[ALSA-2024:9401] Moderate: microcode_ctl security update
Type:
security
Severity:
moderate
Release date:
2024-11-18
Description:
The microcode_ctl packages provide microcode updates for Intel and AMD processors. Security Fix(es): * kernel: local privilege escalation on Intel microcode on Intel(R) Xeon(R) (CVE-2023-22655) * kernel: Local information disclosure on Intel(R) Atom(R) processors (CVE-2023-28746) * kernel: Local information disclosure in some Intel(R) processors (CVE-2023-38575) * kernel: Possible Denial of Service on Intel(R) Processors (CVE-2023-39368) * kernel: Local information disclosure on Intel(R) Xeon(R) D processors with Intel(R) SGX due to incorrect calculation in microcode (CVE-2023-43490) * intel-microcode: Race conditions in some Intel(R) Processors (CVE-2023-45733) * intel-microcode: Unexpected behavior in Intel(R) Core(TM) Ultra Processors (CVE-2023-46103) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section. Additional Changes: For detailed information on changes in this release, see the AlmaLinux Release Notes linked from the References section.
Updated packages listed below:
Architecture Package Checksum
noarch microcode_ctl-20240910-1.el9_5.noarch.rpm 8c62be3b9b3b71c9b4cfda517ca9f93f184cb644316a144729859fd6193216a8
Notes:
This page is generated automatically from Red Hat security data and has not been checked for errors. For clarification or corrections please contact the AlmaLinux Packaging Team.