Alerts This Week
Warning Icon 1 684
Alerts This Week
Warning Icon 1 684

Ubuntu 22.04 LTS USN-7535-1 critical: intel microcode issues

Ubuntu Large Esm H500
Several security issues were fixed in Intel Microcode.

==========================================================================
Ubuntu Security Notice USN-7535-1
May 27, 2025

intel-microcode vulnerabilities
==========================================================================

A security issue affects these releases of Ubuntu and its derivatives:

- Ubuntu 25.04
- Ubuntu 24.10
- Ubuntu 24.04 LTS
- Ubuntu 22.04 LTS
- Ubuntu 20.04 LTS
- Ubuntu 18.04 LTS
- Ubuntu 16.04 LTS

Summary:

Several security issues were fixed in Intel Microcode.

Software Description:
- intel-microcode: Processor microcode for Intel CPUs

Details:

Sander Wiebing and Cristiano Giuffrida discovered that some Intel®
Processors did not properly handle data in Shared Microarchitectural
Structures during Transient Execution. An authenticated attacker could
possibly use this issue to obtain sensitive information. (CVE-2024-28956)

It was discovered that some Intel® Processors did not properly handle
prediction calculations. An authenticated attacker could possibly use this
issue to obtain sensitive information. (CVE-2024-43420, CVE-2024-45332,
CVE-2025-20623)

It was discovered that some Intel® Processors did not properly initialize
resources in the branch prediction unit. An authenticated attacker could
possibly use this issue to obtain sensitive information. (CVE-2025-20012,
CVE-2025-24495)

Michal Raviv and Jeff Gilbert discovered that some Intel® Processors did
not properly handle resources and exceptions in the core management
mechanism. An authenticated attacker could possibly use this issue to
cause a denial of service. (CVE-2025-20054, CVE-2025-20103)

Update instructions:

The problem can be corrected by updating your system to the following
package versions:

Ubuntu 25.04
  intel-microcode                 3.20250512.0ubuntu0.25.04.1

Ubuntu 24.10
  intel-microcode                 3.20250512.0ubuntu0.24.10.1

Ubuntu 24.04 LTS
  intel-microcode                 3.20250512.0ubuntu0.24.04.1

Ubuntu 22.04 LTS
  intel-microcode                 3.20250512.0ubuntu0.22.04.1

Ubuntu 20.04 LTS
  intel-microcode                 3.20250512.0ubuntu0.20.04.1

Ubuntu 18.04 LTS
  intel-microcode                 3.20250512.0ubuntu0.18.04.1+esm1
                                  Available with Ubuntu Pro

Ubuntu 16.04 LTS
  intel-microcode                 3.20250512.0ubuntu0.16.04.1+esm1
                                  Available with Ubuntu Pro

After a standard system update you need to reboot your computer to make
all the necessary changes.

References:
  https://ubuntu.com/security/notices/USN-7535-1
  CVE-2024-28956, CVE-2024-43420, CVE-2024-45332, CVE-2025-20012,
  CVE-2025-20054, CVE-2025-20103, CVE-2025-20623, CVE-2025-24495

Package Information:
  https://launchpad.net/ubuntu/+source/intel-microcode/3.20250512.0ubuntu0.25.04.1
  https://launchpad.net/ubuntu/+source/intel-microcode/3.20250512.0ubuntu0.24.10.1
  https://launchpad.net/ubuntu/+source/intel-microcode/3.20250512.0ubuntu0.24.04.1
  https://launchpad.net/ubuntu/+source/intel-microcode/3.20250512.0ubuntu0.22.04.1
  https://launchpad.net/ubuntu/+source/intel-microcode/3.20250512.0ubuntu0.20.04.1

Ubuntu 22.04 LTS USN-7535-1 critical: intel microcode issues

ubuntu
Calendar Grey May 27, 2025
Dist Ubuntu Esm H88
Several vulnerabilities in Intel Microcode have been tackled for Ubuntu 22.04 LTS and prior versions through essential updates.
Several security issues were fixed in Intel Microcode.

Summary

A security issue affects these releases of Ubuntu and its derivatives: - Ubuntu 25.04 - Ubuntu 24.10 - Ubuntu 24.04 LTS - Ubuntu 22.04 LTS - Ubuntu 20.04 LTS - Ubuntu 18.04 LTS - Ubuntu 16.04 LTS Summary: Several security issues were fixed in Intel Microcode. Software Description: - intel-microcode: Processor microcode for Intel CPUs Details: Sander Wiebing and Cristiano Giuffrida discovered that some Intel® Processors did not properly handle data in Shared Microarchitectural Structures during Transient Execution. An authenticated attacker could possibly use this issue to obtain sensitive information. (CVE-2024-28956) It was discovered that some Intel® Processors did not properly handle prediction calculations. An authenticated attacker could possibly use this issue to obtain sensitive information. (CVE-2024-43420, CVE-2024-45332, CVE-2025-20623) It was discovered that some Intel® Processors did not properly initialize resources in the bran...

Read the Full Advisory

Update Instructions

The problem can be corrected by updating your system to the following package versions: Ubuntu 25.04 intel-microcode 3.20250512.0ubuntu0.25.04.1 Ubuntu 24.10 intel-microcode 3.20250512.0ubuntu0.24.10.1 Ubuntu 24.04 LTS intel-microcode 3.20250512.0ubuntu0.24.04.1 Ubuntu 22.04 LTS intel-microcode 3.20250512.0ubuntu0.22.04.1 Ubuntu 20.04 LTS intel-microcode 3.20250512.0ubuntu0.20.04.1 Ubuntu 18.04 LTS intel-microcode 3.20250512.0ubuntu0.18.04.1+esm1 Available with Ubuntu Pro Ubuntu 16.04 LTS intel-microcode 3.20250512.0ubuntu0.16.04.1+esm1 Available with Ubuntu Pro After a standard system update you need to reboot your computer to make all the necessary changes.

References

https://ubuntu.com/security/notices/USN-7535-1

CVE-2024-28956, CVE-2024-43420, CVE-2024-45332, CVE-2025-20012,

CVE-2025-20054, CVE-2025-20103, CVE-2025-20623, CVE-2025-24495

Severity
critical
Lowest
Low
Medium
High
Critical

==========================================================================

Package Information

https://launchpad.net/ubuntu/+source/intel-microcode/3.20250512.0ubuntu0.25.04.1 https://launchpad.net/ubuntu/+source/intel-microcode/3.20250512.0ubuntu0.24.10.1 https://launchpad.net/ubuntu/+source/intel-microcode/3.20250512.0ubuntu0.24.04.1 https://launchpad.net/ubuntu/+source/intel-microcode/3.20250512.0ubuntu0.22.04.1 https://launchpad.net/ubuntu/+source/intel-microcode/3.20250512.0ubuntu0.20.04.1

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Related News

Your message here