MGASA-2018-0176

    Dashboard / Vulnerabilities / MGASA-2018-0176

    MGASA-2018-0176

    Published: 19 Mar 2018Last Modified: 16 Apr 2026
    Upstream:

    Summary: Updated microcode packages fix security vulnerabilities

    Details: This update provides new microcode fixes and mitigations for Spectre (CVE-2017-5715) for many Intel CPUs produced in the last 5 years. So far the Intel microcode updates are for several processors from many of Intel Haswell, Broadwell, Skylake, Kaby Lake, Coffee Lake, Gemini Lake, Apollo Lake, Crystal Well and IVT platforms. Theese updated microcodes should also fix the instabilities that some users experienced with the earlier microcode updates released in MGASA-2018-0079. We will provide more microcode updates later on when they are made available by Intel and Amd. if you want to use this microcode on your current running kernel, you need to re-create the initrd (initial ramdisk used at boot time), you can do so by issuing the command 'dracut -f' as root, and reboot your system We also suggest that you check if there is updated BIOS and EFI firmwares from your hardware vendor. For a list of updated microcode revisions, read the referened Intel list page.

    Affected packages

    Package

    Name: microcode

    Purl: pkg:rpm/mageia/microcode?arch=source&distro=mageia-6

    Affected ranges

    Type: ECOSYSTEM

    Events:

    Introduced- 0
    Fixed -0.20180312-1.mga6.nonfree

    Affected versions

    Common Vulnerability Scoring System

    Attack Vector
    Network
    Adjacent
    Local
    Physical
    Privileges Required
    None
    Low
    High
    User Interaction
    None
    Required
    Scope
    Unchanged
    Changed
    Confidentiality
    None
    Low
    High
    Integrity
    None
    Low
    High
    Availability
    None
    Low
    High