A potential security vulnerability has been identified in certain HP Workstation BIOS (UEFI firmware) which may allow arbitrary code execution. HP is releasing firmware mitigations for the potential vulnerability.

Project Subscriptions

Vendors Products
Z1 All-in-one G3 Subscribe
Z1 All-in-one G3 Firmware Subscribe
Z238 Microtower Subscribe
Z238 Microtower Firmware Subscribe
Z240 Small Form Factor Subscribe
Z240 Small Form Factor Firmware Subscribe
Z240 Tower Subscribe
Z240 Tower Firmware Subscribe
Z2 Mini G3 Subscribe
Z2 Mini G3 Firmware Subscribe
Z2 Mini G4 Subscribe
Z2 Mini G4 Firmware Subscribe
Z2 Mini G5 Subscribe
Z2 Mini G5 Firmware Subscribe
Z2 Small Form Factor G4 Subscribe
Z2 Small Form Factor G4 Firmware Subscribe
Z2 Small Form Factor G5 Subscribe
Z2 Small Form Factor G5 Firmware Subscribe
Z2 Small Form Factor G8 Subscribe
Z2 Small Form Factor G8 Firmware Subscribe
Z2 Tower G4 Subscribe
Z2 Tower G4 Firmware Subscribe
Z2 Tower G5 Subscribe
Z2 Tower G5 Firmware Subscribe
Z2 Tower G8 Subscribe
Z2 Tower G8 Firmware Subscribe
Z440 Firmware Subscribe
Z4 G4 Firmware Subscribe
Z640 Firmware Subscribe
Z6 G4 Firmware Subscribe
Z840 Firmware Subscribe
Z8 G4 Firmware Subscribe
Zcentral 4r Subscribe
Zcentral 4r Firmware Subscribe
Advisories
Source ID Title
EUVD EUVD EUVD-2021-26956 A potential security vulnerability has been identified in certain HP Workstation BIOS (UEFI firmware) which may allow arbitrary code execution. HP is releasing firmware mitigations for the potential vulnerability.
Fixes

Solution

No solution given by the vendor.


Workaround

No workaround given by the vendor.

History

Tue, 29 Apr 2025 05:15:00 +0000

Type Values Removed Values Added
Weaknesses CWE-94
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'total'}, 'version': '2.0.3'}


Projects

Sign in to view the affected projects.

cve-icon MITRE

Status: PUBLISHED

Assigner: hp

Published:

Updated: 2025-04-29T04:44:48.739Z

Reserved: 2021-07-23T00:21:54.040Z

Link: CVE-2021-3661

cve-icon Vulnrichment

Updated: 2024-08-03T17:01:07.807Z

cve-icon NVD

Status : Modified

Published: 2022-12-12T13:15:11.693

Modified: 2025-04-29T05:15:40.660

Link: CVE-2021-3661

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.

Weaknesses