- Community Home
- >
- Servers and Operating Systems
- >
- HPE ProLiant
- >
- Servers - General
- >
- Intel CPU vunerabilities Proliant DL360
Categories
Company
Local Language
Forums
Discussions
Forums
- Data Protection and Retention
- Entry Storage Systems
- Legacy
- Midrange and Enterprise Storage
- Storage Networking
- HPE Nimble Storage
Discussions
Forums
Discussions
Discussions
Discussions
Forums
Forums
Discussions
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
- BladeSystem Infrastructure and Application Solutions
- Appliance Servers
- Alpha Servers
- BackOffice Products
- Internet Products
- HPE 9000 and HPE e3000 Servers
- Networking
- Netservers
- Secure OS Software for Linux
- Server Management (Insight Manager 7)
- Windows Server 2003
- Operating System - Tru64 Unix
- ProLiant Deployment and Provisioning
- Linux-Based Community / Regional
- Microsoft System Center Integration
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Community
Resources
Forums
Blogs
- Subscribe to RSS Feed
- Mark Topic as New
- Mark Topic as Read
- Float this Topic for Current User
- Bookmark
- Subscribe
- Printer Friendly Page
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
тАО06-29-2022 06:58 AM - last edited on тАО07-04-2022 10:37 PM by support_s
тАО06-29-2022 06:58 AM - last edited on тАО07-04-2022 10:37 PM by support_s
Intel CPU vunerabilities Proliant DL360
I was made aware of two updates Intel released for their CPU's to address two vunerabilities.
https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00645.html
https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00615.html
I found a few of our servers (mostly the Proliant DL360 models of various generations) have their CPU listed as affected for both vunerabilities, and all are mentioned as fixed in software: Mitigation implemented in software, and software updates needed to enable mitigation
The DL360 G10 however also mentions a microcode update being required.
I am however unsure what 'software' update (or even microcode update) would actually mitigate these vunerabilities. Does anyone have any insight?
- Tags:
- Prolaint server
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
тАО06-30-2022 12:20 AM
тАО06-30-2022 12:20 AM
Re: Intel CPU vunerabilities Proliant DL360
Hi,
For example in DL360 Gen10, these vulnerability is addressed in the form of BIOS update.
Please refer to Revision History for a list of fixes.
Thank You!
I work with HPE but opinions expressed here are mine.
Recent Support Video Releases
I work at HPE
HPE Support Center offers support for your HPE services and products when and how you need it. Get started with HPE Support Center today.
[Any personal opinions expressed are mine, and not official statements on behalf of Hewlett Packard Enterprise]

- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
тАО06-30-2022 02:59 AM - edited тАО06-30-2022 03:00 AM
тАО06-30-2022 02:59 AM - edited тАО06-30-2022 03:00 AM
Re: Intel CPU vunerabilities Proliant DL360
The intel documentation refers to BOTH software and microcode updates being needed for the DL360 G10. So just updating the BIOS wouldn't sort the problem fully. That still leaves the software component.
And since that software component is the ONLY bit applicable to our DL360 G9 servers, that still leaves me with a question on how to sort this vunerability on all systems.
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
тАО07-04-2022 12:38 AM
тАО07-04-2022 12:38 AM
Re: Intel CPU vunerabilities Proliant DL360
Seems HPE started a case for this (according to a PM I got)...
Curious how this is going to proceed
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
тАО07-04-2022 09:05 PM
тАО07-04-2022 09:05 PM
Re: Intel CPU vunerabilities Proliant DL360
Hi,
Please find the below details.
INTEL-SA-00615 - https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00615.html
Affected BIOS version of DL360 Gen10 Prior to 2.66_05_17_2022
Answer:
Please find the document for vulnerability with CVE-2022-21123
https://support.hpe.com/hpesc/public/docDisplay?docLocale=en_US&docId=hpesbhf04320en_us
Actions: Upgrade the BIOS to 2.66 (latest available)
Download Link: https://support.hpe.com/connect/s/softwaredetails?softwareId=MTX_fbd553aa2bd344f3b83abf7e10&language=en_US&tab=releaseNotes
In regard to CVE-2022-21180, I request you to raise a ticket with HPE Support with the below details as it requires further investigation. We have not found any document related to this vulnerability.
1. Serial number of the server on which this Vulnerability (CVE-2022-21180) is reported.
2. Scanner name and scan report.
[Any personal opinions expressed are mine, and not official statements on behalf of Hewlett Packard Enterprise]
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
тАО07-05-2022 12:28 AM - last edited on тАО07-06-2022 12:29 AM by Sunitha_Mod
тАО07-05-2022 12:28 AM - last edited on тАО07-06-2022 12:29 AM by Sunitha_Mod
Re: Intel CPU vunerabilities Proliant DL360
BIOS noted... That _should_ be scheduled for the oncoming night on the DL360G10. (going from 2.50 to 2.66)
Still leaves the question what software Intel is referring to, to remedy the vunerability... but I'm suspecting that would likely be a question outside of HP's scope...