This update for ucode-intel fixes the following issues:
Updated Intel CPU Microcode to 20200602 (prerelease) (bsc#1172466)
This update contains security mitigations for:
- CVE-2020-0543: Fixed a side channel attack against special registers which could have resulted in leaking of read values to cores other than
the one which called it. This attack is known as Special Register
Buffer Data Sampling (SRBDS) or "CrossTalk" (bsc#1154824).
- CVE-2020-0548,CVE-2020-0549: Additional ucode updates were supplied to
mitigate the Vector Register and L1D Eviction Sampling aka
"CacheOutAttack" attacks. (bsc#1156353)
Microcode Table:
Processor Identifier Version Products Model
Stepping F-MO-S/PI Old->New
---- new platforms ----------------------------------------
---- updated platforms ------------------------------------ HSW
C0 6-3c-3/32 00000027->00000028 Core Gen4 BDW-U/Y E0/F0
...
Read the Full AdvisoryPatch Instructions:
To install this openSUSE Security Update use the SUSE recommended installation methods
like YaST online_update or "zypper patch".
Alternatively you can run the command listed for your product:
- openSUSE Leap 15.1:
zypper in -t patch openSUSE-2020-791=1
- openSUSE Leap 15.1 (x86_64):
ucode-intel-20200602-lp151.2.24.1
https://www.suse.com/security/cve/CVE-2020-0543.html
https://www.suse.com/security/cve/CVE-2020-0548.html
https://www.suse.com/security/cve/CVE-2020-0549.html
https://bugzilla.suse.com/1154824
https://bugzilla.suse.com/1156353
https://bugzilla.suse.com/1172466
--
Get the latest Linux and open source security news straight to your inbox.