HPE Security Advisory

Published Date: May 12, 2026

Advisory Summary

HPE has released an important security advisory, HPESBHF05052 rev.1, addressing a local disclosure of information vulnerability (INTEL-SA-01413) within the UEFI reference firmware affecting select HPE server lines. This vulnerability impacts certain HPE ProLiant DL/ML, Alletra, Synergy, and Edgeline servers equipped with specific Intel processors.

The advisory reveals that this flaw could potentially allow a local attacker to gain unauthorized access to sensitive information residing in the firmware layer, posing risks to the confidentiality of critical system components. Given the foundational role of UEFI firmware in server boot and hardware initialization processes, timely application of provided firmware updates or mitigations is crucial to safeguard infrastructure.

HPE urges IT administrators and security teams managing affected server environments to promptly review the advisory and implement recommended patches or firmware updates. Staying ahead of such vulnerabilities is vital to maintaining secure and resilient data center operations, especially as firmware threats become increasingly sophisticated.

For detailed guidance on impacted models, remediation steps, and additional context, please refer to the official HPE advisory.

Reference: Vendor Advisory