Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

rocky логотип

RLSA-2024:3178

Опубликовано: 07 мая 2025
Источник: rocky
Оценка: Important

Описание

Important: linux-firmware security update

The linux-firmware packages contain all of the firmware files that are required by various devices to operate.

Security Fix(es):

  • hw: intel: Protection mechanism failure for some Intel(R) PROSet/Wireless WiFi (CVE-2022-46329)

  • hw: amd: INVD instruction may lead to a loss of SEV-ES guest machine memory integrity problem (CVE-2023-20592)

For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.

Additional Changes:

For detailed information on changes in this release, see the Rocky Linux 8.10 Release Notes linked from the References section.

Затронутые продукты

  • Rocky Linux 8

НаименованиеАрхитектураРелизRPM
iwl1000-firmwarenoarch121.el8.1iwl1000-firmware-39.31.5.1-121.el8.1.noarch.rpm
iwl100-firmwarenoarch121.el8.1iwl100-firmware-39.31.5.1-121.el8.1.noarch.rpm
iwl105-firmwarenoarch121.el8.1iwl105-firmware-18.168.6.1-121.el8.1.noarch.rpm
iwl135-firmwarenoarch121.el8.1iwl135-firmware-18.168.6.1-121.el8.1.noarch.rpm
iwl2000-firmwarenoarch121.el8.1iwl2000-firmware-18.168.6.1-121.el8.1.noarch.rpm
iwl2030-firmwarenoarch121.el8.1iwl2030-firmware-18.168.6.1-121.el8.1.noarch.rpm
iwl3160-firmwarenoarch121.el8.1iwl3160-firmware-25.30.13.0-121.el8.1.noarch.rpm
iwl3945-firmwarenoarch121.el8.1iwl3945-firmware-15.32.2.9-121.el8.1.noarch.rpm
iwl4965-firmwarenoarch121.el8.1iwl4965-firmware-228.61.2.24-121.el8.1.noarch.rpm
iwl5000-firmwarenoarch121.el8.1iwl5000-firmware-8.83.5.1_1-121.el8.1.noarch.rpm

Показывать по

Связанные CVE

Связанные уязвимости

oracle-oval
около 1 года назад

ELSA-2024-3178: linux-firmware security update (IMPORTANT)

CVSS3: 8.2
redhat
почти 2 года назад

Protection mechanism failure for some Intel(R) PROSet/Wireless WiFi software may allow a privileged user to potentially enable escalation of privilege via local access.

CVSS3: 8.2
nvd
почти 2 года назад

Protection mechanism failure for some Intel(R) PROSet/Wireless WiFi software may allow a privileged user to potentially enable escalation of privilege via local access.

CVSS3: 8.2
debian
почти 2 года назад

Protection mechanism failure for some Intel(R) PROSet/Wireless WiFi so ...

CVSS3: 6.5
ubuntu
больше 1 года назад

Improper or unexpected behavior of the INVD instruction in some AMD CPUs may allow an attacker with a malicious hypervisor to affect cache line write-back behavior of the CPU leading to a potential loss of guest virtual machine (VM) memory integrity.