Description
A potential security vulnerability with pre-boot DMA may allow unauthorized UEFI code execution using open-case attacks. This industry-wide issue requires physically accessing internal expansion slots with specialized hardware and software tools to modify UEFI code in memory. This affects HP Intel-based Business PCs that support Microsoft Windows 10 Kernel DMA protection. Affected versions depend on platform (prior to 01.04.02; or prior to 02.04.01; or prior to 02.04.02).
Published: 2020-01-31
Score: 6.8 Medium
EPSS: < 1% Very Low
KEV: No
Impact: n/a
Action: n/a
AI Analysis

No analysis available yet.

Remediation

No remediation available yet.

Tracking

Sign in to view the affected projects.

Advisories
Source ID Title
EUVD EUVD EUVD-2019-8591 A potential security vulnerability with pre-boot DMA may allow unauthorized UEFI code execution using open-case attacks. This industry-wide issue requires physically accessing internal expansion slots with specialized hardware and software tools to modify UEFI code in memory. This affects HP Intel-based Business PCs that support Microsoft Windows 10 Kernel DMA protection. Affected versions depend on platform (prior to 01.04.02; or prior to 02.04.01; or prior to 02.04.02).
History

No history.

Subscriptions

Hp Elite Dragonfly Elite Dragonfly Firmware Elite X2 G4 Elite X2 G4 Firmware Elitebook 830 G6 Elitebook 830 G6 Firmware Elitebook 836 G6 Elitebook 836 G6 Firmware Elitebook 840 G6 Elitebook 840 G6 Firmware Elitebook 840 G6 Healthcare Edition Elitebook 840 G6 Healthcare Edition Firmware Elitebook 846 G6 Elitebook 846 G6 Firmware Elitebook 846 G6 Healthcare Edition Elitebook 846 G6 Healthcare Edition Firmware Elitebook 850 G6 Elitebook 850 G6 Firmware Elitebook X360 1030 G4 Elitebook X360 1030 G4 Firmware Elitebook X360 1040 G6 Elitebook X360 1040 G6 Firmware Elitebook X360 830 G6 Elitebook X360 830 G6 Firmware Elitedesk 800 G5 Dm Elitedesk 800 G5 Dm Firmware Elitedesk 800 G5 Sff Elitedesk 800 G5 Sff Firmware Elitedesk 800 G5 Twr Elitedesk 800 G5 Twr Firmware Eliteone 800 G5 Aio Eliteone 800 G5 Aio Firmware Probook 640 G5 Probook 640 G5 Firmware Probook 650 G5 Probook 650 G5 Firmware Prodesk 400 G5 Dm Prodesk 400 G5 Dm Firmware Prodesk 400 G6 Mt Prodesk 400 G6 Mt Firmware Prodesk 400 G6 Sff Prodesk 400 G6 Sff Firmware Prodesk 480 G6 Mt Prodesk 480 G6 Mt Firmware Prodesk 600 G5 Dm Prodesk 600 G5 Dm Firmware Prodesk 600 G5 Mt Prodesk 600 G5 Mt Firmware Prodesk 600 G5 Pci Mt Prodesk 600 G5 Pci Mt Firmware Prodesk 600 G5 Sff Prodesk 600 G5 Sff Firmware Proone 400 G5 Aio Proone 400 G5 Aio Firmware Proone 440 G5 Aio Proone 440 G5 Aio Firmware Proone 600 G5 Aio Proone 600 G5 Aio Firmware Zbook 14u G6 Mobile Workstation Zbook 14u G6 Mobile Workstation Firmware Zbook 15u G6 Mobile Workstation Zbook 15u G6 Mobile Workstation Firmware Zbook 17u G6 Mobile Workstation Zbook 17u G6 Mobile Workstation Firmware Zhan X 13 G2 Zhan X 13 G2 Firmware
cve-icon MITRE

Status: PUBLISHED

Assigner: hp

Published:

Updated: 2024-08-05T02:02:39.823Z

Reserved: 2019-11-12T00:00:00.000Z

Link: CVE-2019-18913

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2020-01-31T04:15:10.993

Modified: 2024-11-21T04:33:49.720

Link: CVE-2019-18913

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.

Weaknesses