Alerts This Week
Warning Icon 1 684
Alerts This Week
Warning Icon 1 684

SUSE: 2020:14546-1 Moderate: microcode_ctl Update and Threat Mitigation

suse
Calendar Grey November 19, 2020
Dist Suse Esm H88
Patch released for microcode_ctl resolving various vulnerabilities on SUSE systems. Upgrading is advised to minimize risks.

An update that fixes three vulnerabilities is now available.

Summary

This update for microcode_ctl fixes the following issues: - Updated Intel CPU Microcode to 20201110 official release. - CVE-2020-8695: Fixed Intel RAPL sidechannel attack (SGX) INTEL-SA-00389 (bsc#1170446) - CVE-2020-8698: Fixed Fast Store Forward Predictor INTEL-SA-00381 (bsc#1173594) - CVE-2020-8696: Vector Register Sampling Active INTEL-SA-00381 (bsc#1173592) - Release notes: - Security updates for [INTEL-SA-00381](https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00381.html). - Security updates for [INTEL-SA-00389](https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00389.html). - Update for functional issues. Refer to [Second Generation Intel® Xeon® Processor Scalable Family Specification

References

#1170446 #1173592 #1173594

Cross- CVE-2020-8695 CVE-2020-8696 CVE-2020-8698

Affected Products:

SUSE Linux Enterprise Server 11-SP4-LTSS

SUSE Linux Enterprise Point of Sale 11-SP3

https://www.suse.com/security/cve/CVE-2020-8695.html

https://www.suse.com/security/cve/CVE-2020-8696.html

https://www.suse.com/security/cve/CVE-2020-8698.html

https://bugzilla.suse.com/1170446

https://bugzilla.suse.com/1173592

https://bugzilla.suse.com/1173594

Announcement ID: SUSE-SU-2020:14546-1
Rating: moderate

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Related News

Your message here