[SUSE-SU-2023:3383-1] Security update for ucode-intel

Severity Important
Affected Packages 7
CVEs 3

Security update for ucode-intel

This update for ucode-intel fixes the following issues:

  • Updated to Intel CPU Microcode 20230808 release. (bsc#1214099)
  • CVE-2022-40982: Fixed a potential security vulnerability in some Intel® Processors which may allow information disclosure.
  • CVE-2023-23908: Fixed a potential security vulnerability in some 3rd Generation Intel® Xeon® Scalable processors which may allow information disclosure.
  • CVE-2022-41804: Fixed a potential security vulnerability in some Intel® Xeon® Processors with Intel® Software Guard Extensions (SGX) which may allow escalation of privilege.
ID
SUSE-SU-2023:3383-1
Severity
important
URL
https://www.suse.com/support/update/announcement/2023/suse-su-20233383-1/
Published
2023-08-23T07:26:47
(13 months ago)
Modified
2023-08-23T07:26:47
(13 months ago)
Rights
Copyright 2024 SUSE LLC. All rights reserved.
Other Advisories
Type Package URL Namespace Name / Product Version Distribution / Platform Arch Patch / Fix
Affected pkg:rpm/suse/ucode-intel?arch=x86_64&distro=sles-15&sp=3 suse ucode-intel < 20230808-150200.27.1 sles-15 x86_64
Affected pkg:rpm/suse/ucode-intel?arch=x86_64&distro=sles-15&sp=2 suse ucode-intel < 20230808-150200.27.1 sles-15 x86_64
Affected pkg:rpm/suse/ucode-intel?arch=x86_64&distro=slem-5 suse ucode-intel < 20230808-150200.27.1 slem-5 x86_64
Affected pkg:rpm/suse/ucode-intel?arch=x86_64&distro=opensuse-leap-micro-5.4 suse ucode-intel < 20230808-150200.27.1 opensuse-leap-micro-5.4 x86_64
Affected pkg:rpm/suse/ucode-intel?arch=x86_64&distro=opensuse-leap-micro-5.3 suse ucode-intel < 20230808-150200.27.1 opensuse-leap-micro-5.3 x86_64
Affected pkg:rpm/suse/ucode-intel?arch=x86_64&distro=opensuse-leap-15.5 suse ucode-intel < 20230808-150200.27.1 opensuse-leap-15.5 x86_64
Affected pkg:rpm/suse/ucode-intel?arch=x86_64&distro=opensuse-leap-15.4 suse ucode-intel < 20230808-150200.27.1 opensuse-leap-15.4 x86_64
# CVE Description CVSS EPSS EPSS Trend (30 days) Affected Products Weaknesses Security Advisories Exploits PoC Pubblication Date Modification Date
# CVE Description CVSS EPSS EPSS Trend (30 days) Affected Products Weaknesses Security Advisories PoC Pubblication Date Modification Date
Loading...