First published: Tue Jun 08 2021(Updated: )
The microcode_ctl packages provide microcode updates for Intel.<br>Security Fix(es):<br><li> hw: vt-d related privilege escalation (CVE-2020-24489)</li> <li> hw: improper isolation of shared resources in some Intel Processors (CVE-2020-24511)</li> <li> hw: observable timing discrepancy in some Intel Processors (CVE-2020-24512)</li> <li> hw: information disclosure on some Intel Atom processors (CVE-2020-24513)</li> Bug Fix(es) and Enhancement(s):<br><li> Update Intel CPU microcode to microcode-20210525 release</li>
Affected Software | Affected Version | How to fix |
---|
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of RHSA-2021:2308 is categorized as important.
To fix RHSA-2021:2308, update the microcode_ctl package to the latest version provided in the advisory.
RHSA-2021:2308 addresses vulnerabilities including CVE-2020-24489 and CVE-2020-24511, which are related to privilege escalation and improper isolation of shared resources.
Not all systems are affected; check the specific Intel processors listed in the advisory for vulnerabilities.
Yes, there is a risk of exploitation if the vulnerabilities in RHSA-2021:2308 are not mitigated effectively.