• ×
    Information
    Need Windows 11 help?
    Check documents on compatibility, FAQs, upgrade information and available fixes.
    Windows 11 Support Center.
  • post a message
  • ×
    Information
    Need Windows 11 help?
    Check documents on compatibility, FAQs, upgrade information and available fixes.
    Windows 11 Support Center.
  • post a message
Guidelines
Are you having HotKey issues? Click here for tips and tricks.
HP Recommended
HP EliteDesk 800 G4 Small Form Factor PC
Microsoft Windows 7 (64-bit)

have a 7-year old elite 800 g4 (2017/18) it should be able to run windows 7, but a previous owner upgrades the the bios and the tpm is set to 2.0, instead of 1.2. Can i download an earlier bios that supports tpm1.2? Thanks

1 ACCEPTED SOLUTION

Accepted Solutions
HP Recommended

I don't believe that any HP 800 G4 desktop PC came with a TPM 1.2 security chip.

 

None of the BIOS update release notes indicate that it updated a TPM 1.2 revision to TPM 2.0.

 

TPM 1.2 to 2.0 firmware upgrades were not done via a BIOS update but via a separate file.

 

This link provides the instructions to update the firmware from 1.2 to 2.0 and back to 1.2 again.

 

No 800 G4 is on the list of PC's supported for this.

 

HP Desktops, Notebooks, and Workstations - HP TPM Configuration Utility With Windows 10 Anniversary ...

 

Here are the release notes for all of the 800 G4 SFF BIOS updates.

 

Version:
02.01.08 Rev.A
Fixed in this release: Initial BIOS release.
Version:
02.01.09 Rev.A
Fixed in this release: - Security update with new MCU version.
Version:
02.02.00 Rev.A
Fixed in this release: - Fixes PCR7 state "Binding not Possible" under "OS System Information" when Secure Boot is Enabled, TPM is Available and TPM State is Enabled.
- Fixes "System Security Issue has been detected" when doing Windows System Restore with HP Sure Run activated on Windows 10 RS4 OS.
- Updates VBIOS/GOP to fix Type-C option card Certification problem. 
- Adds Event logs in F10 BIOS menu.
- Adds new details in "System Information Tab" in F10 BIOS menu.
- Updates CCG5 FW to 6.3(Signed).
- Updates SIO FW to 7.9.34.
Version:
02.02.04 Rev.A
Fixed in this release: - Update ME to 12.0.7.1122 for Intel Quarterly Security Release.
Version:
02.04.01 Rev.A
Fixed in this release: - Fixes issue where system would when resuming from sleep with TBT External Graphic card attached.
- Fixes issue where Absolute Persistence fails if HP Sure Run is activated.
Version:
02.06.03 Rev.A
Fixed in this release: - Fixed issue where remote diagnostic would fail with error message: "Could not detect network link or network cable is unplugged".
- Fixed issue where Bitlocker cannot be unlocked over network.
- Fixed issue where system updates firmware from EFI patition of system drive, instead of USB drive when selecting "Update System and Supported Device Firmware Using Local Media" from BIOS setup (F10).
- Fixed issue where virtual touch keyboard still displays in HP logo screen after entering correct PIN code.
- Fixed issue where changes made in BIOS Setup (F10) after a failed PXE boot does not be saved.
- Fixed issue where system hangs in POST when plugging in the Apple USB-C HDMI/VGA Multiport Adapter.
- Fixed issue where BIOS update triggered by Windows Update does not occur after inputting the incorrect Admin password then inputting correct password.
- Fixed issue where system still updates ME and Cypress PD Firmware when user enters incorrect BIOS administrator password.
- Fixed issue where Absolute Persistence function not work while HP Sure Run is activated.
- Fixed issue resulting in audio output distortion while plugging in a 3rd-party AC adapter.
- Fixed issue where ME firmware update process stops around 60 seconds to 120 seconds when connecting HP Thunderbolt Dock during update process.
- Fixed issue where system still pops out Physical Presence Interface when disabling Intel SGX in BIOS setup (F10) with Physical Presence Interface setting disabled.
- Fixed issue where "RFID" option disappears in BIOS setup (F10) after disabling it. 
- Adds Russian Language Support in F10 setup interface.
- Adds a feature to hide BIOS administrator account in Power-On Authentication screen.
- Increases PXE IP time-to-live (TTL) value to improved compatibility with diverse end-user network environments.
- Adds Drivelock password feature support on Pyrite NVMe SSD.
- Improved Japanese touch keyboard layout.
- Updates the Intel silicon reference code for compatibility enhancement.
- Updates the CPU microcode for Intel processors to 0x9A.
- Enhancement to address security vulnerabilities CVE-2018-12201, CVE-2018- 12202, CVE-2018-12203, CVE-2018-12204, CVE-2018-12205.
- Enhancement to address security vulnerabilities CVE-2018-12188, CVE-2018-12189, CVE-2018-12190, CVE-2018-12191, CVE-2018-12192, CVE-2018-12199, CVE-2018-12198, CVE-2018-12200, CVE-2018-12187, CVE-2018-12196, CVE-2018-12185, CVE-2018-12208
Version:
02.07.01 Rev.A
Fixed in this release: - Fixed issue where user cannot exit MEBx (F6) by pressing Y or N key when setting language to Russian/Deutsch in F10.
- Fixed issue where keyboard drop-down menu still shows as English at Power-On Authentication page after changing the keyboard layout to non-English and selecting the standard user with the new password at the Power-On Authentication page.
- Fixed issue where IPv4 option missing under Boot Order after updating BIOS by Network BIOS Update.
- Fixed issue where legacy bootable disk will be lost when hot plugging USB LAN dongle then pressing "Ctrl +alt +Del" key combination to boot to F9.
- Fixed issue where system with Pyrite SSC V2.0 NVMe drive could not boot into OS after enabling DriveLock then disabling it.
- Fixed issue where "Continue Boot" is not translated in startup Menu after language is set to Russian in F10.
- Fixed issue where rear USB-C still has power in hibernation or shutdown state when disabling Type-C Downstream charging.
- Fixed a timing issue bundle with Intel i210 add-on card which would cause "Wake on LAN/Wake on Link" failure.
- Fixed issue where system will hang with black screen when resuming from sleep/hibernation after loading default BIOS in F10 setup interface.
- Fixed issue where F10 "USB Key provisioning option" item does not restore to default setting after clearing the CMOS.
- Fixed issue where system power on black screen about 50 seconds when NVIDIA GeForce 2070/2080 Graphics card is installed.
- Fixed issue where USB Type-C device shows yellow bang intermittently in device manager when resuming from sleep. 
- Update CCG PD firmware to 6.6.
- Update Intel reference code to 7.0.47.50.
- Locks power button function during TPM firmware update process to avoid firmware corruption.
- Adds a feature "HP Application Driver" in F10 setup interface to support HP fusion application.
- Enhancement to address security vulnerabilities CVE-2018-12126, CVE-2018-12127, CVE-2018-12130.
- Enhancement to address security vulnerabilities CVE-2019-0086, CVE-2019-0090, CVE-2019-0091, CVE-2019-0092, CVE-2019-0093, CVE-2019-0094, CVE-2019-0096, CVE-2019-0097, CVE-2019-0098.
Version:
02.08.00 Rev.A
Fixed in this release:
Version:
02.09.01 Rev.A
Fixed in this release: -Fixes issue where PCR1 value is changed after cold boots, restarts or F10 exit.
-Fixes issue where system reports error "Failure during data transfer (maximum downloaded content size exceeded)" when unit tries to update firmware via FTP server with proxy from F10 setup interface.
-Fixes issue where system intermittently enters hibernation after idle around 2 hours in battery mode when HP Sure Run and Bitlocker is enabled.
-Fixes issue where specific SanDisk USB drive does not be listed in F9 Boot Menu. 
This BIOS upgrade package also includes the following firmware versions: (only list appropriate ones)
Intel Management Engine Corporate v 12.0.45.1509
SIO19 F/W 7.9.44
Intel VBIOS 9.2.1014 (2018/07/04)
Intel GOP 9.0.1075 (2018/03/05)
USB Type-C PD firmware FW 6.8.0
Intel/Realtek PXE rom IBS GE v0.1.13
Intel/Realtek UEFI PXE rom Efi v0.0.19

-Enhancement to address security vulnerabilities CVE-2019-0123, CVE-2019-0117, CVE-2019-11135, CVE-2019-11139, CVE-2019-0185.
-Enhancement to address security vulnerabilities CVE-2019-0131, CVE-2019-0165, CVE-2019-0166, CVE-2019-0168, CVE-2019-0169, CVE-2019-11086, CVE-2019-11087, CVE-2019-11088, CVE-2019-11090, CVE-2019-11097, CVE-2019-11100, CVE-2019-11101, CVE-2019-11102, CVE-2019-11103, CVE-2019-11104, CVE-2019-11105, CVE-2019-11106, CVE-2019-11107, CVE-2019-11108, CVE-2019-11109, CVE-2019-11110, CVE-2019-11131, CVE-2019-11132, CVE-2019-11147.
-Enhancement to address security vulnerabilities CVE-2019-0123, CVE-2019-0117.
-Enhancement to address security vulnerabilities CVE-2019-0185, CVE-2019-0152, CVE-2019-11136, CVE-2019-11137.
-Updates SuperIO firmware to v7.9.44 for stability enhancement.
-Updates Cypress PD firmware to v6.8 for compatibility enhancement.
-Adds a feature to seprate Administrator/User DriveLock password in F10 setup interface.
-Adds a feature to query DriveLock setting by HP BIOS Configuration Utility (BCU).
-Adds a feature to support Enhanced Secure Erase command for ATA drive in F10 setup interface.
Version:
02.10.00 Rev.A
Fixed in this release: - Fixes issue where special symbols display incorrectly if F10 setup interface is changed to Russian language.
- Fixes an issue which causes the system to boot slower than expected when a network cable is used to connect the system to a Dell or Targus USB Display Link Dock.
- Fixes issue where system BIOS fails to be updated and reported "Failed to determine if new BIOS is available" without setting Proxy Server in F10 setup interface.
- Fixes issue where system prompts Power on Authentication with BIOS Administrator and POST Power-On Password options before scheduled BIOS update.
- Fixes an issue where extra characters "Enabled by default. [Help Icon]=" shows up in the help message of "Intel Management Engine (ME)" option.
- Adds a feature to support Automatic DriveLock feature in F10 setup interface for Pyrite NVMe SSD.
- Fixed an issue where "Retail Basic or ElitePOS Advanced I/O Connectivity Base" PUSB and Cash drawer ports don't have power when system wakes from sleep 
This BIOS upgrade package also includes the following firmware versions: (only list appropriate ones)
Intel Management Engine Corporate v 12.0.49.1534
SIO19 F/W 7.9.50
Intel VBIOS 9.2.1014 (2018/06/21)
Intel GOP 9.0.1075 (2018/04/13)
USB Type-C PD firmware FW 6.8.0
Intel/Realtek PXE rom IBS GE v0.1.13
Intel/Realtek UEFI PXE rom Efi v0.0.19

- Updates the CPU microcode for Intel processors to 0xCA.
- Updates Intel ME Firmware to 12.0.49.1534.
- Updates SuperIO firmware to v7.9.50 for stability enhancement.
Version:
02.11.01 Rev.A
Fixed in this release: - Fixes an issue where system with some PCIe cards installed cannot boot to OS after updating BIOS.
- Fixes an issue where system displays "Enter current DriveLock Password" message when enabling Automatic Drivelock then restarting system several times.
- Fixes an issue where Automatic DriveLock option is enabled and greyed out after BIOS Administrator Password is removed.
- Fixes an issue where original boot entry is deleted while third party encryption software creates their own boot entry.
- Fixes an issue where system firmware is updated from recovery partition instead of EFI partition.
- Fixes an issue where hard drive still prompts DriveLock password after forcing the Master password to match BIOS Administrator Password.
- Fixes an issue where system cannot enable "Automatic Drivelock" after placing a hard drive into another system and disabling Automatic Drivelock by another system.
- Fixes an issue where system cannot enable "Automatic DriveLock" option for NVMe SSD after "create BIOS Administrator password" in F10.
- Fixes an issue where system does not prompt for Power on Authentication with BIOS Administrator and POST Power-On Password options when schedule update check is failed. 
This BIOS upgrade package also includes the following firmware versions: (only list appropriate ones)
Intel Management Engine Corporate 12.0.64.1551 (Production)
SIO19 F/W 7.9.50
Intel VBIOS 9.2.1014 (2018/06/21)
Intel GOP 9.0.1075 (2018/04/13)
USB Type-C PD firmware FW 6.8.0
Intel/Realtek PXE rom IBS GE v0.1.13
Intel/Realtek UEFI PXE rom Efi v0.0.19

- Enhancement to address security vulnerabilities CVE-2020-0528, CVE-2020-0529.
- Upgrade Intel Reference Code to 7.0.6E.40 for compatibility enhancement.
- Enhancement to address security vulnerabilities CVE-2020-0531, CVE-2020-0532, CVE-2020-0534, CVE-2020-0535, CVE-2020-0536, CVE-2020-0537, CVE-2020-0538, CVE-2020-0539, CVE-2020-0540, CVE-2020-0541, CVE-2020-0542.
- Adds Drivelock password feature support on OPAL SED NVMe SSD.
Version:
02.12.00 Rev.A
Fixed in this release: - Fixes an issue where message of Physical Presence Interface displays as incomplete when changing to non-English languages.
- Fixes an issue where system unexpectedly hangs when an EFI folder is created in Recovery partition.
- Fixes an issue where Physical Presence Interface cannot be set to disabled when changing to non-English language in F10 setup interface.
- Fixes an issue where original boot entry is deleted while third-party encryption software creates their own boot entry.
- Fixes an issue where Automatic DriveLock option is enabled and greyed out after the BIOS Administrator Password is removed.
- Fixes an issue where system does not boot to OS directly when choosing "Postpone this BIOS until the next Reboot" option at scheduled BIOS update via F10 setup interface. 
This BIOS upgrade package also includes the following firmware versions: (only list appropriate ones)
Intel Management Engine Corporate 12.0.68.1606 (Production)
SIO19 F/W 7.9.50
Intel VBIOS 9.2.1014 (2018/06/21)
Intel GOP 9.0.1075 (2018/04/13)
USB Type-C PD firmware FW 6.8.0
Intel/Realtek PXE rom IBS GE v0.1.13
Intel/Realtek UEFI PXE rom Efi v0.0.19
- Enhancement to address security vulnerabilities CVE-2020-0543, CVE-2020-0548, CVE-2020-0549, CVE-2020-8758, CVE-2020-8672.
- Adds a feature ""Wake on LAN Power-on Password Policy"" in F10 setup interface.
- Adds a feature ""Allow User to Modify Power-on Password"" in F10 setup interface.
Version:
02.14.01 Rev.A
Fixed in this release: - Fixes an issue where Secure Erase cannot be executed when Display Language is changed to non-English.
- Fixes an issue where system takes a long time to resume from sleep when Video Memory is changed to 512 MB. 
NOTE: Due to HP Sure Admin feature support, system is not compatible with older BIOS version once it is enabled, attempts to install older BIOS versions will be blocked.

This BIOS upgrade package also includes the following firmware versions: (only list appropriate ones)
Intel Management Engine Corporate 12.0.70.1652 (Production)
SIO19 F/W 7.9.51
Intel VBIOS 9.2.1014 (2018/06/21)
Intel GOP 9.0.1075 (2018/04/13)
USB Type-C PD firmware FW 6.8.0
Intel/Realtek PXE rom IBS GE v0.1.13
Intel/Realtek UEFI PXE rom Efi v0.0.19
- Enhancement to address security vulnerabilities CVE-2020-8696, CVE-2020-8695, CVE-2020-8694, CVE-2020-8744, CVE-2020-8745, CVE-2020-8746, CVE-2020-8747, CVE-2020-8749, CVE-2020-8752, CVE-2020-8753, CVE-2020-8754, CVE-2020-8756, CVE-2020-8757, CVE-2020-8760, CVE-2020-8705, CVE-2020-12297, CVE-2020-12303, CVE-2020-12355, CVE-2020-12356.
- Adds a feature ""HP Sure Admin"" support in F10 setup interface.
- Critical Security Update.
Version:
02.15.00 Rev.A
Fixed in this release: - Fixes an issue where "After Power Loss" in BIOS setup lost function after s3 resume. NOTE: Due to HP Sure Admin feature support, system is not compatible with older BIOS version once it is enabled, attempts to install older BIOS versions will be blocked.

This BIOS upgrade package also includes the following firmware versions: (only list appropriate ones)
Intel Management Engine Corporate 12.0.70.1652 (Production)
SIO19 F/W 7.9.51
Intel VBIOS 9.2.1014 (2018/06/21)
Intel GOP 9.0.1075 (2018/04/13)
USB Type-C PD firmware FW 6.8.0
Intel/Realtek PXE rom IBS GE v0.1.13
Intel/Realtek UEFI PXE rom Efi v0.0.19
- Update Intel Reference code to 7.0.74.20
Version:
02.16.00 Rev.A
Fixed in this release: - Fixes an issue where Security Device Error message pop out after enable Power-on Password.
- Fixes an issue where the system cannot resume from S3 with both PCIE x16 graphic card and PS/2 devices installed. 
NOTE: Due to HP Sure Admin feature support, system is not compatible with older BIOS version once it is enabled, attempts to install older BIOS versions will be blocked.

This BIOS upgrade package also includes the following firmware versions: (only list appropriate ones)
Intel Management Engine Corporate v12.0.81.1753 (Production)
SIO19 F/W 7.9.51
Intel VBIOS 9.2.1014 (2018/06/21)
Intel GOP 9.0.1075 (2018/04/13)
USB Type-C PD firmware FW 6.8.0
Intel/Realtek PXE rom IBS GE v0.1.13
Intel/Realtek UEFI PXE rom Efi v0.0.19
- Adds a feature "IPv6 during UEFI Boot" in F10 setup interface where user has ability to disable IPv6 during preboot phase.
- Enhancement to address security vulnerabilities CVE-2020-8703, CVE-2020-8704, CVE-2020-24506 and CVE-2020-24507.
- Enhancement to address security vulnerabilities CVE-2020-24512, CVE-2020-24511.
Version:
02.17.00 Rev.A
Fixed in this release: - Fixes issue where PCR7 Configuration is 'Binding Not Possible' while Intel Management Engine is "permanently disable"
- Fixes issue where system stops at Network BIOS Update screen after execute network connection check and trigger "Update System BIOS" via F10 setup menu in legacy boot mode.
- Fixes issue where Bitlocker unlock over network intermittently failure on specific network configuration. 
NOTE: Due to HP Sure Admin feature support, system is not compatible with older BIOS version once it is enabled, attempts to install older BIOS versions will be blocked.

This BIOS upgrade package also includes the following firmware versions: (only list appropriate ones)
Intel Management Engine Corporate v12.0.85.1869 (Production)
SIO19 F/W 7.9.51
Intel VBIOS 9.2.1014 (2018/06/21)
Intel GOP 9.0.1075 (2018/04/13)
USB Type-C PD firmware FW 6.8.0
Intel/Realtek PXE rom IBS GE v0.1.13
Intel/Realtek UEFI PXE rom Efi v0.0.19
- Enhancement to address security vulnerabilities CVE-2021-0107, CVE-2021-0111, CVE-2021-0114, CVE-2021-0115, CVE-2021-0116, CVE-2021-0117, CVE-2021-0118, CVE-2021-0119, CVE-2021-0124, CVE-2021-0125.
- Enhancement to address security vulnerabilities CVE-2021-0091, CVE-2021-0156, CVE-2021-0157.
- Enhancement to address security vulnerabilities CVE-2021-0127.
- Update ME firmware to 12.0.85.1869.
- Enhancement to address security vulnerabilities CVE-2021-33107.
Version:
02.18.00 Rev.A
Fixed in this release: NOTE: Due to HP Sure Admin feature support, system is not compatible with older BIOS version once it is enabled, attempts to install older BIOS versions will be blocked.

This BIOS upgrade package also includes the following firmware versions: (only list appropriate ones)
Intel Management Engine Corporate v12.0.85.1869 (Production)
SIO19 F/W 7.9.51
Intel VBIOS 9.2.1014 (2018/06/21)
Intel GOP 9.0.1075 (2018/04/13)
USB Type-C PD firmware FW 6.8.0
Intel/Realtek PXE rom IBS GE v0.1.13
Intel/Realtek UEFI PXE rom Efi v0.0.19
- Enhancement to address security vulnerabilities CVE-2021-39297, CVE-2021-39299, CVE-2021-39300, CVE-2021-39301.
- Enhancement to address security vulnerabilities CVE-2021-3808, CVE-2021-3809.
Version:
02.19.00 Rev.A
Fixed in this release: - Fixes issue where the physical presence interface would pop up when changing the "Intel Software Guard Extensions (SGX)" setting from "Software control" to "Disable." NOTE: Due to HP Sure Admin feature support, system is not compatible with older BIOS version once it is enabled, attempts to install older BIOS versions will be blocked.

This BIOS upgrade package also includes the following firmware versions: (only list appropriate ones)
Intel Management Engine Corporate v12.0.90.2072 (Production)
SIO19 F/W 7.9.51
Intel VBIOS 9.2.1014 (2018/06/21)
Intel GOP 9.0.1075 (2018/04/13)
USB Type-C PD firmware FW 6.8.0
Intel/Realtek PXE rom IBS GE v0.1.13
Intel/Realtek UEFI PXE rom Efi v0.0.19

- Enhancement to address security vulnerabilities CVE-2022-23924, CVE-2022-23925, CVE-2022-23926, CVE-2022-23927, CVE-2022-23928, CVE-2022-23929, CVE-2022-23930, CVE-2022-23931, CVE-2022-23932, CVE-2022-23933, CVE-2022-23934.
- Enhancement to address security vulnerabilities CVE-2022-23953, CVE-2022-23954, CVE-2022-23955, CVE-2022-23956, CVE-2022-23957, CVE-2022-23958.
- Enhancement to address security vulnerabilities CVE-2022-21166, CVE-2022-21125, CVE-2022-21123, CVE-2022-21127, CVE-2022-21151, CVE-2022-0005.
- Enhancement to address security vulnerabilities CVE-2022-0004.
Version:
02.20.01 Rev.A
Fixed in this release: NOTE: Due to HP Sure Admin feature support, system is not compatible with older BIOS version once it is enabled, attempts to install older BIOS versions will be blocked. This BIOS upgrade package also includes the following firmware versions: (only list appropriate ones) Intel Management Engine Corporate v12.0.90.2072 (Production) SIO19 F/W 7.9.51 Intel VBIOS 9.2.1014 (2018/06/21) Intel GOP 9.0.1075 (2018/04/13) USB Type-C PD firmware FW 6.8.0 Intel/Realtek PXE rom IBS GE v0.1.13 Intel/Realtek UEFI PXE rom Efi v0.0.19 - Enhancement to address security vulnerabilities CVE-2022-31635, CVE-2022-31636, CVE-2022-31637, CVE-2022-31638, CVE-2022-31639. - Enhancement to address security vulnerabilities CVE-2022-31640, CVE-2022-31641, CVE-2022-31642. - Enhancement to address security vulnerabilities CVE-2022-31644, CVE-2022-31645, CVE-2022-31646, CVE-2022-27537.
Version:
02.21.00 Rev.A
Fixed in this release: NOTE: Due to HP Sure Admin feature support, system is not compatible with older BIOS version once it is enabled, attempts to install older BIOS versions will be blocked. This BIOS upgrade package also includes the following firmware versions: Intel Management Engine Corporate v12.0.92.2145 (Production) SIO19 F/W 7.9.51 Intel VBIOS 9.2.1014 (2018/06/21) Intel GOP 9.0.1075 (2018/04/13) USB Type-C PD firmware FW 6.8.0 Intel/Realtek PXE rom IBS GE v0.1.13 Intel/Realtek UEFI PXE rom Efi v0.0.19 - Updates the Intel silicon reference code for compatibility enhancement - Updates the CPU microcode for Intel processors for stability enhancement. - Enhancement to address security vulnerabilities CVE-2022-26845, CVE-2022-29893, CVE-2022-27497, CVE-2022-33159. - Enhancement to address security vulnerabilities CVE-2022-27538.
Version:
02.22.00 Rev.A
Fixed in this release: - Fixes issue where BIOS Administrator password/Power on password can be accepted when the password length is less than Password Minimum Length. NOTE: Due to HP Sure Admin feature support, system is not compatible with older BIOS version once it is enabled, attempts to install older BIOS versions will be blocked.

This BIOS upgrade package also includes the following firmware versions:
Intel Management Engine Corporate v12.0.92.2145 (Production)
SIO19 F/W 7.9.52
Intel VBIOS 9.2.1014 (2018/06/21)
Intel GOP 9.0.1075 (2018/04/13)
USB Type-C PD firmware FW 6.8.0
Intel/Realtek PXE rom IBS GE v0.1.13
Intel/Realtek UEFI PXE rom Efi v0.0.19

- Enhancement to address security vulnerabilities CVE-2022-33894
- Enhancement to address security vulnerabilities CVE-2022-27539
- Enhancement to address security vulnerabilities CVE-2022-27541
- Enhancement to address security vulnerabilities CVE-2022-43777
Version:
02.23.00 Rev.A
Fixed in this release: - Fixes issue where System cannot create POST Power-On Password when selecting "Create POST Power-On Password" and entering the pin provided by the "Phone App" after creating the BIOS Administrator Password with EBAM. -Enhancement to add new steup option to control "Extended DHCP Timeout" for pre-boot network experience.
-Enhancement to address security vulnerabilities CVE-2022-33894, CVE-2022-38087
-Updates the Intel silicon MCU for compatibility enhancement
-Enhancement to address security vulnerabilities CVE-2022-3602, CVE-2022-3786.

-Includes the following firmware:
Intel Management Engine Corporate v12.0.92.2145 (Production)
SIO19 F/W 7.9.52
Intel VBIOS 9.2.1014 (2018/06/21)
Intel GOP 9.0.1075 (2018/04/13)
USB Type-C PD firmware FW 6.8.0
Intel/Realtek PXE rom IBS GE v0.1.13
Intel/Realtek UEFI PXE rom Efi v0.0.19
Version:
02.24.00 Rev.A
Fixed in this release: - Integrate Infineon TPM EFI Driver v02.02.3776.00
- Enhancement to address security vulnerabilities CVE-2022-44611
- Enhancement to address security vulnerabilities CVE-2022-40982
- Updates Intel MCU for compatibility enhancement
- Enhancement to address security vulnerabilities CVE-2022-29871
- Updates Intel ACM for compatibility enhancement
-Includes the following firmware:
Intel Management Engine Corporate v12.0.93.2331 (Production)
SIO19 F/W 7.9.52
Intel VBIOS 9.2.1014 (2018/06/21)
Intel GOP 9.0.1075 (2018/04/13)
USB Type-C PD firmware FW 6.8.0
Intel/Realtek PXE rom IBS GE v0.1.13
Intel/Realtek UEFI PXE rom Efi v0.0.19
Version:
02.25.00 Rev.A
Fixed in this release - Fixes issue where FUR GUI would report "Incorrect password was entered" when flashing BIOS with correct password after setting EBAM and BIOS admin password. - Enhancement to support SMBIOS type1 version string for 'db' addition.
- Enhancements to secure boot keys protection.
- Enhancement to address security vulnerabilities CVE-2023-25756, CVE-2023-22329
- HP strongly recommends updating system BIOS to address a potential issue with HP Sure Start that can cause some devices to experience a SecureBoot error at boot.

-Includes the following firmware:
Intel Management Engine Corporate v12.0.93.2331 (Production)
SIO19 F/W 7.9.52
Intel VBIOS 9.2.1014 (2018/06/21)
Intel GOP 9.0.1075 (2018/04/13)
USB Type-C PD firmware FW 6.8.0
Intel/Realtek PXE rom IBS GE v0.1.13
Intel/Realtek UEFI PXE rom Efi v0.0.19

View solution in original post

3 REPLIES 3
HP Recommended

I don't believe that any HP 800 G4 desktop PC came with a TPM 1.2 security chip.

 

None of the BIOS update release notes indicate that it updated a TPM 1.2 revision to TPM 2.0.

 

TPM 1.2 to 2.0 firmware upgrades were not done via a BIOS update but via a separate file.

 

This link provides the instructions to update the firmware from 1.2 to 2.0 and back to 1.2 again.

 

No 800 G4 is on the list of PC's supported for this.

 

HP Desktops, Notebooks, and Workstations - HP TPM Configuration Utility With Windows 10 Anniversary ...

 

Here are the release notes for all of the 800 G4 SFF BIOS updates.

 

Version:
02.01.08 Rev.A
Fixed in this release: Initial BIOS release.
Version:
02.01.09 Rev.A
Fixed in this release: - Security update with new MCU version.
Version:
02.02.00 Rev.A
Fixed in this release: - Fixes PCR7 state "Binding not Possible" under "OS System Information" when Secure Boot is Enabled, TPM is Available and TPM State is Enabled.
- Fixes "System Security Issue has been detected" when doing Windows System Restore with HP Sure Run activated on Windows 10 RS4 OS.
- Updates VBIOS/GOP to fix Type-C option card Certification problem. 
- Adds Event logs in F10 BIOS menu.
- Adds new details in "System Information Tab" in F10 BIOS menu.
- Updates CCG5 FW to 6.3(Signed).
- Updates SIO FW to 7.9.34.
Version:
02.02.04 Rev.A
Fixed in this release: - Update ME to 12.0.7.1122 for Intel Quarterly Security Release.
Version:
02.04.01 Rev.A
Fixed in this release: - Fixes issue where system would when resuming from sleep with TBT External Graphic card attached.
- Fixes issue where Absolute Persistence fails if HP Sure Run is activated.
Version:
02.06.03 Rev.A
Fixed in this release: - Fixed issue where remote diagnostic would fail with error message: "Could not detect network link or network cable is unplugged".
- Fixed issue where Bitlocker cannot be unlocked over network.
- Fixed issue where system updates firmware from EFI patition of system drive, instead of USB drive when selecting "Update System and Supported Device Firmware Using Local Media" from BIOS setup (F10).
- Fixed issue where virtual touch keyboard still displays in HP logo screen after entering correct PIN code.
- Fixed issue where changes made in BIOS Setup (F10) after a failed PXE boot does not be saved.
- Fixed issue where system hangs in POST when plugging in the Apple USB-C HDMI/VGA Multiport Adapter.
- Fixed issue where BIOS update triggered by Windows Update does not occur after inputting the incorrect Admin password then inputting correct password.
- Fixed issue where system still updates ME and Cypress PD Firmware when user enters incorrect BIOS administrator password.
- Fixed issue where Absolute Persistence function not work while HP Sure Run is activated.
- Fixed issue resulting in audio output distortion while plugging in a 3rd-party AC adapter.
- Fixed issue where ME firmware update process stops around 60 seconds to 120 seconds when connecting HP Thunderbolt Dock during update process.
- Fixed issue where system still pops out Physical Presence Interface when disabling Intel SGX in BIOS setup (F10) with Physical Presence Interface setting disabled.
- Fixed issue where "RFID" option disappears in BIOS setup (F10) after disabling it. 
- Adds Russian Language Support in F10 setup interface.
- Adds a feature to hide BIOS administrator account in Power-On Authentication screen.
- Increases PXE IP time-to-live (TTL) value to improved compatibility with diverse end-user network environments.
- Adds Drivelock password feature support on Pyrite NVMe SSD.
- Improved Japanese touch keyboard layout.
- Updates the Intel silicon reference code for compatibility enhancement.
- Updates the CPU microcode for Intel processors to 0x9A.
- Enhancement to address security vulnerabilities CVE-2018-12201, CVE-2018- 12202, CVE-2018-12203, CVE-2018-12204, CVE-2018-12205.
- Enhancement to address security vulnerabilities CVE-2018-12188, CVE-2018-12189, CVE-2018-12190, CVE-2018-12191, CVE-2018-12192, CVE-2018-12199, CVE-2018-12198, CVE-2018-12200, CVE-2018-12187, CVE-2018-12196, CVE-2018-12185, CVE-2018-12208
Version:
02.07.01 Rev.A
Fixed in this release: - Fixed issue where user cannot exit MEBx (F6) by pressing Y or N key when setting language to Russian/Deutsch in F10.
- Fixed issue where keyboard drop-down menu still shows as English at Power-On Authentication page after changing the keyboard layout to non-English and selecting the standard user with the new password at the Power-On Authentication page.
- Fixed issue where IPv4 option missing under Boot Order after updating BIOS by Network BIOS Update.
- Fixed issue where legacy bootable disk will be lost when hot plugging USB LAN dongle then pressing "Ctrl +alt +Del" key combination to boot to F9.
- Fixed issue where system with Pyrite SSC V2.0 NVMe drive could not boot into OS after enabling DriveLock then disabling it.
- Fixed issue where "Continue Boot" is not translated in startup Menu after language is set to Russian in F10.
- Fixed issue where rear USB-C still has power in hibernation or shutdown state when disabling Type-C Downstream charging.
- Fixed a timing issue bundle with Intel i210 add-on card which would cause "Wake on LAN/Wake on Link" failure.
- Fixed issue where system will hang with black screen when resuming from sleep/hibernation after loading default BIOS in F10 setup interface.
- Fixed issue where F10 "USB Key provisioning option" item does not restore to default setting after clearing the CMOS.
- Fixed issue where system power on black screen about 50 seconds when NVIDIA GeForce 2070/2080 Graphics card is installed.
- Fixed issue where USB Type-C device shows yellow bang intermittently in device manager when resuming from sleep. 
- Update CCG PD firmware to 6.6.
- Update Intel reference code to 7.0.47.50.
- Locks power button function during TPM firmware update process to avoid firmware corruption.
- Adds a feature "HP Application Driver" in F10 setup interface to support HP fusion application.
- Enhancement to address security vulnerabilities CVE-2018-12126, CVE-2018-12127, CVE-2018-12130.
- Enhancement to address security vulnerabilities CVE-2019-0086, CVE-2019-0090, CVE-2019-0091, CVE-2019-0092, CVE-2019-0093, CVE-2019-0094, CVE-2019-0096, CVE-2019-0097, CVE-2019-0098.
Version:
02.08.00 Rev.A
Fixed in this release:
Version:
02.09.01 Rev.A
Fixed in this release: -Fixes issue where PCR1 value is changed after cold boots, restarts or F10 exit.
-Fixes issue where system reports error "Failure during data transfer (maximum downloaded content size exceeded)" when unit tries to update firmware via FTP server with proxy from F10 setup interface.
-Fixes issue where system intermittently enters hibernation after idle around 2 hours in battery mode when HP Sure Run and Bitlocker is enabled.
-Fixes issue where specific SanDisk USB drive does not be listed in F9 Boot Menu. 
This BIOS upgrade package also includes the following firmware versions: (only list appropriate ones)
Intel Management Engine Corporate v 12.0.45.1509
SIO19 F/W 7.9.44
Intel VBIOS 9.2.1014 (2018/07/04)
Intel GOP 9.0.1075 (2018/03/05)
USB Type-C PD firmware FW 6.8.0
Intel/Realtek PXE rom IBS GE v0.1.13
Intel/Realtek UEFI PXE rom Efi v0.0.19

-Enhancement to address security vulnerabilities CVE-2019-0123, CVE-2019-0117, CVE-2019-11135, CVE-2019-11139, CVE-2019-0185.
-Enhancement to address security vulnerabilities CVE-2019-0131, CVE-2019-0165, CVE-2019-0166, CVE-2019-0168, CVE-2019-0169, CVE-2019-11086, CVE-2019-11087, CVE-2019-11088, CVE-2019-11090, CVE-2019-11097, CVE-2019-11100, CVE-2019-11101, CVE-2019-11102, CVE-2019-11103, CVE-2019-11104, CVE-2019-11105, CVE-2019-11106, CVE-2019-11107, CVE-2019-11108, CVE-2019-11109, CVE-2019-11110, CVE-2019-11131, CVE-2019-11132, CVE-2019-11147.
-Enhancement to address security vulnerabilities CVE-2019-0123, CVE-2019-0117.
-Enhancement to address security vulnerabilities CVE-2019-0185, CVE-2019-0152, CVE-2019-11136, CVE-2019-11137.
-Updates SuperIO firmware to v7.9.44 for stability enhancement.
-Updates Cypress PD firmware to v6.8 for compatibility enhancement.
-Adds a feature to seprate Administrator/User DriveLock password in F10 setup interface.
-Adds a feature to query DriveLock setting by HP BIOS Configuration Utility (BCU).
-Adds a feature to support Enhanced Secure Erase command for ATA drive in F10 setup interface.
Version:
02.10.00 Rev.A
Fixed in this release: - Fixes issue where special symbols display incorrectly if F10 setup interface is changed to Russian language.
- Fixes an issue which causes the system to boot slower than expected when a network cable is used to connect the system to a Dell or Targus USB Display Link Dock.
- Fixes issue where system BIOS fails to be updated and reported "Failed to determine if new BIOS is available" without setting Proxy Server in F10 setup interface.
- Fixes issue where system prompts Power on Authentication with BIOS Administrator and POST Power-On Password options before scheduled BIOS update.
- Fixes an issue where extra characters "Enabled by default. [Help Icon]=" shows up in the help message of "Intel Management Engine (ME)" option.
- Adds a feature to support Automatic DriveLock feature in F10 setup interface for Pyrite NVMe SSD.
- Fixed an issue where "Retail Basic or ElitePOS Advanced I/O Connectivity Base" PUSB and Cash drawer ports don't have power when system wakes from sleep 
This BIOS upgrade package also includes the following firmware versions: (only list appropriate ones)
Intel Management Engine Corporate v 12.0.49.1534
SIO19 F/W 7.9.50
Intel VBIOS 9.2.1014 (2018/06/21)
Intel GOP 9.0.1075 (2018/04/13)
USB Type-C PD firmware FW 6.8.0
Intel/Realtek PXE rom IBS GE v0.1.13
Intel/Realtek UEFI PXE rom Efi v0.0.19

- Updates the CPU microcode for Intel processors to 0xCA.
- Updates Intel ME Firmware to 12.0.49.1534.
- Updates SuperIO firmware to v7.9.50 for stability enhancement.
Version:
02.11.01 Rev.A
Fixed in this release: - Fixes an issue where system with some PCIe cards installed cannot boot to OS after updating BIOS.
- Fixes an issue where system displays "Enter current DriveLock Password" message when enabling Automatic Drivelock then restarting system several times.
- Fixes an issue where Automatic DriveLock option is enabled and greyed out after BIOS Administrator Password is removed.
- Fixes an issue where original boot entry is deleted while third party encryption software creates their own boot entry.
- Fixes an issue where system firmware is updated from recovery partition instead of EFI partition.
- Fixes an issue where hard drive still prompts DriveLock password after forcing the Master password to match BIOS Administrator Password.
- Fixes an issue where system cannot enable "Automatic Drivelock" after placing a hard drive into another system and disabling Automatic Drivelock by another system.
- Fixes an issue where system cannot enable "Automatic DriveLock" option for NVMe SSD after "create BIOS Administrator password" in F10.
- Fixes an issue where system does not prompt for Power on Authentication with BIOS Administrator and POST Power-On Password options when schedule update check is failed. 
This BIOS upgrade package also includes the following firmware versions: (only list appropriate ones)
Intel Management Engine Corporate 12.0.64.1551 (Production)
SIO19 F/W 7.9.50
Intel VBIOS 9.2.1014 (2018/06/21)
Intel GOP 9.0.1075 (2018/04/13)
USB Type-C PD firmware FW 6.8.0
Intel/Realtek PXE rom IBS GE v0.1.13
Intel/Realtek UEFI PXE rom Efi v0.0.19

- Enhancement to address security vulnerabilities CVE-2020-0528, CVE-2020-0529.
- Upgrade Intel Reference Code to 7.0.6E.40 for compatibility enhancement.
- Enhancement to address security vulnerabilities CVE-2020-0531, CVE-2020-0532, CVE-2020-0534, CVE-2020-0535, CVE-2020-0536, CVE-2020-0537, CVE-2020-0538, CVE-2020-0539, CVE-2020-0540, CVE-2020-0541, CVE-2020-0542.
- Adds Drivelock password feature support on OPAL SED NVMe SSD.
Version:
02.12.00 Rev.A
Fixed in this release: - Fixes an issue where message of Physical Presence Interface displays as incomplete when changing to non-English languages.
- Fixes an issue where system unexpectedly hangs when an EFI folder is created in Recovery partition.
- Fixes an issue where Physical Presence Interface cannot be set to disabled when changing to non-English language in F10 setup interface.
- Fixes an issue where original boot entry is deleted while third-party encryption software creates their own boot entry.
- Fixes an issue where Automatic DriveLock option is enabled and greyed out after the BIOS Administrator Password is removed.
- Fixes an issue where system does not boot to OS directly when choosing "Postpone this BIOS until the next Reboot" option at scheduled BIOS update via F10 setup interface. 
This BIOS upgrade package also includes the following firmware versions: (only list appropriate ones)
Intel Management Engine Corporate 12.0.68.1606 (Production)
SIO19 F/W 7.9.50
Intel VBIOS 9.2.1014 (2018/06/21)
Intel GOP 9.0.1075 (2018/04/13)
USB Type-C PD firmware FW 6.8.0
Intel/Realtek PXE rom IBS GE v0.1.13
Intel/Realtek UEFI PXE rom Efi v0.0.19
- Enhancement to address security vulnerabilities CVE-2020-0543, CVE-2020-0548, CVE-2020-0549, CVE-2020-8758, CVE-2020-8672.
- Adds a feature ""Wake on LAN Power-on Password Policy"" in F10 setup interface.
- Adds a feature ""Allow User to Modify Power-on Password"" in F10 setup interface.
Version:
02.14.01 Rev.A
Fixed in this release: - Fixes an issue where Secure Erase cannot be executed when Display Language is changed to non-English.
- Fixes an issue where system takes a long time to resume from sleep when Video Memory is changed to 512 MB. 
NOTE: Due to HP Sure Admin feature support, system is not compatible with older BIOS version once it is enabled, attempts to install older BIOS versions will be blocked.

This BIOS upgrade package also includes the following firmware versions: (only list appropriate ones)
Intel Management Engine Corporate 12.0.70.1652 (Production)
SIO19 F/W 7.9.51
Intel VBIOS 9.2.1014 (2018/06/21)
Intel GOP 9.0.1075 (2018/04/13)
USB Type-C PD firmware FW 6.8.0
Intel/Realtek PXE rom IBS GE v0.1.13
Intel/Realtek UEFI PXE rom Efi v0.0.19
- Enhancement to address security vulnerabilities CVE-2020-8696, CVE-2020-8695, CVE-2020-8694, CVE-2020-8744, CVE-2020-8745, CVE-2020-8746, CVE-2020-8747, CVE-2020-8749, CVE-2020-8752, CVE-2020-8753, CVE-2020-8754, CVE-2020-8756, CVE-2020-8757, CVE-2020-8760, CVE-2020-8705, CVE-2020-12297, CVE-2020-12303, CVE-2020-12355, CVE-2020-12356.
- Adds a feature ""HP Sure Admin"" support in F10 setup interface.
- Critical Security Update.
Version:
02.15.00 Rev.A
Fixed in this release: - Fixes an issue where "After Power Loss" in BIOS setup lost function after s3 resume. NOTE: Due to HP Sure Admin feature support, system is not compatible with older BIOS version once it is enabled, attempts to install older BIOS versions will be blocked.

This BIOS upgrade package also includes the following firmware versions: (only list appropriate ones)
Intel Management Engine Corporate 12.0.70.1652 (Production)
SIO19 F/W 7.9.51
Intel VBIOS 9.2.1014 (2018/06/21)
Intel GOP 9.0.1075 (2018/04/13)
USB Type-C PD firmware FW 6.8.0
Intel/Realtek PXE rom IBS GE v0.1.13
Intel/Realtek UEFI PXE rom Efi v0.0.19
- Update Intel Reference code to 7.0.74.20
Version:
02.16.00 Rev.A
Fixed in this release: - Fixes an issue where Security Device Error message pop out after enable Power-on Password.
- Fixes an issue where the system cannot resume from S3 with both PCIE x16 graphic card and PS/2 devices installed. 
NOTE: Due to HP Sure Admin feature support, system is not compatible with older BIOS version once it is enabled, attempts to install older BIOS versions will be blocked.

This BIOS upgrade package also includes the following firmware versions: (only list appropriate ones)
Intel Management Engine Corporate v12.0.81.1753 (Production)
SIO19 F/W 7.9.51
Intel VBIOS 9.2.1014 (2018/06/21)
Intel GOP 9.0.1075 (2018/04/13)
USB Type-C PD firmware FW 6.8.0
Intel/Realtek PXE rom IBS GE v0.1.13
Intel/Realtek UEFI PXE rom Efi v0.0.19
- Adds a feature "IPv6 during UEFI Boot" in F10 setup interface where user has ability to disable IPv6 during preboot phase.
- Enhancement to address security vulnerabilities CVE-2020-8703, CVE-2020-8704, CVE-2020-24506 and CVE-2020-24507.
- Enhancement to address security vulnerabilities CVE-2020-24512, CVE-2020-24511.
Version:
02.17.00 Rev.A
Fixed in this release: - Fixes issue where PCR7 Configuration is 'Binding Not Possible' while Intel Management Engine is "permanently disable"
- Fixes issue where system stops at Network BIOS Update screen after execute network connection check and trigger "Update System BIOS" via F10 setup menu in legacy boot mode.
- Fixes issue where Bitlocker unlock over network intermittently failure on specific network configuration. 
NOTE: Due to HP Sure Admin feature support, system is not compatible with older BIOS version once it is enabled, attempts to install older BIOS versions will be blocked.

This BIOS upgrade package also includes the following firmware versions: (only list appropriate ones)
Intel Management Engine Corporate v12.0.85.1869 (Production)
SIO19 F/W 7.9.51
Intel VBIOS 9.2.1014 (2018/06/21)
Intel GOP 9.0.1075 (2018/04/13)
USB Type-C PD firmware FW 6.8.0
Intel/Realtek PXE rom IBS GE v0.1.13
Intel/Realtek UEFI PXE rom Efi v0.0.19
- Enhancement to address security vulnerabilities CVE-2021-0107, CVE-2021-0111, CVE-2021-0114, CVE-2021-0115, CVE-2021-0116, CVE-2021-0117, CVE-2021-0118, CVE-2021-0119, CVE-2021-0124, CVE-2021-0125.
- Enhancement to address security vulnerabilities CVE-2021-0091, CVE-2021-0156, CVE-2021-0157.
- Enhancement to address security vulnerabilities CVE-2021-0127.
- Update ME firmware to 12.0.85.1869.
- Enhancement to address security vulnerabilities CVE-2021-33107.
Version:
02.18.00 Rev.A
Fixed in this release: NOTE: Due to HP Sure Admin feature support, system is not compatible with older BIOS version once it is enabled, attempts to install older BIOS versions will be blocked.

This BIOS upgrade package also includes the following firmware versions: (only list appropriate ones)
Intel Management Engine Corporate v12.0.85.1869 (Production)
SIO19 F/W 7.9.51
Intel VBIOS 9.2.1014 (2018/06/21)
Intel GOP 9.0.1075 (2018/04/13)
USB Type-C PD firmware FW 6.8.0
Intel/Realtek PXE rom IBS GE v0.1.13
Intel/Realtek UEFI PXE rom Efi v0.0.19
- Enhancement to address security vulnerabilities CVE-2021-39297, CVE-2021-39299, CVE-2021-39300, CVE-2021-39301.
- Enhancement to address security vulnerabilities CVE-2021-3808, CVE-2021-3809.
Version:
02.19.00 Rev.A
Fixed in this release: - Fixes issue where the physical presence interface would pop up when changing the "Intel Software Guard Extensions (SGX)" setting from "Software control" to "Disable." NOTE: Due to HP Sure Admin feature support, system is not compatible with older BIOS version once it is enabled, attempts to install older BIOS versions will be blocked.

This BIOS upgrade package also includes the following firmware versions: (only list appropriate ones)
Intel Management Engine Corporate v12.0.90.2072 (Production)
SIO19 F/W 7.9.51
Intel VBIOS 9.2.1014 (2018/06/21)
Intel GOP 9.0.1075 (2018/04/13)
USB Type-C PD firmware FW 6.8.0
Intel/Realtek PXE rom IBS GE v0.1.13
Intel/Realtek UEFI PXE rom Efi v0.0.19

- Enhancement to address security vulnerabilities CVE-2022-23924, CVE-2022-23925, CVE-2022-23926, CVE-2022-23927, CVE-2022-23928, CVE-2022-23929, CVE-2022-23930, CVE-2022-23931, CVE-2022-23932, CVE-2022-23933, CVE-2022-23934.
- Enhancement to address security vulnerabilities CVE-2022-23953, CVE-2022-23954, CVE-2022-23955, CVE-2022-23956, CVE-2022-23957, CVE-2022-23958.
- Enhancement to address security vulnerabilities CVE-2022-21166, CVE-2022-21125, CVE-2022-21123, CVE-2022-21127, CVE-2022-21151, CVE-2022-0005.
- Enhancement to address security vulnerabilities CVE-2022-0004.
Version:
02.20.01 Rev.A
Fixed in this release: NOTE: Due to HP Sure Admin feature support, system is not compatible with older BIOS version once it is enabled, attempts to install older BIOS versions will be blocked. This BIOS upgrade package also includes the following firmware versions: (only list appropriate ones) Intel Management Engine Corporate v12.0.90.2072 (Production) SIO19 F/W 7.9.51 Intel VBIOS 9.2.1014 (2018/06/21) Intel GOP 9.0.1075 (2018/04/13) USB Type-C PD firmware FW 6.8.0 Intel/Realtek PXE rom IBS GE v0.1.13 Intel/Realtek UEFI PXE rom Efi v0.0.19 - Enhancement to address security vulnerabilities CVE-2022-31635, CVE-2022-31636, CVE-2022-31637, CVE-2022-31638, CVE-2022-31639. - Enhancement to address security vulnerabilities CVE-2022-31640, CVE-2022-31641, CVE-2022-31642. - Enhancement to address security vulnerabilities CVE-2022-31644, CVE-2022-31645, CVE-2022-31646, CVE-2022-27537.
Version:
02.21.00 Rev.A
Fixed in this release: NOTE: Due to HP Sure Admin feature support, system is not compatible with older BIOS version once it is enabled, attempts to install older BIOS versions will be blocked. This BIOS upgrade package also includes the following firmware versions: Intel Management Engine Corporate v12.0.92.2145 (Production) SIO19 F/W 7.9.51 Intel VBIOS 9.2.1014 (2018/06/21) Intel GOP 9.0.1075 (2018/04/13) USB Type-C PD firmware FW 6.8.0 Intel/Realtek PXE rom IBS GE v0.1.13 Intel/Realtek UEFI PXE rom Efi v0.0.19 - Updates the Intel silicon reference code for compatibility enhancement - Updates the CPU microcode for Intel processors for stability enhancement. - Enhancement to address security vulnerabilities CVE-2022-26845, CVE-2022-29893, CVE-2022-27497, CVE-2022-33159. - Enhancement to address security vulnerabilities CVE-2022-27538.
Version:
02.22.00 Rev.A
Fixed in this release: - Fixes issue where BIOS Administrator password/Power on password can be accepted when the password length is less than Password Minimum Length. NOTE: Due to HP Sure Admin feature support, system is not compatible with older BIOS version once it is enabled, attempts to install older BIOS versions will be blocked.

This BIOS upgrade package also includes the following firmware versions:
Intel Management Engine Corporate v12.0.92.2145 (Production)
SIO19 F/W 7.9.52
Intel VBIOS 9.2.1014 (2018/06/21)
Intel GOP 9.0.1075 (2018/04/13)
USB Type-C PD firmware FW 6.8.0
Intel/Realtek PXE rom IBS GE v0.1.13
Intel/Realtek UEFI PXE rom Efi v0.0.19

- Enhancement to address security vulnerabilities CVE-2022-33894
- Enhancement to address security vulnerabilities CVE-2022-27539
- Enhancement to address security vulnerabilities CVE-2022-27541
- Enhancement to address security vulnerabilities CVE-2022-43777
Version:
02.23.00 Rev.A
Fixed in this release: - Fixes issue where System cannot create POST Power-On Password when selecting "Create POST Power-On Password" and entering the pin provided by the "Phone App" after creating the BIOS Administrator Password with EBAM. -Enhancement to add new steup option to control "Extended DHCP Timeout" for pre-boot network experience.
-Enhancement to address security vulnerabilities CVE-2022-33894, CVE-2022-38087
-Updates the Intel silicon MCU for compatibility enhancement
-Enhancement to address security vulnerabilities CVE-2022-3602, CVE-2022-3786.

-Includes the following firmware:
Intel Management Engine Corporate v12.0.92.2145 (Production)
SIO19 F/W 7.9.52
Intel VBIOS 9.2.1014 (2018/06/21)
Intel GOP 9.0.1075 (2018/04/13)
USB Type-C PD firmware FW 6.8.0
Intel/Realtek PXE rom IBS GE v0.1.13
Intel/Realtek UEFI PXE rom Efi v0.0.19
Version:
02.24.00 Rev.A
Fixed in this release: - Integrate Infineon TPM EFI Driver v02.02.3776.00
- Enhancement to address security vulnerabilities CVE-2022-44611
- Enhancement to address security vulnerabilities CVE-2022-40982
- Updates Intel MCU for compatibility enhancement
- Enhancement to address security vulnerabilities CVE-2022-29871
- Updates Intel ACM for compatibility enhancement
-Includes the following firmware:
Intel Management Engine Corporate v12.0.93.2331 (Production)
SIO19 F/W 7.9.52
Intel VBIOS 9.2.1014 (2018/06/21)
Intel GOP 9.0.1075 (2018/04/13)
USB Type-C PD firmware FW 6.8.0
Intel/Realtek PXE rom IBS GE v0.1.13
Intel/Realtek UEFI PXE rom Efi v0.0.19
Version:
02.25.00 Rev.A
Fixed in this release - Fixes issue where FUR GUI would report "Incorrect password was entered" when flashing BIOS with correct password after setting EBAM and BIOS admin password. - Enhancement to support SMBIOS type1 version string for 'db' addition.
- Enhancements to secure boot keys protection.
- Enhancement to address security vulnerabilities CVE-2023-25756, CVE-2023-22329
- HP strongly recommends updating system BIOS to address a potential issue with HP Sure Start that can cause some devices to experience a SecureBoot error at boot.

-Includes the following firmware:
Intel Management Engine Corporate v12.0.93.2331 (Production)
SIO19 F/W 7.9.52
Intel VBIOS 9.2.1014 (2018/06/21)
Intel GOP 9.0.1075 (2018/04/13)
USB Type-C PD firmware FW 6.8.0
Intel/Realtek PXE rom IBS GE v0.1.13
Intel/Realtek UEFI PXE rom Efi v0.0.19
HP Recommended

WOW!  Thanks for such a speedy and very informative reply.  You've save me from wasting another week (average 7 hours a day, one day 12-hours!) of looking for a solution that doesn't exist.  Greatly appreciated and thanks again!  Regards

HP Recommended

You're very welcome.

† The opinions expressed above are the personal opinions of the authors, not of HP. By using this site, you accept the <a href="https://www8.hp.com/us/en/terms-of-use.html" class="udrlinesmall">Terms of Use</a> and <a href="/t5/custom/page/page-id/hp.rulespage" class="udrlinesmall"> Rules of Participation</a>.