![]() |
Startseite ▼ Bookkeeping
Online ▼ Sicherheits
Überprüfungs ▼
Verwaltetes
DNS ▼
Info
Bestellen/Erneuern
FAQ
AUP
Dynamic DNS Clients
Domaine konfigurieren Dyanmic DNS Update Password Netzwerk
Überwachung ▼
Enterprise
Erweiterte
Standard
Gratis Test
FAQ
Preis/Funktionszusammenfassung
Bestellen
Beispiele
Konfigurieren/Status Alarm Profile | ||
Test Kennung: | 1.3.6.1.4.1.25623.1.1.18.2.2024.1139.1 |
Kategorie: | openSUSE Local Security Checks |
Titel: | openSUSE Security Advisory (SUSE-SU-2024:1139-1) |
Zusammenfassung: | The remote host is missing an update for the 'ucode-intel' package(s) announced via the SUSE-SU-2024:1139-1 advisory. |
Beschreibung: | Summary: The remote host is missing an update for the 'ucode-intel' package(s) announced via the SUSE-SU-2024:1139-1 advisory. Vulnerability Insight: This update for ucode-intel fixes the following issues: - Updated to Intel CPU Microcode 20240312 release. (bsc#1221323) - CVE-2023-39368: Protection mechanism failure of bus lock regulator for some Intel Processors may allow an unauthenticated user to potentially enable denial of service via network access - CVE-2023-38575: Non-transparent sharing of return predictor targets between contexts in some Intel Processors may allow an authorized user to potentially enable information disclosure via local access. - CVE-2023-28746: Information exposure through microarchitectural state after transient execution from some register files for some Intel Atom Processors may allow an authenticated user to potentially enable information disclosure via local access. - CVE-2023-22655 Protection mechanism failure in some 3rd and 4th Generation Intel Xeon Processors when using Intel SGX or Intel TDX may allow a privileged user to potentially enable escalation of privilege via local access. - CVE-2023-43490: Incorrect calculation in microcode keying mechanism for some Intel Xeon D Processors with Intel(r) SGX may allow a privileged user to potentially enable information disclosure via local access. Affected Software/OS: 'ucode-intel' package(s) on openSUSE Leap 15.5. Solution: Please install the updated package(s). CVSS Score: 5.0 CVSS Vector: AV:N/AC:L/Au:N/C:P/I:N/A:N |
Querverweis: |
Common Vulnerability Exposure (CVE) ID: CVE-2023-22655 https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00960.html https://lists.debian.org/debian-lts-announce/2024/05/msg00003.html Common Vulnerability Exposure (CVE) ID: CVE-2023-28746 https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/EIUICU6CVJUIB6BPJ7P5QTPQR5VOBHFK/ https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/ZON4TLXG7TG4A2XZG563JMVTGQW4SF3A/ https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/H63LGAQXPEVJOES73U4XK65I6DASOAAG/ https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00898.html http://www.openwall.com/lists/oss-security/2024/03/12/13 Common Vulnerability Exposure (CVE) ID: CVE-2023-38575 https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00982.html Common Vulnerability Exposure (CVE) ID: CVE-2023-39368 https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00972.html Common Vulnerability Exposure (CVE) ID: CVE-2023-43490 https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-01045.html |
Copyright | Copyright (C) 2025 Greenbone AG |
Dies ist nur einer von 145615 Anfälligkeitstests in unserem Testpaket. Finden Sie mehr über unsere vollständigen Sicherheitsüberprüfungen heraus. Um einen gratis Test für diese Anfälligkeit auf Ihrem System durchlaufen zu lassen, registrieren Sie sich bitte unten. |