Privilege Escalation and Code Execution Vulnerabilities in UEFI Firmware by HP
CVE-2021-39299
Key Information:
- Vendor
HP
- Vendor
- CVE Published:
- 16 February 2022
What is CVE-2021-39299?
Multiple vulnerabilities have been found in the UEFI firmware of several HP PC products, potentially allowing attackers to escalate privileges and execute arbitrary code. This breach could lead to unauthorized access and control over the affected systems, posing serious risks to users' data and system integrity. Users are encouraged to apply available patches and updates to mitigate the risk associated with these vulnerabilities.
Affected Version(s)
BUSINESS NOTEBOOK PCS BIOS; BUSINESS DESKTOP PCS BIOS; RETAIL POINT-OF-SALE SYSTEMS BIOS; WORKSTATIONS BIOS before 01.12.00
BUSINESS NOTEBOOK PCS BIOS; BUSINESS DESKTOP PCS BIOS; RETAIL POINT-OF-SALE SYSTEMS BIOS; WORKSTATIONS BIOS before 01.08.00
BUSINESS NOTEBOOK PCS BIOS; BUSINESS DESKTOP PCS BIOS; RETAIL POINT-OF-SALE SYSTEMS BIOS; WORKSTATIONS BIOS before 01.19.00