RHSA-2021:3364: Important: microcode_ctl security, bug fix and enhancement update
The microcodectl packages provide microcode updates for Intel.Security Fix(es): hw: Vector Register Data Sampling (CVE-2020-0548) hw: L1D Cache Eviction Sampling (CVE-2020-0549) hw: Special Register Buffer Data Sampling (SRBDS) (CVE-2020-0543) hw: Information disclosure issue in Intel SGX via RAPL interface (CVE-2020-8695) hw: Vector Register Leakage-Active (CVE-2020-8696) hw: Fast forward store predictor (CVE-2020-8698) hw: vt-d related privilege escalation (CVE-2020-24489) hw: improper isolation of shared resources in some Intel Processors (CVE-2020-24511) hw: observable timing discrepancy in some Intel Processors (CVE-2020-24512)For more details about the security issue(s), including the impact, a CVSSscore, acknowledgments, and other related information, refer to the CVEpage(s) listed in the References section.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of RHSA-2021:3364?
The severity of RHSA-2021:3364 is considered critical due to the potential for exploitation of multiple vulnerabilities affecting Intel microcode.
How do I fix RHSA-2021:3364?
To fix RHSA-2021:3364, update the microcode_ctl package to the latest version available for your system.
What vulnerabilities are addressed in RHSA-2021:3364?
RHSA-2021:3364 addresses vulnerabilities including CVE-2020-0548, CVE-2020-0549, and CVE-2020-0543.
Which systems are affected by RHSA-2021:3364?
Systems running vulnerable versions of Intel microcode are affected by RHSA-2021:3364.
Is a reboot required after applying the RHSA-2021:3364 update?
Yes, a reboot is typically required to ensure that the new microcode updates take effect after applying the RHSA-2021:3364 update.