SUSE-SU-2023:3359-1
Dashboard / Vulnerabilities / SUSE-SU-2023:3359-1
SUSE-SU-2023:3359-1
Summary: Security update for ucode-intel
Details: This update for ucode-intel fixes the following issues: - Updated to Intel CPU Microcode 20230808 release. (bsc#1214099) - CVE-2022-40982: Fixed a potential security vulnerability in some Intel� Processors which may allow information disclosure. - CVE-2023-23908: Fixed a potential security vulnerability in some 3rd Generation Intel� Xeon� Scalable processors which may allow information disclosure. - CVE-2022-41804: Fixed a potential security vulnerability in some Intel� Xeon� Processors with Intel� Software Guard Extensions (SGX) which may allow escalation of privilege.
References: https://www.suse.com/support/update/announcement/2023/suse-su-20233359-1/, https://bugzilla.suse.com/1206418, https://bugzilla.suse.com/1214099, https://www.suse.com/security/cve/CVE-2022-40982, https://www.suse.com/security/cve/CVE-2022-41804, https://www.suse.com/security/cve/CVE-2023-23908
Affected packages
Package
Name: ucode-intel
Purl: pkg:rpm/suse/ucode-intel&distro=SUSE%20Linux%20Enterprise%20High%20Performance%20Computing%2015%20SP1-LTSS
Affected ranges
Type: ECOSYSTEM
Events:
