← Back to team overview

group.of.nepali.translators team mailing list archive

[Bug 1733582] Re: intel released new microcode fixing several CVE's related to the ME

 

This bug was fixed in the package intel-microcode - 3.20171117.1

---------------
intel-microcode (3.20171117.1) unstable; urgency=medium

  * New upstream microcode data file 20171117
    + New Microcodes:
      sig 0x000506c9, pf_mask 0x03, 2017-03-25, rev 0x002c, size 16384
      sig 0x000706a1, pf_mask 0x01, 2017-10-31, rev 0x001e, size 72704
      sig 0x000906ea, pf_mask 0x22, 2017-08-23, rev 0x0070, size 95232
      sig 0x000906eb, pf_mask 0x02, 2017-09-20, rev 0x0072, size 97280
    + Updated Microcodes:
      sig 0x00050654, pf_mask 0xb7, 2017-10-17, rev 0x2000035, size 26624
      sig 0x000806ea, pf_mask 0xc0, 2017-08-03, rev 0x0070, size 96256
  * source: remove superseded upstream data file: 20170707.
  * source: remove unneeded intel-ucode/ directory for 20171117.
  * debian/control: bump standards version to 4.1.1 (no changes)
  * Makefile: rename microcode-extras.pbin to microcode-includes.pbin.
  * README.source: fix IUC_EXCLUDE example and minor issues.
  * Makefile, README.souce: support loading ucode from directories.
  * debian/rules: switch to dh mode (debhelper v9)
  * ucode-blacklist: blacklist sig 0x406f1 (Skylake-X H0) from late
    loading.

 -- Henrique de Moraes Holschuh <hmh@xxxxxxxxxx>  Sat, 18 Nov 2017
18:55:09 -0200

** Also affects: intel-microcode (Ubuntu Artful)
   Importance: Undecided
       Status: New

** Also affects: intel-microcode (Ubuntu Xenial)
   Importance: Undecided
       Status: New

** Also affects: intel-microcode (Ubuntu Bionic)
   Importance: Undecided
       Status: New

** Also affects: intel-microcode (Ubuntu Trusty)
   Importance: Undecided
       Status: New

** Also affects: intel-microcode (Ubuntu Zesty)
   Importance: Undecided
       Status: New

** Changed in: intel-microcode (Ubuntu)
       Status: New => Fix Released

-- 
You received this bug notification because you are a member of नेपाली
भाषा समायोजकहरुको समूह, which is subscribed to Xenial.
Matching subscriptions: Ubuntu 16.04 Bugs
https://bugs.launchpad.net/bugs/1733582

Title:
  intel released new microcode fixing several CVE's related to the ME

Status in intel-microcode package in Ubuntu:
  Fix Released
Status in intel-microcode source package in Trusty:
  New
Status in intel-microcode source package in Xenial:
  New
Status in intel-microcode source package in Zesty:
  New
Status in intel-microcode source package in Artful:
  New
Status in intel-microcode source package in Bionic:
  Fix Released

Bug description:
  Intel released a new microcode file (https://downloadcenter.intel.com/download/27337/Linux-Processor-Microcode-Data-File) which fixes several cve's (CVE-2017-5705, CVE-2017-5708, CVE-2017-5711 and CVE-2017-5712, see https://security-center.intel.com/advisory.aspx?intelid=INTEL-SA-00086&languageid=en-fr).
  I think this warrents a new version of the intel-microcode package.

To manage notifications about this bug go to:
https://bugs.launchpad.net/ubuntu/+source/intel-microcode/+bug/1733582/+subscriptions