Oval Definition:oval:org.opensuse.security:def:60605
Revision Date:2020-12-01Version:1
Title:Security update for ucode-intel (Important)
Description:

This update for ucode-intel fixes the following issues:

This update contains the Intel QSR 2019.1 Microcode release (bsc#1111331)

Four new speculative execution information leak issues have been identified in Intel CPUs. (bsc#1111331)

- CVE-2018-12126: Microarchitectural Store Buffer Data Sampling (MSBDS) - CVE-2018-12127: Microarchitectural Fill Buffer Data Sampling (MFBDS) - CVE-2018-12130: Microarchitectural Load Port Data Samling (MLPDS) - CVE-2019-11091: Microarchitectural Data Sampling Uncacheable Memory (MDSUM)

These updates contain the CPU Microcode adjustments for the software mitigations.

For more information on this set of vulnerabilities, check out https://www.suse.com/support/kb/doc/?id=7023736

Release notes:

---- updated platforms ------------------------------------ SNB-E/EN/EP C1/M0 6-2d-6/6d 0000061d->0000061f Xeon E3/E5, Core X SNB-E/EN/EP C2/M1 6-2d-7/6d 00000714->00000718 Xeon E3/E5, Core X
Family:unixClass:patch
Status:Reference(s):1032089
1037008
1037009
1057514
1059100
1059134
1059139
1065237
1090336
1090671
1090849
1094448
1095603
1096985
1097847
1101366
1111331
1119183
1120943
1121816
1121821
1122208
1131709
1145559
1150011
1155321
1156318
1159329
1159819
1160770
1160968
1161719
1162972
1163809
1165528
1166844
1168669
1169658
1169746
1170908
1171924
1171978
1173022
1176012
1176072
1176382
1176409
1176412
1176896
1176931
CVE-2016-10209
CVE-2016-10349
CVE-2016-10350
CVE-2017-14166
CVE-2017-14501
CVE-2017-14502
CVE-2017-14503
CVE-2018-12099
CVE-2018-12126
CVE-2018-12127
CVE-2018-12130
CVE-2018-20030
CVE-2018-3817
CVE-2019-11091
CVE-2019-11500
CVE-2019-14822
CVE-2019-17006
CVE-2019-6109
CVE-2019-6111
CVE-2019-6446
CVE-2019-8625
CVE-2019-8710
CVE-2019-8720
CVE-2019-8743
CVE-2019-8764
CVE-2019-8766
CVE-2019-8769
CVE-2019-8771
CVE-2019-8782
CVE-2019-8783
CVE-2019-8808
CVE-2019-8811
CVE-2019-8812
CVE-2019-8813
CVE-2019-8814
CVE-2019-8815
CVE-2019-8816
CVE-2019-8819
CVE-2019-8820
CVE-2019-8823
CVE-2019-8835
CVE-2019-8844
CVE-2019-8846
CVE-2019-9278
CVE-2020-0429
CVE-2020-0431
CVE-2020-10018
CVE-2020-10531
CVE-2020-11793
CVE-2020-12399
CVE-2020-12402
CVE-2020-14381
CVE-2020-14386
CVE-2020-14392
CVE-2020-14393
CVE-2020-25212
CVE-2020-2583
CVE-2020-2583
CVE-2020-2590
CVE-2020-2593
CVE-2020-2593
CVE-2020-2601
CVE-2020-2604
CVE-2020-2604
CVE-2020-2654
CVE-2020-2659
CVE-2020-2659
CVE-2020-3862
CVE-2020-3864
CVE-2020-3865
CVE-2020-3867
CVE-2020-3868
SUSE-SU-2018:2317-1
SUSE-SU-2018:3640-1
SUSE-SU-2019:0419-1
SUSE-SU-2019:1524-1
SUSE-SU-2019:1954-1
SUSE-SU-2019:2389-1
SUSE-SU-2020:0261-1
SUSE-SU-2020:1135-1
SUSE-SU-2020:1180-1
SUSE-SU-2020:1839-1
SUSE-SU-2020:3343-1
Platform(s):openSUSE Leap 15.0
openSUSE Leap 15.1
SUSE Linux Enterprise Server 12 SP3
SUSE Linux Enterprise Server 12 SP3-ESPOS
SUSE Linux Enterprise Server 12 SP3-LTSS
SUSE Linux Enterprise Server 12 SP3-TERADATA
SUSE OpenStack Cloud 8
SUSE OpenStack Cloud 9
SUSE OpenStack Cloud Crowbar 8
SUSE OpenStack Cloud Crowbar 9
Product(s):
Definition Synopsis
  • openSUSE Leap 15.0 is installed
  • AND Package Information
  • libopenssl-1_0_0-devel-1.0.2n-lp150.2.3 is installed
  • OR libopenssl-1_0_0-devel-32bit-1.0.2n-lp150.2.3 is installed
  • OR libopenssl1_0_0-1.0.2n-lp150.2.3 is installed
  • OR libopenssl1_0_0-32bit-1.0.2n-lp150.2.3 is installed
  • OR libopenssl1_0_0-hmac-1.0.2n-lp150.2.3 is installed
  • OR libopenssl1_0_0-hmac-32bit-1.0.2n-lp150.2.3 is installed
  • OR libopenssl1_0_0-steam-1.0.2n-lp150.2.3 is installed
  • OR libopenssl1_0_0-steam-32bit-1.0.2n-lp150.2.3 is installed
  • OR openssl-1_0_0-1.0.2n-lp150.2.3 is installed
  • OR openssl-1_0_0-cavs-1.0.2n-lp150.2.3 is installed
  • OR openssl-1_0_0-doc-1.0.2n-lp150.2.3 is installed
  • Definition Synopsis
  • openSUSE Leap 15.1 is installed
  • AND Package Information
  • libvirt-5.1.0-lp151.7.3 is installed
  • OR libvirt-admin-5.1.0-lp151.7.3 is installed
  • OR libvirt-bash-completion-5.1.0-lp151.7.3 is installed
  • OR libvirt-client-5.1.0-lp151.7.3 is installed
  • OR libvirt-daemon-5.1.0-lp151.7.3 is installed
  • OR libvirt-daemon-config-network-5.1.0-lp151.7.3 is installed
  • OR libvirt-daemon-config-nwfilter-5.1.0-lp151.7.3 is installed
  • OR libvirt-daemon-driver-interface-5.1.0-lp151.7.3 is installed
  • OR libvirt-daemon-driver-libxl-5.1.0-lp151.7.3 is installed
  • OR libvirt-daemon-driver-lxc-5.1.0-lp151.7.3 is installed
  • OR libvirt-daemon-driver-network-5.1.0-lp151.7.3 is installed
  • OR libvirt-daemon-driver-nodedev-5.1.0-lp151.7.3 is installed
  • OR libvirt-daemon-driver-nwfilter-5.1.0-lp151.7.3 is installed
  • OR libvirt-daemon-driver-qemu-5.1.0-lp151.7.3 is installed
  • OR libvirt-daemon-driver-secret-5.1.0-lp151.7.3 is installed
  • OR libvirt-daemon-driver-storage-5.1.0-lp151.7.3 is installed
  • OR libvirt-daemon-driver-storage-core-5.1.0-lp151.7.3 is installed
  • OR libvirt-daemon-driver-storage-disk-5.1.0-lp151.7.3 is installed
  • OR libvirt-daemon-driver-storage-gluster-5.1.0-lp151.7.3 is installed
  • OR libvirt-daemon-driver-storage-iscsi-5.1.0-lp151.7.3 is installed
  • OR libvirt-daemon-driver-storage-logical-5.1.0-lp151.7.3 is installed
  • OR libvirt-daemon-driver-storage-mpath-5.1.0-lp151.7.3 is installed
  • OR libvirt-daemon-driver-storage-rbd-5.1.0-lp151.7.3 is installed
  • OR libvirt-daemon-driver-storage-scsi-5.1.0-lp151.7.3 is installed
  • OR libvirt-daemon-hooks-5.1.0-lp151.7.3 is installed
  • OR libvirt-daemon-lxc-5.1.0-lp151.7.3 is installed
  • OR libvirt-daemon-qemu-5.1.0-lp151.7.3 is installed
  • OR libvirt-daemon-xen-5.1.0-lp151.7.3 is installed
  • OR libvirt-devel-5.1.0-lp151.7.3 is installed
  • OR libvirt-devel-32bit-5.1.0-lp151.7.3 is installed
  • OR libvirt-doc-5.1.0-lp151.7.3 is installed
  • OR libvirt-libs-5.1.0-lp151.7.3 is installed
  • OR libvirt-lock-sanlock-5.1.0-lp151.7.3 is installed
  • OR libvirt-nss-5.1.0-lp151.7.3 is installed
  • OR wireshark-plugin-libvirt-5.1.0-lp151.7.3 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3 is installed
  • AND Package Information
  • libarchive-3.1.2-26.3 is installed
  • OR libarchive13-3.1.2-26.3 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3-ESPOS is installed
  • AND Package Information
  • dovecot22-2.2.31-19.17 is installed
  • OR dovecot22-backend-mysql-2.2.31-19.17 is installed
  • OR dovecot22-backend-pgsql-2.2.31-19.17 is installed
  • OR dovecot22-backend-sqlite-2.2.31-19.17 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3-LTSS is installed
  • AND Package Information
  • kgraft-patch-4_4_180-94_127-default-3-2 is installed
  • OR kgraft-patch-SLE12-SP3_Update_34-3-2 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3-TERADATA is installed
  • AND Package Information
  • jakarta-commons-fileupload-1.1.1-122.3 is installed
  • OR jakarta-commons-fileupload-javadoc-1.1.1-122.3 is installed
  • Definition Synopsis
  • SUSE OpenStack Cloud 8 is installed
  • AND ucode-intel-20190618-13.47 is installed
  • Definition Synopsis
  • SUSE OpenStack Cloud 9 is installed
  • AND Package Information
  • libsolv-0.6.36-2.30 is installed
  • OR libsolv-devel-0.6.36-2.30 is installed
  • OR libsolv-tools-0.6.36-2.30 is installed
  • OR perl-solv-0.6.36-2.30 is installed
  • OR python-solv-0.6.36-2.30 is installed
  • Definition Synopsis
  • SUSE OpenStack Cloud Crowbar 8 is installed
  • AND Package Information
  • grafana-4.5.1-4.3 is installed
  • OR kafka-0.9.0.1-5.3 is installed
  • OR logstash-2.4.1-5.4 is installed
  • OR openstack-monasca-installer-20180622_15.06-3.6 is installed
  • Definition Synopsis
  • SUSE OpenStack Cloud Crowbar 9 is installed
  • AND Package Information
  • kernel-default-4.12.14-95.57 is installed
  • OR kernel-default-base-4.12.14-95.57 is installed
  • OR kernel-default-devel-4.12.14-95.57 is installed
  • OR kernel-devel-4.12.14-95.57 is installed
  • OR kernel-macros-4.12.14-95.57 is installed
  • OR kernel-source-4.12.14-95.57 is installed
  • OR kernel-syms-4.12.14-95.57 is installed
  • BACK