CVE-2015-5367: HP Gobi 4G firmware vulnerability

I missed this CVE the first time around, only noticed it with recent mainstream news reports. 😦

Quoting the Debian page:

The HP lt4112 LTE/HSPA+ Gobi 4G module with firmware before 12.500.00.15.1803 on EliteBook, ElitePad, Elite, ProBook, Spectre, ZBook, and mt41 Thin Client devices allows local users to gain privileges via unspecified vectors.

Huawei is also listed with this CVE, so perhaps other vendors besides HP are impacted?

More Information:
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2015-5367
https://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2015-5367

Click to access Intel_DC23_SPLTE.pdf

https://security-tracker.debian.org/tracker/CVE-2015-5367
http://www1.huawei.com/en/security/psirt/security-bulletins/security-advisories/hw-446601.htm
http://www.securityfocus.com/bid/76171/
http://www.techworm.net/2015/09/hackers-can-remotely-exploit-bug-in-hp-pcs-laptops-and-tablets.html

Leave a comment