Vulnerability Description
Potential vulnerabilities have been identified in the system BIOS of certain HP PC products, which might allow arbitrary code execution, escalation of privilege, denial of service, and information disclosure.
CVSS Score
HIGH
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Hp | Dragonfly Folio G3 2-In-1 Firmware | 01.01.03 |
| Hp | Dragonfly Folio G3 2-In-1 | - |
| Hp | Elite Dragonfly Firmware | 01.21.01 |
| Hp | Elite Dragonfly | - |
| Hp | Elite Dragonfly G3 Firmware | 01.03.01 |
| Hp | Elite Dragonfly G3 | - |
| Hp | Elite Dragonfly G2 Firmware | 01.10.00 |
| Hp | Elite Dragonfly G2 | - |
| Hp | Elite Dragonfly Max Firmware | 01.10.00 |
| Hp | Elite Dragonfly Max | - |
| Hp | Elite Folio 2-In-1 Firmware | not_impacted |
| Hp | Elite Folio 2-In-1 | - |
| Hp | Elite X2 1012 G1 Firmware | 1.57 |
| Hp | Elite X2 1012 G1 | - |
| Hp | Elite X2 1012 G2 Firmware | 1.43 |
| Hp | Elite X2 1012 G2 | - |
| Hp | Elite X2 1013 G3 Firmware | 01.21.01 |
| Hp | Elite X2 1013 G3 | - |
| Hp | Elite X2 G4 Firmware | 01.21.01 |
| Hp | Elite X2 G4 | - |
Related Weaknesses (CWE)
References
- https://support.hp.com/us-en/document/ish_6664419-6664458-16/hpsbhf03806Vendor Advisory
- https://support.hp.com/us-en/document/ish_6664419-6664458-16/hpsbhf03806Vendor Advisory
FAQ
What is CVE-2022-31646?
CVE-2022-31646 is a vulnerability with a CVSS score of 7.8 (HIGH). Potential vulnerabilities have been identified in the system BIOS of certain HP PC products, which might allow arbitrary code execution, escalation of privilege, denial of service, and information dis...
How severe is CVE-2022-31646?
CVE-2022-31646 has been rated HIGH with a CVSS base score of 7.8/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2022-31646?
Check the references section above for vendor advisories and patch information. Affected products include: Hp Dragonfly Folio G3 2-In-1 Firmware, Hp Dragonfly Folio G3 2-In-1, Hp Elite Dragonfly Firmware, Hp Elite Dragonfly, Hp Elite Dragonfly G3 Firmware.