Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

suse-cvrf логотип

SUSE-SU-2019:2988-1

Опубликовано: 15 нояб. 2019
Источник: suse-cvrf

Описание

Security update for ucode-intel

This update for ucode-intel fixes the following issues:

  • Updated to 20191112 official security release (bsc#1155988)
  • Includes security fixes for:
    • CVE-2019-11135: Added feature allowing to disable TSX RTM (bsc#1139073)
    • CVE-2019-11139: A CPU microcode only fix for Voltage modulation issues (bsc#1141035)

Список пакетов

HPE Helion OpenStack 8
ucode-intel-20191112a-13.56.1
Image SLES12-SP4-SAP-Azure-LI-BYOS-Production
ucode-intel-20191112a-13.56.1
Image SLES12-SP4-SAP-Azure-VLI-BYOS-Production
ucode-intel-20191112a-13.56.1
SUSE Enterprise Storage 5
ucode-intel-20191112a-13.56.1
SUSE Linux Enterprise Desktop 12 SP4
ucode-intel-20191112a-13.56.1
SUSE Linux Enterprise Server 12 SP1-LTSS
ucode-intel-20191112a-13.56.1
SUSE Linux Enterprise Server 12 SP2-BCL
ucode-intel-20191112a-13.56.1
SUSE Linux Enterprise Server 12 SP2-LTSS
ucode-intel-20191112a-13.56.1
SUSE Linux Enterprise Server 12 SP3-BCL
ucode-intel-20191112a-13.56.1
SUSE Linux Enterprise Server 12 SP3-LTSS
ucode-intel-20191112a-13.56.1
SUSE Linux Enterprise Server 12 SP4
ucode-intel-20191112a-13.56.1
SUSE Linux Enterprise Server for SAP Applications 12 SP1
ucode-intel-20191112a-13.56.1
SUSE Linux Enterprise Server for SAP Applications 12 SP2
ucode-intel-20191112a-13.56.1
SUSE Linux Enterprise Server for SAP Applications 12 SP3
ucode-intel-20191112a-13.56.1
SUSE Linux Enterprise Server for SAP Applications 12 SP4
ucode-intel-20191112a-13.56.1
SUSE OpenStack Cloud 7
ucode-intel-20191112a-13.56.1
SUSE OpenStack Cloud 8
ucode-intel-20191112a-13.56.1
SUSE OpenStack Cloud Crowbar 8
ucode-intel-20191112a-13.56.1

Описание

TSX Asynchronous Abort condition on some CPUs utilizing speculative execution may allow an authenticated user to potentially enable information disclosure via a side channel with local access.


Затронутые продукты
HPE Helion OpenStack 8:ucode-intel-20191112a-13.56.1
Image SLES12-SP4-SAP-Azure-LI-BYOS-Production:ucode-intel-20191112a-13.56.1
Image SLES12-SP4-SAP-Azure-VLI-BYOS-Production:ucode-intel-20191112a-13.56.1
SUSE Enterprise Storage 5:ucode-intel-20191112a-13.56.1

Ссылки

Описание

Improper conditions check in the voltage modulation interface for some Intel(R) Xeon(R) Scalable Processors may allow a privileged user to potentially enable denial of service via local access.


Затронутые продукты
HPE Helion OpenStack 8:ucode-intel-20191112a-13.56.1
Image SLES12-SP4-SAP-Azure-LI-BYOS-Production:ucode-intel-20191112a-13.56.1
Image SLES12-SP4-SAP-Azure-VLI-BYOS-Production:ucode-intel-20191112a-13.56.1
SUSE Enterprise Storage 5:ucode-intel-20191112a-13.56.1

Ссылки
Уязвимость SUSE-SU-2019:2988-1