[Apollo] Advisories Statistics light light Login

RLEA-2024:7620

Enhancement Mirrored from RHEA-2024:7620
Issued at: 2024-10-25
Updated at: 2024-10-25

Synopsis

microcode_ctl bug fix and enhancement update



Description

The microcode_ctl packages provide microcode updates for Intel and AMD processors.

Bug Fix(es) and Enhancement(s):

* microcode_ctl: kernel: local privilege escalation on Intel microcode on Intel(R) Xeon(R) [rhel-9.4.0] (JIRA:Rocky Linux-30860)

* microcode_ctl: kernel: Local information disclosure on Intel(R) Atom(R) processors [rhel-9.4.0] (JIRA:Rocky Linux-30863)

* microcode_ctl: kernel: Local information disclosure in some Intel(R) processors [rhel-9.4.0] (JIRA:Rocky Linux-30866)

* microcode_ctl: kernel: Local information disclosure on Intel(R) Xeon(R) D processors with Intel(R) SGX due to incorrect calculation in microcode [rhel-9.4.0] (JIRA:Rocky Linux-30869)

* microcode_ctl: kernel: Possible Denial of Service on Intel(R) Processors [rhel-9.4.0] (JIRA:Rocky Linux-30872)

* microcode_ctl: kernel: Local information disclosure on Intel(R) Atom(R) processors [rhel-9.4.z] (JIRA:Rocky Linux-48717)



Affected products

Rocky Linux 9 x86_64

Fixes



CVEs

Affected packages

Rocky Linux 9 x86_64 - BaseOS

microcode_ctl-4:20230808-2.20240531.1.el9_4.noarch.rpm microcode_ctl-4:20230808-2.20240531.1.el9_4.src.rpm