Wednesday, March 17, 2010

HP PCs Broadcom Integrated NIC Vulnerability

There has been found a vulnerability affecting various HP Small Form Factor and Microtower PCs. The vulnerability may allow an attacker to remotely compromise a vulnerable system. This is caused by an unspecified error within the Broadcom Integrated NIC firmware.

Affected products are:

HP Compaq 6005 Pro Microtower PC
HP Compaq 6005 Pro Small Form Factor PC
HP Compaq dc5700 Microtower
HP Compaq dc5700 Small Form Factor
HP Compaq dc5750 Microtower
HP Compaq dc5750 Small Form Factor
HP Compaq dc5850 Small Form Factor
HP Compaq dc5850 Microtower
HP Compaq dc7600 Convertible
HP Compaq dc7600 Microtower
HP Compaq dc7600 Small Form Factor
HP Compaq dx7200 Microtower
HP rp3000 Point of Sale
HP rp5700 Business Desktop
HP rp5700 Point of Sale

Broadcom Integrated NIC Management Firmware for HP PCs versions prior to 1.40.0.0
Broadcom Integrated NIC Management Firmware for HP PCs versions prior to 8.08

Solution is to update firmware to version 1.40.0.0 or 8.08. Firmware upgrade can be downloaded here.


More information:
HP support document
VUPEN security advisory

No comments: