HPE Product Security Update Advisory (CVE-2024-22442)

Overview

HPE has released updates to fix vulnerabilities in their products. Users of affected versions are advised to update to the latest version.

Affected Products

 

CVE-2024-22442

  • HPE 3PAR Service Processor versions: ~ 5.1.1 (inclusive)

 

Resolved Vulnerabilities

 

Vulnerability in HPE 3PAR Service Processor Software that can be remotely exploited to bypass authentication (CVE-2024-22442)

 

Vulnerability Patches

Vulnerability patches have been made available in the latest updates. Please follow the instructions on the Referenced Sites to update to the latest Vulnerability Patches version.

 

CVE-2024-22442

  • HPE 3PAR Service Processor version: 5.1.2

 

Referenced Sites

[1] CVE-2024-22442 Detail

https://nvd.nist.gov/vuln/detail/CVE-2024-22442

[2] security bulletin

https://support.hpe.com/hpesc/public/docDisplay?docId=hpesbst04663en_us&docLocale=en_US