Lucene search

K
cve[email protected]CVE-2021-39298
HistoryFeb 16, 2022 - 5:15 p.m.

CVE-2021-39298

2022-02-1617:15:10
web.nvd.nist.gov
100
amd
system management mode
smm
vulnerability
arbitrary code execution
uefi firmware
security bypass
cve-2021-39298

7.2 High

CVSS2

Attack Vector

LOCAL

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:L/AC:L/Au:N/C:C/I:C/A:C

8.8 High

CVSS3

Attack Vector

LOCAL

Attack Complexity

LOW

Privileges Required

LOW

User Interaction

NONE

Scope

CHANGED

Confidentiality Impact

HIGH

Integrity Impact

HIGH

Availability Impact

HIGH

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H

8.8 High

AI Score

Confidence

High

0.0004 Low

EPSS

Percentile

12.7%

A potential vulnerability in AMD System Management Mode (SMM) interrupt handler may allow an attacker with high privileges to access the SMM resulting in arbitrary code execution which could be used by malicious actors to bypass security mechanisms provided in the UEFI firmware.

Affected configurations

NVD
Node
hpz1_entry_tower_g5_workstationMatch-
AND
hpz1_entry_tower_g5_workstation_firmwareRange<02.12.00
Node
hpz1_entry_tower_g6_workstationMatch-
AND
hpz1_entry_tower_g6_workstation_firmwareRange<02.10.00
Node
hpz1_g8_tower_desktop_pcMatch-
AND
hpz1_g8_tower_desktop_pc_firmwareRange<02.07.00
Node
hpz4_g4_workstation_\(core-x\)Match-
AND
hpz4_g4_workstation_\(core-x\)_firmwareRange<02.75linux_kernel
OR
hpz4_g4_workstation_\(core-x\)_firmwareRange<02.75windows_10
OR
hpz4_g4_workstation_\(core-x\)_firmwareRange<02.75windows_7
Node
hpz4_g4_workstation_\(xeon_w\)Match-
AND
hpz4_g4_workstation_\(xeon_w\)_firmwareRange<02.75linux_kernel
OR
hpz4_g4_workstation_\(xeon_w\)_firmwareRange<02.75windows_10
OR
hpz4_g4_workstation_\(xeon_w\)_firmwareRange<02.75windows_7
Node
hpz6_g4_workstationMatch-
AND
hpz6_g4_workstation_firmwareRange<02.75linux_kernel
OR
hpz6_g4_workstation_firmwareRange<02.75windows_10
OR
hpz6_g4_workstation_firmwareRange<02.75windows_7
Node
hpz8_g4_workstationMatch-
AND
hpz8_g4_workstation_firmwareRange<02.75linux_kernel
OR
hpz8_g4_workstation_firmwareRange<02.75windows_10
OR
hpz8_g4_workstation_firmwareRange<02.75windows_7
Node
hpengage_flex_mini_retail_systemMatch-
AND
hpengage_flex_mini_retail_system_firmwareRange<02.10.00
Node
hpmp9_g4_retail_system_firmwareRange<02.18.00
AND
hpmp9_g4_retail_systemMatch-
Node
hpelite_dragonfly_firmwareRange<01.12.00
AND
hpelite_dragonflyMatch-
Node
hpelite_dragonfly_g2_firmwareRange<01.08.00
AND
hpelite_dragonfly_g2Match-
Node
hpelite_dragonfly_max_firmwareRange<01.08.00
AND
hpelite_dragonfly_maxMatch-
Node
hpelite_x2_1013_g3_firmwareRange<01.19.00
AND
hpelite_x2_1013_g3Match-
Node
hpelite_x2_g4_firmwareRange<01.12.00
AND
hpelite_x2_g4Match-
Node
hpelite_x2_g8_tablet_firmwareRange<01.08.00
AND
hpelite_x2_g8_tabletMatch-
Node
hpelitebook_1050_g1_firmwareRange<01.19.00
AND
hpelitebook_1050_g1Match-
Node
hpelitebook_830_g5_firmwareRange<01.19.00
AND
hpelitebook_830_g5Match-
Node
hpelitebook_830_g6_firmwareRange<01.12.00
AND
hpelitebook_830_g6Match-
Node
hpelitebook_830_g7_firmwareRange<01.08.00
AND
hpelitebook_830_g7Match-
Node
hpelitebook_830_g8_firmwareRange<01.08.00
AND
hpelitebook_830_g8Match-
Node
hpelitebook_836_g5_firmwareRange<01.19.00
AND
hpelitebook_836_g5Match-
Node
hpelitebook_836_g6_firmwareRange<01.12.00
AND
hpelitebook_836_g6Match-
Node
hpelitebook_840_aero_g8_firmwareRange<01.08.00
AND
hpelitebook_840_aero_g8Match-
Node
hpelitebook_840_g5_firmwareRange<01.19.00
AND
hpelitebook_840_g5Match-
Node
hpelitebook_840_g5_healthcare_edition_firmwareRange<01.19.00
AND
hpelitebook_840_g5_healthcare_editionMatch-
Node
hpelitebook_840_g6_firmwareRange<01.12.00
AND
hpelitebook_840_g6Match-
Node
hpelitebook_840_g6_healthcare_edition_firmwareRange<01.12.00
AND
hpelitebook_840_g6_healthcare_editionMatch-
Node
hpelitebook_840_g7_firmwareRange<01.08.00
AND
hpelitebook_840_g7Match-
Node
hpelitebook_840_g8_firmwareRange<01.08.00
AND
hpelitebook_840_g8Match-
Node
hpelitebook_840r_g4_firmwareRange<01.19.00
AND
hpelitebook_840r_g4Match-
Node
hpelitebook_846_g5_firmwareRange<01.19.00
AND
hpelitebook_846_g5Match-
Node
hpelitebook_850_g5_firmwareRange<01.19.00
AND
hpelitebook_850_g5Match-
Node
hpelitebook_850_g6_firmwareRange<01.12.00
AND
hpelitebook_850_g6Match-
Node
hpelitebook_850_g7_firmwareRange<01.08.00
AND
hpelitebook_850_g7Match-
Node
hpelitebook_850_g8_firmwareRange<01.08.00
AND
hpelitebook_850_g8Match-
Node
hpelitebook_x360_1030_g3_firmwareRange<01.19.00
AND
hpelitebook_x360_1030_g3Match-
Node
hpelitebook_x360_1030_g4_firmwareRange<01.12.00
AND
hpelitebook_x360_1030_g4Match-
Node
hpelitebook_x360_1030_g7_firmwareRange<01.08.00
AND
hpelitebook_x360_1030_g7Match-
Node
hpelitebook_x360_1030_g8_firmwareRange<01.08.00
AND
hpelitebook_x360_1030_g8Match-
Node
hpelitebook_x360_1040_g5_firmwareRange<01.19.00
AND
hpelitebook_x360_1040_g5Match-
Node
hpelitebook_x360_1040_g6_firmwareRange<01.12.00
AND
hpelitebook_x360_1040_g6Match-
Node
hpelitebook_x360_1040_g7_firmwareRange<01.08.00
AND
hpelitebook_x360_1040_g7Match-
Node
hpelitebook_x360_1040_g8_firmwareRange<01.08.00
AND
hpelitebook_x360_1040_g8Match-
Node
hpelitebook_x360_830_g5_firmwareRange<01.19.00
AND
hpelitebook_x360_830_g5Match-
Node
hpelitebook_x360_830_g6_firmwareRange<01.12.00
AND
hpelitebook_x360_830_g6Match-
Node
hpelitebook_x360_830_g7Match-
AND
hpelitebook_x360_830_g7_firmwareRange<01.08.00
Node
hpelitebook_x360_830_g8Match-
AND
hpelitebook_x360_830_g8_firmwareRange<01.08.00
Node
hpprobook_430_g5Match-
AND
hpprobook_430_g5_firmwareRange<01.19.00
Node
hpprobook_430_g6Match-
AND
hpprobook_430_g6_firmwareRange<01.19.00
Node
hpprobook_430_g7Match-
AND
hpprobook_430_g7_firmwareRange<01.12.00
Node
hpprobook_430_g8Match-
AND
hpprobook_430_g8_firmwareRange<01.08.02
Node
hpprobook_440_g5Match-
AND
hpprobook_440_g5_firmwareRange<01.19.00
Node
hpprobook_440_g6Match-
AND
hpprobook_440_g6_firmwareRange<01.19.00
Node
hpprobook_440_g7_firmwareRange<01.12.00
AND
hpprobook_440_g7Match-
Node
hpprobook_440_g8_firmwareRange<01.08.02
AND
hpprobook_440_g8Match-
Node
hpprobook_450_g5_firmwareRange<01.19.00
AND
hpprobook_450_g5Match-
Node
hpprobook_450_g6_firmwareRange<01.19.00
AND
hpprobook_450_g6Match-
Node
hpprobook_450_g7_firmwareRange<01.12.00
AND
hpprobook_450_g7Match-
Node
hpprobook_450_g8_firmwareRange<01.08.02
AND
hpprobook_450_g8Match-
Node
hpprobook_470_g5_firmwareRange<01.19.00
AND
hpprobook_470_g5Match-
Node
hpprobook_630_g8_firmwareRange<01.08.01
AND
hpprobook_630_g8Match-
Node
hpprobook_640_g4_firmwareRange<01.19.00
AND
hpprobook_640_g4Match-
Node
hpprobook_640_g5_firmwareRange<01.12.00
AND
hpprobook_640_g5Match-
Node
hpprobook_640_g7_firmwareRange<01.08.00
AND
hpprobook_640_g7Match-
Node
hpprobook_640_g8_firmwareRange<01.08.01
AND
hpprobook_640_g8Match-
Node
hpprobook_650_g4_firmwareRange<01.19.00
AND
hpprobook_650_g4Match-
Node
hpprobook_650_g5_firmwareRange<01.12.00
AND
hpprobook_650_g5Match-
Node
hpprobook_650_g7_firmwareRange<01.08.00
AND
hpprobook_650_g7Match-
Node
hpprobook_650_g8_firmwareRange<01.08.01
AND
hpprobook_650_g8Match-
Node
hpprobook_x360_11_g3_education_edition_firmwareRange<01.18.00
AND
hpprobook_x360_11_g3_education_editionMatch-
Node
hpprobook_x360_11_g4_education_edition_firmwareRange<01.13.00
AND
hpprobook_x360_11_g4_education_editionMatch-
Node
hpprobook_x360_11_g5_education_edition_firmwareRange<01.09.00
AND
hpprobook_x360_11_g5_education_editionMatch-
Node
hpprobook_x360_11_g6_education_edition_firmwareRange<01.09.00
AND
hpprobook_x360_11_g6_education_editionMatch-
Node
hpprobook_x360_11_g7_education_edition_firmwareRange<01.08.00
AND
hpprobook_x360_11_g7_education_editionMatch-
Node
hpprobook_x360_440_g1_firmwareRange<01.19.00
AND
hpprobook_x360_440_g1Match-
Node
hpzbook_14u_g5_firmwareRange<01.19.00
AND
hpzbook_14u_g5Match-
Node
hpzbook_14u_g6_firmwareRange<01.12.00
AND
hpzbook_14u_g6Match-
Node
hpzbook_15_g5_firmwareRange<01.19.00
AND
hpzbook_15_g5Match-
Node
hpzbook_15_g6_firmwareRange<01.12.00
AND
hpzbook_15_g6Match-
Node
hpzbook_15u_g5_firmwareRange<01.19.00
AND
hpzbook_15u_g5Match-
Node
hpzbook_15u_g6_firmwareRange<01.12.00
AND
hpzbook_15u_g6Match-
Node
hpzbook_17_g5_firmwareRange<01.19.00
AND
hpzbook_17_g5Match-
Node
hpzbook_17_g6_firmwareRange<01.12.00
AND
hpzbook_17_g6Match-
Node
hpzbook_create_g7_firmwareRange<01.08.00
AND
hpzbook_create_g7Match-
Node
hpzbook_firefly_14_g7_firmwareRange<01.08.00
AND
hpzbook_firefly_14_g7Match-
Node
hpzbook_firefly_14_g8_firmwareRange<01.08.00
AND
hpzbook_firefly_14_g8Match-
Node
hpzbook_firefly_15_g7_firmwareRange<01.08.00
AND
hpzbook_firefly_15_g7Match-
Node
hpzbook_firefly_15_g8_firmwareRange<01.08.00
AND
hpzbook_firefly_15_g8Match-
Node
hpzbook_fury_15_g7_firmwareRange<01.08.00
AND
hpzbook_fury_15_g7Match-
Node
hpzbook_fury_15_g8_firmwareRange<01.08.01
AND
hpzbook_fury_15_g8Match-
Node
hpzbook_fury_17_g7_firmwareRange<01.08.00
AND
hpzbook_fury_17_g7Match-
Node
hpzbook_fury_17_g8_firmwareRange<01.08.01
AND
hpzbook_fury_17_g8Match-
Node
hpzbook_power_15_g8_firmwareRange<01.08.00
AND
hpzbook_power_15_g8Match-
Node
hpzbook_power_g7_firmwareRange<01.08.00
AND
hpzbook_power_g7Match-
Node
hpzbook_studio_15_g8_firmwareRange<01.08.00
AND
hpzbook_studio_15_g8Match-
Node
hpzbook_studio_g5_firmwareRange<01.19.00
AND
hpzbook_studio_g5Match-
Node
hpzbook_studio_g7_firmwareRange<01.08.00
AND
hpzbook_studio_g7Match-
Node
hpzbook_studio_x360_g5_firmwareRange<01.19.00
AND
hpzbook_studio_x360_g5Match-
Node
hpzhan_66_pro_13_g2_firmwareRange<01.19.00
AND
hpzhan_66_pro_13_g2Match-
Node
hpzhan_66_pro_14_g2_firmwareRange<01.19.00
AND
hpzhan_66_pro_14_g2Match-
Node
hpzhan_66_pro_14_g3_firmwareRange<01.12.00
AND
hpzhan_66_pro_14_g3Match-
Node
hpzhan_66_pro_14_g4_firmwareRange<01.08.02
AND
hpzhan_66_pro_14_g4Match-
Node
hpzhan_66_pro_15_g2_firmwareRange<01.19.00
AND
hpzhan_66_pro_15_g2Match-
Node
hpzhan_66_pro_15_g3_firmwareRange<01.12.00
AND
hpzhan_66_pro_15_g3Match-
Node
hpzhan_66_pro_g1_firmwareRange<01.19.00
AND
hpzhan_66_pro_g1Match-
Node
hpzhan_x_13_g2_firmwareRange<01.12.00
AND
hpzhan_x_13_g2Match-
Node
hp260_g3_desktop_mini_pc_firmwareRange2.17.00
AND
hp260_g3_desktop_mini_pcMatch-
Node
hpelitedesk_800_35w_g4_desktop_mini_pc_firmwareRange2.18.00
AND
hpelitedesk_800_35w_g4_desktop_mini_pcMatch-
Node
hpelitedesk_800_65w_g4_desktop_mini_pc_firmwareRange2.18.00
AND
hpelitedesk_800_65w_g4_desktop_mini_pcMatch-
Node
hpelitedesk_800_95w_g4_desktop_mini_pc_firmwareRange2.18.00
AND
hpelitedesk_800_95w_g4_desktop_mini_pcMatch-
Node
hpelitedesk_800_g4_small_form_factor_pc_firmwareRange2.18.00
AND
hpelitedesk_800_g4_small_form_factor_pcMatch-
Node
hpelitedesk_800_g4_tower_pc_firmwareRange2.18.00
AND
hpelitedesk_800_g4_tower_pcMatch-
Node
hpelitedesk_800_g4_tower_pc_firmwareRange2.18.00
AND
hpelitedesk_800_g4_tower_pcMatch-
Node
hpelitedesk_800_g4_workstation_edition_firmwareRange2.18.00
AND
hpelitedesk_800_g4_workstation_editionMatch-
Node
hpelitedesk_800_g5_desktop_mini_pc_firmwareRange2.12.00
AND
hpelitedesk_800_g5_desktop_mini_pcMatch-
Node
hpelitedesk_800_g5_small_form_factor_pc_firmwareRange2.12.00
AND
hpelitedesk_800_g5_small_form_factor_pcMatch-
Node
hpelitedesk_800_g5_tower_pc_firmwareRange2.12.00
AND
hpelitedesk_800_g5_tower_pcMatch-
Node
hpelitedesk_800_g6_desktop_mini_pc_firmwareRange2.10.00
AND
hpelitedesk_800_g6_desktop_mini_pcMatch-
Node
hpelitedesk_800_g6_small_form_factor_pc_firmwareRange2.10.00
AND
hpelitedesk_800_g6_small_form_factor_pcMatch-
Node
hpelitedesk_800_g6_tower_pc_firmwareRange2.10.00
AND
hpelitedesk_800_g6_tower_pcMatch-
Node
hpelitedesk_800_g8_desktop_mini_pc_firmwareRange2.07.00
AND
hpelitedesk_800_g8_desktop_mini_pcMatch-
Node
hpelitedesk_800_g8_small_form_factor_pc_firmwareRange2.07.00
AND
hpelitedesk_800_g8_small_form_factor_pcMatch-
Node
hpelitedesk_800_g8_tower_pc_firmwareRange2.07.00
AND
hpelitedesk_800_g8_tower_pcMatch-
Node
hpelitedesk_805_g6_desktop_mini_pc_firmwareRange2.07.00
AND
hpelitedesk_805_g6_desktop_mini_pcMatch-
Node
hpelitedesk_805_g6_small_form_factor_pc_firmwareRange2.07.00
AND
hpelitedesk_805_g6_small_form_factor_pcMatch-
Node
hpelitedesk_805_g8_desktop_mini_pc_firmwareRange2.03.00
AND
hpelitedesk_805_g8_desktop_mini_pcMatch-
Node
hpelitedesk_805_g8_small_form_factor_pc_firmwareRange2.03.00
AND
hpelitedesk_805_g8_small_form_factor_pcMatch-
Node
hpelitedesk_880_g4_tower_pc_firmwareRange2.18.00
AND
hpelitedesk_880_g4_tower_pcMatch-
Node
hpelitedesk_880_g5_tower_pc_firmwareRange2.12.00
AND
hpelitedesk_880_g5_tower_pcMatch-
Node
hpelitedesk_880_g6_tower_pc_firmwareRange2.10.00
AND
hpelitedesk_880_g6_tower_pcMatch-
Node
hpelitedesk_880_g8_tower_pc_firmwareRange2.07.00
AND
hpelitedesk_880_g8_tower_pcMatch-
Node
hpeliteone_1000_g2_23.8-in_all-in-one_business_pc_firmwareRange2.18.00
AND
hpeliteone_1000_g2_23.8-in_all-in-one_business_pcMatch-
Node
hpeliteone_1000_g2_23.8-in_touch_all-in-one_business_pc_firmwareRange2.18.00
AND
hpeliteone_1000_g2_23.8-in_touch_all-in-one_business_pcMatch-
Node
hpeliteone_1000_g2_27-in_4k_uhd_all-in-one_business_pc_firmwareRange2.18.00
AND
hpeliteone_1000_g2_27-in_4k_uhd_all-in-one_business_pcMatch-
Node
hpeliteone_1000_g2_34-in_curved_all-in-one_business_pc_firmwareRange2.18.00
AND
hpeliteone_1000_g2_34-in_curved_all-in-one_business_pcMatch-
Node
hpeliteone_800_g4_23.8-in_healthcare_edition_all-in-one_business_pc_firmwareRange2.18.00
AND
hpeliteone_800_g4_23.8-in_healthcare_edition_all-in-one_business_pcMatch-
Node
hpeliteone_800_g4_23.8-inch_non-touch_all-in-one_pc_firmwareRange2.18.00
AND
hpeliteone_800_g4_23.8-inch_non-touch_all-in-one_pcMatch-
Node
hpeliteone_800_g4_23.8-inch_non-touch_gpu_all-in-one_pc_firmwareRange2.18.00
AND
hpeliteone_800_g4_23.8-inch_non-touch_gpu_all-in-one_pcMatch-
Node
hpeliteone_800_g4_23.8-inch_touch_all-in-one_pc_firmwareRange2.18.00
AND
hpeliteone_800_g4_23.8-inch_touch_all-in-one_pcMatch-
Node
hpeliteone_800_g4_23.8-inch_touch_gpu_all-in-one_pc_firmwareRange2.18.00
AND
hpeliteone_800_g4_23.8-inch_touch_gpu_all-in-one_pcMatch-
Node
hpeliteone_800_g5_23.8-in_healthcare_edition_all-in-one_firmwareRange2.12.00
AND
hpeliteone_800_g5_23.8-in_healthcare_edition_all-in-oneMatch-
Node
hpeliteone_800_g5_23.8-inch_all-in-one_firmwareRange2.12.00
AND
hpeliteone_800_g5_23.8-inch_all-in-oneMatch-
Node
hpeliteone_800_g6_24_all-in-one_pc_firmwareRange2.10.00
AND
hpeliteone_800_g6_24_all-in-one_pcMatch-
Node
hpeliteone_800_g6_27_all-in-one_pc_firmwareRange2.10.00
AND
hpeliteone_800_g6_27_all-in-one_pcMatch-
Node
hpeliteone_800_g8_24_all-in-one_pc_firmwareRange2.07.00
AND
hpeliteone_800_g8_24_all-in-one_pcMatch-
Node
hpeliteone_800_g8_27_all-in-one_pc_firmwareRange2.07.00
AND
hpeliteone_800_g8_27_all-in-one_pcMatch-
Node
hpprodesk_400_g4_desktop_mini_pc_firmwareRange2.18.00
AND
hpprodesk_400_g4_desktop_mini_pcMatch-
Node
hpprodesk_400_g5_desktop_mini_pc_firmwareRange2.12.00
AND
hpprodesk_400_g5_desktop_mini_pcMatch-
Node
hpprodesk_400_g5_microtower_pc_firmwareRange2.18.00
AND
hpprodesk_400_g5_microtower_pcMatch-
Node
hpprodesk_400_g5_small_form_factor_pc_firmwareRange2.18.00
AND
hpprodesk_400_g5_small_form_factor_pcMatch-
Node
hpprodesk_400_g6_desktop_mini_pc_firmwareRange2.10.00
AND
hpprodesk_400_g6_desktop_mini_pcMatch-
Node
hpprodesk_400_g6_microtower_pc_firmwareRange2.12.00
AND
hpprodesk_400_g6_microtower_pcMatch-
Node
hpprodesk_400_g6_small_form_factor_pc_firmwareRange2.12.00
AND
hpprodesk_400_g6_small_form_factor_pcMatch-
Node
hpprodesk_400_g7_microtower_pc_firmwareRange2.10.00
AND
hpprodesk_400_g7_microtower_pcMatch-
Node
hpprodesk_400_g7_small_form_factor_pc_firmwareRange2.10.00
AND
hpprodesk_400_g7_small_form_factor_pcMatch-
Node
hpprodesk_405_g8_desktop_mini_pc_firmwareRange2.03.00
AND
hpprodesk_405_g8_desktop_mini_pcMatch-
Node
hpprodesk_405_g8_small_form_factor_pc_firmwareRange2.03.00
AND
hpprodesk_405_g8_small_form_factor_pcMatch-
Node
hpprodesk_480_g5_microtower_pc_firmwareRange2.18.00
AND
hpprodesk_480_g5_microtower_pcMatch-
Node
hpprodesk_480_g6_microtower_pc_firmwareRange2.12.00
AND
hpprodesk_480_g6_microtower_pcMatch-
Node
hpprodesk_480_g7_pci_microtower_pc_firmwareRange2.10.00
AND
hpprodesk_480_g7_pci_microtower_pcMatch-
Node
hpprodesk_600_g4_desktop_mini_pc_firmwareRange2.18.00
AND
hpprodesk_600_g4_desktop_mini_pcMatch-
Node
hpprodesk_600_g4_microtower_pc_firmwareRange2.18.00
AND
hpprodesk_600_g4_microtower_pcMatch-
Node
hpprodesk_600_g4_microtower_pc\(with_pci_slot\)_firmwareRange2.18.00
AND
hpprodesk_600_g4_microtower_pc\(with_pci_slot\)Match-
Node
hpprodesk_600_g4_small_form_factor_pc_firmwareRange2.18.00
AND
hpprodesk_600_g4_small_form_factor_pcMatch-
Node
hpprodesk_600_g5_desktop_mini_pc_firmwareRange2.12.00
AND
hpprodesk_600_g5_desktop_mini_pcMatch-
Node
hpprodesk_600_g5_microtower_pc_firmwareRange2.12.00
AND
hpprodesk_600_g5_microtower_pcMatch-
Node
hpprodesk_600_g5_microtower_pc\(with_pci_slot\)_firmwareRange2.12.00
AND
hpprodesk_600_g5_microtower_pc\(with_pci_slot\)Match-
Node
hpprodesk_600_g5_small_form_factor_pc_firmwareRange2.12.00
AND
hpprodesk_600_g5_small_form_factor_pcMatch-
Node
hpprodesk_600_g6_desktop_mini_pc_firmwareRange2.10.00
AND
hpprodesk_600_g6_desktop_mini_pcMatch-
Node
hpprodesk_600_g6_microtower_pc_firmwareRange2.10.00
AND
hpprodesk_600_g6_microtower_pcMatch-
Node
hpprodesk_600_g6_small_form_factor_pc_firmwareRange2.10.00
AND
hpprodesk_600_g6_small_form_factor_pcMatch-
Node
hpprodesk_680_g4_microtower_pc_firmwareRange2.18.00
AND
hpprodesk_680_g4_microtower_pcMatch-
Node
hpprodesk_680_g4_microtower_pc\(with_pci_slot\)_firmwareRange2.18.00
AND
hpprodesk_680_g4_microtower_pc\(with_pci_slot\)Match-
Node
hpprodesk_680_g6_pci_microtower_pc_firmwareRange2.10.00
AND
hpprodesk_680_g6_pci_microtower_pcMatch-
Node
hpproone_400_g4_20-inch_non-touch_all-in-one_business_pc_firmwareRange2.18.00
AND
hpproone_400_g4_20-inch_non-touch_all-in-one_business_pcMatch-
Node
hpproone_400_g4_23.8-inch_non-touch_all-in-one_business_pc_firmwareRange2.18.00
AND
hpproone_400_g4_23.8-inch_non-touch_all-in-one_business_pcMatch-
Node
hpproone_400_g5_20-inch_all-in-one_business_pc_firmwareRange2.12.00
AND
hpproone_400_g5_20-inch_all-in-one_business_pcMatch-
Node
hpproone_400_g5_23.8-inch_all-in-one_business_pc_firmwareRange2.12.00
AND
hpproone_400_g5_23.8-inch_all-in-one_business_pcMatch-
Node
hpproone_400_g6_20_all-in-one_pc_firmwareRange2.10.00
AND
hpproone_400_g6_20_all-in-one_pcMatch-
Node
hpproone_400_g6_24_all-in-one_pc_firmwareRange2.10.00
AND
hpproone_400_g6_24_all-in-one_pcMatch-
Node
hpproone_440_g4_23.8-inch_non-touch_all-in-one_business_pc_firmwareRange2.18.00
AND
hpproone_440_g4_23.8-inch_non-touch_all-in-one_business_pcMatch-
Node
hpproone_440_g5_23.8-in_all-in-one_business_pc_firmwareRange2.12.00
AND
hpproone_440_g5_23.8-in_all-in-one_business_pcMatch-
Node
hpproone_440_g6_24_all-in-one_pc_firmwareRange2.10.00
AND
hpproone_440_g6_24_all-in-one_pcMatch-
Node
hpproone_600_g4_21.5-inch_touch_all-in-one_business_pc_firmwareRange2.18.00
AND
hpproone_600_g4_21.5-inch_touch_all-in-one_business_pcMatch-
Node
hpproone_600_g5_21.5-in_all-in-one_business_pc_firmwareRange2.12.00
AND
hpproone_600_g5_21.5-in_all-in-one_business_pcMatch-
Node
hpproone_600_g6_22_all-in-one_pc_firmwareRange2.10.00
AND
hpproone_600_g6_22_all-in-one_pcMatch-
Node
hpzhan_66_pro_g3_22_all-in-one_pc_firmwareRange2.10.00
AND
hpzhan_66_pro_g3_22_all-in-one_pcMatch-
Node
hpzhan_66_pro_g3_24_all-in-one_pc_firmwareRange2.10.00
AND
hpzhan_66_pro_g3_24_all-in-one_pcMatch-

CNA Affected

[
  {
    "defaultStatus": "unaffected",
    "packageName": "AGESA",
    "platforms": [
      "x86"
    ],
    "product": "2nd Gen EPYC",
    "vendor": "AMD",
    "versions": [
      {
        "status": "affected",
        "version": "Various "
      }
    ]
  },
  {
    "defaultStatus": "unaffected",
    "packageName": "AGESA",
    "platforms": [
      "x86"
    ],
    "product": "3rd Gen EPYC",
    "vendor": "AMD",
    "versions": [
      {
        "status": "affected",
        "version": "various "
      }
    ]
  },
  {
    "defaultStatus": "unaffected",
    "packageName": "AGESA",
    "platforms": [
      "x86"
    ],
    "product": "Ryzen 2000 Series",
    "vendor": "AMD",
    "versions": [
      {
        "status": "affected",
        "version": "various "
      }
    ]
  },
  {
    "defaultStatus": "unaffected",
    "packageName": "AGESA",
    "platforms": [
      "x86"
    ],
    "product": "Ryzen 3000 Series ",
    "vendor": "AMD",
    "versions": [
      {
        "status": "affected",
        "version": "Various "
      }
    ]
  },
  {
    "defaultStatus": "unaffected",
    "packageName": "AGESA",
    "platforms": [
      "x86"
    ],
    "product": "Ryzen 5000 Series ",
    "vendor": "AMD",
    "versions": [
      {
        "status": "affected",
        "version": "various "
      }
    ]
  }
]

7.2 High

CVSS2

Attack Vector

LOCAL

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:L/AC:L/Au:N/C:C/I:C/A:C

8.8 High

CVSS3

Attack Vector

LOCAL

Attack Complexity

LOW

Privileges Required

LOW

User Interaction

NONE

Scope

CHANGED

Confidentiality Impact

HIGH

Integrity Impact

HIGH

Availability Impact

HIGH

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H

8.8 High

AI Score

Confidence

High

0.0004 Low

EPSS

Percentile

12.7%

Related for CVE-2021-39298