-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Thu, 14 Nov 2024 15:37:40 -0300 Source: intel-microcode Architecture: source Version: 3.20241112.1 Distribution: unstable Urgency: medium Maintainer: Henrique de Moraes Holschuh <hmh@debian.org> Changed-By: Henrique de Moraes Holschuh <hmh@debian.org> Closes: 1086483 Changes: intel-microcode (3.20241112.1) unstable; urgency=medium . * New upstream microcode datafile 20241112 (closes: #1086483) - Mitigations for INTEL-SA-01101 (CVE-2024-21853) Improper Finite State Machines (FSMs) in the Hardware logic in some 4th and 5th Generation Intel Xeon Processors may allow an authorized user to potentially enable denial of service via local access. - Mitigations for INTEL-SA-01079 (CVE-2024-23918) Potential security vulnerabilities in some Intel Xeon processors using Intel SGX may allow escalation of privilege. Intel disclosed that some processor models were already fixed by a previous microcode update. - Updated mitigations for INTEL-SA-01097 (CVE-2024-24968) Improper finite state machines (FSMs) in hardware logic in some Intel Processors may allow an privileged user to potentially enable a denial of service via local access. - Mitigations for INTEL-SA-01103 (CVE-2024-23984) A potential security vulnerability in the Running Average Power Limit (RAPL) interface for some Intel Processors may allow information disclosure. Added mitigations for more processor models. * Updated Microcodes: sig 0x000806f8, pf_mask 0x87, 2024-06-20, rev 0x2b000603, size 588800 sig 0x000806f7, pf_mask 0x87, 2024-06-20, rev 0x2b000603 sig 0x000806f6, pf_mask 0x87, 2024-06-20, rev 0x2b000603 sig 0x000806f5, pf_mask 0x87, 2024-06-20, rev 0x2b000603 sig 0x000806f4, pf_mask 0x87, 2024-06-20, rev 0x2b000603 sig 0x00090672, pf_mask 0x07, 2024-05-29, rev 0x0037, size 224256 sig 0x00090675, pf_mask 0x07, 2024-05-29, rev 0x0037 sig 0x000b06f2, pf_mask 0x07, 2024-05-29, rev 0x0037 sig 0x000b06f5, pf_mask 0x07, 2024-05-29, rev 0x0037 sig 0x000906a3, pf_mask 0x80, 2024-06-03, rev 0x0435, size 223232 sig 0x000906a4, pf_mask 0x80, 2024-06-03, rev 0x0435 sig 0x000a06a4, pf_mask 0xe6, 2024-08-02, rev 0x0020, size 138240 sig 0x000b06a2, pf_mask 0xe0, 2024-05-29, rev 0x4123, size 220160 sig 0x000b06a3, pf_mask 0xe0, 2024-05-29, rev 0x4123 sig 0x000b06a8, pf_mask 0xe0, 2024-05-29, rev 0x4123 sig 0x000c06f2, pf_mask 0x87, 2024-06-20, rev 0x21000283, size 560128 sig 0x000c06f1, pf_mask 0x87, 2024-06-20, rev 0x21000283 * source: update symlinks to reflect id of the latest release, 20241112 * Update changelog for 3.20240910.1 and 3.20240813.1 with new information: INTEL-SA-1103 was addressed by 3.20240813.1 for some processor models, and not by 3.20240910. INTEL-SA-1079 was addressed by 3.20240910.1 for some processor models. Checksums-Sha1: 539ed3f9688e7ceb409e16c874949e4ee17773ea 1876 intel-microcode_3.20241112.1.dsc ce3c52d9afa19744ee10148094f5c87e03427942 7784640 intel-microcode_3.20241112.1.tar.xz f4400db95d153f1bc24023340e1efe7ad7e2a985 6685 intel-microcode_3.20241112.1_amd64.buildinfo Checksums-Sha256: dc9e75bcca68f3971f655f155b7f68844e93b5a5bb0f2545757dab2e60a52cdf 1876 intel-microcode_3.20241112.1.dsc aeee844da5136ad8d9cd94661b8d6398a775780bf719f3ef28e9d9c9ee9fe819 7784640 intel-microcode_3.20241112.1.tar.xz 5a4f0955cb39c787b8888c68693a3e785c8eadeaea279a3d6371bff88650213f 6685 intel-microcode_3.20241112.1_amd64.buildinfo Files: e85f9a79537ad843fa5ccb13ca48bd37 1876 non-free-firmware/admin standard intel-microcode_3.20241112.1.dsc bcd2b146a871167674160268ca026e94 7784640 non-free-firmware/admin standard intel-microcode_3.20241112.1.tar.xz ffcceac974d52ca46a67724715d93f31 6685 non-free-firmware/admin standard intel-microcode_3.20241112.1_amd64.buildinfo -----BEGIN PGP SIGNATURE----- iQIzBAEBCgAdFiEEpvbMGUAhfu+gsYOwlOXoPKamj0cFAmc2XJoACgkQlOXoPKam j0ehXw/7Bwg6K6H88/4HufOxPnCqEbeZ07SzSMwgN67INyUrOL51cUwMGbkHEEJu 3RU75J6yl+M65brqLMUD2+XoGE1pFnbUF7w7qpzdyJpyi5Lvpf627GpLW2YyPsYg pBUcOpFOQDHURZclATBAgKGwcLSzYduhmkiykC+tSZk+5W4PdivVgKSd+287bxt5 mgPWn8PdCiOpscqvqvMoftK226lqWDIk4QyJwPgYCVYxuw0yoNmpIHPPHB8FC6Ij oYfiCfAUzSXKxcYaajWsjS8GhEfC2fAeEDTUqlgYYF16x77tVn1sGwD9Xo6HkbvX sRTTpRMHFLZzNJz42Q4sDlMoBDMmeralHttOp8yHiw+bG91iDcTHlWFZYdECLGJ5 viVL89lDUN15Z2enevcee+sCGWnEihBqjeiVzH2ZkYdSmuRhcwOH/1PXYTtF8RJn p0AzWRMAAAVZJh20vN6t68MiR/OO/yEtGHGR4AXCSgOAUCH6dtvPPD3LthamwNWw zELr0lYBtGvSONi3ZufspUpJSSP+6mCnzzT2l8kAewgNyW+ByX9lr1AwMbxodbVG 4Oruy/qVyGETw3KCMx+L6CTnK12aDF+oieYdaQugguA2dlQnfnBPh/VcWPPahnKh b5sycUiFLY2oHBvDJeH2vqNqOX84RBcBMyzzB5j+l/6jq2evhXw= =cw+a -----END PGP SIGNATURE-----