7.8
Advisory Published
Updated

CVE-2023-26300

First published: Wed Oct 18 2023(Updated: )

A potential security vulnerability has been identified in the system BIOS for certain HP PC products which might allow escalation of privilege. HP is releasing firmware updates to mitigate the potential vulnerability.

Credit: hp-security-alert@hp.com

Affected SoftwareAffected VersionHow to fix
HP Desktop Pro A 300 G3<f.13
HP Desktop Pro A 300 G3 Firmware
HP Desktop Pro A G3 Firmware<f.13
HP Desktop Pro A G3 Firmware
HP Desktop Pro A G3 Microtower Firmware<f.13
HP Desktop Pro A G3 Microtower Firmware
HP Zhan 66 Pro A G1 R Microtower<f.13
HP Zhan 66 Pro A G1 Microtower
HP t638 Thin Client Firmware<00.01.13
HP t638 Thin Client Firmware
HP Stream 11 Pro G5 Notebook PC<f.18
HP Stream 11 Pro G5
HP 240 g10 Firmware<f.05
HP ProOne 240 G10
HP 240 G6 Firmware<f.55
HP 240 G6 Firmware
HP 240 G7 Firmware<f.75
HP 240 G7 Firmware
HP 240 G9 Firmware<f.06
HP 240 G9
HP 245 firmware<f.06
HP 245 G10
HP 245 firmware<f.70
HP 245
HP 245 firmware<f.26
HP 245
HP 245 firmware<f.11
HP 245
HP 245 G1 Firmware<f.11
HP 245
HP 246 Firmware<f.55
HP 246 G6 Firmware
HP 246 g7<f.75
HP 246 g7 firmware
HP 247 G8<f.70
HP 247 G8
HP 250 g10 Firmware<f.06
HP 250 g10 Firmware
HP 250 G6 Firmware<f.73
HP 250 G6
HP 250 G7 Firmware<f.46
HP 250 G7 Firmware
HP 250 g9 firmware<f.63
HP 250 G9
HP 255 g10 Firmware<f.09
HP 255 g10 Firmware
HP 255 G6 Firmware<f.56
HP 255 G6 Firmware
HP 255 G7 Firmware<f.41
HP 255 G7 Firmware
HP 255 G8 Firmware<f.37
HP 255 G8
HP 255 g9 firmware<f.12
HP 255 G9
HP 256 G6 Firmware<f.73
HP 256 G6
HP 256 G7 Firmware<f.46
HP 256 G7 Firmware
HP 258 g6 firmware<f.73
HP 258 G6
HP 258 g7 firmware<f.46
HP 258 G7
HP 340s G7<f.39
HP 340 G7 Firmware
HP 348 g7 firmware<f.39
HP 348 G7
HP 470 G10<f.03
HP 470 G10
HP 470 G7 Firmware<f.70
HP ProBook 470 G7
HP 470 G9 Firmware<f.06
HP 470 G9 Firmware
HP Stream 11 Pro G4 Firmware<f.30
HP Stream 11 Pro G4 Notebook PC
HP ZBook 15 G5 Mobile Workstation Firmware<f.37
HP ZBook 15 G5 Mobile Workstation Firmware
HP Zhan 99 G3 Mobile Workstation Firmware<f.19
HP Zhan 99 G3 Mobile Workstation Firmware
HP Zhan 99 G4 Mobile Workstation Firmware<f.09
HP Zhan 99 G4
HP 200 g4 22 all-in-one PC firmware<f.50
HP 200 g4 22 all-in-one PC (rom family ssid 86f2)
HP 200 G4 22 All-in-One PC (ROM Family SSID 86F3) Firmware<f.50
HP 200 g4 22 all-in-one PC (rom family ssid 86f3)
HP 200 g4 22 all-in-one PC firmware<f.50
HP 200 g4 22 all-in-one PC
HP 200 Pro G4 22 All-in-One PC Firmware<f.50
HP 200 Pro G4 22 All-in-One PC
HP 200 Pro G4 22 All-in-One PC firmware<f.50
HP 200 Pro G4 22 All-in-One PC
HP 200 Pro G4 22 All-in-One PC Firmware<f.50
HP 200 Pro G4 22 All-in-One PC
HP 205 g4 22 all-in-one PC (rom family ssid 86f2) firmware<f.50
HP 205 g4 22 all-in-one PC
HP 205 g4 22 all-in-one PC firmware<f.50
HP 205 g4 22 all-in-one PC
HP 205 g4 22 all-in-one PC firmware<f.50
HP 205 g4 22 all-in-one PC
HP 205 g8 24 all-in-one PC (rom family ssid 8923) firmware<f.20
HP 205 G8 24 all-in-one PC
HP 205 G8 24 All-in-One PC Firmware<f.20
HP 205 G8 24 All-in-One PC
HP 205 Pro G4 22 All-in-One PC firmware<f.50
HP 205 Pro G4 22 All-in-One PC
HP 205 Pro G4 22 All-in-One PC (ROM Family SSID 86F3) Firmware<f.50
HP 205 Pro G4 22 All-in-One PC
HP 205 Pro G4 22 All-in-One PC Firmware<f.50
HP 205 Pro G4 22 All-in-One PC
HP 205 Pro G8 24 All-in-One PC Firmware<f.20
HP 205 Pro G8 24 All-in-One PC
HP 205 Pro G8 24 All-in-One PC Firmware<f.20
HP 205 Pro G8 24 All-in-One PC
HP 285 G6 Microtower Firmware<f.26
HP 285 g6 microtower \(rom family ssid 871e\)
HP 285 g8 microtower firmware<f.30
HP 285 G8 Microtower
HP 285 Pro G6 Microtower (ROM Family SSID 871E) Firmware<f.26
HP 285 Pro G6 Microtower
HP 285 Pro G8 Microtower Firmware<f.30
HP 285 Pro G8 Microtower (ROM Family SSID 870E)
HP 295 G8 Microtower Firmware<f.30
HP 295 G8 Microtower
HP Pro SFF 280 G9 Desktop Firmware<f.22
HP Pro SFF 280 G9 Desktop
HP Pro SFF 280 G9 Desktop Firmware<f.12
HP Pro SFF 280 G9 Desktop
HP Pro SFF 290 G9 Desktop Firmware<f.22
HP Pro SFF 290 G9 Desktop
HP Pro SFF 290 G9 Desktop Firmware<f.12
HP Pro SFF 290 G9 Desktop (ROM Family SSID 8BC3)
HP Pro SFF Zhan 66 G9 Desktop (ROM Family SSID 89B4) Firmware<f.22
HP Pro SFF Zhan 66 G9 Desktop
HP Pro SFF Zhan 66 G9 Desktop Firmware<f.12
HP Pro SFF Zhan 66 G9 Desktop
HP Pro Tower 200 G9 Desktop (ROM Family SSID 89B4) Firmware<f.22
HP Pro Tower 200 G9 Desktop
HP Pro Tower 200 G9 Desktop (ROM Family SSID 89B3) Firmware<f.22
HP Pro Tower 200 G9 Desktop
HP Pro Tower 200 G9 Desktop Firmware<f.12
HP Pro Tower 200 G9 Desktop
HP Pro Tower 280 G9 Desktop (ROM Family SSID 89B4) Firmware<f.22
HP Pro Tower 280 G9 Desktop
HP Pro Tower 280 G9 Desktop (ROM Family SSID 89B3) Firmware<f.22
HP Pro Tower 280 G9 Desktop
HP Pro Tower 290 G9 Desktop Firmware<f.22
HP Pro Tower 290 G9 Desktop
HP Pro Tower 290 G9 Desktop Firmware<f.22
HP Pro Tower 290 G9 Desktop
HP Pro Tower 290 G9 Desktop (ROM Family SSID 8BC3) Firmware<f.12
HP Pro Tower 290 G9 Desktop
HP Pro Tower Zhan 99 G9 Desktop (ROM Family SSID 89B4) Firmware<f.22
HP Pro Tower Zhan 99 G9 Desktop
HP Pro Tower Zhan 99 G9 Desktop (ROM Family SSID 89B3) Firmware<f.22
HP Pro Tower Zhan 99 G9 Desktop
HP Pro Tower Zhan 99 G9 Desktop Firmware<f.12
HP Pro Tower Zhan 99 G9 Desktop
HP ProOne 240 G10 Firmware<f.10
HP ProOne 240 G10
HP ProOne 240 G10 Firmware<f.05
HP ProOne 240 G10
HP ProOne 240 G9 Firmware<f.20
HP ProOne 240 G9
HP vr backpack g2 \(rom family ssid 8590\) firmware<f.29
HP VR Backpack G2
HP Zhan 66 Pro A G10<f.05
HP Zhan 66 Pro A G10
HP Zhan 66 Pro A G4 All-in-One PC<f.20
HP Zhan 66 Pro A G4 All-in-One PC
HP Zhan 66 Pro A G4 All-in-One PC<f.20
HP Zhan 66 Pro A G4 All-in-One PC
HP Zhan 99 Pro A G2 Microtower<f.20
HP Zhan 99 Pro A G2 Microtower
HP 255 g8 firmware<f.37
HP 255 g8
HP 255 g8 (rom family ssid 8905) firmware<f.37
HP 255 g8 (ROM Family SSID 8905)
HP 255 g8 firmware<f.37
HP 255 g8 (rom family ssid 890e)

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

Frequently Asked Questions

  • What is the severity of CVE-2023-26300?

    CVE-2023-26300 has a severity rating that indicates a potential for privilege escalation in affected HP PC products.

  • How do I fix CVE-2023-26300?

    To mitigate CVE-2023-26300, HP is releasing firmware updates that should be installed on affected devices.

  • What products are impacted by CVE-2023-26300?

    CVE-2023-26300 affects several HP PC products, including specific models of the HP Desktop Pro, HP Stream, and HP ProOne series.

  • Is my HP device vulnerable to CVE-2023-26300?

    You can check if your HP device is vulnerable to CVE-2023-26300 by verifying the firmware version against HP's provided updates.

  • What should I do if I am unable to update my firmware for CVE-2023-26300?

    If you're unable to update your firmware to address CVE-2023-26300, it is recommended to consult HP support for further assistance.

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2025 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203