RHSA-2021:3323: Important: microcode_ctl security, bug fix and enhancement update
The microcodectl packages provide microcode updates for Intel.Security Fix(es): hw: Vector Register Data Sampling (CVE-2020-0548) hw: L1D Cache Eviction Sampling (CVE-2020-0549) hw: Special Register Buffer Data Sampling (SRBDS) (CVE-2020-0543) hw: Information disclosure issue in Intel SGX via RAPL interface (CVE-2020-8695) hw: Vector Register Leakage-Active (CVE-2020-8696) hw: Fast forward store predictor (CVE-2020-8698) hw: vt-d related privilege escalation (CVE-2020-24489) hw: improper isolation of shared resources in some Intel Processors (CVE-2020-24511) hw: observable timing discrepancy in some Intel Processors (CVE-2020-24512) For more details about the security issue(s), including the impact, a CVSSscore, acknowledgments, and other related information, refer to the CVEpage(s) listed in the References section.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of RHSA-2021:3323?
The severity of RHSA-2021:3323 is classified as important due to the vulnerabilities it addresses.
How do I fix RHSA-2021:3323?
To fix RHSA-2021:3323, you should update the microcode_ctl package on your system to the latest version.
Which vulnerabilities are addressed in RHSA-2021:3323?
RHSA-2021:3323 addresses the vulnerabilities CVE-2020-0548, CVE-2020-0549, and CVE-2020-0543.
What are the potential impacts of not addressing RHSA-2021:3323?
Not addressing RHSA-2021:3323 may expose your system to risks of data sampling attacks affecting Intel processors.
Which software is affected by RHSA-2021:3323?
The RHSA-2021:3323 impacts systems using microcode updates for Intel processors through the microcode_ctl package.