First published: Tue Jun 08 2021(Updated: )
The microcode_ctl packages provide microcode updates for Intel.<br>Security Fix(es):<br><li> hw: vt-d related privilege escalation (CVE-2020-24489)</li> <li> hw: improper isolation of shared resources in some Intel Processors (CVE-2020-24511)</li> <li> hw: observable timing discrepancy in some Intel Processors (CVE-2020-24512)</li> <li> hw: information disclosure on some Intel Atom processors (CVE-2020-24513)</li> Bug Fix(es) and Enhancement(s):<br><li> Update Intel CPU microcode to microcode-20210525 release</li>
Affected Software | Affected Version | How to fix |
---|
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of RHSA-2021:2307 is critical due to the identified privilege escalation vulnerabilities.
To fix RHSA-2021:2307, update the microcode_ctl package to the latest version provided by your distribution.
RHSA-2021:2307 addresses CVE-2020-24489 and CVE-2020-24511, which relate to privilege escalation and improper isolation of shared resources.
Not all Intel processors are affected, but those specified in the advisory may be vulnerable to the identified issues.
The potential impact of RHSA-2021:2307 includes unauthorized access to system resources and privilege escalation attacks.