RHSA-2021:2300: Important: microcode_ctl security, bug fix and enhancement update
The microcodectl packages provide microcode updates for Intel.<br>Security Fix(es):<br><li> hw: vt-d related privilege escalation (CVE-2020-24489)</li> <li> hw: improper isolation of shared resources in some Intel Processors (CVE-2020-24511)</li> <li> hw: observable timing discrepancy in some Intel Processors (CVE-2020-24512)</li> <li> hw: information disclosure on some Intel Atom processors (CVE-2020-24513)</li> Bug Fix(es) and Enhancement(s):<br><li> Update Intel CPU microcode to microcode-20210525 release</li>
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of RHSA-2021:2300?
The severity of RHSA-2021:2300 is classified as high due to privilege escalation vulnerabilities.
How do I fix RHSA-2021:2300?
To fix RHSA-2021:2300, update the microcode_ctl packages to the latest version provided by your Linux distribution.
What vulnerabilities are addressed in RHSA-2021:2300?
RHSA-2021:2300 addresses CVE-2020-24489 and CVE-2020-24511, which relate to privilege escalation and improper resource isolation.
What systems are affected by RHSA-2021:2300?
RHSA-2021:2300 affects systems running vulnerable Intel processors that use the microcode_ctl packages.
Should I apply the update for RHSA-2021:2300 immediately?
Yes, it is recommended to apply the update for RHSA-2021:2300 as soon as possible to mitigate security risks.