[Apollo] Advisories Statistics light light Login

RLSA-2026:65147

Security Mirrored from RHSA-2026:65147
Issued at: 2026-09-09
Updated at: 2026-09-10

Advisory content derived from Red Hat RHSA-2026:65147, © Red Hat, Inc., used under CC BY 4.0, with modifications.

Synopsis

Important: microcode_ctl security, bug fix, and enhancement update



Description

The microcode_ctl packages provide microcode updates for Intel and AMD processors.

Security Fix(es):

* kernel: hypervisor: Intel Processors: Privilege escalation in Ring 0 via improper value handling (CVE-2025-35973)

* kernel: microcode_ctl: Intel Xeon 6 Processors: Privilege escalation via improper memory range handling in SMM (CVE-2025-31936)

Bug Fix(es) and Enhancement(s):

* [Rocky Linux 8] Update Intel CPU microcode to the latest version (JIRA:Rocky Linux-240770)

For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.



Affected products

Rocky Linux 8 x86_64

Fixes

2514104 2514115

CVEs

CVE-2025-31936 CVE-2025-35973

Affected packages

Rocky Linux 8 x86_64 - BaseOS

microcode_ctl-4:20260812-1.el8_10.src.rpm microcode_ctl-4:20260812-1.el8_10.x86_64.rpm