Update to 20251125: Revert "amdgpu: update GC 11.0.1 firmware" QCA: Add Bluetooth firmware for WCN685x uart interface qcom: Add ADSP firmware for qcs6490-thundercomm-rubikpi3 qcom: venus-5.4: update firmware binary for v5.4. -------------------------------------------------------------------------------- Fedora Update Notification FEDORA-2025-698dc1bbfa 2025-11-29 16:43:28.332734+00:00 -------------------------------------------------------------------------------- Name : linux-firmware Product : Fedora 43 Version : 20251125 Release : 1.fc43 URL : http://www.kernel.org/ Summary : Firmware files used by the Linux kernel Description : This package includes firmware files required for some devices to operate. -------------------------------------------------------------------------------- Update Information: Update to 20251125: Revert "amdgpu: update GC 11.0.1 firmware" QCA: Add Bluetooth firmware for WCN685x uart interface qcom: Add ADSP firmware for qcs6490-thundercomm-rubikpi3 qcom: venus-5.4: update firmware binary for v5.4 qcom: venus-5.4: remove unused firmware file iwlwifi: add Sc/Wh FW for core98-181 release amdgpu: DMCUB updates for various ASICs rtl_bt: Update RTL8852B BT USB FW to 0x42D3_4E04 ASoC: tas2781: Add more symbol links on SPI devices amdgpu: update numerous firmware amdgpu: add vce1 firmware mediatek MT7922: update bluetooth firmware to 20251118163447 update firmware for MT7922 WiFi device qcom: update ADSP, CDSP firmware for kaanapali platform, change the license qcom: add ADSP, CDSP firmware for sm8750 platform rtl_nic: add firmware rtl9151a-1 qcom: Update aic100 firmware files mt76: add firmware for MT7990 mt76: update firmware for MT7992/MT7996 cirrus: cs35l57: Add firmware for a few Dell products cirrus: cs42l45: Add firmware for Cirrus Logic CS42L45 SDCA codec qcom: Add sdx35 Foxconn vendor firmware image file Update AMD cpumicrocode -------------------------------------------------------------------------------- ChangeLog: * Tue Nov 25 2025 Peter Robinson - 20251125-1 - Update to 20251125 - Revert "amdgpu: update GC 11.0.1 firmware" - QCA: Add Bluetooth firmware for WCN685x uart interface - qcom: Add ADSP firmware for qcs6490-thundercomm-rubikpi3 - qcom: venus-5.4: update firmware binary for v5.4 - qcom: venus-5.4: remove unused firmware file - iwlwifi: add Sc/Wh FW for core98-181 release - amdgpu: DMCUB updates for various ASICs - rtl_bt: Update RTL8852B BT USB FW to 0x42D3_4E04 - ASoC: tas2781: Add more symbol links on SPI devices - amdgpu: update numerous firmware - amdgpu: add vce1 firmware - mediatek MT7922: update bluetooth firmware to 20251118163447 - update firmware for MT7922 WiFi device - qcom: update ADSP, CDSP firmware for kaanapali platform, change the license - qcom: add ADSP, CDSP firmware for sm8750 platform - rtl_nic: add firmware rtl9151a-1 - qcom: Update aic100 firmware files - mt76: add firmware for MT7990 - mt76: update firmware for MT7992/MT7996 - cirrus: cs35l57: Add firmware for a few Dell products - cirrus: cs42l45: Add firmware for Cirrus Logic CS42L45 SDCA codec - qcom: Add sdx35 Foxconn vendor firmware image file - Update AMD cpu microcode -------------------------------------------------------------------------------- This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2025-698dc1bbfa' at the command line. For more information, refer to the dnf documentation available at http://dnf.readthedocs.io/en/latest/command_ref.html#upgrade-command-label All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at https://fedoraproject.org/keys -------------------------------------------------------------------------------- -- _______________________________________________ package-announce mailing list --
The following updated rpms for Oracle Linux 6 Extended Lifecycle Support (ELS) have been uploaded to the Unbreakable Linux Network: . Oracle Linux Security Advisory ELSA-2022-9670 https://linux.oracle.com/errata/ELSA-2022-9670.html The following updated rpms for Oracle Linux 6 Extended Lifecycle Support (ELS) have been uploaded to the Unbreakable Linux Network: i386: microcode_ctl-1.17-33.31.0.3.el6_10.i686.rpm x86_64: microcode_ctl-1.17-33.31.0.3.el6_10.x86_64.rpm Related CVEs: CVE-2022-21123 CVE-2022-21125 CVE-2022-21127 CVE-2022-21166 Description of changes: [3:1.17-33.31.0.3] - update 06-55-04 to 0x2006d05 - update 06-55-07 to 0x5003302 - update 06-6a-04 to 0xb000280 - update 06-6a-06 to 0xd000375 [3:1.17-33.31.0.2] - update Intel microcode bundle to 20210608 [3:1.17-33.31.0.1] - recognize the "force-intel" file path available on EL7+ [orabug 31655792] - disable live load during %post due to UEK4 rendezvous timeouts [orabug 31655792] - merge Oracle changes for early load via dracut - remove no longer appropriate caveats for 06-2d-07 and 06-55-04 - remove other caveat support to be compatible with early load logic - enable late load on install for UEK4 kernels marked safe (except BDW-79) - set early_microcode="no" in virtualized guests to avoid early load bugs [Orabug: 30618737] _______________________________________________ El-errata mailing list
An update that fixes one vulnerability is now available. . openSUSE Security Update: Security update for solo ______________________________________________________________________________ Announcement ID: openSUSE-SU-2021:1019-1 Rating: moderate References: #1186848 Cross-References: CVE-2020-27208 CVSS scores: CVE-2020-27208 (NVD) : 6.8 CVSS:3.1/AV:P/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H Affected Products: openSUSE Leap 15.2 openSUSE Backports SLE-15-SP3 openSUSE Backports SLE-15-SP2 ______________________________________________________________________________ An update that fixes one vulnerability is now available. Description: This update for solo fixes the following issues: Update to Solo 4.1.2 * Fix boo#1186848 CVE-202-27208, security issue in firmware source that is part of the source package. Patch Instructions: To install this openSUSE Security Update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: - openSUSE Leap 15.2: zypper in -t patch openSUSE-2021-1019=1 - openSUSE Backports SLE-15-SP3: zypper in -t patch openSUSE-2021-1019=1 - openSUSE Backports SLE-15-SP2: zypper in -t patch openSUSE-2021-1019=1 Package List: - openSUSE Leap 15.2 (noarch): solo-udev-4.1.2-lp152.2.3.1 - openSUSE Backports SLE-15-SP3 (noarch): solo-udev-4.1.2-bp153.2.3.1 - openSUSE Backports SLE-15-SP2 (noarch): solo-udev-4.1.2-bp152.3.3.1 References: https://www.suse.com/security/cve/CVE-2020-27208.html https://bugzilla.suse.com/1186848 . Security patch released for openSUSE Leap to fix vulnerabilities in solo firmware, as noted in openSUSE-SU-2021:1019-1.. openSUSE Security Update, Solo Firmware Update, Moderate Security Advisory. . LinuxSecurity.com Team
A PGP signature bypass was found in fwupd, which could lead to possible installation of unsigned firmware (CVE-2020-10759). References: - https://bugs.mageia.org/show_bug.cgi?id=26854 . MGASA-2021-0158 - Updated fwupd packages fix a security vulnerability Publication date: 30 Mar 2021 URL: https://advisories.mageia.org/MGASA-2021-0158.html Type: security Affected Mageia releases: 7 CVE: CVE-2020-10759 A PGP signature bypass was found in fwupd, which could lead to possible installation of unsigned firmware (CVE-2020-10759). References: - https://bugs.mageia.org/show_bug.cgi?id=26854 - https://github.com/justinsteven/advisories/blob/master/2020_fwupd_dangling_s3_bucket_and_CVE-2020-10759_signature_verification_bypass.md - - https://www.cve.org/CVERecord?id=CVE-2020-10759 SRPMS: - 7/core/fwupd-1.2.8-1.1.mga7 . MGASA-2021-0159 outlines a significant security update for fwupd, resolving a vulnerability concerning the bypassing of PGP signature checks during the installation of firmware.. Fwupd Security Update,Mageia 7,PGP Signature Bypass,Firmware Installation Issue. . LinuxSecurity.com Team
Get the latest Linux and open source security news straight to your inbox.