A potential security vulnerability has been identified in the System BIOS for some HP PC products which may allow escalation of privilege, arbitrary code execution, denial of service, or information disclosure via a physical attack that requires specialized equipment and knowledge. HP is releasing firmware mitigation for the potential vulnerability.
History

Fri, 15 Aug 2025 08:15:00 +0000

Type Values Removed Values Added
First Time appeared Hp
Hp hp
Vendors & Products Hp
Hp hp

Wed, 13 Aug 2025 20:15:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'total'}, 'version': '2.0.3'}


Wed, 13 Aug 2025 18:00:00 +0000

Type Values Removed Values Added
Description A potential security vulnerability has been identified in the System BIOS for some HP PC products which may allow escalation of privilege, arbitrary code execution, denial of service, or information disclosure via a physical attack that requires specialized equipment and knowledge. HP is releasing firmware mitigation for the potential vulnerability.
Weaknesses CWE-1256
References
Metrics cvssV4_0

{'score': 7.3, 'vector': 'CVSS:4.0/AV:P/AC:H/AT:P/PR:N/UI:N/VC:H/VI:H/VA:H/SC:H/SI:H/SA:H'}


cve-icon MITRE

Status: PUBLISHED

Assigner: hp

Published:

Updated: 2025-08-13T19:41:17.129Z

Reserved: 2024-05-29T15:20:41.911Z

Link: CVE-2024-5477

cve-icon Vulnrichment

Updated: 2025-08-13T19:41:07.451Z

cve-icon NVD

Status : Awaiting Analysis

Published: 2025-08-13T18:15:28.743

Modified: 2025-08-14T13:12:09.870

Link: CVE-2024-5477

cve-icon Redhat

No data.