Alerts This Week
Warning Icon 1 764
Alerts This Week
Warning Icon 1 764

Debian 10 DLA-3596-1 Moderate: Intel Firmware Privilege Escalation

debian lts
Calendar Grey September 30, 2023
Dist Debian Esm H88
Debian LTS released DLA-3596-1 for firmware-nonfree addressing privilege escalation and denial of service issues.
Intel® released the INTEL-SA-00766 advisory about potential security vulnerabilities in some Intel® PROSet/Wireless WiFi and Killer™ WiFi products may allow escalation o...

Summary

[1] https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00766.html

This updated firmware-nonfree package includes the following firmware files:
- Intel Bluetooth AX2xx series:
ibt-0041-0041.sfi
ibt-19-0-0.sfi
ibt-19-0-1.sfi
ibt-19-0-4.sfi
ibt-19-16-4.sfi
ibt-19-240-1.sfi
ibt-19-240-4.sfi
ibt-19-32-0.sfi
ibt-19-32-1.sfi
ibt-19-32-4.sfi
ibt-20-0-3.sfi
ibt-20-1-3.sfi
ibt-20-1-4.sfi
- Intel Wireless 22000 series
iwlwifi-Qu-b0-hr-b0-77.ucode
iwlwifi-Qu-b0-jf-b0-77.ucode
iwlwifi-Qu-c0-hr-b0-77.ucode
iwlwifi-Qu-c0-jf-b0-77.ucode
iwlwifi-QuZ-a0-hr-b0-77.ucode
iwlwifi-cc-a0-77.ucode

The updated firmware files might need updated kernel to work. It is encouraged
to verify whether the kernel loaded the updated firmware file and take
additional measures if needed.


CVE-2022-27635

Improper access control for some Intel(R) PROSet/Wireless WiFi and Killer(TM)

Read the Full Advisory


Package: firmware-nonfree
Version: 20190114+really20220913-0+deb10u2
CVE ID: CVE-2022-27635 CVE-2022-36351 CVE-2022-38076 CVE-2022-40964
Debian Bug: 1051892

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Your message here