[Apollo] Advisories Statistics light light Login

RLEA-2025:3114

Enhancement Mirrored from RHEA-2025:3114
Issued at: 2026-02-26
Updated at: 2026-02-26

Synopsis

Important:microcode_ctl bug fix and enhancement update



Description

The microcode_ctl packages provide microcode updates for Intel and AMD processors.

Bug Fix(es) and Enhancement(s):

* [Rocky Linux 8] Update Intel CPU microcode to the latest version (JIRA:Rocky Linux-67344)

* microcode_ctl: Improper input validation in UEFI firmware CseVariableStorageSmm [rhel-8.10.z] (JIRA:Rocky Linux-79195)

* microcode_ctl: Improper input validation in UEFI firmware [rhel-8.10.z] (JIRA:Rocky Linux-79197)

* microcode_ctl: Improper input validation in UEFI firmware [rhel-8.10.z] (JIRA:Rocky Linux-79198)

* microcode_ctl: Improper input validation in XmlCli feature for UEFI firmware [rhel-8.10.z] (JIRA:Rocky Linux-79213)

* microcode_ctl: Improper input validation in UEFI firmware [rhel-8.10.z] (JIRA:Rocky Linux-79216)



Affected products

Rocky Linux 8 x86_64

Fixes

2345359 2345363 2345365 2345367 2345370 2345376 2345381 2345401 2345416 2345421

CVEs

CVE-2023-34440 CVE-2023-43758 CVE-2024-24582 CVE-2024-28047 CVE-2024-28127 CVE-2024-29214 CVE-2024-31068 CVE-2024-31157 CVE-2024-36293 CVE-2024-39279

Affected packages

Rocky Linux 8 x86_64 - BaseOS

microcode_ctl-4:20250211-1.el8_10.src.rpm microcode_ctl-4:20250211-1.el8_10.x86_64.rpm