A potential security vulnerability has been identified in multiple HP products and versions which involves possible execution of arbitrary code during boot services that can result in elevation of privilege. The EFI_BOOT_SERVICES structure might be overwritten by an attacker to execute arbitrary SMM (System Management Mode) code. A list of affected products and versions are available in https://support.hp.com/rs-en/document/c06456250.
References
Link Resource
https://support.hp.com/rs-en/document/c06456250 Vendor Advisory
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: hp

Published: 2019-11-05T20:16:57

Updated: 2019-11-05T20:16:57

Reserved: 2019-09-13T00:00:00


Link: CVE-2019-16284

JSON object: View

cve-icon NVD Information

Status : Analyzed

Published: 2019-11-05T21:15:13.463

Modified: 2020-08-24T17:37:01.140


Link: CVE-2019-16284

JSON object: View

cve-icon Redhat Information

No data.