RLSA-2021:2308
Dashboard / Vulnerabilities / RLSA-2021:2308
RLSA-2021:2308
Summary: Important: microcode_ctl security, bug fix and enhancement update
Details: The microcode_ctl packages provide microcode updates for Intel. Security Fix(es): * hw: vt-d related privilege escalation (CVE-2020-24489) * hw: improper isolation of shared resources in some Intel Processors (CVE-2020-24511) * hw: observable timing discrepancy in some Intel Processors (CVE-2020-24512) * hw: information disclosure on some Intel Atom processors (CVE-2020-24513) Bug Fix(es) and Enhancement(s): * Update Intel CPU microcode to microcode-20210525 release
References: https://errata.rockylinux.org/RLSA-2021:2308, https://bugzilla.redhat.com/show_bug.cgi?id=1962650, https://bugzilla.redhat.com/show_bug.cgi?id=1962666, https://bugzilla.redhat.com/show_bug.cgi?id=1962702, https://bugzilla.redhat.com/show_bug.cgi?id=1962722
Affected packages
Package
Name: microcode_ctl
Purl: pkg:rpm/rocky-linux/microcode_ctl?distro=rocky-linux-8-4-legacy&epoch=4
Affected ranges
Type: ECOSYSTEM
Events:
