-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Wed, 21 Aug 2024 21:31:07 -0300 Source: amd64-microcode Architecture: source Version: 3.20240820.1 Distribution: unstable Urgency: high Maintainer: Henrique de Moraes Holschuh <hmh@debian.org> Changed-By: Henrique de Moraes Holschuh <hmh@debian.org> Changes: amd64-microcode (3.20240820.1) unstable; urgency=high . * Update package data from linux-firmware 20240820 * New AMD-SEV firmware from AMD upstream (20240820) + Updated SEV firmware: Family 17h models 30h-3fh: version 0.24 build 20 Family 19h models 00h-0fh: version 1.55 build 21 Family 19h models 10h-1fh: version 1.55 build 37 + New SEV firmware: Family 19h models a0h-afh: version 1.55 build 37 * SECURITY UPDATE (AMD-SB-3003): * Mitigates CVE-2023-20584: IOMMU improperly handles certain special address ranges with invalid device table entries (DTEs), which may allow an attacker with privileges and a compromised Hypervisor to induce DTE faults to bypass RMP checks in SEV-SNP, potentially leading to a loss of guest integrity. * Mitigates CVE-2023-31356: Incomplete system memory cleanup in SEV firmware could allow a privileged attacker to corrupt guest private memory, potentially resulting in a loss of data integrity. Checksums-Sha1: eb331515dcbcc1473f211a8c07890551cecbd652 1695 amd64-microcode_3.20240820.1.dsc c3b0b9e9f30139b6b6a0b413be3287bc5b1517b2 178428 amd64-microcode_3.20240820.1.tar.xz 81b09e1bdeee0060874f7408e278563db8770e82 6507 amd64-microcode_3.20240820.1_amd64.buildinfo Checksums-Sha256: 69e0c9fcaa0b2c42e6b3e6371e1d6badcc2bba07c1c7561b66fe9fcfa719b765 1695 amd64-microcode_3.20240820.1.dsc 0658d0f54a8371c82a0b4e0c55fa4df68bbfae36941dcbd4089850044a262eef 178428 amd64-microcode_3.20240820.1.tar.xz f1dd39e75b5375c29c41b6de6e45cedac7ff7164e16f7b3841e0d155901d979f 6507 amd64-microcode_3.20240820.1_amd64.buildinfo Files: 474bd0f90a9b6c974ada56052299199d 1695 non-free-firmware/admin standard amd64-microcode_3.20240820.1.dsc b4e6d5dc8257febf2041d4152a768583 178428 non-free-firmware/admin standard amd64-microcode_3.20240820.1.tar.xz 8ff42789acb84ecde49ef165d83811d1 6507 non-free-firmware/admin standard amd64-microcode_3.20240820.1_amd64.buildinfo -----BEGIN PGP SIGNATURE----- iQIzBAEBCgAdFiEEpvbMGUAhfu+gsYOwlOXoPKamj0cFAmbGiYEACgkQlOXoPKam j0cslA//WWSyRxeSGQay/c46xevnnmWsmqjyf9Xsu1zCJd5CVv/lTIyFrAtZ3OSS naXHSNSuzCEjaFf+Kup0OPKIr0YK8ekdHhfbEulPIDlq8lIxTfogP2pw5/Sshwuc wGq1M6+MuCpGm1qgDBh8efwYDBm7h45JA4mGKLD5WDt4n02p76iaB58xXRo0SWZJ S7qpdZJRS5Z6XeBs51Q9CK8DeyHk13v0BAnnHpQzFPY/7ufLUjK07pvcqBFrzlps 0zz7We+o5CDOuuYo51IWgjZq4RniYKGVxG6o1N9Z+AtbAzEpL2qyj0zxMTysC/DN v+5v/VellNkAEiYQ9uOZdo61zrOYFZm67AGkjrpJAd5QQp+8pE51hlja6l3CO2y+ S+T44B8auDyhYh+KoTX+I9zLTXYjTcTfjw/QZlSvM656zq2DRamujtHlRXPds0tq byxbHFimgzsompognQfP/f9Pi7JACJJzajK+Fbvb5P8cd98kc3Of25aujRPXiial 2LkC5hNDyl12to3H9IgZzw4Jnv6UlikPSmv7NNF6WahV0P5rs4acRUfi57PygTVT 47oJo2WdyMzXm+TJKBMwDwNZJj3YJx70VFDyDTKVdpnnIhtWxsy7yIz0olC/+EaG DeJzeTO7Ny1C9NO3VY4boAXm+aHW4crNqaV80pLVsAWHGrYtI3k= =b7MO -----END PGP SIGNATURE-----