Vulnerability Description
Potential security vulnerabilities have been identified in the BIOS (UEFI Firmware) for certain HP PC products, which might allow arbitrary code execution. HP is releasing firmware updates to mitigate these potential vulnerabilities.
CVSS Score
HIGH
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Hp | Elite Dragonfly Firmware | 01.12.00 |
| Hp | Elite Dragonfly | - |
| Hp | Elite X2 1012 G2 Firmware | 1.41 |
| Hp | Elite X2 1012 G2 | - |
| Hp | Elite X2 1013 G3 Firmware | 01.19.00 |
| Hp | Elite X2 1013 G3 | - |
| Hp | Elite X2 G4 Firmware | 01.12.00 |
| Hp | Elite X2 G4 | - |
| Hp | Elitebook 1040 G4 Firmware | 1.41 |
| Hp | Elitebook 1040 G4 | - |
| Hp | Elitebook 1050 G1 Firmware | 01.19.00 |
| Hp | Elitebook 1050 G1 | - |
| Hp | Elitebook 725 G4 Firmware | 1.4 |
| Hp | Elitebook 725 G4 | - |
| Hp | Elitebook 735 G5 Firmware | 01.20.00 |
| Hp | Elitebook 735 G5 | - |
| Hp | Elitebook 735 G6 Firmware | 01.19.00 |
| Hp | Elitebook 735 G6 | - |
| Hp | Elitebook 745 G4 Firmware | 1.4 |
| Hp | Elitebook 745 G4 | - |
Related Weaknesses (CWE)
References
- https://support.hp.com/us-en/document/ish_6184733-6184761-16/hpsbhf03788Vendor Advisory
- https://support.hp.com/us-en/document/ish_6184733-6184761-16/hpsbhf03788Vendor Advisory
FAQ
What is CVE-2021-3809?
CVE-2021-3809 is a vulnerability with a CVSS score of 7.8 (HIGH). Potential security vulnerabilities have been identified in the BIOS (UEFI Firmware) for certain HP PC products, which might allow arbitrary code execution. HP is releasing firmware updates to mitigate...
How severe is CVE-2021-3809?
CVE-2021-3809 has been rated HIGH with a CVSS base score of 7.8/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2021-3809?
Check the references section above for vendor advisories and patch information. Affected products include: Hp Elite Dragonfly Firmware, Hp Elite Dragonfly, Hp Elite X2 1012 G2 Firmware, Hp Elite X2 1012 G2, Hp Elite X2 1013 G3 Firmware.