Описание
Security update for ucode-intel
This update for ucode-intel fixes the following issues:
- Intel CPU Microcode was updated to the 20240910 release (bsc#1230400)
- CVE-2024-23984: Observable discrepancy in RAPL interface for some Intel Processors may allow a privileged user to potentially enable information disclosure via local access.
- CVE-2024-24968: Improper finite state machines (FSMs) in hardware logic in some Intel Processors may allow an privileged user to potentially enable a denial of service via local access.
Список пакетов
Image SLES12-SP5-SAP-Azure-LI-BYOS-Production
ucode-intel-20240910-143.1
Image SLES12-SP5-SAP-Azure-VLI-BYOS-Production
ucode-intel-20240910-143.1
SUSE Linux Enterprise Server 12 SP5
ucode-intel-20240910-143.1
SUSE Linux Enterprise Server for SAP Applications 12 SP5
ucode-intel-20240910-143.1
Ссылки
- Link for SUSE-SU-2024:3307-1
- E-Mail link for SUSE-SU-2024:3307-1
- SUSE Security Ratings
- SUSE Bug 1230400
- SUSE CVE CVE-2024-23984 page
- SUSE CVE CVE-2024-24968 page
Описание
Observable discrepancy in RAPL interface for some Intel(R) Processors may allow a privileged user to potentially enable information disclosure via local access.
Затронутые продукты
Image SLES12-SP5-SAP-Azure-LI-BYOS-Production:ucode-intel-20240910-143.1
Image SLES12-SP5-SAP-Azure-VLI-BYOS-Production:ucode-intel-20240910-143.1
SUSE Linux Enterprise Server 12 SP5:ucode-intel-20240910-143.1
SUSE Linux Enterprise Server for SAP Applications 12 SP5:ucode-intel-20240910-143.1
Ссылки
- CVE-2024-23984
- SUSE Bug 1230400
Описание
Improper finite state machines (FSMs) in hardware logic in some Intel(R) Processors may allow an privileged user to potentially enable a denial of service via local access.
Затронутые продукты
Image SLES12-SP5-SAP-Azure-LI-BYOS-Production:ucode-intel-20240910-143.1
Image SLES12-SP5-SAP-Azure-VLI-BYOS-Production:ucode-intel-20240910-143.1
SUSE Linux Enterprise Server 12 SP5:ucode-intel-20240910-143.1
SUSE Linux Enterprise Server for SAP Applications 12 SP5:ucode-intel-20240910-143.1
Ссылки
- CVE-2024-24968
- SUSE Bug 1230400