Overly broad permissions can turn one compromised account into a much larger security problem. Learn how to reduce unnecessary access, review privileges, and apply least privilege across modern Linux systems. Review Linux Privileges×
ucode-intel was updated to the 20180807 release.
For the listed CPU chipsets this fixes CVE-2018-3640 (Spectre v3a) and is
part of the mitigations for CVE-2018-3639 (Spectre v4) and CVE-2018-3646
(L1 Terminal fault). (bsc#1104134 bsc#1087082 bsc#1087083 bsc#1089343)
Processor Identifier Version Products
Model Stepping F-MO-S/PI Old->New
---- new platforms ---------------------------------------- WSM-EP/WS
U1 6-2c-2/03 0000001f Xeon E/L/X56xx, W36xx NHM-EX
D0 6-2e-6/04 0000000d Xeon E/L/X65xx/75xx BXT
C0 6-5c-2/01 00000014 Atom T5500/5700 APL
E0 6-5c-a/03 0000000c Atom x5-E39xx DVN
B0 6-5f-1/01 00000024 Atom C3xxx
---- updated platforms ------------------------------------ NHM-EP/WS
D0 6-1a-5/03 00000019->0000001d Xeon E/L/X/W55xx NHM
B1 6-1e-5/13 00000007->0000000a Core i7-8xx, i5-7xx; Xeon...
Read the Full AdvisoryPatch Instructions:
To install this openSUSE Security Update use the SUSE recommended installation methods
like YaST online_update or "zypper patch".
Alternatively you can run the command listed for your product:
- openSUSE Leap 42.3:
zypper in -t patch openSUSE-2018-887=1
- openSUSE Leap 15.0:
zypper in -t patch openSUSE-2018-887=1
- openSUSE Leap 42.3 (i586 x86_64):
ucode-intel-20180807-28.1
ucode-intel-blob-20180807-28.1
ucode-intel-debuginfo-20180807-28.1
ucode-intel-debugsource-20180807-28.1
- openSUSE Leap 15.0 (x86_64):
ucode-intel-20180807-lp150.2.7.1
https://www.suse.com/security/cve/CVE-2018-3639.html
https://www.suse.com/security/cve/CVE-2018-3640.html
https://www.suse.com/security/cve/CVE-2018-3646.html
https://bugzilla.suse.com/1087082
https://bugzilla.suse.com/1087083
https://bugzilla.suse.com/1089343
https://bugzilla.suse.com/1104134
--
Get the latest Linux and open source security news straight to your inbox.