CVE-2021-3661

A potential security vulnerability has been identified in certain HP Workstation BIOS (UEFI firmware) which may allow arbitrary code execution. HP is releasing firmware mitigations for the potential vulnerability.
Configurations

Configuration 1 (hide)

AND
cpe:2.3:o:hp:z1_all-in-one_g3_firmware:01.31:*:*:*:*:*:*:*
cpe:2.3:h:hp:z1_all-in-one_g3:-:*:*:*:*:*:*:*

Configuration 2 (hide)

AND
cpe:2.3:o:hp:z2_mini_g3_firmware:01.83:*:*:*:*:*:*:*
cpe:2.3:h:hp:z2_mini_g3:-:*:*:*:*:*:*:*

Configuration 3 (hide)

AND
cpe:2.3:o:hp:z2_mini_g4_firmware:01.08.01:*:*:*:*:*:*:*
cpe:2.3:h:hp:z2_mini_g4:-:*:*:*:*:*:*:*

Configuration 4 (hide)

AND
cpe:2.3:o:hp:z2_mini_g5_firmware:01.03.00_rev_a:*:*:*:*:*:*:*
cpe:2.3:h:hp:z2_mini_g5:-:*:*:*:*:*:*:*

Configuration 5 (hide)

AND
cpe:2.3:o:hp:z2_small_form_factor_g4_firmware:01.08.01:*:*:*:*:*:*:*
cpe:2.3:h:hp:z2_small_form_factor_g4:-:*:*:*:*:*:*:*

Configuration 6 (hide)

AND
cpe:2.3:o:hp:z2_small_form_factor_g5_firmware:01.03.00_rev_a:*:*:*:*:*:*:*
cpe:2.3:h:hp:z2_small_form_factor_g5:-:*:*:*:*:*:*:*

Configuration 7 (hide)

AND
cpe:2.3:o:hp:z2_small_form_factor_g8_firmware:01.03.00_rev_a:*:*:*:*:*:*:*
cpe:2.3:h:hp:z2_small_form_factor_g8:-:*:*:*:*:*:*:*

Configuration 8 (hide)

AND
cpe:2.3:o:hp:z2_tower_g4_firmware:01.08.01:*:*:*:*:*:*:*
cpe:2.3:h:hp:z2_tower_g4:-:*:*:*:*:*:*:*

Configuration 9 (hide)

AND
cpe:2.3:o:hp:z2_tower_g5_firmware:01.03.00_rev_a:*:*:*:*:*:*:*
cpe:2.3:h:hp:z2_tower_g5:-:*:*:*:*:*:*:*

Configuration 10 (hide)

AND
cpe:2.3:o:hp:z2_tower_g8_firmware:01.03.00_rev_a:*:*:*:*:*:*:*
cpe:2.3:h:hp:z2_tower_g8:-:*:*:*:*:*:*:*

Configuration 11 (hide)

AND
cpe:2.3:o:hp:z238_microtower_firmware:01.83:*:*:*:*:*:*:*
cpe:2.3:h:hp:z238_microtower:-:*:*:*:*:*:*:*

Configuration 12 (hide)

AND
cpe:2.3:o:hp:z240_small_form_factor_firmware:01.83:*:*:*:*:*:*:*
cpe:2.3:h:hp:z240_small_form_factor:-:*:*:*:*:*:*:*

Configuration 13 (hide)

AND
cpe:2.3:o:hp:z240_tower_firmware:01.83:*:*:*:*:*:*:*
cpe:2.3:h:hp:z240_tower:-:*:*:*:*:*:*:*

Configuration 14 (hide)

AND
cpe:2.3:o:hp:z4_g4_firmware:02.75:*:*:*:*:*:*:*
cpe:2.3:h:hp:z4_g4:-:*:*:*:*:*:*:*

Configuration 15 (hide)

AND
cpe:2.3:o:hp:z440_firmware:2.58:*:*:*:*:*:*:*
cpe:2.3:h:hp:z440:-:*:*:*:*:*:*:*

Configuration 16 (hide)

AND
cpe:2.3:o:hp:z6_g4_firmware:02.75:*:*:*:*:*:*:*
cpe:2.3:h:hp:z6_g4:-:*:*:*:*:*:*:*

Configuration 17 (hide)

AND
cpe:2.3:o:hp:z640_firmware:2.58:*:*:*:*:*:*:*
cpe:2.3:h:hp:z640:-:*:*:*:*:*:*:*

Configuration 18 (hide)

AND
cpe:2.3:o:hp:z8_g4_firmware:02.75:*:*:*:*:*:*:*
cpe:2.3:h:hp:z8_g4:-:*:*:*:*:*:*:*

Configuration 19 (hide)

AND
cpe:2.3:o:hp:z840_firmware:2.58:*:*:*:*:*:*:*
cpe:2.3:h:hp:z840:-:*:*:*:*:*:*:*

Configuration 20 (hide)

AND
cpe:2.3:o:hp:zcentral_4r_firmware:01.18:*:*:*:*:*:*:*
cpe:2.3:h:hp:zcentral_4r:-:*:*:*:*:*:*:*

History

No history.

Information

Published : 2022-12-12 13:15

Updated : 2024-02-28 19:51


NVD link : CVE-2021-3661

Mitre link : CVE-2021-3661

CVE.ORG link : CVE-2021-3661


JSON object : View

Products Affected

hp

  • z2_small_form_factor_g5_firmware
  • z2_mini_g5
  • z2_small_form_factor_g5
  • z440
  • z640
  • z8_g4
  • z6_g4_firmware
  • z2_mini_g3_firmware
  • z2_tower_g5
  • z1_all-in-one_g3
  • z2_tower_g4_firmware
  • z2_tower_g4
  • z440_firmware
  • z640_firmware
  • z2_small_form_factor_g4
  • z2_mini_g5_firmware
  • z4_g4_firmware
  • z2_mini_g3
  • z2_tower_g8
  • z4_g4
  • z840
  • z840_firmware
  • z8_g4_firmware
  • z2_mini_g4_firmware
  • z2_mini_g4
  • z2_tower_g8_firmware
  • z240_tower
  • z1_all-in-one_g3_firmware
  • z238_microtower_firmware
  • z2_small_form_factor_g8_firmware
  • z240_small_form_factor
  • z2_tower_g5_firmware
  • z240_tower_firmware
  • zcentral_4r_firmware
  • z2_small_form_factor_g4_firmware
  • z238_microtower
  • z6_g4
  • z240_small_form_factor_firmware
  • z2_small_form_factor_g8
  • zcentral_4r