A potential security vulnerability has been identified in HP Sure Start’s protection of the Intel Flash Descriptor in certain HP PC products, which might allow security bypass, arbitrary code execution, loss of integrity or confidentiality, or denial of service. HP is releasing BIOS updates to mitigate the potential vulnerability.
History

Tue, 07 Oct 2025 16:15:00 +0000

Type Values Removed Values Added
Weaknesses CWE-306
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'total'}, 'version': '2.0.3'}


Tue, 07 Oct 2025 14:45:00 +0000

Type Values Removed Values Added
Description A potential security vulnerability has been identified in HP Sure Start’s protection of the Intel Flash Descriptor in certain HP PC products, which might allow security bypass, arbitrary code execution, loss of integrity or confidentiality, or denial of service. HP is releasing BIOS updates to mitigate the potential vulnerability.
Title HP Sure Start IFD Protection - BIOS Security Update
References
Metrics cvssV4_0

{'score': 7.2, 'vector': 'CVSS:4.0/AV:P/AC:L/AT:N/PR:N/UI:N/VC:L/VI:H/VA:H/SC:H/SI:H/SA:H'}


cve-icon MITRE

Status: PUBLISHED

Assigner: hp

Published:

Updated: 2025-10-07T15:14:47.089Z

Reserved: 2023-11-20T16:18:25.230Z

Link: CVE-2023-6215

cve-icon Vulnrichment

Updated: 2025-10-07T15:13:37.699Z

cve-icon NVD

Status : Received

Published: 2025-10-07T15:16:00.993

Modified: 2025-10-07T16:15:53.163

Link: CVE-2023-6215

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.