-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Sat, 24 Aug 2024 09:28:39 -0300 Source: amd64-microcode Architecture: source Version: 3.20240820.1~deb11u1 Distribution: bullseye Urgency: high Maintainer: Henrique de Moraes Holschuh <hmh@debian.org> Changed-By: Henrique de Moraes Holschuh <hmh@debian.org> Changes: amd64-microcode (3.20240820.1~deb11u1) bullseye; urgency=medium . * Rebuild for bullseye * Revert merged-usr changes from unstable * Revert move to non-free-firmware . amd64-microcode (3.20240820.1) unstable; urgency=high . * Update package data from linux-firmware 20240820 * New AMD-SEV firmware from AMD upstream (20240820) + Updated SEV firmware: Family 17h models 30h-3fh: version 0.24 build 20 Family 19h models 00h-0fh: version 1.55 build 21 Family 19h models 10h-1fh: version 1.55 build 37 + New SEV firmware: Family 19h models a0h-afh: version 1.55 build 37 * SECURITY UPDATE (AMD-SB-3003): * Mitigates CVE-2023-20584: IOMMU improperly handles certain special address ranges with invalid device table entries (DTEs), which may allow an attacker with privileges and a compromised Hypervisor to induce DTE faults to bypass RMP checks in SEV-SNP, potentially leading to a loss of guest integrity. * Mitigates CVE-2023-31356: Incomplete system memory cleanup in SEV firmware could allow a privileged attacker to corrupt guest private memory, potentially resulting in a loss of data integrity. Checksums-Sha1: 24996ea71afc583b4fdcb763781db0f26f25e9ae 1718 amd64-microcode_3.20240820.1~deb11u1.dsc 4a0cb83c43c0df2b5139b327229cf13413437f37 178452 amd64-microcode_3.20240820.1~deb11u1.tar.xz 720e074cba8bbb38003f86f3cde5d58c5ea78200 6066 amd64-microcode_3.20240820.1~deb11u1_amd64.buildinfo Checksums-Sha256: 83c3866b1385475c57902bb5f9a4e2767c0157735bcbf053657fe7920995f37b 1718 amd64-microcode_3.20240820.1~deb11u1.dsc 592b8b3c1345e7fc600027f1110a8be18ec5948a694fa1fd3757cc4b8d7a62e2 178452 amd64-microcode_3.20240820.1~deb11u1.tar.xz 0e82bd5c7c308dc4b049efe4361bc3c23d2b08a87a48a1864695082ad5c12631 6066 amd64-microcode_3.20240820.1~deb11u1_amd64.buildinfo Files: 702459b7face9c016d33f01c3067b94a 1718 non-free/admin standard amd64-microcode_3.20240820.1~deb11u1.dsc 84ad32dc6247cba517a5f63d41b447d6 178452 non-free/admin standard amd64-microcode_3.20240820.1~deb11u1.tar.xz 5ecd2e473b24939291569a9cea48e29b 6066 non-free/admin standard amd64-microcode_3.20240820.1~deb11u1_amd64.buildinfo -----BEGIN PGP SIGNATURE----- iQIzBAEBCgAdFiEEpvbMGUAhfu+gsYOwlOXoPKamj0cFAmbJ0zwACgkQlOXoPKam j0f0YBAAiNbHOqSeW8+cIoNdGfAobr0OV++Hb+Rp6TXBgEO9VFsp76yimmV7Rv4L 4CGV15lkkJVpL6dkf8kihGmbqBeUtDKNj2nyJM1fHA8eKdCI4KI9E4JadxkM1ALq W2p+3BFOjAx9D8qLaJRDdMt6XfAff2P8xSXxD6GJICDo7y+wVBOwn7n9iYXDlkj0 T3lIVJj2QOWKvyszgW4aUPQ6THE9dh5j59wjP2DrQRdhY7xN12qY4IlqqOuzbFuI zgi7ncxTkk11rbWXPxMBE/10ZqHB/RSrAMIlFfhrboSoHnF36ZW04PsPy+k3D643 kWInm/Drtzd0guixqnC9ZHPA0iA5hki+qhpxxCjoIOYIL3LQyF5wJ8EH07rM9y2t QsqvEV5MZlnQRdAWDk0DW+wmoGt3b+P8D+/MkTdnqaLTR145KbONxO4W+YHWe7Hl Q7GuK2T1sHptvxpsNfuZW4sZj0Tz3diwAhWH8mmQbvqdwStREG/MOC8k/lZurtXO bSRKsE+3nRsLjjZcP9w2ADSXQE2ewCzlC8UMrjQO/uFFPByGvBTIhgb8ZjTywGbY nx+FMZprihmwWRXBCBKJufxexS4B+C1usptVsuEMYZSKonKIEI717prTEgtuSYKL qKp6CEv5/f46+7s2XBlqWyQ5px1jqotzvY68JvaGG1kyvmfXgc0= =v66d -----END PGP SIGNATURE-----