-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Mon, 31 Mar 2025 08:21:46 +0200 Source: amd64-microcode Architecture: source Version: 3.20250311.1~deb11u1 Distribution: bullseye-security Urgency: medium Maintainer: Henrique de Moraes Holschuh <hmh@debian.org> Changed-By: Tobias Frost <tobi@debian.org> Closes: 1095470 Changes: amd64-microcode (3.20250311.1~deb11u1) bullseye-security; urgency=medium . * Non-maintainer upload by the LTS team. * Rebuild for bullseye, reverting merged-usr and non-free-firmware changes. . amd64-microcode (3.20250311.1) unstable; urgency=medium . * Update package data from linux-firmware 20250311 * New AMD-SEV firmware from AMD upstream (20250221) * SECURITY UPDATE (AMD-SB-3019 / CVE-2024-56161): Update remote attestation to be compatible with AMD systems with up-to-date firmware (i.e. which fixes "EntrySign"), and update AMD-SEV for AMD-SB-3019 mitigations. Note that this AMD-SEV update DOES NOT FIX the microcode "EntrySign" vulnerability. (closes: #1095470) + Updated SEV firmware: Family 17h models 30h-3fh: version 0.24 build 20 Family 19h models 00h-0fh: version 1.55 build 29 Family 19h models 10h-1fh: version 1.55 build 39 Family 19h models a0h-afh: version 1.55 build 39 + New SEV firmware: Family 1ah models 00h-0fh: version 1.55 build 54 * New AMD microcode updates from AMD upstream (20241121) + Add patches for many (non-server) family 19h processors * Updated Microcode patches: + Family=0x17 Model=0xa0 Stepping=0x00: Patch=0x08a0000a * New Microcode patches: + Family=0x17 Model=0x60 Stepping=0x01: Patch=0x0860010d + Family=0x17 Model=0x68 Stepping=0x01: Patch=0x08608108 + Family=0x17 Model=0x71 Stepping=0x00: Patch=0x08701034 + Family=0x19 Model=0x08 Stepping=0x02: Patch=0x0a00820c + Family=0x19 Model=0x18 Stepping=0x01: Patch=0x0a108108 + Family=0x19 Model=0x21 Stepping=0x00: Patch=0x0a20102d + Family=0x19 Model=0x21 Stepping=0x02: Patch=0x0a201210 + Family=0x19 Model=0x44 Stepping=0x01: Patch=0x0a404107 + Family=0x19 Model=0x50 Stepping=0x00: Patch=0x0a500011 + Family=0x19 Model=0x61 Stepping=0x02: Patch=0x0a601209 + Family=0x19 Model=0x74 Stepping=0x01: Patch=0x0a704107 + Family=0x19 Model=0x75 Stepping=0x02: Patch=0x0a705206 + Family=0x19 Model=0x78 Stepping=0x00: Patch=0x0a708007 + Family=0x19 Model=0x7c Stepping=0x00: Patch=0x0a70c005 Checksums-Sha1: c3960dd75d3b93db952c8137719a5248210c6bd3 1718 amd64-microcode_3.20250311.1~deb11u1.dsc 3c8c8f63a7228057142179a4db74d686eb77107d 282928 amd64-microcode_3.20250311.1~deb11u1.tar.xz 6f335451ae903ffafacffd771709c7b2495374e4 6125 amd64-microcode_3.20250311.1~deb11u1_amd64.buildinfo Checksums-Sha256: 1ab3ea8e9a2ba56b76f11cbc68a99aa21ee36d1bec6fd5c9c4a362163e977acf 1718 amd64-microcode_3.20250311.1~deb11u1.dsc c89763b84228268246fd0c0d9b1daf6b3480d60909e9157d886e822bde7b8463 282928 amd64-microcode_3.20250311.1~deb11u1.tar.xz 0f7727c6364d6115830590c955339c841380c73badb32e00118b2c9966c42c69 6125 amd64-microcode_3.20250311.1~deb11u1_amd64.buildinfo Files: 6dcd28ede511994cc0dbd8b61c54f04a 1718 non-free/admin standard amd64-microcode_3.20250311.1~deb11u1.dsc 96f9f13ab1f685a29a646f6599672381 282928 non-free/admin standard amd64-microcode_3.20250311.1~deb11u1.tar.xz ed412fce8b149a05c7039df70140ca9a 6125 non-free/admin standard amd64-microcode_3.20250311.1~deb11u1_amd64.buildinfo -----BEGIN PGP SIGNATURE----- iQIzBAEBCgAdFiEE/d0M/zhkJ3YwohhskWT6HRe9XTYFAmfqNX8ACgkQkWT6HRe9 XTbkfBAAwma0AcAM+yd7gZt9nacv7AqXseZG1qKKa+tacXPZeHEf6E/8hyqsQJIw DgdSgnzKVbgX0NdaTsXiqvopKboitncFAGgVLTfv3gxCgtBm2Qo0uO/5IH5cFagH DY0HSF/cKSwbO5HCGFUnd+X4F2G9Ghh2ZQIh45lmLtDaCrVQ4AFNc7LCDifKB+qJ 1zWhuLGD8TwC036S2MUQdJcJ8D/W3wvNG+l6foM0mFAD9yjLSeAXMZtxOnCNuvCq aQW5ouSyM7AGPQVcwRzz4hX0QINdTKUx6G1h5nlOLV3u7PfOh/7mOtHvUxPVeGTd pJfHWp0yc2l5PBdBdW1qZ+mzYMhyjpwmmgBNHtYC36fJ93mNzSJUe2mCWLxWHqZw ySQ0QU+yVzFX9OKJES08gRmHX1EOFUYwSd9S8MoVBF05cPx4gfVZna+QOwf6kx5+ v3V+GPqs5tHr/b+ddFavfUAYXehEoQJnkdwuLvbBbpZoht5Xs9NiftNpzUCNRlzk SxSL8FRzh8bGuwcky+Y9sDWwffnnyrxFEy2Pr9hEfD6gta2VyUoVaznhhlR9qxoO DsURP5g3tO9nzoh85XOBdofk11Prt/fhjGc8PVbJNhK7t5BIJRSD/r3nWGUDX9CF bPxDbEq6aqQV4cFBfZJect5I0Z/JSjv56noiZuhXHjt0/n13E4U= =Wuz5 -----END PGP SIGNATURE-----