================================================================================ Intel(R) Server Platform Integrated BIOS Firmware Release Notes ================================================================================ INTEL(R) Server Boards and Systems Intel Corporation 2111 N.E. 25th Avenue, Hillsboro, OR 97124 USA ================================================================================ DATE : April 03 2023 TO : Intel(R) Server Board M10JNP2SB SUBJECT : Integrated BIOS firmware 7.220 release notes ================================================================================ V7.220 - Date : 03/02/2023 - Filename : 7220_Production.ROM - Banner : Intel Server(R) Board M10JNP2SB BIOS V7.220 - CheckSum : 5B16 - MD5 : 2c827dc52d7b72e1d2e1c6bfa0182152 - Build Time : 10:44:25 03/02/2023 - Recovery : 7220_REC.CAP - Microcode : Coffee Lake-S U0: M22906EA_000000F0 : Coffee Lake-S B0: M02906EB_000000F0 : Coffee Lake-S P0: M22906EC_000000F0 : Coffee Lake-S R0: M22906ED_000000F4 - SPS Ver. : SPS_E3_05.01.04.804.0 - VGA OpROM : AST2500: V1.12 : IGFX VBIOS: V9.2.1026 GOP: V9.0.1113 - LAN OpROM : I210: PXE: V1.5.88 ISCSI: V3.1.57 : I210: UEFI Driver: V8.7.10 - Description : - Based on 7219_Production.ROM. - Platform Update for 2023.1 IPU. - BIOS fixes included: 1. INTEL-SA-00717 : Improper input validation in the BIOS may allow a privileged user to potentially enable escalation of privilege via local access. 2. AMI-SA-50085 : Grub Bootloader vulnerability. - SPS firmware updated to SPS_E3_05.01.04.804.0. ================================================================================ CHANGE LIST ================================================================================ V7.219 - Description : - Platform Update for IPU 2022.3. - Fixed SA50131 security vulnerability(S3 resume unprotected point). - Fixed SA50122 security vulnerability(On Flash Block Description module linked function buffer validation). - Fixed SA50123 security vulnerability(Protect TSE Setup UEFI variable). - Fixed SA50126 security vulnerability(Protect Server Setup UEFI variable). - SPS Ver. updated to SPS_E3_05.01.04.700.0. - Microcode Coffee Lake-S R0 updated to 0xF4. ================================================================================ V7.218 - Description : - Platform Update for IPU 2022.2 & 2022.1 ================================================================================ V7.217 - Description : - Platform Update for IPU 2021.2. - Updated SPS FW to SPS_E3_05.01.04.400.0. - Updated AST2500 VGA VBIOS and UEFI GOP to V1.12. ================================================================================ V7.216 - Description : - Platform Update for IPU 2021.1. - SMM vulnerability resolved. - Allows the administrator and user password to be set up/configured/enable/clear from IntelSCE tool in the EFI shell. ================================================================================ V7.215 - Description : - Intel Platform Update for IPU 2020.2. - Support Intel Password requirement: 1.Changed Password policy - It doesn't be allowed into BIOS SETUP when leaving blank space in prompt. - Support that change BIOS Admin and User passwords by using IntelSCE Tool. - Fine tune that Intel workaround for detecting TCC active. ================================================================================ V7.214 - Description : - Based on 7213_Production.ROM - Support Intel Password requirement: 1.Disabled power on password during system boot. 2.Boot options can't be changed with user access permissions. 3.BBS Menu option is available with key in Administrator Password when Administrator Password configured. - Fixed WHQL Test Failed. - Change logo : 1024X768_Intel_SB_BIOS_splashscreen.jpg - Set DMI System Information -> Product Name is only the contents of FRU 0's "Product Name" SMBIOS Type1 Product Name = BMC FRU Product Information: Product Name - Fixed that Network Stack configuration could not be configured with SCE Tool. - Added Intel workaround for detecting TCC active. ================================================================================ V7.213 - Description : - Based on 7210_Production.ROM - Enabled POST Logo mode for displayed Intel Logo - Added Hot Key Message at POST Logo mode(for Intel Logo) - Added Intel troubleshooting tips at POST(Simple Text Mode) - Q4 2019 Security updated - SA50077 - Fixed security issue of Software SMI 0xC7 - Support BMC FRU Table information is propagated to the SMBIOS Table. SMBIOS Type1 Manufacturer = BMC FRU Product Information: Product Manufacturer SMBIOS Type1 Product Name = BMC FRU Product Information: Product Name + Product Part Number SMBIOS Type1 Version = BMC FRU Product Information: Product Version SMBIOS Type1 Serial Number = BMC FRU Product Information: Product Serial Number SMBIOS Type1 UUID = BMC System GUID SMBIOS Type2 Manufacturer = BMC FRU Board Information: Board Manufacturer SMBIOS Type2 Product = BMC FRU Board Information: Board Product Name SMBIOS Type2 Part Number = BMC FRU Board Information: Board Part Number SMBIOS Type2 Serial Number = BMC FRU Board Information: Board Serial Number SMBIOS Type2 Asset Tag = BMC FRU Product Information: Asset Tag SMBIOS Type3 Manufacturer = BMC FRU Product Information: Product Manufacturer SMBIOS Type3 Type = BMC FRU Chassis information: Chassis Type SMBIOS Type3 Version = BMC FRU Chassis information: Chassis Part Number SMBIOS Type3 Serial Number = BMC FRU Chassis information: Chassis Serial Number SMBIOS Type3 Asset Tag = BMC FRU Product Information: Asset Tag - Updated Intel Legacy RAID option ROM to 6.3.0.1005(Please used driver v 6.3.0.103) - Updated Intel UEFI RAID driver to 6.3.0.1005(Please used driver v6.3.0.103) - Updated MCU Revision to 0xD6 for 2020.1 Intel Platform Update. ================================================================================ V7.210 - Description : - Based on 7209_Production.ROM - Fixed system POST hang when enable both LAN and RAID UEFI driver. - Added SMBIOS type 41 records for the onboard NICs and VGA. ================================================================================ A local flash BIOS with ME update V7.2xx step by step: 01) Extract M10JNP2SBXXXX.zip to USB Storage. 02) Power on your system and boot to EFI SHELL. 03) Change and find the USB storage current directory (For example 'fs0:\M10JNP2SBXXXX'). 04) Run Update_BIOS.nsh 05) Flash finished, do AC off. 06) AC on, check BIOS revision and ME revision with normal status on BIOS Setup Menu.