Vulnerability   
Search   
    Search 324607 CVE descriptions
and 145615 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

Test ID:1.3.6.1.4.1.25623.1.0.852507
Category:SuSE Local Security Checks
Title:openSUSE: Security Advisory for ucode-intel (openSUSE-SU-2019:1408-1)
Summary:The remote host is missing an update for the 'ucode-intel'; package(s) announced via the openSUSE-SU-2019:1408-1 advisory.
Description:Summary:
The remote host is missing an update for the 'ucode-intel'
package(s) announced via the openSUSE-SU-2019:1408-1 advisory.

Vulnerability Insight:
This update for ucode-intel fixes the following issues:

This update contains the Intel QSR 2019.1 Microcode release (boo#1111331
CVE-2018-12126 CVE-2018-12130 CVE-2018-12127 CVE-2019-11091)

Release notes:

- Processor Identifier Version Products

- Model Stepping F-MO-S/PI Old->New

- ---- new platforms ----------------------------------------

- CLX-SP B1 6-55-7/bf 05000021 Xeon Scalable Gen2

- ---- updated platforms ------------------------------------

- SNB D2/G1/Q0 6-2a-7/12 0000002e->0000002f Core Gen2

- IVB E1/L1 6-3a-9/12 00000020->00000021 Core Gen3

- HSW C0 6-3c-3/32 00000025->00000027 Core Gen4

- BDW-U/Y E0/F0 6-3d-4/c0 0000002b->0000002d Core Gen5

- IVB-E/EP C1/M1/S1 6-3e-4/ed 0000042e->0000042f Core Gen3 X Series,
Xeon E5 v2

- IVB-EX D1 6-3e-7/ed 00000714->00000715 Xeon E7 v2

- HSX-E/EP Cx/M1 6-3f-2/6f 00000041->00000043 Core Gen4 X series,
Xeon E5 v3

- HSX-EX E0 6-3f-4/80 00000013->00000014 Xeon E7 v3

- HSW-U C0/D0 6-45-1/72 00000024->00000025 Core Gen4

- HSW-H C0 6-46-1/32 0000001a->0000001b Core Gen4

- BDW-H/E3 E0/G0 6-47-1/22 0000001e->00000020 Core Gen5

- SKL-U/Y D0/K1 6-4e-3/c0 000000c6->000000cc Core Gen6

- SKX-SP H0/M0/U0 6-55-4/b7 0200005a->0000005e Xeon Scalable

- SKX-D M1 6-55-4/b7 0200005a->0000005e Xeon D-21xx

- BDX-DE V1 6-56-2/10 00000019->0000001a Xeon D-1520/40

- BDX-DE V2/3 6-56-3/10 07000016->07000017 Xeon
D-1518/19/21/27/28/31/33/37/41/48, Pentium D1507/08/09/17/19

- BDX-DE Y0 6-56-4/10 0f000014->0f000015 Xeon
D-1557/59/67/71/77/81/87

- BDX-NS A0 6-56-5/10 0e00000c->0e00000d Xeon
D-1513N/23/33/43/53

- APL D0 6-5c-9/03 00000036->00000038 Pentium N/J4xxx,
Celeron N/J3xxx, Atom x5/7-E39xx

- SKL-H/S R0/N0 6-5e-3/36 000000c6->000000cc Core Gen6, Xeon E3 v5

- DNV B0 6-5f-1/01 00000024->0000002e Atom Processor C
Series

- GLK B0 6-7a-1/01 0000002c->0000002e Pentium Silver
N/J5xxx, Celeron N/J4xxx

- AML-Y22 H0 6-8e-9/10 0000009e->000000b4 Core Gen8 Mobile

- KBL-U/Y H0 6-8e-9/c0 0000009a->000000b4 Core Gen7 Mobile

- CFL-U43e D0 6-8e-a/c0 0000009e->000000b4 Core Gen8 Mobile

- WHL-U W0 6-8e-b/d0 000000a4->000000b8 Core Gen8 Mobile

- WHL-U V0 6-8e-d/94 000000b2->000000b8 Core Gen8 Mobile

- KBL-G/H/S/E3 B0 6-9e-9/2a 0000009a->00000 ...

Description truncated. Please see the references for more information.

Affected Software/OS:
'ucode-intel' package(s) on openSUSE Leap 42.3.

Solution:
Please install the updated package(s).

CVSS Score:
4.7

CVSS Vector:
AV:L/AC:M/Au:N/C:C/I:N/A:N

Cross-Ref: Common Vulnerability Exposure (CVE) ID: CVE-2018-12126
Bugtraq: 20190624 [SECURITY] [DSA 4447-2] intel-microcode security update (Google Search)
https://seclists.org/bugtraq/2019/Jun/28
Bugtraq: 20190624 [SECURITY] [DSA 4469-1] libvirt security update (Google Search)
https://seclists.org/bugtraq/2019/Jun/36
Bugtraq: 20191112 FreeBSD Security Advisory FreeBSD-SA-19:26.mcu (Google Search)
https://seclists.org/bugtraq/2019/Nov/16
Bugtraq: 20191112 [SECURITY] [DSA 4564-1] linux security update (Google Search)
https://seclists.org/bugtraq/2019/Nov/15
Bugtraq: 20200114 [SECURITY] [DSA 4602-1] xen security update (Google Search)
https://seclists.org/bugtraq/2020/Jan/21
Debian Security Information: DSA-4602 (Google Search)
https://www.debian.org/security/2020/dsa-4602
https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/OH73SGTJ575OBCPSJFX6LX7KP2KZIEN4/
FreeBSD Security Advisory: FreeBSD-SA-19:07
https://www.freebsd.org/security/advisories/FreeBSD-SA-19:07.mds.asc
https://security.FreeBSD.org/advisories/FreeBSD-SA-19:26.mcu.asc
https://security.gentoo.org/glsa/202003-56
http://packetstormsecurity.com/files/155281/FreeBSD-Security-Advisory-FreeBSD-SA-19-26.mcu.html
https://lists.debian.org/debian-lts-announce/2019/06/msg00018.html
RedHat Security Advisories: RHSA-2019:1455
https://access.redhat.com/errata/RHSA-2019:1455
RedHat Security Advisories: RHSA-2019:2553
https://access.redhat.com/errata/RHSA-2019:2553
SuSE Security Announcement: openSUSE-SU-2019:1505 (Google Search)
http://lists.opensuse.org/opensuse-security-announce/2019-06/msg00014.html
SuSE Security Announcement: openSUSE-SU-2019:1805 (Google Search)
http://lists.opensuse.org/opensuse-security-announce/2019-07/msg00053.html
SuSE Security Announcement: openSUSE-SU-2019:1806 (Google Search)
http://lists.opensuse.org/opensuse-security-announce/2019-07/msg00052.html
https://usn.ubuntu.com/3977-3/
Common Vulnerability Exposure (CVE) ID: CVE-2018-12127
Common Vulnerability Exposure (CVE) ID: CVE-2018-12130
Common Vulnerability Exposure (CVE) ID: CVE-2019-11091
CopyrightCopyright (C) 2019 Greenbone Networks GmbH

This is only one of 145615 vulnerability tests in our test suite. Find out more about running a complete security audit.

To run a free test of this vulnerability against your system, register below.




© 1998-2025 E-Soft Inc. All rights reserved.