8.4
Advisory Published
Updated

CVE-2022-37018

First published: Mon Nov 21 2022(Updated: )

A potential vulnerability has been identified in the system BIOS for certain HP PC products which may allow escalation of privileges and code execution. HP is releasing firmware updates to mitigate the potential vulnerability.

Credit: hp-security-alert@hp.com

Affected SoftwareAffected VersionHow to fix
HP z1 g3 firmware<01.33
HP z1 g3
HP z2 mini g3 Firmware<01.85
HP Z2 Mini G3
HP z238 Microtower Firmware<01.85
HP z238 microtower
HP z240 sff firmware<01.85
HP z240 sff
HP Z240 Tower Firmware<01.85
HP Z240 Tower
HP Engage One AIO System Firmware<02.44
HP Engage One Pro AIO System
HP mp9 g2 retail System firmware<02.59
HP mp9 g2 retail System firmware
HP rp9 g1 retail system firmware<02.59
HP rp9 g1 retail system
hp elite slice firmware<02.59
hp elite slice
HP EliteDesk 800 35w G2 Desktop Mini Firmware<02.59
HP EliteDesk 800 35W G2 Desktop Mini PC
HP EliteDesk 800 35w G3 Desktop Mini Firmware<02.44
HP Elitedesk 800 35w G3 Desktop Mini
HP EliteDesk 800 G2 Desktop Mini PC Firmware<02.59
HP EliteDesk 800 65W G2 Desktop Mini PC
HP elitedesk 800 65w g3 desktop mini firmware<02.44
HP EliteDesk 800 65W G3 Desktop Mini PC
HP EliteDesk 800 G2 SFF Firmware<02.59
HP EliteDesk 800 G2 SFF
HP EliteOne 800 G2 AIO Firmware<02.59
HP EliteOne 800 G2 AIO
HP EliteOne 800 G3 Firmware<02.44
HP EliteOne 800 G3
HP ProDesk 400 G3 DM Firmware<02.44
HP ProDesk 400 G3 DM
HP ProDesk 400 G4 Microtower Firmware<02.44
HP ProDesk 400 G4 Microtower
HP ProDesk 400 G4 SFF Firmware<02.44
HP ProDesk 400 G4 SFF
HP ProDesk 480 G4 Microtower PC Firmware<02.44
HP ProDesk 480 G4 Microtower PC
HP ProDesk 600 G2 DM Firmware<02.59
HP ProDesk 600 G2 DM
HP ProDesk 600 G2 Microtower PC Firmware<02.59
HP ProDesk 600 G2 Microtower PC
HP ProDesk 600 G2 SFF Firmware<02.59
HP ProDesk 600 G2 SFF
HP ProDesk 600 G3 Desktop Mini PC Firmware<02.44
HP ProDesk 600 G3 Desktop Mini
HP ProDesk 600 G3 Microtower<02.44
HP ProDesk 600 G3 SFF
HP ProDesk 600 G3 Firmware<02.44
HP ProDesk 600 G3 SFF
HP ProDesk 680 G2 Microtower PC Firmware<02.59
HP ProDesk 680 G2 Microtower
HP ProDesk 680 G3 Microtower PC Firmware<02.44
HP ProDesk 680 G3 Microtower
HP ProOne 400 G2 AIO Firmware<02.59
HP ProOne 400 G2 AIO Firmware
HP ProOne 400 G3 Firmware<02.44
HP ProOne 400 G3 AIO
HP proone 480 g3 firmware<02.44
HP ProOne 480 G3
HP proone 600 g2 aio firmware<02.59
HP proone 600 g2 aio
HP proone 600 g3 firmware<02.44
HP ProOne 600 G3
HP Elite x2 1012 G1 Tablet with Travel Keyboard Firmware<01.58
HP Elite x2 1012 G1 Tablet with Travel Keyboard Firmware
hp elite x2 1012 g2 firmware<01.44
HP EliteBook Folio 1012 x2 G2
HP EliteBook 1030 G1 Firmware<01.58
HP EliteBook 1030 G1
HP EliteBook Folio 1040 G3 Firmware<01.58
HP EliteBook 1040 G3
hp elitebook 1040 g4 firmware<01.44
hp elitebook 1040 g4
HP EliteBook 820 G3 Firmware<01.58
HP EliteBook 820 G3
HP EliteBook 820 G4 Firmware<01.44
HP EliteBook 820 G4
HP EliteBook 828 G3 Firmware<01.58
HP EliteBook 828 G3
HP EliteBook 828 G4 Firmware<01.44
HP EliteBook 828 G4
HP EliteBook 840 G3 Firmware<01.58
HP EliteBook 840 G3
HP EliteBook 840 G4 Firmware<01.44
HP EliteBook 840 G4
HP EliteBook 848 G3 Firmware<01.58
HP EliteBook 848 G3
HP EliteBook 848 G4 Firmware<01.44
HP EliteBook 848 G4
HP EliteBook 850 G3 Firmware<01.58
HP EliteBook 850 G3
HP EliteBook 850 G4 Firmware<01.44
HP EliteBook 850 G4
HP EliteBook Folio G1 Firmware<01.58
HP EliteBook Folio G1
hp elitebook x360 1020 g2 firmware<01.44
hp elitebook x360 1020 g2
hp elitebook x360 1030 g2 firmware<01.44
hp elitebook x360 1030 g2
HP ProBook 11 G2 Firmware<01.58
HP ProBook 11 G2
hp pro x2 612 g2 firmware<01.44
hp pro x2 612 g2
HP ProBook 430 G4 Firmware<01.44
HP ProBook 430 G4
HP ProBook 440 G3 Firmware<01.58
HP ProBook 440 G3
HP ProBook 440 G4 Firmware<01.44
HP ProOne 440 G4
HP ProBook 446 G3 Firmware<01.58
HP ProBook 446 G3
HP ProBook 450 G4 Firmware<01.44
HP ProBook 450 G4
HP ProBook 470 G3 Firmware<01.58
HP ProBook 470 G3
HP ProBook 470 G4 Firmware<01.44
HP ProBook 470 G4
HP ProBook 640 G2 Firmware<01.58
HP ProBook 640 G2
HP ProBook 640 G3 Firmware<01.44
HP ProBook 640 G3
HP ProBook 650 G2 Firmware<01.58
HP ProBook 650 G2
HP ProBook 650 G3 Firmware<01.44
HP ProBook 650 G3
HP ProBook x360 11 G2 Firmware<1.46
HP ProBook x360 11 G2
HP ZBook 14u G4 Firmware<01.44
HP ZBook 14u G4 Firmware
HP ZBook 15 G3 Firmware<01.58
HP ZBook 15u G3
HP ZBook 15 G4 Firmware<01.44
HP ZBook 15u G4
HP ZBook 15u G3 Firmware<01.58
HP ZBook 15u G3
HP ZBook 15u G4 Firmware<01.44
HP ZBook 15u G4
HP ZBook 17 G3 Firmware<01.58
HP ZBook 17 G3 Firmware
HP ZBook 17 G4 Firmware<01.44
HP ZBook 17 G4 Firmware
hp zbook studio g3 firmware<01.58
HP ZBook Studio G3
hp zbook studio g4 firmware<01.44
HP ZBook Studio x2 G4
HP ZBook Studio x2 G4 Firmware<01.44
HP ZBook Studio x2 G4

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

Frequently Asked Questions

  • What is the severity of CVE-2022-37018?

    CVE-2022-37018 has been classified as a high severity vulnerability that may allow for privilege escalation and code execution.

  • How do I fix CVE-2022-37018?

    To fix CVE-2022-37018, users should update their system BIOS to the latest firmware version provided by HP.

  • Which HP products are affected by CVE-2022-37018?

    CVE-2022-37018 affects several HP PC products, including various models from the Z1 G3, Z2 Mini G3, Z240 series, and several other HP lines.

  • What are the potential risks of CVE-2022-37018?

    The risks associated with CVE-2022-37018 include potential unauthorized access and control over the affected systems.

  • Is there a workaround for CVE-2022-37018 until I update my BIOS?

    Currently, there are no known effective workarounds for CVE-2022-37018; updating the BIOS is recommended as the best mitigation.

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2025 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203