First published: Mon Nov 21 2022(Updated: )
A potential security vulnerability has been identified in certain HP Workstation BIOS (UEFI firmware) which may allow arbitrary code execution. HP is releasing firmware mitigations for the potential vulnerability.
Credit: hp-security-alert@hp.com
Affected Software | Affected Version | How to fix |
---|---|---|
Hp Z1 All-in-one G3 Firmware | =01.31 | |
Hp Z1 All-in-one G3 | ||
Hp Z2 Mini G3 Firmware | =01.83 | |
Hp Z2 Mini G3 | ||
Hp Z2 Mini G4 Firmware | =01.08.01 | |
Hp Z2 Mini G4 | ||
Hp Z2 Mini G5 Firmware | =01.03.00_rev_a | |
Hp Z2 Mini G5 | ||
Hp Z2 Small Form Factor G4 Firmware | =01.08.01 | |
Hp Z2 Small Form Factor G4 | ||
Hp Z2 Small Form Factor G5 Firmware | =01.03.00_rev_a | |
Hp Z2 Small Form Factor G5 | ||
Hp Z2 Small Form Factor G8 Firmware | =01.03.00_rev_a | |
Hp Z2 Small Form Factor G8 | ||
Hp Z2 Tower G4 Firmware | =01.08.01 | |
Hp Z2 Tower G4 | ||
Hp Z2 Tower G5 Firmware | =01.03.00_rev_a | |
Hp Z2 Tower G5 | ||
Hp Z2 Tower G8 Firmware | =01.03.00_rev_a | |
Hp Z2 Tower G8 | ||
Hp Z238 Microtower Firmware | =01.83 | |
Hp Z238 Microtower | ||
Hp Z240 Small Form Factor Firmware | =01.83 | |
Hp Z240 Small Form Factor | ||
Hp Z240 Tower Firmware | =01.83 | |
Hp Z240 Tower | ||
Hp Z4 G4 Firmware | =02.75 | |
Hp Z4 G4 | ||
Hp Z440 Firmware | =2.58 | |
Hp Z440 | ||
Hp Z6 G4 Firmware | =02.75 | |
Hp Z6 G4 | ||
Hp Z640 Firmware | =2.58 | |
Hp Z640 | ||
Hp Z8 G4 Firmware | =02.75 | |
Hp Z8 G4 | ||
Hp Z840 Firmware | =2.58 | |
Hp Z840 | ||
Hp Zcentral 4r Firmware | =01.18 | |
Hp Zcentral 4r |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2021-3661 refers to a potential security vulnerability identified in certain HP Workstation BIOS (UEFI firmware) that may allow arbitrary code execution.
The HP Z1 All-in-one G3, HP Z2 Mini G3, HP Z2 Mini G4, HP Z2 Mini G5, HP Z2 Small Form Factor G4, HP Z2 Small Form Factor G5, HP Z2 Small Form Factor G8, HP Z2 Tower G4, HP Z2 Tower G5, HP Z2 Tower G8, HP Z238 Microtower, HP Z240 Small Form Factor, HP Z240 Tower, HP Z4 G4, HP Z440, HP Z6 G4, HP Z640, HP Z8 G4, and HP Z840 are affected by CVE-2021-3661.
CVE-2021-3661 has a severity rating of 8.4, which is considered high.
HP is releasing firmware mitigations for the vulnerability. Please refer to the HP support document for more information on the mitigation steps.
You can find more information about CVE-2021-3661 in the HP support document available at the provided reference link.