RHSA-2021:2308: Important: microcode_ctl security, bug fix and enhancement update
The microcodectl packages provide microcode updates for Intel.<br>Security Fix(es):<br><li> hw: vt-d related privilege escalation (CVE-2020-24489)</li> <li> hw: improper isolation of shared resources in some Intel Processors (CVE-2020-24511)</li> <li> hw: observable timing discrepancy in some Intel Processors (CVE-2020-24512)</li> <li> hw: information disclosure on some Intel Atom processors (CVE-2020-24513)</li> Bug Fix(es) and Enhancement(s):<br><li> Update Intel CPU microcode to microcode-20210525 release</li>
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of RHSA-2021:2308?
The severity of RHSA-2021:2308 is categorized as important.
How do I fix RHSA-2021:2308?
To fix RHSA-2021:2308, update the microcode_ctl package to the latest version provided in the advisory.
What vulnerabilities are addressed in RHSA-2021:2308?
RHSA-2021:2308 addresses vulnerabilities including CVE-2020-24489 and CVE-2020-24511, which are related to privilege escalation and improper isolation of shared resources.
Are all systems affected by RHSA-2021:2308?
Not all systems are affected; check the specific Intel processors listed in the advisory for vulnerabilities.
Is there a risk of exploitation with RHSA-2021:2308?
Yes, there is a risk of exploitation if the vulnerabilities in RHSA-2021:2308 are not mitigated effectively.