CVE-2015-5368
The HP lt4112 LTE/HSPA+ Gobi 4G module with firmware before 12.500.00.15.1803 on EliteBook, ElitePad, Elite, ProBook, Spectre, ZBook, and mt41 Thin Client devices allows remote attackers to modify data or cause a denial of service, or execute arbitrary…
Does this matter?
High impact if exploited, but EPSS currently rates exploitation as unlikely (7.10%). Schedule it in the normal patch cycle and watch for a rise in EPSS or a public exploit.
Description
The HP lt4112 LTE/HSPA+ Gobi 4G module with firmware before 12.500.00.15.1803 on EliteBook, ElitePad, Elite, ProBook, Spectre, ZBook, and mt41 Thin Client devices allows remote attackers to modify data or cause a denial of service, or execute arbitrary code, via unspecified vectors.
- CVSS 2.0
- 7.8 HIGHAV:N/AC:M/Au:N/C:N/I:P/A:C
- EPSS
- 7.10% probability · 94th percentile
- CISA KEV
- Not listed
- Weakness
- CWE-119
- Affected
- hp/hspa\+ gobi 4g · hp/lt4112 lte · hp/elite x2 1010 g2 · hp/elitebook 1040 g1 · hp/elitebook 1040 g2 · hp/elitebook 820 g1 · hp/elitebook 820 g2 · hp/elitebook 825 g2 · hp/elitebook 840 g1 · hp/elitebook 840 g2 · hp/elitebook 845 g1 · hp/elitebook 850 g1 · hp/elitebook 850 g2 · hp/elitebook 855 g1 · hp/elitebook folio 9470m · hp/elitebook revolve 810 g1 · hp/elitebook revolve 810 g2 · hp/elitepad 1000 g2 · hp/mt41 thin client · hp/probook 430 g1 · +19 more
- Source
- cve@mitre.org
References
- http://www.securityfocus.com/bid/76176
- http://www.securitytracker.com/id/1033414
- http://www1.huawei.com/en/security/psirt/security-bulletins/security-advisories/hw-446601.htm
- https://h20564.www2.hpe.com/portal/site/hpsc/public/kb/docDisplay?docId=emr_na-c04773272Vendor Advisory
- https://h20566.www2.hp.com/portal/site/hpsc/public/kb/docDisplay?docId=emr_na-c04773272
- http://www.securityfocus.com/bid/76176
- http://www.securitytracker.com/id/1033414
- http://www1.huawei.com/en/security/psirt/security-bulletins/security-advisories/hw-446601.htm
- https://h20564.www2.hpe.com/portal/site/hpsc/public/kb/docDisplay?docId=emr_na-c04773272Vendor Advisory
- https://h20566.www2.hp.com/portal/site/hpsc/public/kb/docDisplay?docId=emr_na-c04773272
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.