• ×
    Information
    Need Windows 11 help?
    Check documents on compatibility, FAQs, upgrade information and available fixes.
    Windows 11 Support Center.
  • post a message
  • ×
    Information
    Need Windows 11 help?
    Check documents on compatibility, FAQs, upgrade information and available fixes.
    Windows 11 Support Center.
  • post a message
Guidelines
Are you having HotKey issues? Click here for tips and tricks.
HP Recommended
hp laptops
Microsoft Windows 10 (64-bit)

hi HP Community? Has anyone heard from HP when the super critical cve vulnerability called “LogoFail” is expected to be patched via a bios firmware upgrade? LogoFail vulnerability was announced in November 2023; it is now April 2024 and the silence is concerning. please note that the bios update released before December 2023 does not patch the logoFail vulnerability. thanks 😀

2 REPLIES 2
HP Recommended

I understand your concern, but we here are not affiliated with HP in any way and they do not provide us any information on BIOS releases -- actual or planned.

 

For direct contact with HP, your best bet is to contact HP Customer Service to see what they will do for you:


https://www.hp.com/us-en/shop/cv/customerservice



I am a volunteer and I do not work for, nor represent, HP
HP Recommended

Hi ChimpChampion, 

I asked exactly this question in December last year, but got no response from HP in this community.

 

I tried HP Support several times (chat and phone) and they could only offer ignorance of the issue and the suggestion of a factory reset (no idea why they thought that would help). One of the support staff offered to escalate the issue and promised I would get a call back from a senior technician with in 24 hours, it has now been 3 months. From my experience, I would recommend you don't waste your time trying to get a useful answer out of the standard HP support channels, they are not set up for this kind of thing.

 

There are some places to monitor HP Security updates (links in my post) but no mention of LogoFail yet (although LogoFail is an umbrella issue corresponding to a number of CVE IDs there might be something in there). This is probably the best way to get a timely update about a fix.

 

† The opinions expressed above are the personal opinions of the authors, not of HP. By using this site, you accept the <a href="https://www8.hp.com/us/en/terms-of-use.html" class="udrlinesmall">Terms of Use</a> and <a href="/t5/custom/page/page-id/hp.rulespage" class="udrlinesmall"> Rules of Participation</a>.