Alerts This Week
Warning Icon 1 692
Alerts This Week
Warning Icon 1 692

SUSE Enterprise Server 15 SP4 Moderate: Spectre-Meltdown-Checker Update

suse
Calendar Grey March 15, 2024
Dist Suse Esm H88
Updated security enhancements for spectre-meltdown-checker on SUSE platforms. Access comprehensive patch guidance here.
* jsc#PED-2362 * jsc#SLE-5514 Cross-References: * CVE-2023-20593

Summary

## This update for spectre-meltdown-checker fixes the following issues: * updated to 0.46 This release mainly focuses on the detection of the new Zenbleed (CVE-2023-20593) vulnerability, among few other changes that were in line waiting for a release: * feat: detect the vulnerability and mitigation of Zenbleed (CVE-2023-20593) * feat: add the linux-firmware repository as another source for CPU microcode versions * feat: arm: add Neoverse-N2, Neoverse-V1 and Neoverse-V2 * fix: docker: adding missing utils (#433) * feat: add support for Guix System kernel * fix: rewrite SQL to be sqlite3 >= 3.41 compatible (#443) * fix: a /devnull file was mistakenly created on the filesystem * fix: fwdb: ignore MCEdb versions where an official Intel version exists (fixes #430) * updated to 0.45

References

* jsc#PED-2362

* jsc#SLE-5514

Cross-

* CVE-2023-20593

CVSS scores:

* CVE-2023-20593 ( SUSE ): 6.2 CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N

* CVE-2023-20593 ( NVD ): 5.5 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N

Affected Products:

* Basesystem Module 15-SP5

* openSUSE Leap 15.5

* SUSE Enterprise Storage 7.1

* SUSE Linux Enterprise Desktop 15 SP4 LTSS 15-SP4

* SUSE Linux Enterprise Desktop 15 SP5

* SUSE Linux Enterprise High Performance Computing 15 SP2

* SUSE Linux Enterprise High Performance Computing 15 SP2 LTSS 15-SP2

* SUSE Linux Enterprise High Performance Computing 15 SP3

* SUSE Linux Enterprise High Performance Computing 15 SP4

* SUSE Linux Enterprise High Performance Computing 15 SP5

* SUSE Linux Enterprise High Performance Computing ESPOS 15 SP4

Announcement ID: SUSE-SU-2024:0884-1
Rating: moderate

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Related News

Your message here