[Apollo] Advisories Statistics light light Login

RLBA-2025:2991

Bug Fix Mirrored from RHBA-2025:2991
Issued at: 2025-07-29
Updated at: 2025-07-29

Synopsis

Important:microcode_ctl bug fix and enhancement update



Description

The microcode_ctl packages provide microcode updates for Intel and AMD processors.

Bug Fix(es) and Enhancement(s):

* [Rocky Linux 9.5.z] Update Intel CPU microcode to the latest version (JIRA:Rocky Linux-76084)

* microcode_ctl: Improper input validation in UEFI firmware [rhel-9.5.z] (JIRA:Rocky Linux-79223)

* microcode_ctl: Improper input validation in UEFI firmware [rhel-9.5.z] (JIRA:Rocky Linux-79224)

* microcode_ctl: Improper input validation in UEFI firmware CseVariableStorageSmm [rhel-9.5.z] (JIRA:Rocky Linux-79225)

* microcode_ctl: Improper input validation in XmlCli feature for UEFI firmware [rhel-9.5.z] (JIRA:Rocky Linux-79237)

* microcode_ctl: Improper input validation in UEFI firmware [rhel-9.5.z] (JIRA:Rocky Linux-79241)



Affected products

Rocky Linux 9 aarch64 Rocky Linux 9 ppc64le Rocky Linux 9 s390x Rocky Linux 9 x86_64

Fixes

2345365 2345370 2345376 2345401 2345416

CVEs

CVE-2023-34440 CVE-2023-43758 CVE-2024-24582 CVE-2024-28127 CVE-2024-29214

Affected packages

Rocky Linux 9 x86_64 - BaseOS

microcode_ctl-4:20240910-1.20250211.1.el9_5.noarch.rpm microcode_ctl-4:20240910-1.20250211.1.el9_5.src.rpm

Rocky Linux 9 aarch64 - BaseOS

microcode_ctl-4:20240910-1.20250211.1.el9_5.src.rpm

Rocky Linux 9 s390x - BaseOS

microcode_ctl-4:20240910-1.20250211.1.el9_5.src.rpm

Rocky Linux 9 ppc64le - BaseOS

microcode_ctl-4:20240910-1.20250211.1.el9_5.src.rpm