Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

rocky логотип

RLSA-2024:7481

Опубликовано: 07 мая 2025
Источник: rocky
Оценка: Important

Описание

Important: linux-firmware security update

The linux-firmware packages contain all of the firmware files that are required by various devices to operate.

Security Fix(es):

  • kernel: hw:amd:IOMMU improperly handles certain special address leading to a loss of guest integrity (CVE-2023-20584)

  • kernel: hw: amd:Incomplete system memory cleanup in SEV firmware corrupt guest private memory (CVE-2023-31356)

For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.

Затронутые продукты

  • Rocky Linux 8

НаименованиеАрхитектураРелизRPM
iwl1000-firmwarenoarch124.el8_10.1iwl1000-firmware-39.31.5.1-124.el8_10.1.noarch.rpm
iwl100-firmwarenoarch124.el8_10.1iwl100-firmware-39.31.5.1-124.el8_10.1.noarch.rpm
iwl105-firmwarenoarch124.el8_10.1iwl105-firmware-18.168.6.1-124.el8_10.1.noarch.rpm
iwl135-firmwarenoarch124.el8_10.1iwl135-firmware-18.168.6.1-124.el8_10.1.noarch.rpm
iwl2000-firmwarenoarch124.el8_10.1iwl2000-firmware-18.168.6.1-124.el8_10.1.noarch.rpm
iwl2030-firmwarenoarch124.el8_10.1iwl2030-firmware-18.168.6.1-124.el8_10.1.noarch.rpm
iwl3160-firmwarenoarch124.el8_10.1iwl3160-firmware-25.30.13.0-124.el8_10.1.noarch.rpm
iwl3945-firmwarenoarch124.el8_10.1iwl3945-firmware-15.32.2.9-124.el8_10.1.noarch.rpm
iwl4965-firmwarenoarch124.el8_10.1iwl4965-firmware-228.61.2.24-124.el8_10.1.noarch.rpm
iwl5000-firmwarenoarch124.el8_10.1iwl5000-firmware-8.83.5.1_1-124.el8_10.1.noarch.rpm

Показывать по

Связанные уязвимости

oracle-oval
8 месяцев назад

ELSA-2024-12797: linux-firmware security update (MODERATE)

CVSS3: 5.3
ubuntu
10 месяцев назад

IOMMU improperly handles certain special address ranges with invalid device table entries (DTEs), which may allow an attacker with privileges and a compromised Hypervisor to induce DTE faults to bypass RMP checks in SEV-SNP, potentially leading to a loss of guest integrity.

CVSS3: 5.3
redhat
10 месяцев назад

IOMMU improperly handles certain special address ranges with invalid device table entries (DTEs), which may allow an attacker with privileges and a compromised Hypervisor to induce DTE faults to bypass RMP checks in SEV-SNP, potentially leading to a loss of guest integrity.

CVSS3: 5.3
nvd
10 месяцев назад

IOMMU improperly handles certain special address ranges with invalid device table entries (DTEs), which may allow an attacker with privileges and a compromised Hypervisor to induce DTE faults to bypass RMP checks in SEV-SNP, potentially leading to a loss of guest integrity.

CVSS3: 5.3
debian
10 месяцев назад

IOMMU improperly handles certain special address ranges with invalid d ...