-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Wed, 13 Nov 2019 00:02:12 -0300 Binary: intel-microcode Source: intel-microcode Architecture: amd64 i386 source Version: 3.20191112.1~deb9u1 Distribution: stretch-security Urgency: high Maintainer: Henrique de Moraes Holschuh <hmh@debian.org> Changed-By: Henrique de Moraes Holschuh <hmh@debian.org> Description: intel-microcode - Processor microcode firmware for Intel CPUs Changes: intel-microcode (3.20191112.1~deb9u1) stretch-security; urgency=high . * Rebuild for stretch-security (no changes) * Refer to DSA-4565-1 for details. . intel-microcode (3.20191112.1) unstable; urgency=medium . * New upstream microcode datafile 20191112 + SECURITY UPDATE - Implements MDS mitigation (TSX TAA), INTEL-SA-00270, CVE-2019-11135 - Implements TA Indirect Sharing mitigation, and improves the MDS mitigation (VERW) - Fixes FIVR (Xeon Voltage Modulation) vulnerability, INTEL-SA-00271, CVE-2019-11139 - Fixes SGX vulnerabilities and errata (including CVE-2019-0117) + CRITICAL ERRATA FIXES - Fixes Jcc conditional jump macro-fusion erratum (Skylake+, except Ice Lake), causes a 0-3% typical perforance hit (can be as bad as 10%). But ensures the processor will actually jump where it should, so don't even *dream* of not applying this fix. - Fixes AVX SHUF* instruction implementation flaw erratum + Removed Microcodes: sig 0x000906ec, pf_mask 0x22, 2019-02-14, rev 0x00ae, size 98304 + New Microcodes: sig 0x000406d8, pf_mask 0x01, 2019-09-16, rev 0x012d, size 84992 sig 0x00050656, pf_mask 0xbf, 2019-09-05, rev 0x400002c, size 51200 sig 0x00060663, pf_mask 0x80, 2018-04-17, rev 0x002a, size 87040 sig 0x000706a8, pf_mask 0x01, 2019-08-29, rev 0x0016, size 74752 sig 0x000706e5, pf_mask 0x80, 2019-09-05, rev 0x0046, size 102400 sig 0x000a0660, pf_mask 0x80, 2019-08-27, rev 0x00c6, size 91136 + Updated Microcodes: sig 0x000406e3, pf_mask 0xc0, 2019-08-14, rev 0x00d4, size 101376 sig 0x00050654, pf_mask 0xb7, 2019-09-05, rev 0x2000065, size 34816 sig 0x00050657, pf_mask 0xbf, 2019-09-05, rev 0x500002c, size 51200 sig 0x000506e3, pf_mask 0x36, 2019-08-14, rev 0x00d4, size 101376 sig 0x000706a1, pf_mask 0x01, 2019-08-28, rev 0x0032, size 73728 sig 0x000806e9, pf_mask 0x10, 2019-08-14, rev 0x00c6, size 99328 sig 0x000806e9, pf_mask 0xc0, 2019-08-14, rev 0x00c6, size 100352 sig 0x000806ea, pf_mask 0xc0, 2019-08-14, rev 0x00c6, size 99328 sig 0x000806eb, pf_mask 0xd0, 2019-08-14, rev 0x00c6, size 100352 sig 0x000806ec, pf_mask 0x94, 2019-08-14, rev 0x00c6, size 100352 sig 0x000906e9, pf_mask 0x2a, 2019-08-14, rev 0x00c6, size 100352 sig 0x000906ea, pf_mask 0x22, 2019-08-14, rev 0x00c6, size 99328 sig 0x000906eb, pf_mask 0x02, 2019-08-14, rev 0x00c6, size 100352 sig 0x000906ed, pf_mask 0x22, 2019-08-14, rev 0x00c6, size 99328 + Updated Microcodes (previously removed): sig 0x00050653, pf_mask 0x97, 2019-09-09, rev 0x1000151, size 32768 . intel-microcode (3.20190918.1) unstable; urgency=medium . * New upstream microcode datafile 20190918 + SECURITY UPDATE *Might* contain mitigations for INTEL-SA-00247 (RAMBleed), given the set of processors being updated. + Updated Microcodes: sig 0x000306d4, pf_mask 0xc0, 2019-06-13, rev 0x002e, size 19456 sig 0x000306f4, pf_mask 0x80, 2019-06-17, rev 0x0016, size 18432 sig 0x00040671, pf_mask 0x22, 2019-06-13, rev 0x0021, size 14336 sig 0x000406f1, pf_mask 0xef, 2019-06-18, rev 0xb000038, size 30720 sig 0x00050654, pf_mask 0xb7, 2019-07-31, rev 0x2000064, size 33792 sig 0x00050657, pf_mask 0xbf, 2019-08-12, rev 0x500002b, size 51200 sig 0x00050662, pf_mask 0x10, 2019-06-17, rev 0x001c, size 32768 sig 0x00050663, pf_mask 0x10, 2019-06-17, rev 0x7000019, size 24576 sig 0x00050664, pf_mask 0x10, 2019-06-17, rev 0xf000017, size 24576 sig 0x00050665, pf_mask 0x10, 2019-06-17, rev 0xe00000f, size 19456 Checksums-Sha1: 679bcd6d596b464a61ab2accbdc6e49464734766 1817 intel-microcode_3.20191112.1~deb9u1.dsc 6c8092dbacfffa7ca15df657c12657d49fea036d 3002716 intel-microcode_3.20191112.1~deb9u1.tar.xz c7bb96a46618f1fddac081adc2574acb8c7eee9f 5962 intel-microcode_3.20191112.1~deb9u1_amd64.buildinfo abfed075baee1bfa6a6c4e2bec09fdc88d61cbaa 2326718 intel-microcode_3.20191112.1~deb9u1_amd64.deb ea8304fe2a6eb970de7c6ef7f53d68ff789408cd 4728 intel-microcode_3.20191112.1~deb9u1_i386.buildinfo 1bc45cbdc4694d4787593df797d7dd4554563c64 2466438 intel-microcode_3.20191112.1~deb9u1_i386.deb Checksums-Sha256: ccbe99f3c1798a4a959adb22468f1750fbe6ee4d65db450c02640dac835853ee 1817 intel-microcode_3.20191112.1~deb9u1.dsc 520c5b21a532840dbbd86315e93397913303cd7b5d8b362f5ac2f0e92919e546 3002716 intel-microcode_3.20191112.1~deb9u1.tar.xz f89d690753038349a70469a65a0e0649367b03e60b2b550d3c2d1d4e95398e9c 5962 intel-microcode_3.20191112.1~deb9u1_amd64.buildinfo dae6b6eaea01ce3963324cc6f500e9c764fc62edb692a551cf21a7d412379dd3 2326718 intel-microcode_3.20191112.1~deb9u1_amd64.deb 51f734e1f03ca60eb2263fcd817014aabd322052b427020d5dc8864455dcdaa4 4728 intel-microcode_3.20191112.1~deb9u1_i386.buildinfo 90bdf178f2b8e8057c1b3dca5b8a8dfc6bbaed5223292c9f108598573a72c4a8 2466438 intel-microcode_3.20191112.1~deb9u1_i386.deb Files: ee6fe023d718f507684dd82fd99c6ab6 1817 non-free/admin standard intel-microcode_3.20191112.1~deb9u1.dsc eb733660f8195fa44db80c95c98784f5 3002716 non-free/admin standard intel-microcode_3.20191112.1~deb9u1.tar.xz 1f688ddf517caf29792463712c0ca1cd 5962 non-free/admin standard intel-microcode_3.20191112.1~deb9u1_amd64.buildinfo 1932e2a48cc8d6d7b07c8d1b204bf495 2326718 non-free/admin standard intel-microcode_3.20191112.1~deb9u1_amd64.deb f6f9bcd050147f39cac861ab44cf0f37 4728 non-free/admin standard intel-microcode_3.20191112.1~deb9u1_i386.buildinfo 005656966f5753b1ef150c9ab01df466 2466438 non-free/admin standard intel-microcode_3.20191112.1~deb9u1_i386.deb -----BEGIN PGP SIGNATURE----- iQIzBAEBCgAdFiEEMr8sdJFqJgkTTH+qsZwaZk2P+bEFAl3Lg/4ACgkQsZwaZk2P +bG+hA//VJFNNxWSm22nhXoFdj+FTijL6ZFbhL6+VHXyAkzNbXJzXQI+n2BKzODm EleG3GFzCpupbXRnT3luh6AigT0HNxzh8q3Fp8o5cDJhvOd8oHxiDkyjRGKToiud 4M2Hsr0f11v5R6lbcdUNWL357fSQBEbjXR5/M4X8OXVSsuO5HH1It4q2IXabBBB/ CoUnzncyx7gyQPxE4OW/jOqUqUmSG7Qjo+JPmOkEvmKbTAnKL9lR1SEtev7LRG1/ ZQGEwNzdY9Ts4QvkLgmIslkEVnYidY2/ylr98o/1ly68UqoKeVBHz4m4czbiXdg9 xw06/toqU2BHzGEzFSeNRVhwl84lelUqf3nGmunwVC0l4CMPSUkwjdSy3JghksHP r/P17CsSNMpwANpLJ9Mh6Y0UOdCtqBdcoafsloMPsmrsxCkxKJoDdP/E2rMyeE5P s9UCDv+o0pDa/Qblnhv9w/Fe77FQPs42KX0wr8aA9vho8Y5Sr/BVfh1XLzRWtuHG Cjst8eXiSVy42VFoNYFesz675SqypYDkcn5SASCn71GR5re8yP2nNPiaL01VI8Og J6VTKyri69PkVdfyObGtmOxPFf/Ukaqo1P5MjagauwZBB0LHTlGxfxJEUDxfcJWI GheyaBDutVtm0vhmMPMl5EGtmkVD2hGTdv8/QPXxLx+gYFb5Ds4= =DPrC -----END PGP SIGNATURE-----