Audit Linux privileges now to limit compromise, escalation, and system-wide damage. Review Linux Privileges×
* bsc#1236136 * bsc#1240366 Cross-References: * CVE-2024-13176 . # Security update for openssl-3 Announcement ID: SUSE-SU-2025:20406-1 Release Date: 2025-06-13T11:30:03Z Rating: moderate References: * bsc#1236136 * bsc#1240366 Cross-References: * CVE-2024-13176 * CVE-2025-27587 CVSS scores: * CVE-2024-13176 ( SUSE ): 6.0 CVSS:4.0/AV:N/AC:H/AT:P/PR:L/UI:N/VC:H/VI:N/VA:N/SC:N/SI:N/SA:N * CVE-2024-13176 ( SUSE ): 5.9 CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:N/A:N * CVE-2024-13176 ( NVD ): 4.1 CVSS:3.1/AV:P/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L * CVE-2025-27587 ( SUSE ): 6.0 CVSS:4.0/AV:N/AC:H/AT:P/PR:L/UI:N/VC:H/VI:N/VA:N/SC:N/SI:N/SA:N * CVE-2025-27587 ( SUSE ): 5.3 CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:U/C:H/I:N/A:N Affected Products: * SUSE Linux Micro 6.0 An update that solves two vulnerabilities can now be installed. ## Description: This update for openssl-3 fixes the following issues: * CVE-2025-27587: Fixed Minerva side channel vulnerability in P-384 on PPC arch (bsc#1240366) * CVE-2024-13176: Fixed timing side-channel in the ECDSA signature computation (bsc#1236136) ## Patch Instructions: To install this SUSE update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: * SUSE Linux Micro 6.0 zypper in -t patch SUSE-SLE-Micro-6.0-353=1 ## Package List: * SUSE Linux Micro 6.0 (aarch64 s390x x86_64) * openssl-3-debugsource-3.1.4-8.1 * libopenssl3-3.1.4-8.1 * libopenssl3-debuginfo-3.1.4-8.1 * libopenssl-3-devel-3.1.4-8.1 * openssl-3-debuginfo-3.1.4-8.1 * libopenssl-3-fips-provider-debuginfo-3.1.4-8.1 * libopenssl-3-fips-provider-3.1.4-8.1 * openssl-3-3.1.4-8.1 ## References: * https://www.suse.com/security/cve/CVE-2024-13176.html * https://www.suse.com/security/cve/CVE-2025-27587.html * https://bugzilla.suse.com/show_bug.cgi?id=1236136 * https://bugzilla.suse.com/show_bug.cgi?id=1240366 .CVE-2024-13176 and CVE-2025-27587 security issues resolved in openssl-3 for SUSE Linux Micro.. openssl security patch, SUSE Linux Micro, side channel attack, openssl vulnerability, moderate severity update. . LinuxSecurity.com Team
Multiple vulnerabilities were found in wpa, a set of tools including the widely-used wpasupplicant client for authenticating with WPA and WPA2 wireless networks. . - ------------------------------------------------------------------------- Debian LTS Advisory DLA-4123-1
An update that solves two vulnerabilities and has two fixes is now available. . openSUSE Security Update: Security update for Botan ______________________________________________________________________________ Announcement ID: openSUSE-SU-2024:0343-1 Rating: moderate References: #1232296 #1232297 #1232300 #1232301 Cross-References: CVE-2024-50382 CVE-2024-50383 CVSS scores: CVE-2024-50382 (SUSE): 6.8 CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:H/VI:N/VA:N/SC:N/SI:N/SA:N CVE-2024-50383 (SUSE): 6.8 CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:H/VI:N/VA:N/SC:N/SI:N/SA:N Affected Products: openSUSE Backports SLE-15-SP5 openSUSE Backports SLE-15-SP6 ______________________________________________________________________________ An update that solves two vulnerabilities and has two fixes is now available. Description: This update for Botan fixes the following issues: - Fixed CVE-2024-50382, CVE-2024-50383 - various compiler-induced side channel in GHASH when certain LLVM/GCC versions are used to compile Botan. Patch Instructions: To install this openSUSE Security Update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: - openSUSE Backports SLE-15-SP6: zypper in -t patch openSUSE-2024-343=1 - openSUSE Backports SLE-15-SP5: zypper in -t patch openSUSE-2024-343=1 Package List: - openSUSE Backports SLE-15-SP6 (aarch64 i586 ppc64le s390x x86_64): Botan-2.19.5-bp156.3.6.1 Botan-debuginfo-2.19.5-bp156.3.6.1 Botan-debugsource-2.19.5-bp156.3.6.1 libbotan-2-19-2.19.5-bp156.3.6.1 libbotan-2-19-debuginfo-2.19.5-bp156.3.6.1 libbotan-devel-2.19.5-bp156.3.6.1 python3-botan-2.19.5-bp156.3.6.1 - openSUSE Backports SLE-15-SP6 (aarch64_ilp32): libbotan-2-19-64bit-2.19.5-bp156.3.6.1 libbotan-2-19-64bit-debuginfo-2.19.5-bp156.3.6.1 libbotan-devel-64bit-2.19.5-bp156.3.6.1 - openSUSE Backports SLE-15-SP6 (x86_64): libbotan-2-19-32bit-2.19.5-bp156.3.6.1 libbotan-2-19-32bit-debuginfo-2.19.5-bp156.3.6.1 libbotan-devel-32bit-2.19.5-bp156.3.6.1 - openSUSE Backports SLE-15-SP6 (noarch): Botan-doc-2.19.5-bp156.3.6.1 - openSUSE Backports SLE-15-SP5 (aarch64 i586 ppc64le s390x x86_64): Botan-2.19.5-bp155.2.6.1 libbotan-2-19-2.19.5-bp155.2.6.1 libbotan-devel-2.19.5-bp155.2.6.1 python3-botan-2.19.5-bp155.2.6.1 - openSUSE Backports SLE-15-SP5 (aarch64_ilp32): libbotan-2-19-64bit-2.19.5-bp155.2.6.1 libbotan-devel-64bit-2.19.5-bp155.2.6.1 - openSUSE Backports SLE-15-SP5 (noarch): Botan-doc-2.19.5-bp155.2.6.1 - openSUSE Backports SLE-15-SP5 (x86_64): libbotan-2-19-32bit-2.19.5-bp155.2.6.1 libbotan-devel-32bit-2.19.5-bp155.2.6.1 References: https://www.suse.com/security/cve/CVE-2024-50382.html https://www.suse.com/security/cve/CVE-2024-50383.html https://bugzilla.suse.com/1232296 https://bugzilla.suse.com/1232297 https://bugzilla.suse.com/1232300 https://bugzilla.suse.com/1232301 . An update for Botan addresses two concerns in openSUSE classified under moderate severity, complete with detailed patch instructions.. openSUSE Botan Update, opensuse-backports, Botan Security Advisory. . LinuxSecurity.com Team
* bsc#1218865 Cross-References: * CVE-2023-5981 * CVE-2024-0553 . # Security update for gnutls Announcement ID: SUSE-SU-2024:0860-1 Rating: moderate References: * bsc#1218865 Cross-References: * CVE-2023-5981 * CVE-2024-0553 CVSS scores: * CVE-2023-5981 ( SUSE ): 5.9 CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:N/A:N * CVE-2023-5981 ( NVD ): 5.9 CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:N/A:N * CVE-2024-0553 ( SUSE ): 5.9 CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:N/A:N * CVE-2024-0553 ( NVD ): 7.5 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N Affected Products: * SUSE Enterprise Storage 7.1 * SUSE Linux Enterprise High Performance Computing 15 SP2 * SUSE Linux Enterprise High Performance Computing 15 SP2 LTSS 15-SP2 * SUSE Linux Enterprise High Performance Computing 15 SP3 * SUSE Linux Enterprise High Performance Computing LTSS 15 SP3 * SUSE Linux Enterprise Micro 5.1 * SUSE Linux Enterprise Micro 5.2 * SUSE Linux Enterprise Micro for Rancher 5.2 * SUSE Linux Enterprise Server 15 SP2 * SUSE Linux Enterprise Server 15 SP2 LTSS 15-SP2 * SUSE Linux Enterprise Server 15 SP3 * SUSE Linux Enterprise Server 15 SP3 LTSS 15-SP3 * SUSE Linux Enterprise Server for SAP Applications 15 SP2 * SUSE Linux Enterprise Server for SAP Applications 15 SP3 An update that solves two vulnerabilities can now be installed. ## Description: This update for gnutls fixes the following issues: * CVE-2024-0553: Fixed insufficient mitigation for side channel attack in RSA- PSK, aka CVE-2023-5981 (bsc#1218865). ## Patch Instructions: To install this SUSE update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: * SUSE Linux Enterprise High Performance Computing 15 SP2 LTSS 15-SP2 zypper in -t patch SUSE-SLE-Product-HPC-15-SP2-LTSS-2024-860=1 * SUSE Linux Enterprise High Performance Computing LTSS 15 SP3 zypper in -t patchSUSE-SLE-Product-HPC-15-SP3-LTSS-2024-860=1 * SUSE Linux Enterprise Server 15 SP2 LTSS 15-SP2 zypper in -t patch SUSE-SLE-Product-SLES-15-SP2-LTSS-2024-860=1 * SUSE Linux Enterprise Server 15 SP3 LTSS 15-SP3 zypper in -t patch SUSE-SLE-Product-SLES-15-SP3-LTSS-2024-860=1 * SUSE Linux Enterprise Server for SAP Applications 15 SP2 zypper in -t patch SUSE-SLE-Product-SLES_SAP-15-SP2-2024-860=1 * SUSE Linux Enterprise Server for SAP Applications 15 SP3 zypper in -t patch SUSE-SLE-Product-SLES_SAP-15-SP3-2024-860=1 * SUSE Enterprise Storage 7.1 zypper in -t patch SUSE-Storage-7.1-2024-860=1 * SUSE Linux Enterprise Micro 5.1 zypper in -t patch SUSE-SUSE-MicroOS-5.1-2024-860=1 * SUSE Linux Enterprise Micro 5.2 zypper in -t patch SUSE-SUSE-MicroOS-5.2-2024-860=1 * SUSE Linux Enterprise Micro for Rancher 5.2 zypper in -t patch SUSE-SUSE-MicroOS-5.2-2024-860=1 ## Package List: * SUSE Linux Enterprise High Performance Computing 15 SP2 LTSS 15-SP2 (x86_64) * libgnutls30-32bit-debuginfo-3.6.7-150200.14.31.1 * libgnutls30-hmac-32bit-3.6.7-150200.14.31.1 * libgnutls-devel-3.6.7-150200.14.31.1 * libgnutls30-32bit-3.6.7-150200.14.31.1 * gnutls-debuginfo-3.6.7-150200.14.31.1 * libgnutls30-hmac-3.6.7-150200.14.31.1 * libgnutls30-3.6.7-150200.14.31.1 * libgnutls30-debuginfo-3.6.7-150200.14.31.1 * gnutls-3.6.7-150200.14.31.1 * libgnutlsxx28-debuginfo-3.6.7-150200.14.31.1 * libgnutlsxx28-3.6.7-150200.14.31.1 * libgnutlsxx-devel-3.6.7-150200.14.31.1 * gnutls-debugsource-3.6.7-150200.14.31.1 * SUSE Linux Enterprise High Performance Computing LTSS 15 SP3 (x86_64) * libgnutls30-32bit-debuginfo-3.6.7-150200.14.31.1 * libgnutls-devel-3.6.7-150200.14.31.1 * libgnutls30-32bit-3.6.7-150200.14.31.1 * gnutls-debuginfo-3.6.7-150200.14.31.1 * libgnutls30-hmac-3.6.7-150200.14.31.1 * libgnutls30-3.6.7-150200.14.31.1 * libgnutls30-debuginfo-3.6.7-150200.14.31.1 *libgnutls-devel-32bit-3.6.7-150200.14.31.1 * gnutls-3.6.7-150200.14.31.1 * libgnutlsxx-devel-3.6.7-150200.14.31.1 * libgnutlsxx28-debuginfo-3.6.7-150200.14.31.1 * libgnutlsxx28-3.6.7-150200.14.31.1 * libgnutls30-hmac-32bit-3.6.7-150200.14.31.1 * gnutls-debugsource-3.6.7-150200.14.31.1 * SUSE Linux Enterprise Server 15 SP2 LTSS 15-SP2 (ppc64le s390x x86_64) * libgnutls-devel-3.6.7-150200.14.31.1 * gnutls-debuginfo-3.6.7-150200.14.31.1 * libgnutls30-hmac-3.6.7-150200.14.31.1 * libgnutls30-3.6.7-150200.14.31.1 * libgnutls30-debuginfo-3.6.7-150200.14.31.1 * gnutls-3.6.7-150200.14.31.1 * libgnutlsxx28-debuginfo-3.6.7-150200.14.31.1 * libgnutlsxx28-3.6.7-150200.14.31.1 * libgnutlsxx-devel-3.6.7-150200.14.31.1 * gnutls-debugsource-3.6.7-150200.14.31.1 * SUSE Linux Enterprise Server 15 SP2 LTSS 15-SP2 (x86_64) * libgnutls30-hmac-32bit-3.6.7-150200.14.31.1 * libgnutls30-32bit-debuginfo-3.6.7-150200.14.31.1 * libgnutls30-32bit-3.6.7-150200.14.31.1 * SUSE Linux Enterprise Server 15 SP3 LTSS 15-SP3 (ppc64le s390x x86_64) * libgnutls-devel-3.6.7-150200.14.31.1 * gnutls-debuginfo-3.6.7-150200.14.31.1 * libgnutls30-hmac-3.6.7-150200.14.31.1 * libgnutls30-3.6.7-150200.14.31.1 * libgnutls30-debuginfo-3.6.7-150200.14.31.1 * gnutls-3.6.7-150200.14.31.1 * libgnutlsxx28-debuginfo-3.6.7-150200.14.31.1 * libgnutlsxx28-3.6.7-150200.14.31.1 * libgnutlsxx-devel-3.6.7-150200.14.31.1 * gnutls-debugsource-3.6.7-150200.14.31.1 * SUSE Linux Enterprise Server 15 SP3 LTSS 15-SP3 (x86_64) * libgnutls30-hmac-32bit-3.6.7-150200.14.31.1 * libgnutls30-32bit-debuginfo-3.6.7-150200.14.31.1 * libgnutls-devel-32bit-3.6.7-150200.14.31.1 * libgnutls30-32bit-3.6.7-150200.14.31.1 * SUSE Linux Enterprise Server for SAP Applications 15 SP2 (ppc64le x86_64) * libgnutls-devel-3.6.7-150200.14.31.1 * gnutls-debuginfo-3.6.7-150200.14.31.1 * libgnutls30-hmac-3.6.7-150200.14.31.1 *libgnutls30-3.6.7-150200.14.31.1 * libgnutls30-debuginfo-3.6.7-150200.14.31.1 * gnutls-3.6.7-150200.14.31.1 * libgnutlsxx28-debuginfo-3.6.7-150200.14.31.1 * libgnutlsxx28-3.6.7-150200.14.31.1 * libgnutlsxx-devel-3.6.7-150200.14.31.1 * gnutls-debugsource-3.6.7-150200.14.31.1 * SUSE Linux Enterprise Server for SAP Applications 15 SP2 (x86_64) * libgnutls30-hmac-32bit-3.6.7-150200.14.31.1 * libgnutls30-32bit-debuginfo-3.6.7-150200.14.31.1 * libgnutls30-32bit-3.6.7-150200.14.31.1 * SUSE Linux Enterprise Server for SAP Applications 15 SP3 (ppc64le x86_64) * libgnutls-devel-3.6.7-150200.14.31.1 * gnutls-debuginfo-3.6.7-150200.14.31.1 * libgnutls30-hmac-3.6.7-150200.14.31.1 * libgnutls30-3.6.7-150200.14.31.1 * libgnutls30-debuginfo-3.6.7-150200.14.31.1 * gnutls-3.6.7-150200.14.31.1 * libgnutlsxx28-debuginfo-3.6.7-150200.14.31.1 * libgnutlsxx28-3.6.7-150200.14.31.1 * libgnutlsxx-devel-3.6.7-150200.14.31.1 * gnutls-debugsource-3.6.7-150200.14.31.1 * SUSE Linux Enterprise Server for SAP Applications 15 SP3 (x86_64) * libgnutls30-hmac-32bit-3.6.7-150200.14.31.1 * libgnutls30-32bit-debuginfo-3.6.7-150200.14.31.1 * libgnutls-devel-32bit-3.6.7-150200.14.31.1 * libgnutls30-32bit-3.6.7-150200.14.31.1 * SUSE Enterprise Storage 7.1 (x86_64) * libgnutls30-32bit-debuginfo-3.6.7-150200.14.31.1 * libgnutls-devel-3.6.7-150200.14.31.1 * libgnutls30-32bit-3.6.7-150200.14.31.1 * gnutls-debuginfo-3.6.7-150200.14.31.1 * libgnutls30-hmac-3.6.7-150200.14.31.1 * libgnutls30-3.6.7-150200.14.31.1 * libgnutls30-debuginfo-3.6.7-150200.14.31.1 * libgnutls-devel-32bit-3.6.7-150200.14.31.1 * gnutls-3.6.7-150200.14.31.1 * libgnutlsxx-devel-3.6.7-150200.14.31.1 * libgnutlsxx28-debuginfo-3.6.7-150200.14.31.1 * libgnutlsxx28-3.6.7-150200.14.31.1 * libgnutls30-hmac-32bit-3.6.7-150200.14.31.1 * gnutls-debugsource-3.6.7-150200.14.31.1 * SUSE Linux Enterprise Micro 5.1 (s390x x86_64) *gnutls-debuginfo-3.6.7-150200.14.31.1 * libgnutls30-hmac-3.6.7-150200.14.31.1 * libgnutls30-3.6.7-150200.14.31.1 * libgnutls30-debuginfo-3.6.7-150200.14.31.1 * gnutls-debugsource-3.6.7-150200.14.31.1 * SUSE Linux Enterprise Micro 5.2 (s390x x86_64) * gnutls-debuginfo-3.6.7-150200.14.31.1 * libgnutls30-hmac-3.6.7-150200.14.31.1 * libgnutls30-3.6.7-150200.14.31.1 * libgnutls30-debuginfo-3.6.7-150200.14.31.1 * gnutls-3.6.7-150200.14.31.1 * gnutls-debugsource-3.6.7-150200.14.31.1 * SUSE Linux Enterprise Micro for Rancher 5.2 (s390x x86_64) * gnutls-debuginfo-3.6.7-150200.14.31.1 * libgnutls30-hmac-3.6.7-150200.14.31.1 * libgnutls30-3.6.7-150200.14.31.1 * libgnutls30-debuginfo-3.6.7-150200.14.31.1 * gnutls-3.6.7-150200.14.31.1 * gnutls-debugsource-3.6.7-150200.14.31.1 ## References: * https://www.suse.com/security/cve/CVE-2023-5981.html * https://www.suse.com/security/cve/CVE-2024-0553.html * https://bugzilla.suse.com/show_bug.cgi?id=1218865 . A security patch for gnutls tackles moderate severity vulnerabilities in SUSE offerings. Further details provided.. gnutls update, SUSE Linux Enterprise, side channel fix. . Severity: Important. LinuxSecurity.com Team
Fix side channel vulnerability. -------------------------------------------------------------------------------- Fedora Update Notification FEDORA-2024-d76e37ba62 2024-03-07 01:49:42.076791 -------------------------------------------------------------------------------- Name : cpp-jwt Product : Fedora 38 Version : 1.4 Release : 7.fc38 URL : https://github.com/arun11299/cpp-jwt Summary : JSON Web Token library for C++ Description : JSON Web Token(JWT) is a JSON based standard (RFC- 7519) for creating assertions or access tokens that consists of some claims (encoded within the assertion). This assertion can be used in some kind of bearer authentication mechanism that the server will provide to clients, and the clients can make use of the provided assertion for accessing resources. -------------------------------------------------------------------------------- Update Information: Fix side channel vulnerability -------------------------------------------------------------------------------- ChangeLog: * Tue Feb 27 2024 Jonathan Wright - 1.4-7 - Fix side channel vulnerability rhbz#2263329 -------------------------------------------------------------------------------- References: [ 1 ] Bug #2263329 - Side-channel in cpp-jwt https://bugzilla.redhat.com/show_bug.cgi?id=2263329 -------------------------------------------------------------------------------- This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2024-d76e37ba62' at the command line. For more information, refer to the dnf documentation available at https://dnf.readthedocs.io/en/latest/command_ref.html All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at https://fedoraproject.org/security/ -------------------------------------------------------------------------------- -- _______________________________________________ package-announcemailing list --
Fix side channel vulnerability. -------------------------------------------------------------------------------- Fedora Update Notification FEDORA-2024-56fbd2cbfa 2024-03-07 00:56:19.124112 -------------------------------------------------------------------------------- Name : cpp-jwt Product : Fedora 39 Version : 1.4 Release : 7.fc39 URL : https://github.com/arun11299/cpp-jwt Summary : JSON Web Token library for C++ Description : JSON Web Token(JWT) is a JSON based standard (RFC- 7519) for creating assertions or access tokens that consists of some claims (encoded within the assertion). This assertion can be used in some kind of bearer authentication mechanism that the server will provide to clients, and the clients can make use of the provided assertion for accessing resources. -------------------------------------------------------------------------------- Update Information: Fix side channel vulnerability -------------------------------------------------------------------------------- ChangeLog: * Tue Feb 27 2024 Jonathan Wright - 1.4-7 - Fix side channel vulnerability rhbz#2263329 -------------------------------------------------------------------------------- References: [ 1 ] Bug #2263329 - Side-channel in cpp-jwt https://bugzilla.redhat.com/show_bug.cgi?id=2263329 -------------------------------------------------------------------------------- This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2024-56fbd2cbfa' at the command line. For more information, refer to the dnf documentation available at https://dnf.readthedocs.io/en/latest/command_ref.html All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at https://fedoraproject.org/security/ -------------------------------------------------------------------------------- -- _______________________________________________ package-announcemailing list --
This update for xen fixes the following issues: CVE-2023-20569: Fixed side channel attack Inception or RAS Poisoning. (bsc#1214082, XSA-434). # Security update for xen Announcement ID: SUSE-SU-2023:3447-1 Rating: moderate References: * #1027519 * #1212684 * #1213616 * #1214082 * #1214083 Cross-References: * CVE-2022-40982 * CVE-2023-20569 * CVE-2023-20593 CVSS scores: * CVE-2022-40982 ( SUSE ): 6.2 CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N * CVE-2022-40982 ( NVD ): 6.5 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:C/C:H/I:N/A:N * CVE-2023-20569 ( SUSE ): 5.6 CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:C/C:H/I:N/A:N * CVE-2023-20569 ( NVD ): 7.5 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N * CVE-2023-20593 ( SUSE ): 6.2 CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N * CVE-2023-20593 ( NVD ): 5.5 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N Affected Products: * Basesystem Module 15-SP5 * openSUSE Leap 15.5 * Server Applications Module 15-SP5 * SUSE Linux Enterprise Desktop 15 SP5 * SUSE Linux Enterprise High Performance Computing 15 SP5 * SUSE Linux Enterprise Real Time 15 SP5 * SUSE Linux Enterprise Server 15 SP5 * SUSE Linux Enterprise Server for SAP Applications 15 SP5 An update that solves three vulnerabilities and has two fixes can now be installed. ## Description: This update for xen fixes the following issues: * CVE-2023-20569: Fixed side channel attack Inception or RAS Poisoning. (bsc#1214082, XSA-434) * CVE-2022-40982: Fixed transient execution attack called "Gather Data Sampling". (bsc#1214083, XSA-435) * CVE-2023-20593: Fixed a ZenBleed issue in "Zen 2" CPUs that could allow an attacker to potentially access sensitive information. (bsc#1213616, XSA-433) ## Patch Instructions: To install this SUSE Moderate update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: * Server Applications Module 15-SP5 zypper in -t patchSUSE-SLE-Module-Server-Applications-15-SP5-2023-3447=1 * openSUSE Leap 15.5 zypper in -t patch SUSE-2023-3447=1 openSUSE-SLE-15.5-2023-3447=1 * Basesystem Module 15-SP5 zypper in -t patch SUSE-SLE-Module-Basesystem-15-SP5-2023-3447=1 ## Package List: * Server Applications Module 15-SP5 (x86_64) * xen-tools-debuginfo-4.17.2_02-150500.3.6.1 * xen-tools-4.17.2_02-150500.3.6.1 * xen-devel-4.17.2_02-150500.3.6.1 * xen-debugsource-4.17.2_02-150500.3.6.1 * xen-4.17.2_02-150500.3.6.1 * Server Applications Module 15-SP5 (noarch) * xen-tools-xendomains-wait-disk-4.17.2_02-150500.3.6.1 * openSUSE Leap 15.5 (aarch64 x86_64 i586) * xen-libs-4.17.2_02-150500.3.6.1 * xen-tools-domU-debuginfo-4.17.2_02-150500.3.6.1 * xen-devel-4.17.2_02-150500.3.6.1 * xen-tools-domU-4.17.2_02-150500.3.6.1 * xen-libs-debuginfo-4.17.2_02-150500.3.6.1 * xen-debugsource-4.17.2_02-150500.3.6.1 * openSUSE Leap 15.5 (x86_64) * xen-libs-32bit-debuginfo-4.17.2_02-150500.3.6.1 * xen-libs-32bit-4.17.2_02-150500.3.6.1 * openSUSE Leap 15.5 (aarch64 x86_64) * xen-4.17.2_02-150500.3.6.1 * xen-tools-debuginfo-4.17.2_02-150500.3.6.1 * xen-tools-4.17.2_02-150500.3.6.1 * xen-doc-html-4.17.2_02-150500.3.6.1 * openSUSE Leap 15.5 (noarch) * xen-tools-xendomains-wait-disk-4.17.2_02-150500.3.6.1 * openSUSE Leap 15.5 (aarch64_ilp32) * xen-libs-64bit-debuginfo-4.17.2_02-150500.3.6.1 * xen-libs-64bit-4.17.2_02-150500.3.6.1 * Basesystem Module 15-SP5 (x86_64) * xen-libs-4.17.2_02-150500.3.6.1 * xen-tools-domU-debuginfo-4.17.2_02-150500.3.6.1 * xen-tools-domU-4.17.2_02-150500.3.6.1 * xen-debugsource-4.17.2_02-150500.3.6.1 * xen-libs-debuginfo-4.17.2_02-150500.3.6.1 ## References: * https://www.suse.com/security/cve/CVE-2022-40982.html * https://www.suse.com/security/cve/CVE-2023-20569.html * https://www.suse.com/security/cve/CVE-2023-20593.html * https://bugzilla.suse.com/show_bug.cgi?id=1027519 *https://bugzilla.suse.com/show_bug.cgi?id=1212684 * https://bugzilla.suse.com/show_bug.cgi?id=1213616 * https://bugzilla.suse.com/show_bug.cgi?id=1214082 * https://bugzilla.suse.com/show_bug.cgi?id=1214083 . SUSE issued a significant patch for xen targeting CVE-2023-20569 and additional issues. Discover the details regarding the corrections and security flaws.. openSUSE Update,xen Security Advisory,moderate Security Fix,vulnerability Management. . LinuxSecurity.com Team
This update for kernel-firmware fixes the following issues: CVE-2023-20569: Fixed AMD 19h ucode to mitigate a side channel vulnerability in some of the AMD CPUs. (bsc#1213287). # Security update for kernel-firmware Announcement ID: SUSE-SU-2023:3360-1 Rating: moderate References: * #1213287 Cross-References: * CVE-2023-20569 CVSS scores: * CVE-2023-20569 ( SUSE ): 5.6 CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:C/C:H/I:N/A:N Affected Products: * Basesystem Module 15-SP4 * openSUSE Leap 15.4 * openSUSE Leap Micro 5.3 * openSUSE Leap Micro 5.4 * SUSE Linux Enterprise Desktop 15 SP4 * SUSE Linux Enterprise High Performance Computing 15 SP4 * SUSE Linux Enterprise Micro 5.3 * SUSE Linux Enterprise Micro 5.4 * SUSE Linux Enterprise Micro for Rancher 5.3 * SUSE Linux Enterprise Micro for Rancher 5.4 * SUSE Linux Enterprise Real Time 15 SP4 * SUSE Linux Enterprise Server 15 SP4 * SUSE Linux Enterprise Server for SAP Applications 15 SP4 * SUSE Manager Proxy 4.3 * SUSE Manager Retail Branch Server 4.3 * SUSE Manager Server 4.3 An update that solves one vulnerability can now be installed. ## Description: This update for kernel-firmware fixes the following issues: * CVE-2023-20569: Fixed AMD 19h ucode to mitigate a side channel vulnerability in some of the AMD CPUs. (bsc#1213287) ## Special Instructions and Notes: * Please reboot the system after installing this update. ## Patch Instructions: To install this SUSE Moderate update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: * openSUSE Leap 15.4 zypper in -t patch SUSE-2023-3360=1 openSUSE-SLE-15.4-2023-3360=1 * openSUSE Leap Micro 5.3 zypper in -t patch openSUSE-Leap-Micro-5.3-2023-3360=1 * openSUSE Leap Micro 5.4 zypper in -t patch openSUSE-Leap-Micro-5.4-2023-3360=1 * SUSE Linux Enterprise Micro for Rancher 5.3 zypper in -t patchSUSE-SLE-Micro-5.3-2023-3360=1 * SUSE Linux Enterprise Micro 5.3 zypper in -t patch SUSE-SLE-Micro-5.3-2023-3360=1 * SUSE Linux Enterprise Micro for Rancher 5.4 zypper in -t patch SUSE-SLE-Micro-5.4-2023-3360=1 * SUSE Linux Enterprise Micro 5.4 zypper in -t patch SUSE-SLE-Micro-5.4-2023-3360=1 * Basesystem Module 15-SP4 zypper in -t patch SUSE-SLE-Module-Basesystem-15-SP4-2023-3360=1 ## Package List: * openSUSE Leap 15.4 (noarch) * kernel-firmware-mellanox-20220509-150400.4.22.1 * kernel-firmware-iwlwifi-20220509-150400.4.22.1 * kernel-firmware-media-20220509-150400.4.22.1 * kernel-firmware-mwifiex-20220509-150400.4.22.1 * ucode-amd-20220509-150400.4.22.1 * kernel-firmware-realtek-20220509-150400.4.22.1 * kernel-firmware-atheros-20220509-150400.4.22.1 * kernel-firmware-i915-20220509-150400.4.22.1 * kernel-firmware-liquidio-20220509-150400.4.22.1 * kernel-firmware-ti-20220509-150400.4.22.1 * kernel-firmware-chelsio-20220509-150400.4.22.1 * kernel-firmware-sound-20220509-150400.4.22.1 * kernel-firmware-all-20220509-150400.4.22.1 * kernel-firmware-bluetooth-20220509-150400.4.22.1 * kernel-firmware-qlogic-20220509-150400.4.22.1 * kernel-firmware-radeon-20220509-150400.4.22.1 * kernel-firmware-qcom-20220509-150400.4.22.1 * kernel-firmware-platform-20220509-150400.4.22.1 * kernel-firmware-mediatek-20220509-150400.4.22.1 * kernel-firmware-ath11k-20220509-150400.4.22.1 * kernel-firmware-20220509-150400.4.22.1 * kernel-firmware-nvidia-20220509-150400.4.22.1 * kernel-firmware-usb-network-20220509-150400.4.22.1 * kernel-firmware-nfp-20220509-150400.4.22.1 * kernel-firmware-prestera-20220509-150400.4.22.1 * kernel-firmware-marvell-20220509-150400.4.22.1 * kernel-firmware-bnx2-20220509-150400.4.22.1 * kernel-firmware-amdgpu-20220509-150400.4.22.1 * kernel-firmware-serial-20220509-150400.4.22.1 * kernel-firmware-brcm-20220509-150400.4.22.1 *kernel-firmware-network-20220509-150400.4.22.1 * kernel-firmware-ath10k-20220509-150400.4.22.1 * kernel-firmware-ueagle-20220509-150400.4.22.1 * kernel-firmware-intel-20220509-150400.4.22.1 * kernel-firmware-dpaa2-20220509-150400.4.22.1 * openSUSE Leap Micro 5.3 (noarch) * kernel-firmware-mellanox-20220509-150400.4.22.1 * kernel-firmware-iwlwifi-20220509-150400.4.22.1 * kernel-firmware-media-20220509-150400.4.22.1 * kernel-firmware-mwifiex-20220509-150400.4.22.1 * ucode-amd-20220509-150400.4.22.1 * kernel-firmware-realtek-20220509-150400.4.22.1 * kernel-firmware-atheros-20220509-150400.4.22.1 * kernel-firmware-i915-20220509-150400.4.22.1 * kernel-firmware-liquidio-20220509-150400.4.22.1 * kernel-firmware-ti-20220509-150400.4.22.1 * kernel-firmware-chelsio-20220509-150400.4.22.1 * kernel-firmware-sound-20220509-150400.4.22.1 * kernel-firmware-all-20220509-150400.4.22.1 * kernel-firmware-bluetooth-20220509-150400.4.22.1 * kernel-firmware-qlogic-20220509-150400.4.22.1 * kernel-firmware-radeon-20220509-150400.4.22.1 * kernel-firmware-qcom-20220509-150400.4.22.1 * kernel-firmware-platform-20220509-150400.4.22.1 * kernel-firmware-mediatek-20220509-150400.4.22.1 * kernel-firmware-ath11k-20220509-150400.4.22.1 * kernel-firmware-usb-network-20220509-150400.4.22.1 * kernel-firmware-nvidia-20220509-150400.4.22.1 * kernel-firmware-nfp-20220509-150400.4.22.1 * kernel-firmware-prestera-20220509-150400.4.22.1 * kernel-firmware-marvell-20220509-150400.4.22.1 * kernel-firmware-bnx2-20220509-150400.4.22.1 * kernel-firmware-amdgpu-20220509-150400.4.22.1 * kernel-firmware-serial-20220509-150400.4.22.1 * kernel-firmware-brcm-20220509-150400.4.22.1 * kernel-firmware-network-20220509-150400.4.22.1 * kernel-firmware-ath10k-20220509-150400.4.22.1 * kernel-firmware-ueagle-20220509-150400.4.22.1 * kernel-firmware-intel-20220509-150400.4.22.1 *kernel-firmware-dpaa2-20220509-150400.4.22.1 * openSUSE Leap Micro 5.4 (noarch) * kernel-firmware-mellanox-20220509-150400.4.22.1 * kernel-firmware-iwlwifi-20220509-150400.4.22.1 * kernel-firmware-media-20220509-150400.4.22.1 * kernel-firmware-mwifiex-20220509-150400.4.22.1 * ucode-amd-20220509-150400.4.22.1 * kernel-firmware-realtek-20220509-150400.4.22.1 * kernel-firmware-atheros-20220509-150400.4.22.1 * kernel-firmware-i915-20220509-150400.4.22.1 * kernel-firmware-liquidio-20220509-150400.4.22.1 * kernel-firmware-ti-20220509-150400.4.22.1 * kernel-firmware-chelsio-20220509-150400.4.22.1 * kernel-firmware-sound-20220509-150400.4.22.1 * kernel-firmware-all-20220509-150400.4.22.1 * kernel-firmware-bluetooth-20220509-150400.4.22.1 * kernel-firmware-qlogic-20220509-150400.4.22.1 * kernel-firmware-radeon-20220509-150400.4.22.1 * kernel-firmware-qcom-20220509-150400.4.22.1 * kernel-firmware-platform-20220509-150400.4.22.1 * kernel-firmware-mediatek-20220509-150400.4.22.1 * kernel-firmware-ath11k-20220509-150400.4.22.1 * kernel-firmware-usb-network-20220509-150400.4.22.1 * kernel-firmware-nvidia-20220509-150400.4.22.1 * kernel-firmware-nfp-20220509-150400.4.22.1 * kernel-firmware-prestera-20220509-150400.4.22.1 * kernel-firmware-marvell-20220509-150400.4.22.1 * kernel-firmware-bnx2-20220509-150400.4.22.1 * kernel-firmware-amdgpu-20220509-150400.4.22.1 * kernel-firmware-serial-20220509-150400.4.22.1 * kernel-firmware-brcm-20220509-150400.4.22.1 * kernel-firmware-network-20220509-150400.4.22.1 * kernel-firmware-ath10k-20220509-150400.4.22.1 * kernel-firmware-ueagle-20220509-150400.4.22.1 * kernel-firmware-intel-20220509-150400.4.22.1 * kernel-firmware-dpaa2-20220509-150400.4.22.1 * SUSE Linux Enterprise Micro for Rancher 5.3 (noarch) * kernel-firmware-mellanox-20220509-150400.4.22.1 * kernel-firmware-iwlwifi-20220509-150400.4.22.1 *kernel-firmware-media-20220509-150400.4.22.1 * kernel-firmware-mwifiex-20220509-150400.4.22.1 * ucode-amd-20220509-150400.4.22.1 * kernel-firmware-realtek-20220509-150400.4.22.1 * kernel-firmware-atheros-20220509-150400.4.22.1 * kernel-firmware-i915-20220509-150400.4.22.1 * kernel-firmware-liquidio-20220509-150400.4.22.1 * kernel-firmware-ti-20220509-150400.4.22.1 * kernel-firmware-chelsio-20220509-150400.4.22.1 * kernel-firmware-sound-20220509-150400.4.22.1 * kernel-firmware-all-20220509-150400.4.22.1 * kernel-firmware-bluetooth-20220509-150400.4.22.1 * kernel-firmware-qlogic-20220509-150400.4.22.1 * kernel-firmware-radeon-20220509-150400.4.22.1 * kernel-firmware-qcom-20220509-150400.4.22.1 * kernel-firmware-platform-20220509-150400.4.22.1 * kernel-firmware-mediatek-20220509-150400.4.22.1 * kernel-firmware-ath11k-20220509-150400.4.22.1 * kernel-firmware-usb-network-20220509-150400.4.22.1 * kernel-firmware-nvidia-20220509-150400.4.22.1 * kernel-firmware-nfp-20220509-150400.4.22.1 * kernel-firmware-prestera-20220509-150400.4.22.1 * kernel-firmware-marvell-20220509-150400.4.22.1 * kernel-firmware-bnx2-20220509-150400.4.22.1 * kernel-firmware-amdgpu-20220509-150400.4.22.1 * kernel-firmware-serial-20220509-150400.4.22.1 * kernel-firmware-brcm-20220509-150400.4.22.1 * kernel-firmware-network-20220509-150400.4.22.1 * kernel-firmware-ath10k-20220509-150400.4.22.1 * kernel-firmware-ueagle-20220509-150400.4.22.1 * kernel-firmware-intel-20220509-150400.4.22.1 * kernel-firmware-dpaa2-20220509-150400.4.22.1 * SUSE Linux Enterprise Micro 5.3 (noarch) * kernel-firmware-mellanox-20220509-150400.4.22.1 * kernel-firmware-iwlwifi-20220509-150400.4.22.1 * kernel-firmware-media-20220509-150400.4.22.1 * kernel-firmware-mwifiex-20220509-150400.4.22.1 * ucode-amd-20220509-150400.4.22.1 * kernel-firmware-realtek-20220509-150400.4.22.1 * kernel-firmware-atheros-20220509-150400.4.22.1 * kernel-firmware-i915-20220509-150400.4.22.1 * kernel-firmware-liquidio-20220509-150400.4.22.1 * kernel-firmware-ti-20220509-150400.4.22.1 * kernel-firmware-chelsio-20220509-150400.4.22.1 * kernel-firmware-sound-20220509-150400.4.22.1 * kernel-firmware-all-20220509-150400.4.22.1 * kernel-firmware-bluetooth-20220509-150400.4.22.1 * kernel-firmware-qlogic-20220509-150400.4.22.1 * kernel-firmware-radeon-20220509-150400.4.22.1 * kernel-firmware-qcom-20220509-150400.4.22.1 * kernel-firmware-platform-20220509-150400.4.22.1 * kernel-firmware-mediatek-20220509-150400.4.22.1 * kernel-firmware-ath11k-20220509-150400.4.22.1 * kernel-firmware-usb-network-20220509-150400.4.22.1 * kernel-firmware-nvidia-20220509-150400.4.22.1 * kernel-firmware-nfp-20220509-150400.4.22.1 * kernel-firmware-prestera-20220509-150400.4.22.1 * kernel-firmware-marvell-20220509-150400.4.22.1 * kernel-firmware-bnx2-20220509-150400.4.22.1 * kernel-firmware-amdgpu-20220509-150400.4.22.1 * kernel-firmware-serial-20220509-150400.4.22.1 * kernel-firmware-brcm-20220509-150400.4.22.1 * kernel-firmware-network-20220509-150400.4.22.1 * kernel-firmware-ath10k-20220509-150400.4.22.1 * kernel-firmware-ueagle-20220509-150400.4.22.1 * kernel-firmware-intel-20220509-150400.4.22.1 * kernel-firmware-dpaa2-20220509-150400.4.22.1 * SUSE Linux Enterprise Micro for Rancher 5.4 (noarch) * kernel-firmware-mellanox-20220509-150400.4.22.1 * kernel-firmware-iwlwifi-20220509-150400.4.22.1 * kernel-firmware-media-20220509-150400.4.22.1 * kernel-firmware-mwifiex-20220509-150400.4.22.1 * ucode-amd-20220509-150400.4.22.1 * kernel-firmware-realtek-20220509-150400.4.22.1 * kernel-firmware-atheros-20220509-150400.4.22.1 * kernel-firmware-i915-20220509-150400.4.22.1 * kernel-firmware-liquidio-20220509-150400.4.22.1 * kernel-firmware-ti-20220509-150400.4.22.1 * kernel-firmware-chelsio-20220509-150400.4.22.1 *kernel-firmware-sound-20220509-150400.4.22.1 * kernel-firmware-all-20220509-150400.4.22.1 * kernel-firmware-bluetooth-20220509-150400.4.22.1 * kernel-firmware-qlogic-20220509-150400.4.22.1 * kernel-firmware-radeon-20220509-150400.4.22.1 * kernel-firmware-qcom-20220509-150400.4.22.1 * kernel-firmware-platform-20220509-150400.4.22.1 * kernel-firmware-mediatek-20220509-150400.4.22.1 * kernel-firmware-ath11k-20220509-150400.4.22.1 * kernel-firmware-usb-network-20220509-150400.4.22.1 * kernel-firmware-nvidia-20220509-150400.4.22.1 * kernel-firmware-nfp-20220509-150400.4.22.1 * kernel-firmware-prestera-20220509-150400.4.22.1 * kernel-firmware-marvell-20220509-150400.4.22.1 * kernel-firmware-bnx2-20220509-150400.4.22.1 * kernel-firmware-amdgpu-20220509-150400.4.22.1 * kernel-firmware-serial-20220509-150400.4.22.1 * kernel-firmware-brcm-20220509-150400.4.22.1 * kernel-firmware-network-20220509-150400.4.22.1 * kernel-firmware-ath10k-20220509-150400.4.22.1 * kernel-firmware-ueagle-20220509-150400.4.22.1 * kernel-firmware-intel-20220509-150400.4.22.1 * kernel-firmware-dpaa2-20220509-150400.4.22.1 * SUSE Linux Enterprise Micro 5.4 (noarch) * kernel-firmware-mellanox-20220509-150400.4.22.1 * kernel-firmware-iwlwifi-20220509-150400.4.22.1 * kernel-firmware-media-20220509-150400.4.22.1 * kernel-firmware-mwifiex-20220509-150400.4.22.1 * ucode-amd-20220509-150400.4.22.1 * kernel-firmware-realtek-20220509-150400.4.22.1 * kernel-firmware-atheros-20220509-150400.4.22.1 * kernel-firmware-i915-20220509-150400.4.22.1 * kernel-firmware-liquidio-20220509-150400.4.22.1 * kernel-firmware-ti-20220509-150400.4.22.1 * kernel-firmware-chelsio-20220509-150400.4.22.1 * kernel-firmware-sound-20220509-150400.4.22.1 * kernel-firmware-all-20220509-150400.4.22.1 * kernel-firmware-bluetooth-20220509-150400.4.22.1 * kernel-firmware-qlogic-20220509-150400.4.22.1 *kernel-firmware-radeon-20220509-150400.4.22.1 * kernel-firmware-qcom-20220509-150400.4.22.1 * kernel-firmware-platform-20220509-150400.4.22.1 * kernel-firmware-mediatek-20220509-150400.4.22.1 * kernel-firmware-ath11k-20220509-150400.4.22.1 * kernel-firmware-usb-network-20220509-150400.4.22.1 * kernel-firmware-nvidia-20220509-150400.4.22.1 * kernel-firmware-nfp-20220509-150400.4.22.1 * kernel-firmware-prestera-20220509-150400.4.22.1 * kernel-firmware-marvell-20220509-150400.4.22.1 * kernel-firmware-bnx2-20220509-150400.4.22.1 * kernel-firmware-amdgpu-20220509-150400.4.22.1 * kernel-firmware-serial-20220509-150400.4.22.1 * kernel-firmware-brcm-20220509-150400.4.22.1 * kernel-firmware-network-20220509-150400.4.22.1 * kernel-firmware-ath10k-20220509-150400.4.22.1 * kernel-firmware-ueagle-20220509-150400.4.22.1 * kernel-firmware-intel-20220509-150400.4.22.1 * kernel-firmware-dpaa2-20220509-150400.4.22.1 * Basesystem Module 15-SP4 (noarch) * kernel-firmware-mellanox-20220509-150400.4.22.1 * kernel-firmware-iwlwifi-20220509-150400.4.22.1 * kernel-firmware-media-20220509-150400.4.22.1 * kernel-firmware-mwifiex-20220509-150400.4.22.1 * ucode-amd-20220509-150400.4.22.1 * kernel-firmware-realtek-20220509-150400.4.22.1 * kernel-firmware-atheros-20220509-150400.4.22.1 * kernel-firmware-i915-20220509-150400.4.22.1 * kernel-firmware-liquidio-20220509-150400.4.22.1 * kernel-firmware-ti-20220509-150400.4.22.1 * kernel-firmware-chelsio-20220509-150400.4.22.1 * kernel-firmware-sound-20220509-150400.4.22.1 * kernel-firmware-all-20220509-150400.4.22.1 * kernel-firmware-bluetooth-20220509-150400.4.22.1 * kernel-firmware-qlogic-20220509-150400.4.22.1 * kernel-firmware-radeon-20220509-150400.4.22.1 * kernel-firmware-qcom-20220509-150400.4.22.1 * kernel-firmware-platform-20220509-150400.4.22.1 * kernel-firmware-mediatek-20220509-150400.4.22.1 *kernel-firmware-ath11k-20220509-150400.4.22.1 * kernel-firmware-usb-network-20220509-150400.4.22.1 * kernel-firmware-nvidia-20220509-150400.4.22.1 * kernel-firmware-nfp-20220509-150400.4.22.1 * kernel-firmware-prestera-20220509-150400.4.22.1 * kernel-firmware-marvell-20220509-150400.4.22.1 * kernel-firmware-bnx2-20220509-150400.4.22.1 * kernel-firmware-amdgpu-20220509-150400.4.22.1 * kernel-firmware-serial-20220509-150400.4.22.1 * kernel-firmware-brcm-20220509-150400.4.22.1 * kernel-firmware-network-20220509-150400.4.22.1 * kernel-firmware-ath10k-20220509-150400.4.22.1 * kernel-firmware-ueagle-20220509-150400.4.22.1 * kernel-firmware-intel-20220509-150400.4.22.1 * kernel-firmware-dpaa2-20220509-150400.4.22.1 ## References: * https://www.suse.com/security/cve/CVE-2023-20569.html * https://bugzilla.suse.com/show_bug.cgi?id=1213287 . The recent kernel-firmware revision addresses a significant AMD CPU side-channel vulnerability, impacting openSUSE systems with medium-level risk.. openSUSE Security,Kernal Firmware Update,AMD Side Channel. . LinuxSecurity.com Team
Get the latest Linux and open source security news straight to your inbox.