Oval Definition:oval:org.opensuse.security:def:64847
Revision Date:2020-12-01Version:1
Title:Security update for ucode-intel (Important)
Description:

This update for ucode-intel fixes the following issues:

This update contains the Intel QSR 2019.1 Microcode release (bsc#1111331)

Four new speculative execution information leak issues have been identified in Intel CPUs. (bsc#1111331)

- CVE-2018-12126: Microarchitectural Store Buffer Data Sampling (MSBDS) - CVE-2018-12127: Microarchitectural Fill Buffer Data Sampling (MFBDS) - CVE-2018-12130: Microarchitectural Load Port Data Samling (MLPDS) - CVE-2019-11091: Microarchitectural Data Sampling Uncacheable Memory (MDSUM)

These updates contain the CPU Microcode adjustments for the software mitigations.

For more information on this set of vulnerabilities, check out https://www.suse.com/support/kb/doc/?id=7023736

Release notes:

---- updated platforms ------------------------------------ SNB-E/EN/EP C1/M0 6-2d-6/6d 0000061d->0000061f Xeon E3/E5, Core X SNB-E/EN/EP C2/M1 6-2d-7/6d 00000714->00000718 Xeon E3/E5, Core X

---- new platforms ---------------------------------------- VLV C0 6-37-8/02 00000838 Atom Z series VLV C0 6-37-8/0C 00000838 Celeron N2xxx, Pentium N35xx VLV D0 6-37-9/0F 0000090c Atom E38xx CHV C0 6-4c-3/01 00000368 Atom X series CHV D0 6-4c-4/01 00000411 Atom X series Readded what missing in last update: BDX-ML B0/M0/R0 6-4f-1/ef 0b00002e->00000036 Xeon E5/E7 v4; Core i7-69xx/68xx
Family:unixClass:patch
Status:Reference(s):1084631
1086186
1086227
1086228
1090519
1090840
1106878
1107592
1107594
1108404
1111331
1115758
1115774
1115795
1117665
1139073
1143436
1167976
1173538
1173986
1174420
1175193
1175194
1176756
CVE-2018-1000667
CVE-2018-10016
CVE-2018-10254
CVE-2018-10316
CVE-2018-12126
CVE-2018-12127
CVE-2018-12130
CVE-2018-12207
CVE-2018-16382
CVE-2018-16517
CVE-2018-16999
CVE-2018-19214
CVE-2018-19215
CVE-2018-19216
CVE-2018-8881
CVE-2018-8882
CVE-2018-8883
CVE-2019-11091
CVE-2019-11135
CVE-2019-3881
CVE-2020-14349
CVE-2020-14350
CVE-2020-15673
CVE-2020-15676
CVE-2020-15677
CVE-2020-15678
openSUSE-SU-2020:0803-1
openSUSE-SU-2020:0954-1
openSUSE-SU-2020:1244-1
openSUSE-SU-2020:1574-1
SUSE-SU-2019:1910-1
SUSE-SU-2019:3348-1
Platform(s):openSUSE Leap 15.1
openSUSE Leap 15.2
SUSE Linux Enterprise Module for Basesystem 15 SP1
Product(s):
Definition Synopsis
  • openSUSE Leap 15.1 is installed
  • AND Package Information
  • ruby2.5-rubygem-bundler-1.16.1-lp151.3.3 is installed
  • OR ruby2.5-rubygem-bundler-doc-1.16.1-lp151.3.3 is installed
  • OR rubygem-bundler-1.16.1-lp151.3.3 is installed
  • Definition Synopsis
  • openSUSE Leap 15.2 is installed
  • AND Package Information
  • libecpg6-12.4-lp152.3.7 is installed
  • OR libecpg6-32bit-12.4-lp152.3.7 is installed
  • OR libpq5-12.4-lp152.3.7 is installed
  • OR libpq5-32bit-12.4-lp152.3.7 is installed
  • OR postgresql12-12.4-lp152.3.7 is installed
  • OR postgresql12-contrib-12.4-lp152.3.7 is installed
  • OR postgresql12-devel-12.4-lp152.3.7 is installed
  • OR postgresql12-docs-12.4-lp152.3.7 is installed
  • OR postgresql12-llvmjit-12.4-lp152.3.7 is installed
  • OR postgresql12-plperl-12.4-lp152.3.7 is installed
  • OR postgresql12-plpython-12.4-lp152.3.7 is installed
  • OR postgresql12-pltcl-12.4-lp152.3.7 is installed
  • OR postgresql12-server-12.4-lp152.3.7 is installed
  • OR postgresql12-server-devel-12.4-lp152.3.7 is installed
  • OR postgresql12-test-12.4-lp152.3.7 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Module for Basesystem 15 SP1 is installed
  • AND ucode-intel-20190618-3.3 is installed
  • BACK