G2 Sff Firmware Version < 2.42
Hp ≫ Proone 400 G2 Aio Firmware Version < 2.42
Hp ≫ Proone 600 G2 Aio Firmware Version < 2.42
Hp ≫ Rp2 Retail System Firmware Version < 2.21
Hp ≫ Rp9 G1 Retail System 9015 Firmware Version < 2.42
Hp ≫ Rp9 G1 Retail System 9018 Firmware Version < 2.42
Hp ≫ Zbook 14 G2 Firmware Version < 1.29
Hp ≫ Zbook 14 Firmware Version < 1.48
Hp ≫ Zbook 15 G2 Firmware Version < 1.25
Hp ≫ Zbook 15 G3 Firmware Version < 1.42
Hp ≫ Zbook 15 Firmware Version < 1.46
Hp ≫ Zbook 15u G2 Firmware Version < 1.29
Hp ≫ Zbook 15u G3 Firmware Version < 1.42
Hp ≫ Zbook 17 G2 Firmware Version < 1.25
Hp ≫ Zbook 17 G3 Firmware Version < 1.42
Hp ≫ Zbook 17 Firmware Version < 1.46
Hp ≫ Zbook Studio G3 Firmware Version < 1.42
Hp ≫ Z1 G3 Firmware Version < 1.26
Hp ≫ Z2 Mini G3 Firmware Version < 1.77
Hp ≫ Z238 Microtower Firmware Version < 1.77
Hp ≫ Z240 Sff Firmware Version < 1.77
Hp ≫ Z240 Tower Firmware Version < 1.77
Hp ≫ Sprout Pro Firmware Version < a0.14
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
Typ | Quelle | Score | Percentile |
---|---|---|---|
EPSS | FIRST.org | 0.32% | 0.546 |
Quelle | Base Score | Exploit Score | Impact Score | Vector String |
---|---|---|---|---|
nvd@nist.gov | 7.2 | 1.2 | 5.9 |
CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H
|
nvd@nist.gov | 9 | 8 | 10 |
AV:N/AC:L/Au:S/C:C/I:C/A:C
|