linux-firmware-20200421-83.git78c0348.0.2.el7.AXS7
エラータID: AXSA:2024-8917:12
リリース日:
2024/10/21 Monday - 11:54
題名:
linux-firmware-20200421-83.git78c0348.0.2.el7.AXS7
影響のあるチャネル:
Asianux Server 7 for x86_64
Severity:
High
Description:
以下項目について対処しました。
[Security Fix]
- AMD 社製の一部のプロセッサには、INVD 命令が適切に動作
しない問題があるため、ローカルの攻撃者により、細工された
ホストマシンの利用を介して、ゲスト OS のメモリ破壊を可能
とする脆弱性が存在します。(CVE-2023-20592)
- linux-firmware には、SMI (System management interrupts)
ロックが有効な状態下での MSR (Model specific register) の
チェック処理の不備に起因して SMM (System Management
Mode) の設定を意図せず変更できてしまう問題があるため、
ローカルの攻撃者により、ring0 へのアクセスが可能な権限を
持つ細工されたプログラムの実行を介して、任意のコードの
実行を可能とする脆弱性が存在します。(CVE-2023-31315)
解決策:
パッケージをアップデートしてください。
CVE:
CVE-2023-20592
Improper or unexpected behavior of the INVD instruction in some AMD CPUs may allow an attacker with a malicious hypervisor to affect cache line write-back behavior of the CPU leading to a potential loss of guest virtual machine (VM) memory integrity.
Improper or unexpected behavior of the INVD instruction in some AMD CPUs may allow an attacker with a malicious hypervisor to affect cache line write-back behavior of the CPU leading to a potential loss of guest virtual machine (VM) memory integrity.
CVE-2023-31315
Improper validation in a model specific register (MSR) could allow a malicious program with ring0 access to modify SMM configuration while SMI lock is enabled, potentially leading to arbitrary code execution.
Improper validation in a model specific register (MSR) could allow a malicious program with ring0 access to modify SMM configuration while SMI lock is enabled, potentially leading to arbitrary code execution.
追加情報:
N/A
ダウンロード:
Asianux Server 7 for x86_64
- iwl1000-firmware-39.31.5.1-83.git78c0348.0.2.el7.AXS7.noarch.rpm
MD5: 5b26ec435d78c8d9a341c7f87591c3eb
SHA-256: 369f22eb381350786f4ca135655dfa4207f18d70a3a2f896a44699af5db0c41f
Size: 216.01 kB - iwl100-firmware-39.31.5.1-83.git78c0348.0.2.el7.AXS7.noarch.rpm
MD5: 0670061928e526f551e0c4dc8e514e91
SHA-256: 2ad62cb429148d108b0d0574cc6eed53159a2c856b2edceb6f76fb551ff9bdb2
Size: 156.77 kB - iwl105-firmware-18.168.6.1-83.git78c0348.0.2.el7.AXS7.noarch.rpm
MD5: dc7e508a0bab219f41748f6514297834
SHA-256: e0d50ac47176b1e0a9641e896ea6978cccf231d243bfc92dbae132749f4e8db3
Size: 235.83 kB - iwl135-firmware-18.168.6.1-83.git78c0348.0.2.el7.AXS7.noarch.rpm
MD5: 14bd8f66cba44d8da6d50c23bb0ee74f
SHA-256: 8d350f7c6537b335b155b3cc69955167519e394e94314ec26cdb6bc807163af3
Size: 244.30 kB - iwl2000-firmware-18.168.6.1-83.git78c0348.0.2.el7.AXS7.noarch.rpm
MD5: e9ae3f85898798d6553197cf5701acfc
SHA-256: 111e506277c5e6c0ffb7d281dba1beef573741d3eff4cecedd256175f21c4001
Size: 238.29 kB - iwl2030-firmware-18.168.6.1-83.git78c0348.0.2.el7.AXS7.noarch.rpm
MD5: 29958eb76d22610c4037723cc3850cdf
SHA-256: a38c7b8b8bdaff79787aee35c210e78a5929e2a5d6d2793b9383a64b74488f43
Size: 246.46 kB - iwl3160-firmware-25.30.13.0-83.git78c0348.0.2.el7.AXS7.noarch.rpm
MD5: 0a75fdb5f7f73dbd1aeb8c721c09df8b
SHA-256: e048de5b1d40e1853d8c897d59ed93b8d799e64cf79f2386edaf0f9d0555e93e
Size: 1.48 MB - iwl3945-firmware-15.32.2.9-83.git78c0348.0.2.el7.AXS7.noarch.rpm
MD5: e9f2316468e798f70274c4b56b58045a
SHA-256: be3272974f733f0d97db05c389c2aeade32598192ca1e6f96b8cd48b1a0df8c4
Size: 97.61 kB - iwl4965-firmware-228.61.2.24-83.git78c0348.0.2.el7.AXS7.noarch.rpm
MD5: 1811b860a4dd1cc7ccd7682a8cf2a8eb
SHA-256: 0d1f5778675e6ebcaf784690b444ce36abe2d264dc52f9ad81cf60307a2308f3
Size: 110.49 kB - iwl5000-firmware-8.83.5.1_1-83.git78c0348.0.2.el7.AXS7.noarch.rpm
MD5: b48e80f3ebbe227f520b7ec5da9273b0
SHA-256: 8220095c14a6f12f81df397995e63632ab7234e2f29a2aa63517581d05acb928
Size: 290.70 kB - iwl5150-firmware-8.24.2.2-83.git78c0348.0.2.el7.AXS7.noarch.rpm
MD5: d213e155c36448b7688412e43e832cd7
SHA-256: b67b501337c4c0361f9575a32f12be5a795b6452620a49f99fb5a8715a02db09
Size: 153.43 kB - iwl6000-firmware-9.221.4.1-83.git78c0348.0.2.el7.AXS7.noarch.rpm
MD5: 69c5063cc072193ab8ab017ab1972550
SHA-256: dc305976ffacdd29db7999533289e80a1fe4f83fbe82d33750e0c95995dfe1b7
Size: 172.56 kB - iwl6000g2a-firmware-18.168.6.1-83.git78c0348.0.2.el7.AXS7.noarch.rpm
MD5: 26ebe527843b15f590ae575262ae27d4
SHA-256: cf7b2bfd5c8fbed823ecca17bacbfea2ee746f79547224defb8135e34ce775bb
Size: 305.79 kB - iwl6000g2b-firmware-18.168.6.1-83.git78c0348.0.2.el7.AXS7.noarch.rpm
MD5: ae17b3af90beb194d380e9885ca4a366
SHA-256: ac28dffb15803b5d67d6a9234a29d4235a2403632e84d6fcb91cbf9ee4d7df9f
Size: 306.15 kB - iwl6050-firmware-41.28.5.1-83.git78c0348.0.2.el7.AXS7.noarch.rpm
MD5: 9b13ab7ca28ed33bf094f3c6557f0d28
SHA-256: e29045cc913a4a1c55199c866ab909598babe47418d1ee88f22e2aa1928b74ec
Size: 243.01 kB - iwl7260-firmware-25.30.13.0-83.git78c0348.0.2.el7.AXS7.noarch.rpm
MD5: eb2d29ebd3a8c486cf0ccd9919752323
SHA-256: b42977431cfb76876770026af1fc81952f8904f75a434602cfc514c264537ac9
Size: 14.46 MB - linux-firmware-20200421-83.git78c0348.0.2.el7.AXS7.noarch.rpm
MD5: e324a4c62258f92a8e9e6cf358983c4a
SHA-256: 1736451e44288a48e863d8d24ebcb2cf41f841b3ffe3280bb86ee2ffe7edbc03
Size: 80.45 MB