kernel-5.14.0-570.62.1.el9_6
エラータID: AXSA:2025-11101:89
The kernel packages contain the Linux kernel, the core of any Linux operating system.
Security Fix(es):
* kernel: information leak via transient execution vulnerability in some AMD processors (CVE-2024-36350)
* kernel: transient execution vulnerability in some AMD processors (CVE-2024-36357)
* kernel: x86/vmscape: Add conditional IBPB mitigation (CVE-2025-40300)
For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
CVE-2024-36350
A transient execution vulnerability in some AMD processors may allow an attacker to infer data from previous stores, potentially resulting in the leakage of privileged information.
CVE-2024-36357
A transient execution vulnerability in some AMD processors may allow an attacker to infer data in the L1D cache, potentially resulting in the leakage of sensitive information across privileged boundaries.
CVE-2025-40300
In the Linux kernel, the following vulnerability has been resolved: x86/vmscape: Add conditional IBPB mitigation VMSCAPE is a vulnerability that exploits insufficient branch predictor isolation between a guest and a userspace hypervisor (like QEMU). Existing mitigations already protect kernel/KVM from a malicious guest. Userspace can additionally be protected by flushing the branch predictors after a VMexit. Since it is the userspace that consumes the poisoned branch predictors, conditionally issue an IBPB after a VMexit and before returning to userspace. Workloads that frequently switch between hypervisor and userspace will incur the most overhead from the new IBPB. This new IBPB is not integrated with the existing IBPB sites. For instance, a task can use the existing speculation control prctl() to get an IBPB at context switch time. With this implementation, the IBPB is doubled up: one at context switch and another before running userspace. The intent is to integrate and optimize these cases post-embargo. [ dhansen: elaborate on suboptimal IBPB solution ]
Update packages.
A transient execution vulnerability in some AMD processors may allow an attacker to infer data from previous stores, potentially resulting in the leakage of privileged information.
A transient execution vulnerability in some AMD processors may allow an attacker to infer data in the L1D cache, potentially resulting in the leakage of sensitive information across privileged boundaries.
In the Linux kernel, the following vulnerability has been resolved: x86/vmscape: Add conditional IBPB mitigation VMSCAPE is a vulnerability that exploits insufficient branch predictor isolation between a guest and a userspace hypervisor (like QEMU). Existing mitigations already protect kernel/KVM from a malicious guest. Userspace can additionally be protected by flushing the branch predictors after a VMexit. Since it is the userspace that consumes the poisoned branch predictors, conditionally issue an IBPB after a VMexit and before returning to userspace. Workloads that frequently switch between hypervisor and userspace will incur the most overhead from the new IBPB. This new IBPB is not integrated with the existing IBPB sites. For instance, a task can use the existing speculation control prctl() to get an IBPB at context switch time. With this implementation, the IBPB is doubled up: one at context switch and another before running userspace. The intent is to integrate and optimize these cases post-embargo. [ dhansen: elaborate on suboptimal IBPB solution ]
N/A
SRPMS
- kernel-5.14.0-570.62.1.el9_6.src.rpm
MD5: 34bde3eff00f0ef29ea731a609f13722
SHA-256: 8a46ad52f18455a82c523964aa93e1345f8b9f1bce3d88c26631ad232bff5a52
Size: 142.63 MB
Asianux Server 9 for x86_64
- kernel-5.14.0-570.62.1.el9_6.x86_64.rpm
MD5: 3f206c678fff127112577e5e8b42c356
SHA-256: 70b29ae5aebe5a09692bd85bb796cc25ca464b431048f7b22f4b8d421076422a
Size: 1.83 MB - kernel-abi-stablelists-5.14.0-570.62.1.el9_6.noarch.rpm
MD5: d1fffeb1250dbca667b5db0d4363ea55
SHA-256: 61123b5ff16b5f28967d04654cbfea7ded7fefa5a4cbf6d706da13248419119b
Size: 1.85 MB - kernel-core-5.14.0-570.62.1.el9_6.x86_64.rpm
MD5: 5a347b8ac756ca8cbdb287f47701bc07
SHA-256: b4f24481174b25d350e84ad173f6ea89e037bd5ab11d34aace0a75098a9f0c99
Size: 17.91 MB - kernel-cross-headers-5.14.0-570.62.1.el9_6.x86_64.rpm
MD5: 8d93b186302fa96ad64f09c23a7787a0
SHA-256: 910a0bad480479a65b99fd28f6dc34753a4925f92c4fd0131d599a2e724b56e7
Size: 8.69 MB - kernel-debug-5.14.0-570.62.1.el9_6.x86_64.rpm
MD5: e45ddefa41e9fa3f8b1e9e8878a5f9b2
SHA-256: 5126bbaaacaf924d2ed00460daa5fea0de9de4aeb843825ca68a0eb503466396
Size: 1.83 MB - kernel-debug-core-5.14.0-570.62.1.el9_6.x86_64.rpm
MD5: 2954fefa60ef99a5f0a5b199eeecc2cc
SHA-256: 5c800337ea96b77b3797cba5970454aff055ee8e3fbf319a4facd13472de2b96
Size: 31.35 MB - kernel-debug-devel-5.14.0-570.62.1.el9_6.x86_64.rpm
MD5: e6b95afc01d209a0bcb09575bc3bbf8f
SHA-256: 3b48afeecb1c9179671462d17503c9663a6aed976a977715478a643a016b78be
Size: 21.83 MB - kernel-debug-devel-matched-5.14.0-570.62.1.el9_6.x86_64.rpm
MD5: 0613f29531b1fd6e7bb5ef85ef0b6cd2
SHA-256: d1cc31659527f2b0f4b2d2cb0819880a18917ea91421e1d3070aa474200a07d3
Size: 1.83 MB - kernel-debug-modules-5.14.0-570.62.1.el9_6.x86_64.rpm
MD5: 711a8d332c11c9602d33e0fafb00c6de
SHA-256: afe7fce41d1f7bbda8f94f7890180f92f961b1632e688f64e53ba76143dacef3
Size: 67.60 MB - kernel-debug-modules-core-5.14.0-570.62.1.el9_6.x86_64.rpm
MD5: 49e8723bc6e08b69f7cbd03d6fb1ed01
SHA-256: a7dab80233b97a1e942543b8d03387e1fd260e47d7dae71f5041f1b82c97a4a2
Size: 48.97 MB - kernel-debug-modules-extra-5.14.0-570.62.1.el9_6.x86_64.rpm
MD5: 59227db57d30f1f1f43bcbc176c76299
SHA-256: 67d002e497e85b4975f2b733d8edd440eb7351273095d7b0603f8ea072821921
Size: 2.60 MB - kernel-debug-uki-virt-5.14.0-570.62.1.el9_6.x86_64.rpm
MD5: 773681ed6883765d4d58c3b67a5c9bef
SHA-256: 0d6aba880c11791674e85b89e05291c1705207df36aa5079ec05bde9e2d80855
Size: 84.53 MB - kernel-devel-5.14.0-570.62.1.el9_6.x86_64.rpm
MD5: dab099d8c0b6ea975961d637e74575d8
SHA-256: 91b3993a18de1a58910440f976229fc95825f0ab1e6ff5a7fa08aef4f32e7201
Size: 21.66 MB - kernel-devel-matched-5.14.0-570.62.1.el9_6.x86_64.rpm
MD5: bb0557c7310d927bc96b2851e6da7b29
SHA-256: 6ccde6de4e568b0cb2a2fb90d8186cc6909c1800f955acb110215b63a100f20a
Size: 1.83 MB - kernel-doc-5.14.0-570.62.1.el9_6.noarch.rpm
MD5: 7504204bf0f52ee88a6f93dbe9c29f04
SHA-256: 6adf2f2044567fff0ad527296492bb6f03b4260ff9282440c43857712aa4afef
Size: 38.03 MB - kernel-headers-5.14.0-570.62.1.el9_6.x86_64.rpm
MD5: 929a1d5535f13c19f1c48d81f5d2b196
SHA-256: 550f56539b5c8dd69c02d2e9f6a4b063044caabb183b431574147e23cccb90c6
Size: 3.57 MB - kernel-modules-5.14.0-570.62.1.el9_6.x86_64.rpm
MD5: cf26106d7158d949e53c698d6ee9128d
SHA-256: 2c31399f222d62831e5f51bba7ee6cd19d0f8a7d9d734900dcbccc214959be30
Size: 39.06 MB - kernel-modules-core-5.14.0-570.62.1.el9_6.x86_64.rpm
MD5: 6d3cbab9e6ad573a70494b5eef14c216
SHA-256: dcd4f872b0f54b10b83b36c70ac1d84e6245ef30a2d573c75fd6780b3a2f996e
Size: 30.93 MB - kernel-modules-extra-5.14.0-570.62.1.el9_6.x86_64.rpm
MD5: a7f9041c9fced720c43e83aba736fdfa
SHA-256: 54ad6aef7d77aae4458184ace7d1c824b8dc8a738cb230f3738546adc58e1f4f
Size: 2.25 MB - kernel-rt-5.14.0-570.62.1.el9_6.x86_64.rpm
MD5: cbcc5b464680b81c27dba64544350e9a
SHA-256: a61296bc77e3520e35b7581508f1c81c841afebedf0f237d1a869be012c552d4
Size: 1.83 MB - kernel-rt-core-5.14.0-570.62.1.el9_6.x86_64.rpm
MD5: f5955fcd93c13773808da06b9cfc2fcf
SHA-256: dba1a7d3d2fefe1df0390bd64e1b66fab4ff6af8e3c1990ac874038250e0e8d2
Size: 17.80 MB - kernel-rt-debug-5.14.0-570.62.1.el9_6.x86_64.rpm
MD5: 0b27cac7dae5d855b6e50b69cfb46287
SHA-256: 8e1459c6a7db954309bdd473a16bbdd3456445e61d27b70363e38b5fe6d8586c
Size: 1.83 MB - kernel-rt-debug-core-5.14.0-570.62.1.el9_6.x86_64.rpm
MD5: 5be561b2c8897dce43c512f0000108d1
SHA-256: 99135568d4b9848c0e05524346619c68ffe7b1603c8ff9f99ddfb8c15ea90b1d
Size: 19.21 MB - kernel-rt-debug-devel-5.14.0-570.62.1.el9_6.x86_64.rpm
MD5: 7518ac4a0077a4cd7d9f4c4e13c51e43
SHA-256: 4933bc28acd75039a669b8e244f24dd6b422c7aea1b1d570eb9247aaef2ca3d4
Size: 21.79 MB - kernel-rt-debug-modules-5.14.0-570.62.1.el9_6.x86_64.rpm
MD5: 5f6bcccd5838702e743e9e25d9ba240a
SHA-256: b14db58e6a5372ec5ea328e12fb170f46390a92322a4eb054cf7d3fb20037bb3
Size: 40.46 MB - kernel-rt-debug-modules-core-5.14.0-570.62.1.el9_6.x86_64.rpm
MD5: 08482fafe3089fe102676a7aeabb827f
SHA-256: 17e81145fdf2efa00f73c7b4e06bc22a6b3e8a5087305a63b169e4599eb4b277
Size: 31.37 MB - kernel-rt-debug-modules-extra-5.14.0-570.62.1.el9_6.x86_64.rpm
MD5: 252a0b54180deaa256130114bb55b56a
SHA-256: bfbca48f6e6159e08c295f51fe9690c226770d3ee51b12913dcb395f099a1e6f
Size: 2.28 MB - kernel-rt-devel-5.14.0-570.62.1.el9_6.x86_64.rpm
MD5: 51c37f98cabfee7d723101c0bd2224e3
SHA-256: 678e678015a8968c1fb046ec7c61cb8a92e1bf351e882d41effd81f320e36a1f
Size: 21.64 MB - kernel-rt-modules-5.14.0-570.62.1.el9_6.x86_64.rpm
MD5: 2d5f50549dccf210a2e2d3faa4c9eed7
SHA-256: 271b895e9dc2132a01f892f8c7d5e0b37ac1a3cadb030b5a4958943ea7d74a55
Size: 39.06 MB - kernel-rt-modules-core-5.14.0-570.62.1.el9_6.x86_64.rpm
MD5: b83d21ba6cf7fadc05f32246c88a91b3
SHA-256: 8808ab086dec718ec7eb1548b7c5309469eba99e381666633fed201dd3f41794
Size: 30.30 MB - kernel-rt-modules-extra-5.14.0-570.62.1.el9_6.x86_64.rpm
MD5: c90efbc8c034b1a6a2237318791b0e2b
SHA-256: 4ccf0976f05b375a71c7009c1b55b45ff00ddb1252da8761825f3bfdff4cbb3b
Size: 2.25 MB - kernel-tools-5.14.0-570.62.1.el9_6.x86_64.rpm
MD5: 9d9f881187ce110653b9d524cf81a911
SHA-256: 3a9d826a1278474cfd771b56823159388e943f0aad8b1b63da03764a1221300a
Size: 2.11 MB - kernel-tools-libs-5.14.0-570.62.1.el9_6.x86_64.rpm
MD5: 8117a5890e978e693c77fe4b87825ee2
SHA-256: 06e11fb4c156a118eb9d6da8d85e5504619f4258afc8b2f6a52dec6df49e73be
Size: 1.84 MB - kernel-tools-libs-devel-5.14.0-570.62.1.el9_6.x86_64.rpm
MD5: 45f26121a7651c05bb69bb9ebdc21f0b
SHA-256: f326d4ee0a73013e52335411a082dacabf981f05f6269ed1839e528498b8f732
Size: 1.83 MB - kernel-uki-virt-5.14.0-570.62.1.el9_6.x86_64.rpm
MD5: 802539b52b48549974415054e3344dd0
SHA-256: 1911332e306124dea467f079a33f5d2cfa5ca4fbd666c9d389f5dc12d4d2921f
Size: 63.18 MB - kernel-uki-virt-addons-5.14.0-570.62.1.el9_6.x86_64.rpm
MD5: 5ad3a68e3787061bbd00ed7b2e4ea760
SHA-256: fc3b1ea60625641697a3fadcce177fd17ed33513b26278a6a4a5394763d46d7a
Size: 1.85 MB - libperf-5.14.0-570.62.1.el9_6.x86_64.rpm
MD5: dda7cbf66e51a2c58b82eda9b6d07937
SHA-256: 0c954d13871061139ea825e6f8a37f0a8ace1446e0202e012a13bdd859a2cb28
Size: 1.85 MB - perf-5.14.0-570.62.1.el9_6.x86_64.rpm
MD5: 1be1fc7a630a7b6fd4e74c594bac8703
SHA-256: ef21d719b31d78649508b8bb82fd4c9b48ca793b69eab533e6df00bae642bc86
Size: 4.06 MB - python3-perf-5.14.0-570.62.1.el9_6.x86_64.rpm
MD5: 4631ce5fb537fe0e4ee39a747faac939
SHA-256: 3c2c8f2cda322544e5fa873db1e226d7d1adf2f8b3f5b92c5d1761dbfbc7d259
Size: 3.23 MB - rtla-5.14.0-570.62.1.el9_6.x86_64.rpm
MD5: 833f046c4f8073586ddf7dfb446e2399
SHA-256: 1562d63963897ab4e18f8079c5035b527aedbbc904d6be182c529d573f1de6da
Size: 1.89 MB - rv-5.14.0-570.62.1.el9_6.x86_64.rpm
MD5: bac76075a793114f692ba252d6ba416b
SHA-256: 1b45993b63b00ab38f4f98bda7cb33446a52a902f0cfb92933cda45cc7df6db0
Size: 1.84 MB