ELA-1169-1 intel-microcode security update

Multiple vulnerabilities (privilege escalation, DoS, information disclosure)

2024-08-29
Packageintel-microcode
Version3.20240813.1~deb8u1 (jessie), 3.20240813.1~deb9u1 (stretch), 3.20240813.1~deb10u1 (buster)
Related CVEs CVE-2023-42667 CVE-2023-45733 CVE-2023-45745 CVE-2023-46103 CVE-2023-47855 CVE-2023-49141 CVE-2024-24853 CVE-2024-24980 CVE-2024-25939


This update ships updated CPU microcode for some types of Intel CPUs and provides mitigations for vulnerabilities that may allow a privileged user to potentially enable escalation of privilege, partial information disclosure, or denial of service via local access.



For Debian 10 buster, these problems have been fixed in version 3.20240813.1~deb10u1.

For Debian 8 jessie, these problems have been fixed in version 3.20240813.1~deb8u1.

For Debian 9 stretch, these problems have been fixed in version 3.20240813.1~deb9u1.

We recommend that you upgrade your intel-microcode packages.

Further information about Extended LTS security advisories can be found in the dedicated section of our website.