HPE Security Advisory

Published Date: Not specified

Advisory Summary

🗓️ Calendar • 4 Sep 2026

HPE has released advisory HPESBHF05143 rev.1 addressing Local Escalation of Privilege affecting HPE StoreEasy servers configured with certain Intel Xeon processors. The advisory ties to Intel-SA-01439, specifically involving Alias Checking Trusted Module behavior in the presence of a local attacker.

✅ Recommended actions (Actionable checklist)
1. Identify exposure: Match your StoreEasy models and Intel Xeon processor/platform against the advisory’s scope.
2. Patch/mitigate: Apply the HPE-provided fixes and guidance associated with this advisory.
3. Validate firmware/BIOS/TPM-related changes: Reboot and confirm versions per HPE’s instructions.
4. Harden local access paths: Review who can log in locally/over KVM, restrict service accounts, and tighten admin access controls.
5. Monitor for anomalies: Look for unusual privilege transitions, new system users, unexpected sudo/policy changes, and persistence mechanisms.

Reference: Vendor Advisory