CVE-2023-6215 PUBLISHED

HP Sure Start IFD Protection - BIOS Security Update

Assigner: hp
Reserved: 20.11.2023 Published: 07.10.2025 Updated: 07.10.2025

A potential security vulnerability has been identified in HP Sure Start’s protection of the Intel Flash Descriptor in certain HP PC products, which might allow security bypass, arbitrary code execution, loss of integrity or confidentiality, or denial of service. HP is releasing BIOS updates to mitigate the potential vulnerability.

Metrics

CVSS Vector: CVSS:4.0/AV:P/AC:L/AT:N/PR:N/UI:N/VC:L/VI:H/VA:H/SC:H/SI:H/SA:H
CVSS Score: 7.2

Product Status

Vendor HP, Inc.
Product HP Sure Start IFD Protection
Versions Default: unaffected
  • Version See HP security bulletin reference for affected versions is affected

References