[Apollo] Advisories Statistics light light Login

RLEA-2024:8159

Enhancement Mirrored from RHEA-2024:8159
Issued at: 2024-10-25
Updated at: 2024-10-25

Synopsis

microcode_ctl bug fix and enhancement update



Description

The microcode_ctl packages provide microcode updates for Intel and AMD processors.

Bug Fix(es) and Enhancement(s):

* microcode_ctl: kernel: local privilege escalation on Intel microcode on Intel(R) Xeon(R) [rhel-8.10.0] (JIRA:Rocky Linux-30859)

* microcode_ctl: kernel: Local information disclosure on Intel(R) Atom(R) processors [rhel-8.10.0] (JIRA:Rocky Linux-30862)

* microcode_ctl: kernel: Local information disclosure in some Intel(R) processors [rhel-8.10.0] (JIRA:Rocky Linux-30865)

* microcode_ctl: kernel: Local information disclosure on Intel(R) Xeon(R) D processors with Intel(R) SGX due to incorrect calculation in microcode [rhel-8.10.0] (JIRA:Rocky Linux-30868)

* microcode_ctl: kernel: Possible Denial of Service on Intel(R) Processors [rhel-8.10.0] (JIRA:Rocky Linux-30871)

* microcode_ctl: intel-microcode: Race conditions in some Intel(R) Processors [rhel-8] (JIRA:Rocky Linux-41093)

* microcode_ctl: intel-microcode: Unexpected behavior in Intel(R) Core(TM) Ultra Processors [rhel-8.10.z] (JIRA:Rocky Linux-41108)



Affected products

Rocky Linux 8 x86_64

Fixes



CVEs

Affected packages

Rocky Linux 8 x86_64 - BaseOS

microcode_ctl-4:20240531-1.el8_10.src.rpm microcode_ctl-4:20240531-1.el8_10.x86_64.rpm