The following updated rpms for Oracle Linux 8 have been uploaded to the Unbreakable Linux Network: . Oracle Linux Security Advisory ELSA-2023-12691 https://linux.oracle.com/errata/ELSA-2023-12691.html The following updated rpms for Oracle Linux 8 have been uploaded to the Unbreakable LinuxNetwork: x86_64: iwlax2xx-firmware-20230516-999.22.el8.noarch.rpm iwl1000-firmware-39.31.5.1-999.22.el8.noarch.rpm iwl100-firmware-39.31.5.1-999.22.el8.noarch.rpm iwl105-firmware-18.168.6.1-999.22.el8.noarch.rpm iwl135-firmware-18.168.6.1-999.22.el8.noarch.rpm iwl2000-firmware-18.168.6.1-999.22.el8.noarch.rpm iwl2030-firmware-18.168.6.1-999.22.el8.noarch.rpm iwl3160-firmware-25.30.13.0-999.22.el8.noarch.rpm iwl3945-firmware-15.32.2.9-999.22.el8.noarch.rpm iwl4965-firmware-228.61.2.24-999.22.el8.noarch.rpm iwl5000-firmware-8.83.5.1_1-999.22.el8.noarch.rpm iwl5150-firmware-8.24.2.2-999.22.el8.noarch.rpm iwl6000-firmware-9.221.4.1-999.22.el8.noarch.rpm iwl6000g2a-firmware-18.168.6.1-999.22.el8.noarch.rpm iwl6000g2b-firmware-18.168.6.1-999.22.el8.noarch.rpm iwl6050-firmware-41.28.5.1-999.22.el8.noarch.rpm iwl7260-firmware-25.30.13.0-999.22.el8.noarch.rpm libertas-sd8686-firmware-20230516-999.22.git6c9e0ed5.el8.noarch.rpm libertas-sd8787-firmware-20230516-999.22.git6c9e0ed5.el8.noarch.rpm libertas-usb8388-firmware-20230516-999.22.git6c9e0ed5.el8.noarch.rpm libertas-usb8388-olpc-firmware-20230516-999.22.git6c9e0ed5.el8.noarch.rpm linux-firmware-20230516-999.22.git6c9e0ed5.el8.noarch.rpm linux-firmware-core-20230516-999.22.git6c9e0ed5.el8.noarch.rpm aarch64: iwlax2xx-firmware-20230516-999.22.el8.noarch.rpm iwl1000-firmware-39.31.5.1-999.22.el8.noarch.rpm iwl100-firmware-39.31.5.1-999.22.el8.noarch.rpm iwl105-firmware-18.168.6.1-999.22.el8.noarch.rpm iwl135-firmware-18.168.6.1-999.22.el8.noarch.rpm iwl2000-firmware-18.168.6.1-999.22.el8.noarch.rpm iwl2030-firmware-18.168.6.1-999.22.el8.noarch.rpm iwl3160-firmware-25.30.13.0-999.22.el8.noarch.rpm iwl3945-firmware-15.32.2.9-999.22.el8.noarch.rpm iwl4965-firmware-228.61.2.24-999.22.el8.noarch.rpm iwl5000-firmware-8.83.5.1_1-999.22.el8.noarch.rpm iwl5150-firmware-8.24.2.2-999.22.el8.noarch.rpm iwl6000-firmware-9.221.4.1-999.22.el8.noarch.rpm iwl6000g2a-firmware-18.168.6.1-999.22.el8.noarch.rpm iwl6000g2b-firmware-18.168.6.1-999.22.el8.noarch.rpm iwl6050-firmware-41.28.5.1-999.22.el8.noarch.rpm iwl7260-firmware-25.30.13.0-999.22.el8.noarch.rpm libertas-sd8686-firmware-20230516-999.22.git6c9e0ed5.el8.noarch.rpm libertas-sd8787-firmware-20230516-999.22.git6c9e0ed5.el8.noarch.rpm libertas-usb8388-firmware-20230516-999.22.git6c9e0ed5.el8.noarch.rpm libertas-usb8388-olpc-firmware-20230516-999.22.git6c9e0ed5.el8.noarch.rpm linux-firmware-20230516-999.22.git6c9e0ed5.el8.noarch.rpm linux-firmware-core-20230516-999.22.git6c9e0ed5.el8.noarch.rpm SRPMS: https://oss.oracle.com:443/ol8/SRPMS-updates//linux-firmware-20230516-999.22.git6c9e0ed5.el8.src.rpm Related CVEs: CVE-2023-20593 Description of changes: [20230516-999.22.git6c9e0ed5.el8] - remove amd-ucode/README (Orabug: 35645306) - Resolves "Zenbleed" (Orabug: 35650345) {CVE-2023-20593} _______________________________________________ El-errata mailing list
An update that fixes two vulnerabilities is now available. An update that fixes two vulnerabilities is now available. An update that fixes two vulnerabilities is now available.. openSUSE Security Update: Security update for kernel-firmware ______________________________________________________________________________ Announcement ID: openSUSE-SU-2017:3144-1 Rating: important References: #1066295 Cross-References: CVE-2017-13080 CVE-2017-13081 Affected Products: openSUSE Leap 42.3 openSUSE Leap 42.2 ______________________________________________________________________________ An update that fixes two vulnerabilities is now available. Description: This update for kernel-firmware fixes the following issues: - Update Intel WiFi firmwares for the 3160, 7260 and 7265 adapters. Security issues fixed are part of the "KRACK" attacks affecting the firmware: - CVE-2017-13080: The reinstallation of the Group Temporal key could be used for replay attacks (bsc#1066295): - CVE-2017-13081: The reinstallation of the Integrity Group Temporal key could be used for replay attacks (bsc#1066295): This update was imported from the SUSE:SLE-12-SP2:Update update project. Patch Instructions: To install this openSUSE Security Update use YaST online_update. Alternatively you can run the command listed for your product: - openSUSE Leap 42.3: zypper in -t patch openSUSE-2017-1317=1 - openSUSE Leap 42.2: zypper in -t patch openSUSE-2017-1317=1 To bring your system up-to-date, use "zypper patch". Package List: - openSUSE Leap 42.3 (noarch): kernel-firmware-20170530-11.1 ucode-amd-20170530-11.1 - openSUSE Leap 42.2 (noarch): kernel-firmware-20170530-7.9.1 ucode-amd-20170530-7.9.1 References: https://www.suse.com/security/cve/CVE-2017-13080.html https://www.suse.com/security/cve/CVE-2017-13081.html https://bugzilla.suse.com/1066295 . Security patchavailable for openSUSE Leap 42.2 and 42.3: urgent resolutions for kernel-firmware security issues.. openSUSE Firmware Security,Vulnerabilities Fix,Kernel Update,Replay Attack Protection. . Severity: Critical. LinuxSecurity.com Team
Get the latest Linux and open source security news straight to your inbox.