A potential security vulnerability has been identified in the system BIOS for certain HP Workstation PCs, which might allow escalation of privilege, arbitrary code execution, or denial of service. HP is releasing mitigation for the potential vulnerability.
References
| Link | Resource |
|---|---|
| https://support.hp.com/us-en/document/ish_10167884-10167908-16/hpsbhf03915 | Vendor Advisory |
| https://support.hp.com/us-en/document/ish_10167884-10167908-16/hpsbhf03915 | Vendor Advisory |
Configurations
Configuration 1 (hide)
| AND |
|
Configuration 2 (hide)
| AND |
|
Configuration 3 (hide)
| AND |
|
History
22 Dec 2025, 18:28
| Type | Values Removed | Values Added |
|---|---|---|
| First Time |
Hp z840 Workstation
Hp z640 Workstation Firmware Hp z640 Workstation Hp z840 Workstation Firmware Hp z440 Workstation Firmware Hp z440 Workstation Hp |
|
| References | () https://support.hp.com/us-en/document/ish_10167884-10167908-16/hpsbhf03915 - Vendor Advisory | |
| CPE | cpe:2.3:h:hp:z840_workstation:-:*:*:*:*:*:*:* cpe:2.3:h:hp:z440_workstation:-:*:*:*:*:*:*:* cpe:2.3:o:hp:z840_workstation_firmware:*:*:*:*:*:*:*:* cpe:2.3:o:hp:z440_workstation_firmware:*:*:*:*:*:*:*:* cpe:2.3:h:hp:z640_workstation:-:*:*:*:*:*:*:* cpe:2.3:o:hp:z640_workstation_firmware:*:*:*:*:*:*:*:* |
|
| CWE | NVD-CWE-noinfo |
21 Nov 2024, 22:15
| Type | Values Removed | Values Added |
|---|---|---|
| References | () https://support.hp.com/us-en/document/ish_10167884-10167908-16/hpsbhf03915 - | |
| CVSS |
v2 : v3 : |
v2 : unknown
v3 : 7.9 |
14 Feb 2024, 23:15
| Type | Values Removed | Values Added |
|---|---|---|
| New CVE |
Information
Published : 2024-02-14 23:15
Updated : 2025-12-22 18:28
NVD link : CVE-2023-6138
Mitre link : CVE-2023-6138
CVE.ORG link : CVE-2023-6138
JSON object : View
Products Affected
hp
- z840_workstation
- z440_workstation_firmware
- z640_workstation_firmware
- z840_workstation_firmware
- z640_workstation
- z440_workstation
CWE
