Lucene search

K
hpHP Product Security Response TeamHPSBHF03844
HistoryMay 09, 2023 - 12:00 a.m.

Intel® Virtual RAID on CPU (VROC) May 2023 Security Update

2023-05-0900:00:00
HP Product Security Response Team
support.hp.com
21
intel
vroc
security update
may 2023
vulnerabilities
privilege escalation
denial of service
updates
affected platforms
softpaqs

CVSS3

7.8

Attack Vector

LOCAL

Attack Complexity

LOW

Privileges Required

LOW

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

HIGH

Integrity Impact

HIGH

Availability Impact

HIGH

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

EPSS

0

Percentile

9.0%

Intel has informed HP of potential security vulnerabilities in the Intel® Virtual RAID on CPU (VROC) software, which might allow escalation of privilege or denial of service. Intel is releasing software updates to mitigate these potential vulnerabilities.

Intel has released updates to mitigate the potential vulnerabilities. HP has identified affected platforms and corresponding SoftPaqs with minimum versions that mitigate the potential vulnerabilities. See the following affected products list.

Affected configurations

Vulners
Node
hpz4_g4_workstation_\(core-x\)_firmwareRange<7.8.0.1031
OR
hpz4_g4_workstation_\(xeon_w\)_firmwareRange<7.8.0.1031
OR
hpz6_g4_workstation_firmwareRange<7.8.0.1031
OR
hpz8_g4_workstation_firmwareRange<7.8.0.1031
OR
hpzcentral_4r_workstation_firmwareRange<7.8.0.1031
VendorProductVersionCPE
hpz4_g4_workstation_\(core-x\)_firmware*cpe:2.3:o:hp:z4_g4_workstation_\(core-x\)_firmware:*:*:*:*:*:*:*:*
hpz4_g4_workstation_\(xeon_w\)_firmware*cpe:2.3:o:hp:z4_g4_workstation_\(xeon_w\)_firmware:*:*:*:*:*:*:*:*
hpz6_g4_workstation_firmware*cpe:2.3:o:hp:z6_g4_workstation_firmware:*:*:*:*:*:*:*:*
hpz8_g4_workstation_firmware*cpe:2.3:o:hp:z8_g4_workstation_firmware:*:*:*:*:*:*:*:*
hpzcentral_4r_workstation_firmware*cpe:2.3:o:hp:zcentral_4r_workstation_firmware:*:*:*:*:*:*:*:*

CVSS3

7.8

Attack Vector

LOCAL

Attack Complexity

LOW

Privileges Required

LOW

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

HIGH

Integrity Impact

HIGH

Availability Impact

HIGH

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

EPSS

0

Percentile

9.0%

Related for HPSBHF03844