solution Contentsolution Content

支援通訊- SECURITY BULLETIN

文件 ID: c06714906

版本: 1

HPSBHF03680 rev. 1 - Intel® PROSet/Wireless WiFi Software August 2020 Security Updates

注意: 此 Security Bulletin 內的資訊必須盡快付諸實行。

發行日期 : 04-Aug-2020

上次更新日期 : 11-Aug-2020

潛在安全性影響:
Escalation of Privilege, Denial of Service
Source: HP, HP Product Security Response Team (PSRT)
Reported By: Intel

弱點摘要
Intel has informed HP of a potential security vulnerability in some Intel® PROSet/Wireless WiFi software which may allow escalation of privilege or denial of service. Intel is releasing software updates to mitigate this potential vulnerability.
參考編號
INTEL-SA-00355 Intel® PROSet/Wireless WiFi Software Advisory (in English): CVE-2020-0559, PSR-2020-0178
獲支援軟件版本*: 僅列出受影響版本。
See RESOLUTION section for impacted products.
背景
For a PGP signed version of this security bulletin please write to: hp-security-alert@hp.com
CVSS 3.1 Base Metrics
Reference
Base Vector
Base Score
CVE-2020-0559
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
6.3
解決方案
Intel has released updates to mitigate the potential vulnerability. HP has identified the affected platforms and the corresponding SoftPaq updated versions. See the affected platforms listed below.
注意:
Sign up for HP Subscriptions to be notified and receive:
  • Product support eAlerts
  • Driver updates
  • Security bulletin updates
HP recommends keeping your system up to date with the latest firmware and software.
Intel® PROSet/Wireless WiFi products with affected software:
  • Intel® Dual Band Wireless-AC 8265
  • Intel® Dual Band Wireless-AC 8260
  • Intel® Dual Band Wireless-AC 3168
  • Intel® Wireless 7265 (Rev D) Family
  • Intel® Dual Band Wireless-AC 3165

Business Notebook PCs

Product Name
Component Type
Updated Version
SoftPaq #
SoftPaq Link
HP 340 G3
Windows 7
19.10.21.1
SP102356
HP 346 G3
Windows 7
19.10.21.1
SP102356
HP 348 G3
Windows 7
19.10.21.1
SP102356
HP Elite x2 1012 G1
Windows 8.1
19.10.21.1
SP102356
HP Elite x2 1012 G1 Tablet
Windows 8.1
19.10.21.1
SP102356
HP Elite x2 1012 G1 Tablet with Travel Keyboard
Windows 8.1
19.10.21.1
SP102356
HP EliteBook 1030 G1
Windows 8.1/Windows 7
19.10.21.1
SP102356
HP EliteBook 645 G2
Windows 8.1/Windows 7
19.10.21.1
SP102093
HP EliteBook 655 G2
Windows 8.1/Windows 7
19.10.21.1
SP102093
HP EliteBook 725 G3
Windows 8.1/Windows 7
19.10.21.1
SP102093
HP EliteBook 745 G3
Windows 8.1/Windows 7
19.10.21.1
SP102093
HP EliteBook 755 G3
Windows 8.1/Windows 7
19.10.21.1
SP102093
HP EliteBook 820 G3
Windows 8.1/Windows 7
19.10.21.1
SP102356
HP EliteBook 828 G3
Windows 8.1/Windows 7
19.10.21.1
SP102356
HP EliteBook 840 G3
Windows 8.1/Windows 7
19.10.21.1
SP102356
HP EliteBook 848 G3
Windows 8.1/Windows 7
19.10.21.1
SP102356
HP EliteBook 850 G3
Windows 8.1/Windows 7
19.10.21.1
SP102356
HP EliteBook Folio 1040 G3
Windows 8.1/Windows 7
19.10.21.1
SP102093
HP EliteBook Folio G1
Windows 8.1/Windows 7
19.10.21.1
SP102356
HP ProBook 11 G2 EE
Windows 8.1/Windows 7
19.10.21.1
SP102093
HP ProBook 430 G3
Windows 8.1/Windows 7
19.10.21.1
SP102093
HP ProBook 440 G3
Windows 8.1/Windows 7
19.10.21.1
SP102093
HP ProBook 450 G3
Windows 8.1/Windows 7
19.10.21.1
SP102093
HP ProBook 455 G3
Windows 8.1/Windows 7
19.10.21.1
SP102093
HP ProBook 470 G3
Windows 8.1/Windows 7
19.10.21.1
SP102093
HP ProBook 640 G2
Windows 8.1/Windows 7
19.10.21.1
SP102093
HP ProBook 650 G2
Windows 8.1/Windows 7
19.10.21.1
SP102093
HP ZBook 15 G3
Windows 8.1/Windows 7
19.10.21.1
SP102093
HP ZBook 15u G3
Windows 8.1/Windows 7
19.10.21.1
SP102356
HP ZBook 17 G3
Windows 8.1/Windows 7
19.10.21.1
SP102093
HP ZBook Studio G3
Windows 8.1/Windows 7
19.10.21.1
SP102093

Business Desktop PCs

Product Name
Component Type
Updated Version
SoftPaq #
SoftPaq Link
HP 260 G2 Desktop Mini
Windows 8.1/Windows 7
19.10.21.1
SP102093
HP 280 G2 Microtower
Windows 7
19.10.21.1
SP102356
HP 280 G2 Small Form Factor
Windows 7
19.10.21.1
SP102356
HP 285 Pro G2 Microtower
Windows 7
19.10.21.1
SP102356
HP Elite Slice
Windows 8.1/Windows 7
19.10.21.1
SP102356
HP Elite Slice for Meeting Rooms
Windows 8.1/Windows 7
19.10.21.1
SP102356
HP EliteDesk 705 G3 Desktop Mini
Windows 8.1/Windows 7
19.10.21.1
SP102356
HP EliteDesk 705 G3 Microtower
Windows 7
19.10.21.1
SP102356
HP EliteDesk 705 G3 Small Form Factor
Windows 7
19.10.21.1
SP102356
HP EliteDesk 800 35W G2 Desktop Mini
Windows 8.1/Windows 7
19.10.21.1
SP102356
HP EliteDesk 800 35W G3 Desktop Mini
Windows 8.1/Windows 7
19.10.21.1
SP102356
HP EliteDesk 800 65W G2 Desktop Mini
Windows 8.1/Windows 7
19.10.21.1
SP102356
HP EliteDesk 800 G2 Small Form Factor
Windows 7
19.10.21.1
SP102356
HP EliteDesk 800 G2 Tower
Windows 7
19.10.21.1
SP102356
HP EliteDesk 800 G3 Small Form Factor
Windows 7
19.10.21.1
SP102356
HP EliteDesk 800 G3 Tower
Windows 7
19.10.21.1
SP102356
HP EliteDesk 880 G2 Tower
Windows 7
19.10.21.1
SP102356
HP EliteDesk 880 G3 Tower
Windows 7
19.10.21.1
SP102356
HP EliteOne 1000 G1 23.8-in All-in-One Business
Windows 7
19.10.21.1
SP102093
HP EliteOne 1000 G1 23.8-in Touch All-in-One
Windows 7
19.10.21.1
SP102093
HP EliteOne 1000 G1 27-in 4K UHD All-in-One Business PC
Windows 7
19.10.21.1
SP102093
HP EliteOne 1000 G1 34-in Curved All-in-One
Windows 7
19.10.21.1
SP102093
HP EliteOne 705 G2 All-in-One PC Touch
Windows 8.1/Windows 7
19.10.21.1
SP102356
HP EliteOne 800 G2 23-inch Non-Touch All-in-One
Windows 8.1/Windows 7
19.10.21.1
SP102356
HP EliteOne 800 G2 23-inch Non-Touch GPU All-in-One
Windows 8.1/Windows 7
19.10.21.1
SP102356
HP EliteOne 800 G3 23.8 Non-Touch Healthcare Edition All-in-One
Windows 8.1/Windows 7
19.10.21.1
SP102356
HP EliteOne 800 G3 23.8-inch Non-Touch All-in-One
Windows 8.1/Windows 7
19.10.21.1
SP102356
HP EliteOne 800 G3 23.8-inch Non-Touch GPU All-in-One
Windows 8.1/Windows 7
19.10.21.1
SP102356
HP EliteOne 800 G3 23.8-inch Touch All-in-One
Windows 8.1/Windows 7
19.10.21.1
SP102356
HP EliteOne 800 G3 23.8-inch Touch GPU All-in-One
Windows 8.1/Windows 7
19.10.21.1
SP102356
HP ProDesk 400 G3 Desktop Mini
Windows 8.1/Windows 7
19.10.21.1
SP102356
HP ProDesk 400 G4 Microtower
Windows 7
19.10.21.1
SP102356
HP ProDesk 480 G4 Microtower
Windows 7
19.10.21.1
SP102356
HP ProDesk 600 G2 Desktop Mini
Windows 8.1/Windows 7
19.10.21.1
SP102356
HP ProDesk 600 G2 Microtower
Windows 7
19.10.21.1
SP102356
HP ProDesk 600 G2 Small Form Factor
Windows 7
19.10.21.1
SP102356
HP ProDesk 600 G3 Desktop Mini
Windows 8.1/Windows 7
19.10.21.1
SP102356
HP ProDesk 600 G3 Microtower
Windows 7
19.10.21.1
SP102356
HP ProDesk 600 G3 Small Form Factor
Windows 8.1/Windows 7
19.10.21.1
SP102356
HP ProDesk 680 G2 Microtower
Windows 7
19.10.21.1
SP102356
HP ProDesk 680 G3 Microtower
Windows 7
19.10.21.1
SP102356
HP ProOne 400 G2 20-inch Touch All-in-One
Windows 8.1/Windows 7
19.10.21.1
SP102356
HP ProOne 480 G3 20-inch Non-Touch All-in One
Windows 8.1/Windows 7
19.10.21.1
SP102356
HP ProOne 600 G2 21.5-inch Non-Touch All-in-One
Windows 8.1/Windows 7
19.10.21.1
SP102356
HP ProOne 600 G3 21.5-inch Non-Touch All-in-One
Windows 8.1/Windows 7
19.10.21.1
SP102356

Retail Point-of-Sale systems

Product Name
Component Type
Updated Version
SoftPaq #
SoftPaq Link
HP MP9 G2 Retail System
Windows 8.1, Windows Embedded 8.1 Industry, Windows 7, Windows Embedded POSReady 7 (64 bit), Windows Embedded POSReady 7 (32 bit)
19.10.21.1
SP102356
HP RP5 Retail System Model 5810
Windows 8.1, Windows Embedded 8.1 Industry, Windows 7, Windows Embedded POSReady 7 (64 bit), Windows Embedded POSReady 7 (32 bit)
19.10.21.1
SP102356
HP RP9 G1 Retail System
Windows 8.1, Windows Embedded 8.1 Industry, Windows 7, Windows Embedded POSReady 7 (64 bit), Windows Embedded POSReady 7 (32 bit)
19.10.21.1
SP102356

Thin Clients

Product Name
Component Type
Updated Version
SoftPaq #
SoftPaq Link
HP t530 Thin Client
Windows Embedded Standard 7
19.10.21.1
SP105756
HP t628 Thin Client
Windows Embedded Standard 7
19.10.21.1
SP105756
HP t630 Thin Client
Windows Embedded Standard 7
19.10.21.1
SP105756
HP t730 Thin Client
Windows Embedded Standard 7
19.10.21.1
SP105756
Third Party Security Patches: Third party security patches that are to be installed on systems running HP software products should be applied in accordance with the customer's patch management policy.
Support: For issues about implementing the recommendations of this Security Bulletin, visit https://www.hp.com/go/contacthp to learn about your HP support options.
Report: To report a potential security vulnerability with any HP supported product, send email to: hp-security-alert@hp.com.
Subscribe: To initiate a subscription to receive future HP Security Bulletin alerts via email, visit https://www.hp.com/go/alerts.
Security Bulletin Archive: To view released Security Bulletins, search the HP Support Site for "security bulletin".
Software Product Category: The Software Product Category is represented in the title by the two characters following HPSB.
PI
HP Printing and Imaging
HF
HP Hardware and Firmware
GN
HP General Software
It is strongly recommended that security related information being communicated to HP be encrypted using PGP, especially exploit information.
To get the security-alert PGP key, please send an e-mail message as follows:
Subject: get key
您必須時常檢視系統管理及安全措施,以維持系統穩定。為了提供客戶最新、最安全的解決方案,HP 將會持續檢視並加強軟體產品的安全性。

"我們亦將廣為流傳此 Security Bulletin,以使受影響的 HP 產品用戶更加注意本文所列的重要保安資訊。 HP 建議所有用戶自行根據實際情況判斷這些資訊的適用性,並且採取適當的措施。 HP 並不保證這些資訊的精確性及完整性適用於所有用戶,因此 HP 對於用戶因採用或忽視本文件內的資訊而造成的損害概不負責。 在相關法律所允許之最大範圍內,HP 不承擔任何瑕疵責任擔保,不論其為明示或默示者,其中包括適售性、適合某特定用途以及不侵害他人權益之擔保責任。"
修訂歷程記錄 : Version: 1 – 11 August 2020 Initial release.

HP Inc. 對於本文件在技術上或編輯上的錯誤或疏漏概不負責。 本資訊以「維持現狀」的形式提供,不作任何類型的保證。 在法律許可情況下,不論 HP 或其附屬公司、承包商或供應商對於偶然的、特殊的或引發的損害 (包括停工成本;利益損失;採購替代產品或服務之相關損害;或是資料遺失或軟體重建之損害) 概不負責。 本文所載資訊得隨時更改且不另行通知。 本文所述之 HP Inc. 及 HP 產品名稱為 HP Inc. 在美國及其他國家/地區的商標。 本文所提及之其他產品與公司名稱皆為其個別所有者的商標。