Framework Laptop 16 AMD Ryzen™ 7040 Series — BIOS & Drivers
Subscribe to release notifications to get an email when new BIOS or driver updates are published for your Framework Laptop 16.
You can check your current BIOS version before installing an update.
Latest BIOS & Drivers
Section titled “ Latest BIOS & Drivers ” 4.05
Highlights
- Updated AMD AGESA to PhoenixPI-FP8-FP7_1.2.0.0f.
- Updated input module app to 0.3.16.
- Update G-Sync VK key for NVIDIA 5070 12G Graphic Module.
- Fixed an issue that unexpected 35W CPU power limit when AMD dGPU is in BOCO mode.
- Security fix: CVE-2024-36343 - Improper input validation in the System Management Mode (SMM) communications buffer could allow a privileged attacker to perform an out of bounds read or write to a limited section of the Top of Memory Segment (TSEG) memory region, potentially resulting in loss of confidentiality or integrity.
- Security fix: CVE-2024-36345 - Improper input validation in the AMD OverDrive (AOD) System Management Mode (SMM) module could allow a privileged attacker to perform an out-of-bounds read, potentially resulting in loss of confidentiality.
- Security fix: CVE-2025-54502 - Incorrect use of boot service in the AMD Platform Configuration Blob (APCB) SMM driver could allow a privileged attacker with local access (Ring 0) to achieve privilege escalation potentially resulting in arbitrary code execution.
Installation instructions
Drivers
Section titled “ Drivers ” File Release Date
Windows Driver Bundle v3.03 2026-07-01 Framework_Laptop_16_AMD_Ryzen_7040_driver_bundle_W11_v3.03_2026_07_01.exe
SHA256 · 60323A911CB85EFC1DC6479944CB24EA4D8CFFE338511740396F140EDAE6A599
Wi-Fi Driver for use during Windows Installation 2026-06-18 Framework_W11_OOBE_Wifi_Driver_Package.zip
SHA256 · 13d7286531f7fc354bf345ea6f465c76cbba79f783a44b45d4803743022b574a
Previous BIOS Releases
Section titled “ Previous BIOS Releases ” 4.04
Highlights
- Updated to AMD PhoenixPI-FP8-FP7_1.2.0.0e.
- Modified the F2 key in the F12 Boot Menu to go to the setup menu instead of the settings menu to allow easier navigation to secure boot settings.
- Fixed an issue where the system was unable to boot from partially locked self-encrypting drives (SEDs).
- Fixed an issue where the CPU frequency could become locked at 545MHz under energy(battery) saver mode.
Installation instructions
3.06
Highlights
- After updating to 3.06, downgrading beyond the previous version is not supported.
- Install driver bundle 2.05 alongside this update. Without it, the Framework EC device will show a yellow bang in Windows, though system functionality is unaffected.
- Added Framework's dbx key and updated the default CA of Windows Secure Boot to Microsoft UEFI CA 2023.
- Introduced Battery Extender functionality — automatically limits maximum state of charge if the system is left plugged in for more than 5 days.
- Introduced Battery Charge Limiting status functionality to support Windows Smart Charging.
- Introduced the Framework EC device to enable the Framework tool on Windows.
- Updated to AMD PI 1.2.0.0c.
- Fixed an issue where hardware encryption on OPAL drives could cause a missing boot drive on subsequent reboots.
- Fixed battery drain issues occurring with the Balanced Power Profile.
- Fixed CPU power limits to prevent unnecessary limitation when the GPU is in BOCO mode.
- Fixed 'Force Power for Input Modules' setting not working.
- Security fix: CVE-2024-21925 — Improper input validation in AmdPspP2CmboxV2 may allow privileged attacker to overwrite SMRAM (CVSS 8.2).
- Security fix: CVE-2024-0179 — SMM Callout vulnerability in AmdCpmDisplayFeatureSMM could allow locally authenticated attackers to overwrite SMRAM (CVSS 8.2).
- Security fix: CVE-2025-4275 — Digital signature verification bypass via non-authenticated NVRAM variable (CVSS 7.8).
- Security fix: CVE-2025-2884 — Out-of-bounds read in TCG TPM2.0 CryptHmacSign (CVSS 6.6).
- Security fix: CVE-2024-36347 — Improper signature verification in AMD CPU ROM microcode patch loader (CVSS 6.4).
- Security fix: CVE-2024-49200 — Potential DXE memory corruption in AcpiS3SaveDxe/ChipsetSvcDxe in InsydeH2O (CVSS 6.4).
- Security fix: CVE-2024-36350 — Transient execution vulnerability allowing data inference from previous stores (CVSS 5.6).
- Security fix: CVE-2024-36357 — Transient execution vulnerability allowing L1D cache data inference (CVSS 5.6).
- Security fix: CVE-2024-36348 — Transient execution vulnerability allowing control register inference (CVSS 3.8).
- Security fix: CVE-2024-36349 — Transient execution vulnerability allowing TSC_AUX inference (CVSS 3.8).
Installation instructions
3.04
Highlights
- Security fix: CVE-2023-45232 — IP6Dxe (CVSS 7.5).
- Security fix: CVE-2023-45233 — IP6Dxe (CVSS 7.5).
- Security fix: CVE-2023-45234 — UefiPxeBcDxe (CVSS 8.8).
- Security fix: CVE-2023-45230 — Dhcp6Dxe (CVSS 8.8).
- Fix issue with dual SSD expansion bay module where the SSD is not recognized after resume.
- Set ACPI thermal zone _CRT to 170°C and _HOT to 160°C to fix thermal zones not loading in Linux.
Installation instructions
3.03
Highlights
- Security fix: BRLY-2022-118 (CVSS 4.9) — module A8DAFB9B-3529-4E87-8584-ECDB6A5B78B6.
- Modify EC MMIO region definition to allow debug logging support.
- Add EC support for a full width expansion module for potential future community-developed projects.
- Fixed issue with 2280 SSD disappearing after resuming from sleep in DC mode when OS is installed on the 2230 SSD.
- Change the BIOS password to remove password expiry after one month.
- Modify the BIOS password complexity requirements to only require a minimum length.
- Fix several UCSI error messages on Linux when attaching/removing expansion cards.
- Fix battery cutoff behavior.
Installation instructions