No official announcement yet, but researchers confirm updated firmware contains a fix
Updated BIOS code and signature verification process for files downloaded from remote servers
Malicious firmware being used to build chain of devices to snoop on European government entities, says Check Point
MSI devices equipped with 11th gen Tiger Lake, 12th gen Adler Lake and 13th gen Raptor Lake CPUs could be affected, says researcher
The vulnerabilities were introduced when Lenovo inadvertently included an early development driver in the commercial versions of their software
The high-severity bugs affect HP Elite 2-in-1 PCs, HP EliteBook, HP ProBook laptops, some workstations, point-of-sale systems and desktop computers
Most serious could allow a privileged user to enable an escalation of privilege via local access
Millions of enterprise devices could be impacted
A malicious actor could exploit these flaws to escalate privilege on a vulnerable machine
Enterprises must assess the 'firmware posture' of new devices during procurement