Framework Laptop 13 11th Gen Intel® Core™ — BIOS & Drivers
Subscribe to release notifications to get an email when new BIOS or driver updates are published for your Framework Laptop 13.
You can check your current BIOS version before installing an update.
3.25
Installation
Downloads
FileRelease Date
Windows BIOS v3.25 Installer2026-07-06Framework_Laptop_13_11th_Gen_Intel_Core_BIOS_3.25.exeSHA256 · 0DCB0A579C3F8F0D5B9848AB2EF9C5F4881765A295352B8B08D9324935E3255D
EFI Shell Update (BIOS v3.25)2026-07-06Framework_Laptop_13_11th_Gen_Intel_Core_BIOS_3.25_EFI.zipSHA256 · 15511009EC35CF49D7ADCC16F8EC3930B0E6592DF31E93E28CEBCBC550B690B5
Highlights
- Updated Intel SIC to 8063.00.
- Updated CSME to 15.0.55.2751v6 Corporate.
- Update Microcode to 0xBE.
- Added support for Framework Laptop 13 Pro features - Enabled compatibility for the haptic touchpad, touch panel, and 74W battery.
- Fixed an issue where the system was unable to boot from partially locked self-encrypting drives (SEDs)
- Fixed an issue where the Battery Extender status was reported incorrectly following a reboot, hibernation, or shutdown after the timer had expired.
- Enhanced the Power On AC behavior, allowing the feature to work correctly without requiring the system to boot into the Operating System at least once for initialization.
- Secure Fix: CVE-2025-32008 - Out-of-bounds write in the firmware for the Intel(R) AMT and Intel(R) Standard Manageability within Ring 3: User Applications may allow a denial of service. Network adversary with an unauthenticated user combined with a low complexity attack may enable denial of service. This result may potentially occur via network access when attack requirements are not present without special internal knowledge and requires no user interaction. The potential vulnerability may impact the confidentiality (none), integrity (none) and availability (high) of the vulnerable system, resulting in subsequent system confidentiality (none), integrity (none) and availability (low) impacts. (CVSS 8.6)
- Secure Fix: CVE-2025-20080 - Null pointer dereference in the firmware for some Intel(R) AMT and Intel(R) Standard Manageability within Ring 0: Kernel may allow a denial of service. Network adversary with an unauthenticated user combined with a high complexity attack may enable denial of service. This result may potentially occur via network access when attack requirements are present without special internal knowledge and requires no user interaction. The potential vulnerability may impact the confidentiality (none), integrity (none) and availability (high) of the vulnerable system, resulting in subsequent system confidentiality (none), integrity (none) and availability (none) impacts. (CVSS 6.8)
- Secure Fix: CVE-2025-27708 - Out-of-bounds read in the firmware for some Intel(R) Converged Security and Management Engine (CSME) Firmware (FW) within Ring 0: Kernel may allow an information disclosure. System software adversary with a privileged user combined with a low complexity attack may enable data exposure. This result may potentially occur via local access when attack requirements are present without special internal knowledge and requires no user interaction. The potential vulnerability may impact the confidentiality (high), integrity (none) and availability (none) of the vulnerable system, resulting in subsequent system confidentiality (none), integrity (none) and availability (none) impacts. (CVSS 4.1)
- Secure Fix: CVE-2025-31648 - Improper handling of values in the microcode flow for some Intel(R) Processor Family may allow an escalation of privilege. Startup code and smm adversary with a privileged user combined with a high complexity attack may enable escalation of privilege. This result may potentially occur via local access when attack requirements are present with special internal knowledge and requires no user interaction. The potential vulnerability may impact the confidentiality (low), integrity (low) and availability (none) of the vulnerable system, resulting in subsequent system confidentiality (low), integrity (low) and availability (none) impacts. (CVSS 3.9)
Drivers
Section titled “ Drivers ”FileRelease Date
Windows Driver Bundle v3.042026-07-06Framework_Laptop_13_11th_Gen_Intel_Core_driver_bundle_W11_V304_2026_06_18.exeSHA256 · BEBC431AC73CDE5470E71FA288CC9750FDB4E64A1B2EC0D525F7326B31691084
Wi-Fi Driver for use during Windows Installation2026-09-03Framework_W11_OOBE_Wifi_Driver_Package.zipSHA256 · BD427CC233BAAA7CC8522823603390A50FA425BC302D2192CB7900017B5BD044
Previous BIOS Releases
Section titled “Previous BIOS Releases”3.24
Installation
Downloads
FileRelease Date
Windows BIOS v3.24 Installer2025-10-08Framework_Laptop_13_11th_Gen_Intel_Core_BIOS_3.23_3.24.zipSHA256 · 73BB7550ADF02279D9BF6B212A0DACFC28AE80BFF71C3AD2AECAF7561D4A9988
EFI Shell Update (BIOS v3.24)2025-10-08Framework_Laptop_13_11th_Gen_Intel_Core_BIOS_3.23_3.24_EFI.zipSHA256 · 7AE770818E37121F4BC84B8CA6B7E4583C65F8F438633C88168B87E09F67F821
Highlights
- This is a two-step update: you must first update to 3.23, then update to 3.24; both steps are included in the download package
- Security fix: CVE-2025-4275 — Vulnerability in digital signature verification allows bypass via non-authenticated NVRAM variable (CVSS 7.8)
- Security fix: CVE-2024-45332 — Vulnerability in Intel Processor indirect branch predictors may allow information disclosure via local access (CVSS 5.6)
- Updated Microcode to 0xBC
- Added Framework's dbx key and updated the default CA of Windows Secure Boot to Microsoft UEFI CA 2023
- Introduced Battery Charge Limiting status functionality to support the Windows Smart Charging feature
- Fixed an issue where hardware encryption on OPAL drives could cause a missing boot drive on subsequent reboots
3.22
Installation
Downloads
FileRelease Date
Windows BIOS v3.22 Installer2025-05-21Framework_Laptop_13_11th_Gen_Intel_Core_BIOS_3.22.exeSHA256 · 615BB57BDC664817DFA34E53D5D2D2E561AA3B6D8AD53BE8CB535A0FDF2BD0BE
EFI Shell Update (BIOS v3.22)2025-05-21Framework_Laptop_13_11th_Gen_Intel_Core_BIOS_3.22.zipSHA256 · 6A37E0EF49066448D903BFF8502ADB3B53D576C9234C38195B930371EB7C8E74
Highlights
- After updating to 3.22, you will not be able to downgrade to an earlier version
- Security fix: CVE-2023-38655 — Improper buffer restrictions in firmware (CVSS 6.8)
- Security fix: CVE-2022-35897 — Stack buffer overflow vulnerability leading to arbitrary code execution (CVSS 6.8)
- Security fix: CVE-2024-49200 — AcpiS3SaveDxe and ChipsetSvcDxe vulnerability (CVSS 6.4)
- Security fix: CVE-2024-30211 — Improper access control in Intel ME driver pack installer (CVSS 6.0)
- Security fix: CVE-2023-40067 — Unchecked return value in firmware (CVSS 5.7)
- Security fix: CVE-2024-28956 — Enhancement to address security vulnerability (CVSS 5.6)
- Security fix: CVE-2023-34424 — Improper input validation in firmware (CVSS 4.4)
- Security fix: CVE-2024-21844 — Integer overflow in firmware (CVSS 4.3)
- Security fix: CVE-2023-35061 — Improper initialization (CVSS 4.3)
- Security fix: CVE-2024-26021 — Improper initialization in firmware (CVSS 2.3)
- Security fix: CVE-2023-48361 — Improper initialization in firmware (CVSS 2.3)
- Updated Intel CSME to 15.0.50.2633
- Updated Microcode to 0xBA
- Added automatic battery lifetime extender functionality
- Added BIOS option to prevent TPM PCRs changing when TBT eGPU is attached
- Added Dual Display (Panel + External Monitor) support for pre-boot (BIOS/POST)
- Fixed issue where the system cannot power on automatically when 'power on AC attach' is enabled
- Fixed missing secure boot key that prevented secure boot from being enabled
3.19
Installation
Downloads
FileRelease Date
Windows BIOS v3.19 InstallerFramework_Laptop_11th_Gen_Intel_Core_BIOS_3.19.exe
EFI Shell Update (BIOS v3.19)Framework_Laptop_13_11th_Gen_Intel_Core_3.19_EFI_c.zipSHA256 · 1F9976892D3239AF31C5D2A4C66632B119CC6A8224AD6DB5B25F99C249681281
Highlights
- Security fix: CVE-2017-5715 — Spectre variant 2 (Insyde security patch)
- Updated Intel CSME to 15.0.42.2235v2 Corporate
- Moved to shared EC branch with 11th, 12th, and 13th gen
- Fixed SMBIOS type2 location on chassis string
- Added ACPI mutex in UCSI mailbox with EC to avoid race condition
- Fixed LED blink green when EC power on
- Fixed cannot power on EC chip
- Reduced charger input current limit to 0 when switching between Type-C ports in a multiple adapter scenario
3.17
Installation
Downloads
FileRelease Date
Windows BIOS v3.17 InstallerFramework_Laptop_11th_Gen_Intel_Core_BIOS_3.17.exe
EFI Shell Update (BIOS v3.17)Framework_Laptop_11th_gen_Intel_Core_BIOS_3.17_EFI.zip
Highlights
- Security fix: CVE-2022-35408
- Security fix: CVE-2022-35896
- Security fix: CVE-2022-35893
- Added BIOS option in the Advanced menu to enable standalone operation mode
- Modified power button LED behavior: low battery now flashes white instead of red
- Improved battery life when HDMI/DP expansion cards are attached but no display is connected
- Added support for Capsule on Disk for future LVFS compatibility
- Fixed pressing F12 key during boot causes system hang when BIOS quiet boot is disabled
- Fixed BIOS setup item TPM availability missing word