Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

suse-cvrf логотип

SUSE-SU-2025:01651-1

Опубликовано: 22 мая 2025
Источник: suse-cvrf

Описание

Security update for ucode-intel

This update for ucode-intel fixes the following issues:

Intel CPU Microcode was updated to the 20250512 release (bsc#1243123)

  • CVE-2024-28956: Exposure of Sensitive Information in Shared Microarchitectural Structures during Transient Execution for some Intel Processors may allow an authenticated user to potentially enable information disclosure via local access.

  • CVE-2025-20103: Insufficient resource pool in the core management mechanism for some Intel Processors may allow an authenticated user to potentially enable denial of service via local access.

  • CVE-2025-20054: Uncaught exception in the core management mechanism for some Intel Processors may allow an authenticated user to potentially enable denial of service via local access.

  • CVE-2024-43420: Exposure of sensitive information caused by shared microarchitectural predictor state that influences transient execution for some Intel Atom processors may allow an authenticated user to potentially enable information disclosure via local access.

  • CVE-2025-20623: Exposure of sensitive information caused by shared microarchitectural predictor state that influences transient execution for some Intel Core processors (10th Generation) may allow an authenticated user to potentially enable information disclosure via local access.

  • CVE-2024-45332: Exposure of sensitive information caused by shared microarchitectural predictor state that influences transient execution in the indirect branch predictors for some Intel Processors may allow an authenticated user to potentially enable information disclosure via local access.

  • CVE-2025-24495: Incorrect initialization of resource in the branch prediction unit for some Intel Core Ultra Processors may allow an authenticated user to potentially enable information disclosure via local access.

  • CVE-2025-20012: Incorrect behavior order for some Intel Core Ultra Processors may allow an unauthenticated user to potentially enable information disclosure via physical access.

  • Updates for functional issues.

  • New Platforms

    ProcessorSteppingF-M-S/PIOld VerNew VerProducts
    ARL-UA106-b5-00/800000000aCore Ultra Processor (Series2)
    ARL-S/HX (8P)B006-c6-02/8200000118Core Ultra Processor (Series2)
    ARL-HA106-c5-02/8200000118Core Ultra Processor (Series2)
    GNR-AP/SPB006-ad-01/95010003a2Xeon Scalable Gen6
    GNR-AP/SPH006-ad-01/200a0000d1Xeon Scalable Gen6
    LNLB006-bd-01/800000011fCore Ultra 200 V Series Processor
  • Updated Platforms

    ProcessorSteppingF-M-S/PIOld VerNew VerProducts
    ADLC006-97-02/07000000380000003aCore Gen12
    ADLH006-97-05/07000000380000003aCore Gen12
    ADLL006-9a-03/800000043600000437Core Gen12
    ADLR006-9a-04/800000043600000437Core Gen12
    ADL-NN006-be-00/190000001c0000001dCore i3-N305/N300, N50/N97/N100/N200, Atom x7211E/x7213E/x7425E
    AML-Y42V006-8e-0c/94000000fc00000100Core Gen10 Mobile
    AZBA0/R006-9a-04/40000000090000000aIntel(R) Atom(R) C1100
    CFL-HR006-9e-0d/220000010200000104Core Gen9 Mobile
    CLX-SPB106-55-07/bf0500370705003901Xeon Scalable Gen2
    CML-HR106-a5-02/20000000fc00000100Core Gen10 Mobile
    CML-S102Q006-a5-05/22000000fc00000100Core Gen10
    CML-S62G106-a5-03/22000000fc00000100Core Gen10
    CML-U42V006-8e-0c/94000000fc00000100Core Gen10 Mobile
    CML-U62 V1A006-a6-00/80000000fe00000102Core Gen10 Mobile
    CML-U62 V2K106-a6-01/80000000fc00000100Core Gen10 Mobile
    CML-Y42V006-8e-0c/94000000fc00000100Core Gen10 Mobile
    CPX-SPA106-55-0b/bf0700290407002b01Xeon Scalable Gen3
    EMR-SPA106-cf-02/8721000291210002a9Xeon Scalable Gen5
    GLK-RR006-7a-08/010000002400000026Pentium J5040/N5030, Celeron J4125/J4025/N4020/N4120
    ICL-DB006-6c-01/10010002c0010002d0Xeon D-17xx, D-27xx
    ICL-U/YD106-7e-05/80000000c6000000caCore Gen10 Mobile
    ICX-SPDx/M106-6a-06/870d0003f50d000404Xeon Scalable Gen3
    MTLC006-aa-04/e60000002000000024Core Ultra Processor
    RKL-SB006-a7-01/020000006300000064Core Gen11
    RPL-E/HX/SB006-b7-01/320000012c0000012fCore Gen13/Gen14
    RPL-H/P/PX 6+8J006-ba-02/e00000412400004128Core Gen13
    RPL-HX/SC006-bf-02/07000000380000003aCore Gen13/Gen14
    RPL-SH006-bf-05/07000000380000003aCore Gen13/Gen14
    RPL-U 2+8Q006-ba-03/e00000412400004128Core Gen13
    SPR-HBMBx06-8f-08/102c0003e02c0003f7Xeon Max
    SPR-SPE4/S206-8f-07/872b0006202b000639Xeon Scalable Gen4
    SPR-SPE5/S306-8f-08/872b0006202b000639Xeon Scalable Gen4
    SRF-SPC006-af-03/010300033003000341Xeon 6700-Series Processors with E-Cores
    TGLB0/B106-8c-01/80000000b8000000bcCore Gen11 Mobile
    TGL-HR006-8d-01/c20000005200000056Core Gen11 Mobile
    TGL-RC006-8c-02/c2000000380000003cCore Gen11 Mobile
    TWLN006-be-00/190000001c0000001dCore i3-N305/N300, N50/N97/N100/N200, Atom x7211E/x7213E/x7425E
    WHL-UV006-8e-0c/94000000fc00000100Core Gen8 Mobile

Список пакетов

SUSE Enterprise Storage 7.1
ucode-intel-20250512-150200.56.1
SUSE Linux Enterprise High Performance Computing 15 SP3-LTSS
ucode-intel-20250512-150200.56.1
SUSE Linux Enterprise High Performance Computing 15 SP4-ESPOS
ucode-intel-20250512-150200.56.1
SUSE Linux Enterprise High Performance Computing 15 SP4-LTSS
ucode-intel-20250512-150200.56.1
SUSE Linux Enterprise High Performance Computing 15 SP5-ESPOS
ucode-intel-20250512-150200.56.1
SUSE Linux Enterprise High Performance Computing 15 SP5-LTSS
ucode-intel-20250512-150200.56.1
SUSE Linux Enterprise Micro 5.1
ucode-intel-20250512-150200.56.1
SUSE Linux Enterprise Micro 5.2
ucode-intel-20250512-150200.56.1
SUSE Linux Enterprise Micro 5.3
ucode-intel-20250512-150200.56.1
SUSE Linux Enterprise Micro 5.4
ucode-intel-20250512-150200.56.1
SUSE Linux Enterprise Micro 5.5
ucode-intel-20250512-150200.56.1
SUSE Linux Enterprise Module for Basesystem 15 SP6
ucode-intel-20250512-150200.56.1
SUSE Linux Enterprise Server 15 SP3-LTSS
ucode-intel-20250512-150200.56.1
SUSE Linux Enterprise Server 15 SP4-LTSS
ucode-intel-20250512-150200.56.1
SUSE Linux Enterprise Server 15 SP5-LTSS
ucode-intel-20250512-150200.56.1
SUSE Linux Enterprise Server for SAP Applications 15 SP3
ucode-intel-20250512-150200.56.1
SUSE Linux Enterprise Server for SAP Applications 15 SP4
ucode-intel-20250512-150200.56.1
SUSE Linux Enterprise Server for SAP Applications 15 SP5
ucode-intel-20250512-150200.56.1
SUSE Manager Proxy 4.3
ucode-intel-20250512-150200.56.1
SUSE Manager Server 4.3
ucode-intel-20250512-150200.56.1
openSUSE Leap 15.6
ucode-intel-20250512-150200.56.1

Описание

Exposure of Sensitive Information in Shared Microarchitectural Structures during Transient Execution for some Intel(R) Processors may allow an authenticated user to potentially enable information disclosure via local access.


Затронутые продукты
SUSE Enterprise Storage 7.1:ucode-intel-20250512-150200.56.1
SUSE Linux Enterprise High Performance Computing 15 SP3-LTSS:ucode-intel-20250512-150200.56.1
SUSE Linux Enterprise High Performance Computing 15 SP4-ESPOS:ucode-intel-20250512-150200.56.1
SUSE Linux Enterprise High Performance Computing 15 SP4-LTSS:ucode-intel-20250512-150200.56.1

Ссылки

Описание

Exposure of sensitive information caused by shared microarchitectural predictor state that influences transient execution for some Intel Atom(R) processors may allow an authenticated user to potentially enable information disclosure via local access.


Затронутые продукты
SUSE Enterprise Storage 7.1:ucode-intel-20250512-150200.56.1
SUSE Linux Enterprise High Performance Computing 15 SP3-LTSS:ucode-intel-20250512-150200.56.1
SUSE Linux Enterprise High Performance Computing 15 SP4-ESPOS:ucode-intel-20250512-150200.56.1
SUSE Linux Enterprise High Performance Computing 15 SP4-LTSS:ucode-intel-20250512-150200.56.1

Ссылки

Описание

Exposure of sensitive information caused by shared microarchitectural predictor state that influences transient execution in the indirect branch predictors for some Intel(R) Processors may allow an authenticated user to potentially enable information disclosure via local access.


Затронутые продукты
SUSE Enterprise Storage 7.1:ucode-intel-20250512-150200.56.1
SUSE Linux Enterprise High Performance Computing 15 SP3-LTSS:ucode-intel-20250512-150200.56.1
SUSE Linux Enterprise High Performance Computing 15 SP4-ESPOS:ucode-intel-20250512-150200.56.1
SUSE Linux Enterprise High Performance Computing 15 SP4-LTSS:ucode-intel-20250512-150200.56.1

Ссылки

Описание

Incorrect behavior order for some Intel(R) Core(tm) Ultra Processors may allow an unauthenticated user to potentially enable information disclosure via physical access.


Затронутые продукты
SUSE Enterprise Storage 7.1:ucode-intel-20250512-150200.56.1
SUSE Linux Enterprise High Performance Computing 15 SP3-LTSS:ucode-intel-20250512-150200.56.1
SUSE Linux Enterprise High Performance Computing 15 SP4-ESPOS:ucode-intel-20250512-150200.56.1
SUSE Linux Enterprise High Performance Computing 15 SP4-LTSS:ucode-intel-20250512-150200.56.1

Ссылки

Описание

Uncaught exception in the core management mechanism for some Intel(R) Processors may allow an authenticated user to potentially enable denial of service via local access.


Затронутые продукты
SUSE Enterprise Storage 7.1:ucode-intel-20250512-150200.56.1
SUSE Linux Enterprise High Performance Computing 15 SP3-LTSS:ucode-intel-20250512-150200.56.1
SUSE Linux Enterprise High Performance Computing 15 SP4-ESPOS:ucode-intel-20250512-150200.56.1
SUSE Linux Enterprise High Performance Computing 15 SP4-LTSS:ucode-intel-20250512-150200.56.1

Ссылки

Описание

Insufficient resource pool in the core management mechanism for some Intel(R) Processors may allow an authenticated user to potentially enable denial of service via local access.


Затронутые продукты
SUSE Enterprise Storage 7.1:ucode-intel-20250512-150200.56.1
SUSE Linux Enterprise High Performance Computing 15 SP3-LTSS:ucode-intel-20250512-150200.56.1
SUSE Linux Enterprise High Performance Computing 15 SP4-ESPOS:ucode-intel-20250512-150200.56.1
SUSE Linux Enterprise High Performance Computing 15 SP4-LTSS:ucode-intel-20250512-150200.56.1

Ссылки

Описание

Exposure of sensitive information caused by shared microarchitectural predictor state that influences transient execution for some Intel(R) Core(tm) processors (10th Generation) may allow an authenticated user to potentially enable information disclosure via local access.


Затронутые продукты
SUSE Enterprise Storage 7.1:ucode-intel-20250512-150200.56.1
SUSE Linux Enterprise High Performance Computing 15 SP3-LTSS:ucode-intel-20250512-150200.56.1
SUSE Linux Enterprise High Performance Computing 15 SP4-ESPOS:ucode-intel-20250512-150200.56.1
SUSE Linux Enterprise High Performance Computing 15 SP4-LTSS:ucode-intel-20250512-150200.56.1

Ссылки

Описание

Incorrect initialization of resource in the branch prediction unit for some Intel(R) Core(tm) Ultra Processors may allow an authenticated user to potentially enable information disclosure via local access.


Затронутые продукты
SUSE Enterprise Storage 7.1:ucode-intel-20250512-150200.56.1
SUSE Linux Enterprise High Performance Computing 15 SP3-LTSS:ucode-intel-20250512-150200.56.1
SUSE Linux Enterprise High Performance Computing 15 SP4-ESPOS:ucode-intel-20250512-150200.56.1
SUSE Linux Enterprise High Performance Computing 15 SP4-LTSS:ucode-intel-20250512-150200.56.1

Ссылки
Уязвимость SUSE-SU-2025:01651-1