Alerts This Week
Warning Icon 1 677
Alerts This Week
Warning Icon 1 677

SUSE: 2018:2076-1 Important Microcode Fix For Spectre Risks

suse
Calendar Grey July 26, 2018
Dist Suse Esm H88
The new release of microcode_ctl tackles the Spectre vulnerabilities found in SUSE Linux distributions. Comprehensive information and steps for applying the patches are included.
An update that solves two vulnerabilities and has one errata is now available

Summary

This update for microcode_ctl fixes the following issues: The Intel CPU Microcode bundle was updated to the 20180703 release For the listed CPU chipsets this fixes CVE-2018-3640 (Spectre v3a) and helps mitigating CVE-2018-3639 (Spectre v4) (bsc#1100147 bsc#1087082 bsc#1087083) More details can be found on: ata-File Following chipsets are fixed in this round: Model Stepping F-MO-S/PI Old->New ---- updated platforms ------------------------------------ SNB-EP C1 6-2d-6/6d 0000061c->0000061d Xeon E5 SNB-EP C2 6-2d-7/6d 00000713->00000714 Xeon E5 IVT C0 6-3e-4/ed 0000042c->0000042d Xeon E5 v2; Core i7-4960X/4930K/4820K IVT D1 6-3e-7/ed 00000713->00000714 Xeon E5 v2 HSX-E/EP/4S C0 6-3f-2/6f 0000003c->0000003d Xeon E5 v3 HSX-EX E0 6-3f-4/80

References

#1087082 #1087083 #1100147

Cross- CVE-2018-3639 CVE-2018-3640

Affected Products:

SUSE Linux Enterprise Server 11-SP4

SUSE Linux Enterprise Server 11-SP3-LTSS

SUSE Linux Enterprise Point of Sale 11-SP3

https://www.suse.com/security/cve/CVE-2018-3639.html

https://www.suse.com/security/cve/CVE-2018-3640.html

https://bugzilla.suse.com/1087082

https://bugzilla.suse.com/1087083

https://bugzilla.suse.com/1100147

Severity
important
Lowest
Low
Medium
High
Critical

Announcement ID: SUSE-SU-2018:2076-1
Rating: important

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Related News

Your message here