Alerts This Week
Warning Icon 1 758
Alerts This Week
Warning Icon 1 758

Ubuntu 14.04 ESM: USN-4182-4 Critical: Intel Microcode Regression Issue

ubuntu
Calendar Grey December 4, 2019
Dist Ubuntu Esm H88
Recent Intel Microcode changes affect Skylake series CPUs; Ubuntu 14.04 ESM users need to install patch to avoid complications.
USN-4182-2 introduced a regression in the Intel Microcode for some Skylake processors.

Summary

USN-4182-2 introduced a regression in the Intel Microcode for some

Skylake processors.

Software Description:

- intel-microcode: Processor microcode for Intel CPUs

Details:

USN-4182-2 provided updated Intel Processor Microcode. A regression

was discovered that caused some Skylake processors to hang after

a warm reboot. This update reverts the microcode for that specific

processor family.

We apologize for the inconvenience.

Original advisory details:

Stephan van Schaik, Alyssa Milburn, Sebastian Österlund, Pietro Frigo,

Kaveh Razavi, Herbert Bos, Cristiano Giuffrida, Giorgi Maisuradze, Moritz

Lipp, Michael Schwarz, Daniel Gruss, and Jo Van Bulck discovered that Intel

processors using Transactional Synchronization Extensions (TSX) could

expose memory contents previously stored in microarchitectural buffers to a

malicious process that is executing on the same CPU core. A local attacker

could use this to expose sensitive information. (CVE-2019-11135)

...

Read the Full Advisory

Update Instructions

The problem can be corrected by updating your system to the following
package versions:

Ubuntu 14.04 ESM:
  intel-microcode                 3.20191115.1ubuntu0.14.04.2

After a standard system update you need to reboot your computer.

References

https://ubuntu.com/security/notices/USN-4182-4

https://ubuntu.com/security/notices/USN-4182-1

https://bugs.launchpad.net/ubuntu/+source/intel-microcode/+bug/1854764

Severity
critical
Lowest
Low
Medium
High
Critical

December 04, 2019

Package Information

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Your message here