The following updated rpms for Oracle Linux 8 have been uploaded to the Unbreakable Linux Network: . Oracle Linux Security Advisory ELSA-2023-12723 https://linux.oracle.com/errata/ELSA-2023-12723.html The following updated rpms for Oracle Linux 8 have been uploaded to the Unbreakable Linux Network: x86_64: microcode_ctl-20230214-2.0.3.el8.x86_64.rpm SRPMS: https://oss.oracle.com:443/ol8/SRPMS-updates//microcode_ctl-20230214-2.0.3.el8.src.rpm Related CVEs: CVE-2022-40982 Description of changes: [4:20230214-2.0.3] - update 06-55-04 to 0x2007006 - update 06-55-06 to 0x4003604 - update 06-55-07 to 0x5003604 - update 06-6a-06 to 0xd0003a5 - Resolves for Oracle hardware: {CVE-2022-40982} [Orabug: 35692741] _______________________________________________ El-errata mailing list
Stability update for hardware accelerated backend (mozbz#1694670). ---- New upstream version (86.0). --------------------------------------------------------------------------------Fedora Update Notification FEDORA-2021-43088486b2 2021-03-08 20:13:39.758357 --------------------------------------------------------------------------------Name : firefox Product : Fedora 32 Version : 86.0 Release : 7.fc32 URL : https://www.firefox.com/en-US/?redirect_source=mozilla-org Summary : Mozilla Firefox Web browser Description : Mozilla Firefox is an open-source web browser, designed for standards compliance, performance and portability. --------------------------------------------------------------------------------Update Information: Stability update for hardware accelerated backend (mozbz#1694670). ---- New upstream version (86.0) --------------------------------------------------------------------------------ChangeLog: * Wed Mar 3 2021 Martin Stransky - 86.0-7 - Added fix for mozbz#1694670 * Mon Mar 1 2021 Martin Stransky - 86.0-6 - Run xpcshell tests sequential - Test fixes * Mon Mar 1 2021 Martin Stransky - 86.0-4 - Enable Wayland backend only when Wayland display is set. * Mon Mar 1 2021 Martin Stransky - 86.0-3 - Added icecat-78.7.1-fix_error_template_with_C_linkage.patch to build on F34+ * Fri Feb 26 2021 Martin Stransky - 86.0-2 - Built with system nss * Tue Feb 23 2021 Martin Stransky - 86.0-1 - Update to 86.0 - Disabled Wayland backend on KDE/Plasma * Tue Feb 23 2021 Martin Stransky - 85.0.1-2 - Fixed some reftest run in Mock --------------------------------------------------------------------------------References: [ 1 ] Bug #1933600 - firefox-86.0-2 crashes on start https://bugzilla.redhat.com/show_bug.cgi?id=1933600 --------------------------------------------------------------------------------This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisoryFEDORA-2021-43088486b2' at the command line. For more information, refer to the dnf documentation available at https://dnf.readthedocs.io/en/latest/command_ref.html All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at https://fedoraproject.org/security/ --------------------------------------------------------------------------------_______________________________________________ package-announce mailing list --
The 5.10.6 stable kernel rebase contains new features, additional hardware support, and a number of important fixes across the tree.. --------------------------------------------------------------------------------Fedora Update Notification FEDORA-2021-3465ada1ca 2021-01-14 01:37:01.293109 --------------------------------------------------------------------------------Name : kernel Product : Fedora 33 Version : 5.10.6 Release : 200.fc33 URL : https://www.kernel.org/ Summary : The Linux kernel Description : The kernel meta package --------------------------------------------------------------------------------Update Information: The 5.10.6 stable kernel rebase contains new features, additional hardware support, and a number of important fixes across the tree. --------------------------------------------------------------------------------ChangeLog: * Mon Jan 11 2021 Justin M. Forbes - 5.10.6-200 - Linux v5.10.6 rebase - Fix bluetooth controller initialization (rhbz 1898495) - Fix CVE-2020-36158 (rhbz 1913348 1913349) --------------------------------------------------------------------------------References: [ 1 ] Bug #1913348 - CVE-2020-36158 kernel: buffer overflow in mwifiex_cmd_802_11_ad_hoc_start function in drivers/net/wireless/marvell/mwifiex/join.c via a long SSID value https://bugzilla.redhat.com/show_bug.cgi?id=1913348 --------------------------------------------------------------------------------This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2021-3465ada1ca' at the command line. For more information, refer to the dnf documentation available at https://dnf.readthedocs.io/en/latest/command_ref.html All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at --------------------------------------------------------------------------------_______________________________________________ package-announcemailing list --
The 5.3.11 stable kernel update contains a number of important security updates across the tree, including mitigations for the most recent hardware issues disclosed on Nov 12. ---- The 5.3.9 update contains a number of important fixes across the tree ---- Update to upstream 2.1-22. 20190618. --------------------------------------------------------------------------------Fedora Update Notification FEDORA-2019-7a3fc17778 2019-11-13 06:47:08.913545 --------------------------------------------------------------------------------Name : microcode_ctl Product : Fedora 29 Version : 2.1 Release : 33.fc29 URL : https://pagure.io/microcode_ctl Summary : Tool to transform and deploy CPU microcode update for x86 Description : The microcode_ctl utility is a companion to the microcode driver written by Tigran Aivazian . The microcode update is volatile and needs to be uploaded on each system boot i.e. it doesn't reflash your cpu permanently, reboot and it reverts back to the old microcode. --------------------------------------------------------------------------------Update Information: The 5.3.11 stable kernel update contains a number of important security updates across the tree, including mitigations for the most recent hardware issues disclosed on Nov 12. ---- The 5.3.9 update contains a number of important fixes across the tree ---- Update to upstream 2.1-22. 20190618 --------------------------------------------------------------------------------ChangeLog: * Tue Nov 12 2019 Justin Forbes 2:2.1-33 - Update to microcode-20191112 for CVE fixes * Wed Oct 2 2019 Anton Arapov 2:2.1-32 - Update to upstream 2.1-23. 20190918 * Thu Jul 25 2019 Fedora Release Engineering - 2:2.1-31 - Rebuilt for https://fedoraproject.org/wiki/Fedora_31_Mass_Rebuild * Thu Jun 20 2019 Anton Arapov 2:2.1-30 - Update to upstream 2.1-22. 20190618 * Wed May 15 2019 Anton Arapov 2:2.1-29 - Update to upstream 2.1-21. 20190514 * Thu May 9 2019 Anton Arapov 2:2.1-28 - Update to upstream 2.1-20. 20190312 * Fri Feb 1 2019 Fedora Release Engineering - 2:2.1-27 - Rebuilt for https://fedoraproject.org/wiki/Fedora_30_Mass_Rebuild --------------------------------------------------------------------------------References: [ 1 ] Bug #1753062 - CVE-2019-11135 hw: TSX Transaction Asynchronous Abort (TAA) https://bugzilla.redhat.com/show_bug.cgi?id=1753062 [ 2 ] Bug #1646768 - CVE-2018-12207 hw: Machine Check Error on Page Size Change (IPU) https://bugzilla.redhat.com/show_bug.cgi?id=1646768 [ 3 ] Bug #1724393 - CVE-2019-0154 hw: Intel GPU Denial Of Service while accessing MMIO in lower power state https://bugzilla.redhat.com/show_bug.cgi?id=1724393 [ 4 ] Bug #1724398 - CVE-2019-0155 hw: Intel GPU blitter manipulation can allow for arbitrary kernel memory write https://bugzilla.redhat.com/show_bug.cgi?id=1724398 [ 5 ] Bug #1758414 - CVE-2019-0117 hw: Intel SGX information leak https://bugzilla.redhat.com/show_bug.cgi?id=1758414 --------------------------------------------------------------------------------This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2019-7a3fc17778' at the command line. For more information, refer to the dnf documentation available at https://dnf.readthedocs.io/en/latest/command_ref.html All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at https://fedoraproject.org/security/ --------------------------------------------------------------------------------_______________________________________________ package-announce mailing list --
Get the latest Linux and open source security news straight to your inbox.