RHSA-2021:2307: Important: microcode_ctl security, bug fix and enhancement update
The microcodectl packages provide microcode updates for Intel.<br>Security Fix(es):<br><li> hw: vt-d related privilege escalation (CVE-2020-24489)</li> <li> hw: improper isolation of shared resources in some Intel Processors (CVE-2020-24511)</li> <li> hw: observable timing discrepancy in some Intel Processors (CVE-2020-24512)</li> <li> hw: information disclosure on some Intel Atom processors (CVE-2020-24513)</li> Bug Fix(es) and Enhancement(s):<br><li> Update Intel CPU microcode to microcode-20210525 release</li>
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of RHSA-2021:2307?
The severity of RHSA-2021:2307 is critical due to the identified privilege escalation vulnerabilities.
How do I fix RHSA-2021:2307?
To fix RHSA-2021:2307, update the microcode_ctl package to the latest version provided by your distribution.
What vulnerabilities are addressed in RHSA-2021:2307?
RHSA-2021:2307 addresses CVE-2020-24489 and CVE-2020-24511, which relate to privilege escalation and improper isolation of shared resources.
Are all Intel processors affected by RHSA-2021:2307?
Not all Intel processors are affected, but those specified in the advisory may be vulnerable to the identified issues.
What is the potential impact of RHSA-2021:2307?
The potential impact of RHSA-2021:2307 includes unauthorized access to system resources and privilege escalation attacks.