Description
A potential Time-of-Check to Time-of-Use (TOCTOU) vulnerability has been identified in certain HP PC products using AMI UEFI Firmware (system BIOS), which might allow arbitrary code execution. AMI has released updates to mitigate the potential vulnerability.
Published: 2023-06-30
Score: 7.0 High
EPSS: < 1% Very Low
KEV: No
Impact: n/a
Action: n/a
AI Analysis

No analysis available yet.

Remediation

No remediation available yet.

Tracking

Sign in to view the affected projects.

Advisories
Source ID Title
EUVD EUVD EUVD-2023-30122 A potential Time-of-Check to Time-of-Use (TOCTOU) vulnerability has been identified in certain HP PC products using AMI UEFI Firmware (system BIOS), which might allow arbitrary code execution. AMI has released updates to mitigate the potential vulnerability.
History

Wed, 04 Dec 2024 16:15:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'total'}, 'version': '2.0.3'}


Subscriptions

Hp 200 G3 200 G3 Firmware 200 G4 22 All-in-one 200 G4 22 All-in-one Firmware 200 Pro G4 22 All-in-one 200 Pro G4 22 All-in-one Firmware 205 G4 22 All-in-one 205 G4 22 All-in-one Firmware 205 Pro G4 22 All-in-one 205 Pro G4 22 All-in-one Firmware 240 G10 240 G10 Firmware 245 G6 245 G6 Firmware 245 G7 245 G7 Firmware 245 G8 245 G8 Firmware 247 G8 247 G8 Firmware 250 G10 250 G10 Firmware 255 G10 255 G10 Firmware 260 G4 Desktop Mini 260 G4 Desktop Mini Firmware 280 G3 280 G3 Firmware 280 G4 280 G4 Firmware 280 G4 Microtower 280 G4 Microtower Firmware 280 G5 280 G5 Firmware 280 G5 Small Form Factor 280 G5 Small Form Factor Firmware 280 G6 280 G6 Firmware 280 G8 Microtower 280 G8 Microtower Firmware 280 Pro G3 280 Pro G3 Firmware 280 Pro G4 Microtower 280 Pro G4 Microtower Firmware 280 Pro G5 Small Form Factor 280 Pro G5 Small Form Factor Firmware 282 G5 282 G5 Firmware 282 G6 282 G6 Firmware 282 Pro G4 Microtower 282 Pro G4 Microtower Firmware 288 G5 288 G5 Firmware 288 G6 288 G6 Firmware 288 Pro G4 Microtower 288 Pro G4 Microtower Firmware 290 G1 290 G1 Firmware 290 G2 290 G2 Firmware 290 G2 Microtower 290 G2 Microtower Firmware 290 G3 290 G3 Firmware 290 G3 Small Form Factor 290 G3 Small Form Factor Firmware 290 G4 290 G4 Firmware 349 G7 349 G7 Firmware 470 G10 470 G10 Firmware 470 G9 470 G9 Firmware Desktop Pro G1 Microtower Desktop Pro G1 Microtower Firmware Pro Small Form Factor 280 G9 Desktop Pro Small Form Factor 280 G9 Desktop Firmware Pro Small Form Factor 290 G9 Desktop Pro Small Form Factor 290 G9 Desktop Firmware Pro Small Form Factor Zhan 66 G9 Desktop Pro Small Form Factor Zhan 66 G9 Desktop Firmware Pro Tower 200 G9 Desktop Pro Tower 200 G9 Desktop Firmware Pro Tower 280 G9 Desktop Pro Tower 280 G9 Desktop Firmware Pro Tower 290 G9 Desktop Pro Tower 290 G9 Desktop Firmware Pro Tower Zhan 99 G9 Desktop Pro Tower Zhan 99 G9 Desktop Firmware Proone 240 G10 Proone 240 G10 Firmware Proone 240 G9 Proone 240 G9 Firmware Proone 440 G3 Proone 440 G3 Firmware Proone 490 G3 Proone 490 G3 Firmware Proone 496 G3 Proone 496 G3 Firmware T430 T430 Firmware T628 T628 Firmware Vr Backpack G2 Vr Backpack G2 Firmware Z Vr Backpack G1 Workstation Z Vr Backpack G1 Workstation Firmware Zhan 86 Pro G2 Microtower Zhan 86 Pro G2 Microtower Firmware Zhan 99 G2 Zhan 99 G2 Firmware Zhan 99 G4 Zhan 99 G4 Firmware Zhan 99 Pro G1 Microtower Zhan 99 Pro G1 Microtower Firmware
cve-icon MITRE

Status: PUBLISHED

Assigner: hp

Published:

Updated: 2024-12-04T16:06:16.624Z

Reserved: 2023-02-21T21:14:33.320Z

Link: CVE-2023-26299

cve-icon Vulnrichment

Updated: 2024-08-02T11:46:24.488Z

cve-icon NVD

Status : Modified

Published: 2023-06-30T16:15:09.543

Modified: 2024-11-21T07:51:05.217

Link: CVE-2023-26299

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.

Weaknesses