linux-firmware-20240905-143.3.el9_4
エラータID: AXSA:2024-8883:10
リリース日:
2024/10/07 Monday - 11:20
題名:
linux-firmware-20240905-143.3.el9_4
影響のあるチャネル:
MIRACLE LINUX 9 for x86_64
Severity:
Moderate
Description:
以下項目について対処しました。
[Security Fix]
- IOMMU のファームウェアには、無効なデバイステーブルエントリ
(DTE) を持つ一部の特殊なアドレスを正しく処理しないことに起因
して、SEV-SNP の RMP チェックを迂回できてしまう問題がある
ため、ローカルの攻撃者により、ゲスト OS 間の侵害を可能とする
脆弱性が存在します。(CVE-2023-20584)
- SEV のファームウェアには、システムメモリのクリーンアップ
処理の不備に起因したメモリ破壊の問題があるため、特権を持つ
ローカルの攻撃者により、データ破壊を可能とする脆弱性が存在
します。(CVE-2023-31356)
解決策:
パッケージをアップデートしてください。
CVE:
CVE-2023-20584
IOMMU improperly handles certain special address ranges with invalid device table entries (DTEs), which may allow an attacker with privileges and a compromised Hypervisor to induce DTE faults to bypass RMP checks in SEV-SNP, potentially leading to a loss of guest integrity.
IOMMU improperly handles certain special address ranges with invalid device table entries (DTEs), which may allow an attacker with privileges and a compromised Hypervisor to induce DTE faults to bypass RMP checks in SEV-SNP, potentially leading to a loss of guest integrity.
CVE-2023-31356
Incomplete system memory cleanup in SEV firmware could allow a privileged attacker to corrupt guest private memory, potentially resulting in a loss of data integrity.
Incomplete system memory cleanup in SEV firmware could allow a privileged attacker to corrupt guest private memory, potentially resulting in a loss of data integrity.
追加情報:
N/A
ダウンロード:
SRPMS
- linux-firmware-20240905-143.3.el9_4.src.rpm
MD5: 8708906e0e8d13acf86ab16da8b185a7
SHA-256: 4667cad48a63e7ee61041c091e298cbd9510112666978b88c286150dfa2c823c
Size: 355.53 MB
Asianux Server 9 for x86_64
- iwl1000-firmware-39.31.5.1-143.3.el9_4.noarch.rpm
MD5: 2c321cd97067dfcbe2a91c4937f0a463
SHA-256: 05c6eb3ddbaa865e20405338cdd5c913cfa8083b6abafc6b437e0144b7d2366f
Size: 181.54 kB - iwl100-firmware-39.31.5.1-143.3.el9_4.noarch.rpm
MD5: 1c9a8ea2c29c9a8208615c59ccfb1822
SHA-256: 21e0befa7a87532ebd5a76c8fed512247749fdfc91791c7802f84c7d01bc132a
Size: 181.25 kB - iwl105-firmware-18.168.6.1-143.3.el9_4.noarch.rpm
MD5: 363ab8297d6bc8e70eb5a82cb5c84013
SHA-256: 2658d53e71dad09bd97163fe0cf86df9741be52792b78a14c01d22ecd39813e8
Size: 260.15 kB - iwl135-firmware-18.168.6.1-143.3.el9_4.noarch.rpm
MD5: 381506788ec7e94e925985513fb8f882
SHA-256: f6b8922fbd35e6403b8e530be3d830b79ee36e3bb8726b8c0781d5d73e1a48d2
Size: 268.64 kB - iwl2000-firmware-18.168.6.1-143.3.el9_4.noarch.rpm
MD5: d5be919ce530a981c5c1681c96a4b4b6
SHA-256: 0470c15d67a1d84efd22fc62621ef388248e1742ce4b2e16f1dbd325f12a296a
Size: 262.53 kB - iwl2030-firmware-18.168.6.1-143.3.el9_4.noarch.rpm
MD5: b88c370e0b8bde598d0cea5e2be11cb7
SHA-256: 140edd646f3cf4f57fd04f1bbb34258940e1d75a5c6bf176c9ebbfc59c25c030
Size: 271.02 kB - iwl3160-firmware-25.30.13.0-143.3.el9_4.noarch.rpm
MD5: ec34ae88a81f3516b3c7bfefccd6a09b
SHA-256: 4769d612644a9938325132e19ad2048af8385c3470a0bdec0c98e7a65e04c50a
Size: 537.86 kB - iwl5000-firmware-8.83.5.1_1-143.3.el9_4.noarch.rpm
MD5: dda27bf8d36a03b86c902515783a255b
SHA-256: 9841db4951c042244a12147550f8f753cce2f68ea766158028a5512535156844
Size: 178.52 kB - iwl5150-firmware-8.24.2.2-143.3.el9_4.noarch.rpm
MD5: 61958c4991ef092f07d5fa5521361233
SHA-256: 789371445bf19ee5a9db409e7802eb32c79e22697e801d744834ed9c4c4b3369
Size: 177.97 kB - iwl6000g2a-firmware-18.168.6.1-143.3.el9_4.noarch.rpm
MD5: 7b4ddc36580e4d2a4742fe5742e2e020
SHA-256: 3eaaeda7ea97bf09ab327d32db2ab701f110c05112668d7b82c7a69e4903fb68
Size: 246.25 kB - iwl6000g2b-firmware-18.168.6.1-143.3.el9_4.noarch.rpm
MD5: 774b096fb1c6460e0ebcfcda663af587
SHA-256: 3d6b8de1e1ffd97c240ff0567735f91a66d3c6a94c71eb4bf827b98005380a6b
Size: 247.80 kB - iwl6050-firmware-41.28.5.1-143.3.el9_4.noarch.rpm
MD5: 98e6aff2c3e81100b5229acd7c0dc943
SHA-256: f1d5522b0096219d1e67c215da43fc9db851e77dcdd5efd1876e27e3e2500641
Size: 203.50 kB - iwl7260-firmware-25.30.13.0-143.3.el9_4.noarch.rpm
MD5: 544f9dd0479a37d6299c03341565a8c7
SHA-256: fe76c10ba61613aa4e55364898598a06211c4c68e62aee55b2b1d07078e90adb
Size: 54.95 MB - libertas-sd8787-firmware-20240905-143.3.el9_4.noarch.rpm
MD5: 1a32d65263ec6e15b849dcb08a5f6190
SHA-256: 46dddce8b54aa9a190639db651cf5760d0aacf0ec419bd08300afd4f572d1269
Size: 354.62 kB - linux-firmware-20240905-143.3.el9_4.noarch.rpm
MD5: dc4a366fd0ca0ab286c8e9984f71c28c
SHA-256: a389471e52bde97fc0a73dba8036e82e70659d0a1a3159e734b9aca815bcc221
Size: 388.00 MB - linux-firmware-whence-20240905-143.3.el9_4.noarch.rpm
MD5: 3556c613935812b0a049c91c5981e15b
SHA-256: d49e17de6ec70120261a97c3e5be8f471c666125ce8911c0e0dfa454b2a3a855
Size: 99.11 kB - netronome-firmware-20240905-143.3.el9_4.noarch.rpm
MD5: 8744d3b1914ab1f418ff43c2e0a72bee
SHA-256: aba11126d918ade263126d2112bcd39400fcc9af396bf274dd052152cc4fbac9
Size: 4.45 MB