Alerts This Week
Warning Icon 1 714
Alerts This Week
Warning Icon 1 714

Debian LTS: DLA-4095-1: intel-microcode Security Advisory Updates

debian lts
Calendar Grey March 29, 2025
Dist Debian Esm H88
Microcode updates for Intel processors address privilege escalation, DoS, and information disclosure risks.
Microcode updates has been released for Intel(R) processors, addressing multiple potential vulnerabilties that may allow local privilege escalation, denial of service or informatio...

Summary

CVE-2023-34440 (INTEL-SA-01139)

Improper input validation in UEFI firmware for some Intel(R) Processors
may allow a privileged user to potentially enable escalation of
privilege via local access.

CVE-2023-43758 (INTEL-SA-01139)

Improper input validation in UEFI firmware for some Intel(R) processors
may allow a privileged user to potentially enable escalation of
privilege via local access.

CVE-2024-24582 (INTEL-SA-01139)

Improper input validation in XmlCli feature for UEFI firmware for some
Intel(R) processors may allow privileged user to potentially enable
escalation of privilege via local access.

CVE-2024-28047 (INTEL-SA-01139)

Improper input validation in UEFI firmware for some Intel(R) Processors
may allow a privileged user to potentially enable information disclosure
via local access.

CVE-2024-28127 (INTEL-SA-01139)

Improper input validation in UEFI firmware for some Intel(R) Processors

Read the Full Advisory


Severity
critical
Lowest
Low
Medium
High
Critical

Package: intel-microcode
Version: 3.20250211.1~deb11u1
CVE ID: CVE-2023-34440 CVE-2023-43758 CVE-2024-24582 CVE-2024-28047
Debian Bug: 1095805

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Your message here