1. Home
  2. OnLogic Security Advisory – CL250 <OL-2025-090102>

OnLogic Security Advisory – CL250 <OL-2025-090102>

Description:

Fix several critical vulnerabilities of specified BIOS versions, preventing damage from those vulnerabilities being exploited. 

OnLogic Security Advisory ID: OL-2025-090102

Type: Advisory

Fixed Vulnerabilities:

VulnerabilityDescriptionCVSS Base ScoreCVSS Vector StringFound versionFixed version
CVE-2014-3686

Found and fixed unsafe code flow6.8AV:N/AC:M/Au:N/C:P/I:P/A:P
D7870A13N7870A01
CVE-2015-0210Found and fixed unsafe code flow5.9AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:N/A:ND7870A13N7870A01
CVE-2015-1863Found and fixed unsafe code flow5.8
AV:A/AC:L/Au:N/C:P/I:P/A:P
D7870A13N7870A01
CVE-2015-4141 Found and fixed unsafe code flow4.3AV:N/AC:M/Au:N/C:N/I:N/A:P
D7870A13N7870A01
CVE-2015-4142 Found and fixed unsafe code flow4.3V:N/AC:M/Au:N/C:N/I:N/A:PD7870A13N7870A01
CVE-2015-4143 Found and fixed unsafe code flow5
AV:N/AC:L/Au:N/C:N/I:N/A:P
D7870A13N7870A01
CVE-2015-4144Found and fixed unsafe code flow5AV:N/AC:L/Au:N/C:N/I:N/A:PD7870A13N7870A01
CVE-2015-4145Found and fixed unsafe code flow5AV:N/AC:L/Au:N/C:N/I:N/A:P
D7870A13N7870A01
CVE-2015-4146Found and fixed unsafe code flow5AV:N/AC:L/Au:N/C:N/I:N/A:P
D7870A13N7870A01
BRLY-2022-009,BRLY-2023-021Found and fixed vulnerability for potential risk during PEI phase8.2AV:L/AC:L/PR:H/UI:N/S:C/C:H/I:H/A:HD7870A13N7870A01
BRLY-2022-160Found and fixed unsafe code flow6AV:L/AC:L/PR:H/UI:N/S:C/C:H/I:N/A:ND7870A13N7870A01
PKfailUntrusted Platform Key (PK) identified (PKfail)N/AD7870A13N7870A01

BRLY-LOGOFAIL-2023-013,
BRLK-LOGOFAIL-2023-021
Found and fixed unsafe code flow6AV:L/AC:L/PR:H/UI:N/S:C/C:N/I:N/A:H
D7870A13N7870A01

First Public Date: 2025/03/11

Last Update Date: 2025/03/11

Affected Products:

Update BIOS version to N7870A01 

Updated on March 11, 2025

Was this article helpful?

Keep In Touch.
Subscribe today and we’ll send the latest product and content updates right to your inbox.
Subscribe