> For the complete documentation index, see [llms.txt](https://support.onlogic.com/llms.txt). Markdown versions of documentation pages are available by appending `.md` to page URLs; this page is available as [Markdown](https://support.onlogic.com/support-articles/security-advisories/ol-2024-090102.md).

# OL 2024 090102

**Description:**

Fix several critical vulnerabilities of specified BIOS versions, preventing damage from those vulnerabilities being exploited.

**OnLogic Security Advisory ID:** OL-2024-090102

**Type:** Advisory

**Fixed Vulnerabilities:**

| **Vulnerability**     | **Description**                                                   | **CVSS Base Score** | **CVSS Vector String**              | **Found version** | **Fixed version** |
| --------------------- | ----------------------------------------------------------------- | ------------------- | ----------------------------------- | ----------------- | ----------------- |
| BRLY-2022-009         | Found and fixed vulnerability for potential risk during PEI phase | 8.2                 | AV:L/AC:L/PR:H/UI:N/S:C/C:H/I:H/A:H | D7820A09          | D7820T11          |
| PKFail                | Untrusted Platform Key (PK) identified (PKfail)                   | N/A                 | N/A                                 | D7820A09          | D7820T11          |
| BRLY-OemUnlockKeyLeak | The certificate is expired                                        | N/A                 | N/A                                 | D7820A09          | D7820T11          |

**First Public Date:** 2024/10/15

**Last Update Date:** 2025/2/3

**Affected Products:**

* [ML350 by OnLogic](https://www.onlogic.com/store/ml350g-10/)

**Recommendation**:

Update BIOS version to D7820T11

{% hint style="info" %}
[Subscribe to security updates](https://share.hsforms.com/1c75WyGZgQ6yNzsRyUco9KQc0zha)
{% endhint %}
