Alerts This Week
Warning Icon 1 631
Alerts This Week
Warning Icon 1 631

Mageia 9: 2024-0207 Moderate: Intel Logic Threats and Microcode Updates

mageia
Calendar Grey June 3, 2024
Dist Mageia Esm H88
Revamped firmware sets for Mageia tackle significant vulnerabilities and deliver robust protections.
The updated package fixes security vulnerabilities: Hardware logic contains race conditions in some Intel(R) Processors may allow an authenticated user to potentially enable partia...

Summary

The updated package fixes security vulnerabilities: Hardware logic contains race conditions in some Intel(R) Processors may allow an authenticated user to potentially enable partial information disclosure via local access. (CVE-2023-45733) Sequence of processor instructions leads to unexpected behavior in Intel(R) Core(TM) Ultra Processors may allow an authenticated user to potentially enable denial of service via local access. (CVE-2023-46103) Improper input validation in some Intel(R) TDX module software before version 1.5.05.46.698 may allow a privileged user to potentially enable escalation of privilege via local access. (CVE-2023-45745)

References

- https://bugs.mageia.org/show_bug.cgi?id=33251

- https://ubuntu.com/security/notices/USN-6797-1

- https://github.com/intel/Intel-Linux-Processor-Microcode-Data-Files/releases/tag/microcode-20240514

- https://www.cve.org/CVERecord?id=CVE-2023-45733

- https://www.cve.org/CVERecord?id=CVE-2023-46103

- https://www.cve.org/CVERecord?id=CVE-2023-45745

Resolution

SRPMS

- 9/nonfree/microcode-0.20240514-1.mga9.nonfree

Publication date: 03 Jun 2024
URL: https://advisories.mageia.org/MGASA-2024-0207.html
Type: security
CVE: CVE-2023-45733, CVE-2023-46103, CVE-2023-45745

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Related News

Your message here