Alerts This Week
Warning Icon 1 924
Alerts This Week
Warning Icon 1 924

openSUSE 15.2: 2020:2075-1 Important: Ucode-Intel Security Update

opensuse
Calendar Grey November 27, 2020
Dist Opensuse Esm H88
Important openSUSE maintenance release for ucode-intel resolves multiple vulnerabilities and enhances system security.

An update that solves three vulnerabilities and has one errata is now available.

Description

This update for ucode-intel fixes the following issues:

- Updated Intel CPU Microcode to 20201118 official release. (bsc#1178971)

- Removed TGL/06-8c-01/80 due to functional issues with some OEM

platforms.

- Updated Intel CPU Microcode to 20201110 official release.

- CVE-2020-8695: Fixed Intel RAPL sidechannel attack (SGX) (bsc#1170446)

- CVE-2020-8698: Fixed Fast Store Forward Predictor INTEL-SA-00381

(bsc#1173594)

- CVE-2020-8696: Vector Register Sampling Active INTEL-SA-00381

(bsc#1173592)

- Release notes:

- Security updates for

[INTEL-SA-00381](https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00381.html).

- Security updates for

[INTEL-SA-00389](https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00389.html).

- Update for functional issues. Refer to [Second Generation Intel??

Xeon?? Processor Scalable Family Specification

...

Read the Full Advisory

Patch

Patch Instructions:

To install this openSUSE Security Update use the SUSE recommended installation methods

like YaST online_update or "zypper patch".

Alternatively you can run the command listed for your product:

- openSUSE Leap 15.2:

zypper in -t patch openSUSE-2020-2075=1

Package List

- openSUSE Leap 15.2 (x86_64):

ucode-intel-20201118-lp152.2.8.1

References

https://www.suse.com/security/cve/CVE-2020-8695.html

https://www.suse.com/security/cve/CVE-2020-8696.html

https://www.suse.com/security/cve/CVE-2020-8698.html

https://bugzilla.suse.com/1170446

https://bugzilla.suse.com/1173592

https://bugzilla.suse.com/1173594

https://bugzilla.suse.com/1178971

--===============2737146587237879525=

Severity
important
Lowest
Low
Medium
High
Critical

Announcement ID: openSUSE-SU-2020:2075-1
Rating: important

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Your message here