ALSA-2023:6595

Source
https://errata.almalinux.org/9/ALSA-2023-6595.html
Import Source
https://github.com/AlmaLinux/osv-database/blob/master/advisories/almalinux9/ALSA-2023:6595.json
JSON Data
https://api.osv.dev/v1/vulns/ALSA-2023:6595
Related
Published
2023-11-07T00:00:00Z
Modified
2023-11-14T12:15:32Z
Summary
Important: linux-firmware security, bug fix, and enhancement update
Details

The linux-firmware packages contain all of the firmware files that are required by various devices to operate.

Security Fix(es):

  • hw: intel: Improper access control for some Intel(R) PROSet/Wireless WiFi (CVE-2022-27635)
  • hw: intel: Improper access control for some Intel(R) PROSet/Wireless WiFi (CVE-2022-40964)
  • hw: intel: Protection mechanism failure for some Intel(R) PROSet/Wireless WiFi (CVE-2022-46329)
  • hw: intel: Improper input validation in some Intel(R) PROSet/Wireless WiFi (CVE-2022-36351)
  • hw amd: Return Address Predictor vulnerability leading to information disclosure (CVE-2023-20569)
  • hw: intel: Improper input validation in some Intel(R) PROSet/Wireless WiFi (CVE-2022-38076)

For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.

Additional Changes:

For detailed information on changes in this release, see the AlmaLinux Release Notes linked from the References section.

References

Affected packages

AlmaLinux:9 / iwl100-firmware

Package

Name
iwl100-firmware

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
39.31.5.1-140.el9_3

AlmaLinux:9 / iwl1000-firmware

Package

Name
iwl1000-firmware

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
1:39.31.5.1-140.el9_3

AlmaLinux:9 / iwl105-firmware

Package

Name
iwl105-firmware

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
18.168.6.1-140.el9_3

AlmaLinux:9 / iwl135-firmware

Package

Name
iwl135-firmware

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
18.168.6.1-140.el9_3

AlmaLinux:9 / iwl2000-firmware

Package

Name
iwl2000-firmware

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
18.168.6.1-140.el9_3

AlmaLinux:9 / iwl2030-firmware

Package

Name
iwl2030-firmware

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
18.168.6.1-140.el9_3

AlmaLinux:9 / iwl3160-firmware

Package

Name
iwl3160-firmware

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
1:25.30.13.0-140.el9_3

AlmaLinux:9 / iwl5000-firmware

Package

Name
iwl5000-firmware

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
8.83.5.1_1-140.el9_3

AlmaLinux:9 / iwl5150-firmware

Package

Name
iwl5150-firmware

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
8.24.2.2-140.el9_3

AlmaLinux:9 / iwl6000g2a-firmware

Package

Name
iwl6000g2a-firmware

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
18.168.6.1-140.el9_3

AlmaLinux:9 / iwl6000g2b-firmware

Package

Name
iwl6000g2b-firmware

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
18.168.6.1-140.el9_3

AlmaLinux:9 / iwl6050-firmware

Package

Name
iwl6050-firmware

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
41.28.5.1-140.el9_3

AlmaLinux:9 / iwl7260-firmware

Package

Name
iwl7260-firmware

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
1:25.30.13.0-140.el9_3

AlmaLinux:9 / libertas-sd8787-firmware

Package

Name
libertas-sd8787-firmware

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
20230814-140.el9_3

AlmaLinux:9 / linux-firmware

Package

Name
linux-firmware

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
20230814-140.el9_3

AlmaLinux:9 / linux-firmware-whence

Package

Name
linux-firmware-whence

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
20230814-140.el9_3

AlmaLinux:9 / netronome-firmware

Package

Name
netronome-firmware

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
20230814-140.el9_3