CVE-2016-2243

Sure Start on HP Commercial PCs 2015 allows local users to cause a denial of service (BIOS recovery failure) by leveraging administrative access.
Configurations

Configuration 1 (hide)

AND
OR cpe:2.3:h:hp:elitebook_725_g3:-:*:*:*:*:*:*:*
cpe:2.3:h:hp:elitebook_745_g3:-:*:*:*:*:*:*:*
cpe:2.3:h:hp:elitebook_755_g3:-:*:*:*:*:*:*:*
cpe:2.3:o:hp:700_series_firmware:1.08:*:*:*:*:*:*:*

Configuration 2 (hide)

AND
OR cpe:2.3:h:hp:elitedesk_800_g2_twr:-:*:*:*:*:*:*:*
cpe:2.3:h:hp:elitedesk_800_sff:-:*:*:*:*:*:*:*
cpe:2.3:o:hp:800_series_firmware:2.09:*:*:*:*:*:*:*

Configuration 3 (hide)

AND
OR cpe:2.3:h:hp:z240_sff_workstation_n51:-:*:*:*:*:*:*:*
cpe:2.3:h:hp:z240_tower_workstation_n51:-:*:*:*:*:*:*:*
cpe:2.3:o:hp:z240_firmware:1.11:*:*:*:*:*:*:*

Configuration 4 (hide)

AND
cpe:2.3:o:hp:700_series_firmware:2.09:*:*:*:*:*:*:*
cpe:2.3:h:hp:elitedesk_705_g2_mt_sff:-:*:*:*:*:*:*:*

Configuration 5 (hide)

AND
cpe:2.3:h:hp:z238_microtower_workstation_n51:-:*:*:*:*:*:*:*
cpe:2.3:o:hp:z238_firmware:1.11:*:*:*:*:*:*:*

Configuration 6 (hide)

AND
OR cpe:2.3:h:hp:zbook_15_g3:-:*:*:*:*:*:*:*
cpe:2.3:h:hp:zbook_15u_g3:-:*:*:*:*:*:*:*
cpe:2.3:h:hp:zbook_17_g3:-:*:*:*:*:*:*:*
cpe:2.3:o:hp:zbook_firmware:1.03:*:*:*:*:*:*:*

Configuration 7 (hide)

AND
OR cpe:2.3:h:hp:elitedesk_800_g2_dm:-:*:*:*:*:*:*:*
cpe:2.3:h:hp:mp9_g2_retail_system:-:*:*:*:*:*:*:*
cpe:2.3:o:samsung:x14j_firmware:t-ms14jakucb-1102.5:*:*:*:*:*:*:*
cpe:2.3:o:hp:800_series_firmware:2.1:*:*:*:*:*:*:*

Configuration 8 (hide)

AND
OR cpe:2.3:h:hp:elitebook_820_g3:-:*:*:*:*:*:*:*
cpe:2.3:h:hp:elitebook_840_g3:-:*:*:*:*:*:*:*
cpe:2.3:h:hp:elitebook_850_g3:-:*:*:*:*:*:*:*
cpe:2.3:o:hp:1000_series_firmware:1.04:*:*:*:*:*:*:*

Configuration 9 (hide)

AND
cpe:2.3:h:hp:elitebook_folio_1012_x2_g2:-:*:*:*:*:*:*:*
cpe:2.3:o:hp:1000_series_firmware:1.1:*:*:*:*:*:*:*

Configuration 10 (hide)

AND
cpe:2.3:h:hp:elitebook_folio_1040_g3:-:*:*:*:*:*:*:*
cpe:2.3:o:hp:1000_series_firmware:1.01:*:*:*:*:*:*:*

Configuration 11 (hide)

AND
cpe:2.3:h:hp:elitedesk_705_g2_dm:*:*:*:*:*:*:*:*
cpe:2.3:o:hp:700_series_firmware:2.05:*:*:*:*:*:*:*

Configuration 12 (hide)

AND
cpe:2.3:h:hp:mt42_mobile_thin_client:-:*:*:*:*:*:*:*
cpe:2.3:o:hp:700_series_firmware:1.05:*:*:*:*:*:*:*

Configuration 13 (hide)

AND
cpe:2.3:h:hp:zbook_studio_g3:-:*:*:*:*:*:*:*
cpe:2.3:o:hp:zbook_firmware:1.04:*:*:*:*:*:*:*

Configuration 14 (hide)

AND
cpe:2.3:o:zyxel:gs1900-10hp_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:hp:700_series_firmware:2.07:*:*:*:*:*:*:*

History

21 Nov 2024, 02:48

Type Values Removed Values Added
References () http://www.securitytracker.com/id/1035193 - () http://www.securitytracker.com/id/1035193 -
References () https://h20565.www2.hp.com/hpsc/doc/public/display?docId=emr_na-c05012469 - Vendor Advisory () https://h20565.www2.hp.com/hpsc/doc/public/display?docId=emr_na-c05012469 - Vendor Advisory

Information

Published : 2016-03-04 15:59

Updated : 2024-11-21 02:48


NVD link : CVE-2016-2243

Mitre link : CVE-2016-2243

CVE.ORG link : CVE-2016-2243


JSON object : View

Products Affected

hp

  • mp9_g2_retail_system
  • 700_series_firmware
  • zbook_17_g3
  • zbook_studio_g3
  • elitedesk_800_sff
  • 800_series_firmware
  • z240_sff_workstation_n51
  • z240_tower_workstation_n51
  • elitedesk_705_g2_mt_sff
  • zbook_15u_g3
  • elitedesk_800_g2_dm
  • elitebook_725_g3
  • z238_microtower_workstation_n51
  • z238_firmware
  • elitebook_820_g3
  • elitedesk_705_g2_dm
  • zbook_15_g3
  • elitebook_755_g3
  • 1000_series_firmware
  • elitebook_folio_1040_g3
  • elitebook_840_g3
  • mt42_mobile_thin_client
  • zbook_firmware
  • elitebook_folio_1012_x2_g2
  • elitebook_850_g3
  • elitebook_745_g3
  • z240_firmware
  • elitedesk_800_g2_twr

samsung

  • x14j_firmware

zyxel

  • gs1900-10hp_firmware
CWE
CWE-284

Improper Access Control