Alerts This Week
Warning Icon 1 692
Alerts This Week
Warning Icon 1 692

SUSE: 2024:0885-1 Moderate: Spectre-Meltdown Checker Update

suse
Calendar Grey March 15, 2024
Dist Suse Esm H88
SUSE has released a security patch that fixes key vulnerabilities in the spectre-meltdown-checker while improving its ability to detect Zenbleed threats and more
* jsc#PED-2362 * jsc#SLE-5514 Cross-References: * CVE-2023-20593

Summary

## This update for spectre-meltdown-checker fixes the following issues: * updated to 0.46 This release mainly focuses on the detection of the new Zenbleed (CVE-2023-20593) vulnerability, among few other changes that were in line waiting for a release: * feat: detect the vulnerability and mitigation of Zenbleed (CVE-2023-20593) * feat: add the linux-firmware repository as another source for CPU microcode versions * feat: arm: add Neoverse-N2, Neoverse-V1 and Neoverse-V2 * fix: docker: adding missing utils (#433) * feat: add support for Guix System kernel * fix: rewrite SQL to be sqlite3 >= 3.41 compatible (#443) * fix: a /devnull file was mistakenly created on the filesystem * fix: fwdb: ignore MCEdb versions where an official Intel version exists (fixes #430) * updated to 0.45

References

* jsc#PED-2362

* jsc#SLE-5514

Cross-

* CVE-2023-20593

CVSS scores:

* CVE-2023-20593 ( SUSE ): 6.2 CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N

* CVE-2023-20593 ( NVD ): 5.5 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N

Affected Products:

* SUSE Linux Enterprise High Performance Computing 12 SP5

* SUSE Linux Enterprise Server 12 SP5

* SUSE Linux Enterprise Server for SAP Applications 12 SP5

An update that solves one vulnerability and contains two features can now be

installed.

##

* https://www.suse.com/security/cve/CVE-2023-20593.html

*

*

Announcement ID: SUSE-SU-2024:0885-1
Rating: moderate

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Related News

Your message here