Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

oracle-oval логотип

ELSA-2025-10108

Опубликовано: 20 окт. 2025
Источник: oracle-oval
Платформа: Oracle Linux 7

Описание

ELSA-2025-10108: microcode_ctl security update (MODERATE)

[2:2.1-73.24.0.20250512]

  • update microcode bundle to 20250512 [Orabug: 38139038]

[2:2.1-73.23.0.20250211]

  • update microcode bundle to 20250211 [Orabug: 37670820]
  • drop releasenote.md file

[2:2.1-73.20.0.1]

  • don't bother calling dracut if virtualized [Orabug: 35702409]
  • also rebuild initramfs for kernel-ueknano [Orabug: 35698043]
  • ensure UEK also rebuilds initramfs [Orabug: 34280052]
  • for Intel, do not trigger load if on-disk microcode is not an update [Orabug: 30634727]
  • set early_microcode='no' in virtualized guests to avoid early load bugs [Orabug: 30618736]
  • ensure late loading fixes are present on 4.1.12-* and 4.14.35-*
  • enable early and late load for 5.4.17-*
  • enable early loading for 06-4f-01 caveat
  • remove no longer appropriate caveats for 06-2d-07 and 06-55-04

Обновленные пакеты

Oracle Linux 7

Oracle Linux x86_64

microcode_ctl

2.1-73.24.0.20250512.el7_9

Связанные CVE

Связанные уязвимости

CVSS3: 5.6
ubuntu
6 месяцев назад

Exposure of Sensitive Information in Shared Microarchitectural Structures during Transient Execution for some Intel(R) Processors may allow an authenticated user to potentially enable information disclosure via local access.

CVSS3: 5.6
redhat
6 месяцев назад

Exposure of Sensitive Information in Shared Microarchitectural Structures during Transient Execution for some Intel(R) Processors may allow an authenticated user to potentially enable information disclosure via local access.

CVSS3: 5.6
nvd
6 месяцев назад

Exposure of Sensitive Information in Shared Microarchitectural Structures during Transient Execution for some Intel(R) Processors may allow an authenticated user to potentially enable information disclosure via local access.

CVSS3: 5.6
debian
6 месяцев назад

Exposure of Sensitive Information in Shared Microarchitectural Structu ...

suse-cvrf
5 месяцев назад

Security update for xen