CVE-2024-27458: HP Elite Dragonfly Max Firmware

High severity, CVSS 8.8. EPSS: 0.2% chance of exploitation in the next 30 days.

A potential security vulnerability has been identified in the HP Hotkey Support software, which might allow local escalation of privilege. HP is releasing mitigation for the potential vulnerability. Customers using HP Programmable Key are recommended to update HP Hotkey Support.

Affected products

  • HP Elite Dragonfly Max Firmware: from 8.10.42.190, before 8.10.42.190_rev1 (fixed in 8.10.42.190_rev1)
  • Hp, Inc HP Hotkey Support

Published 2024-10-07. Last modified 2026-06-17.