Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2022-43779


A potential Time-of-Check to Time-of-Use (TOCTOU) vulnerability has been identified in certain HP PC products using AMI UEFI Firmware (system BIOS) which might allow arbitrary code execution, denial of service, and information disclosure. AMI has released updates to mitigate the potential vulnerability.


Published

2023-02-12T04:15:16.060

Last Modified

2025-03-25T21:15:37.933

Status

Modified

Source

[email protected]

Severity

CVSSv3.1: 7.0 (HIGH)

Weaknesses
  • Type: Primary
    CWE-367
  • Type: Secondary
    CWE-367

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Operating System hp 348_g4_firmware < f.65 Yes
Hardware hp 348_g4 - No
Operating System hp 260_g2_desktop_mini_firmware < 2.26 Yes
Hardware hp 260_g2_desktop_mini - No
Operating System hp 218_pro_g5_mt_firmware < f15 Yes
Hardware hp 218_pro_g5_mt - No
Operating System hp 260_g3_desktop_mini_firmware < 02.20.00 Yes
Hardware hp 260_g3_desktop_mini - No
Operating System hp 260_g4_desktop_mini_firmware < 02.12.00 Yes
Hardware hp 260_g4_desktop_mini - No
Operating System hp 280_g3_microtower_pc_firmware < 02.02.40 Yes
Hardware hp 280_g3_microtower_pc - No
Operating System hp 280_g3_pci_microtower_pc_firmware < 02.02.40 Yes
Hardware hp 280_g3_pci_microtower_pc - No
Operating System hp 288_pro_g3_microtower_pc_firmware < 00.02.40 Yes
Hardware hp 288_pro_g3_microtower_pc - No
Operating System hp 290_g1_microtower_firmware < 00.02.40 Yes
Hardware hp 290_g1_microtower - No
Operating System hp desktop_pro_300_g3_firmware < f15 Yes
Hardware hp desktop_pro_300_g3 - No
Operating System hp desktop_pro_a_300_g3_firmware < f12 Yes
Hardware hp desktop_pro_a_300_g3 - No
Operating System hp desktop_pro_a_g2_firmware < f.11 Yes
Hardware hp desktop_pro_a_g2 - No
Operating System hp desktop_pro_a_g2_microtower_firmware < f.11 Yes
Hardware hp desktop_pro_a_g2_microtower - No
Operating System hp desktop_pro_a_g3_firmware < f12 Yes
Hardware hp desktop_pro_a_g3 - No
Operating System hp desktop_pro_a_g3_microtower_firmware < f12 Yes
Hardware hp desktop_pro_a_g3_microtower - No
Operating System hp desktop_pro_g3_firmware < f15 Yes
Hardware hp desktop_pro_g3 - No
Operating System hp desktop_pro_g3_microtower_firmware < f15 Yes
Hardware hp desktop_pro_g3_microtower - No
Operating System hp desktop_pro_microtower_firmware < 00.02.40 Yes
Hardware hp desktop_pro_microtower - No
Operating System hp zhan_66_pro_a_g1_microtower_firmware < f.11 Yes
Hardware hp zhan_66_pro_a_g1_microtower - No
Operating System hp zhan_66_pro_a_g1_r_microtower_firmware < f12 Yes
Hardware hp zhan_66_pro_a_g1_r_microtower - No
Operating System hp zhan_66_pro_g1_r_microtower_firmware < f15 Yes
Hardware hp zhan_66_pro_g1_r_microtower - No
Operating System hp zhan_86_pro_g1_microtower_firmware < 00.02.40 Yes
Hardware hp zhan_86_pro_g1_microtower - No
Operating System hp rp2_retail_system_2000_firmware < 2.24 Yes
Hardware hp rp2_retail_system_2000 - No
Operating System hp rp2_retail_system_2020_firmware < 2.24 Yes
Hardware hp rp2_retail_system_2020 - No
Operating System hp rp2_retail_system_2030_firmware < 2.24 Yes
Hardware hp rp2_retail_system_2030 - No

References