ALSA-2024:7481

Source
https://errata.almalinux.org/8/ALSA-2024-7481.html
Import Source
https://github.com/AlmaLinux/osv-database/blob/master/advisories/almalinux8/ALSA-2024:7481.json
JSON Data
https://api.osv.dev/v1/vulns/ALSA-2024:7481
Related
Published
2024-10-02T00:00:00Z
Modified
2024-10-03T13:08:29Z
Summary
Important: linux-firmware security update
Details

The linux-firmware packages contain all of the firmware files that are required by various devices to operate.

Security Fix(es):

  • kernel: hw:amd:IOMMU improperly handles certain special address leading to a loss of guest integrity (CVE-2023-20584)
  • kernel: hw: amd:Incomplete system memory cleanup in SEV firmware corrupt guest private memory (CVE-2023-31356)

For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.

References

Affected packages

AlmaLinux:8 / iwl100-firmware

Package

Name
iwl100-firmware

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
39.31.5.1-124.el8_10.1

AlmaLinux:8 / iwl1000-firmware

Package

Name
iwl1000-firmware

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
1:39.31.5.1-124.el8_10.1

AlmaLinux:8 / iwl105-firmware

Package

Name
iwl105-firmware

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
18.168.6.1-124.el8_10.1

AlmaLinux:8 / iwl135-firmware

Package

Name
iwl135-firmware

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
18.168.6.1-124.el8_10.1

AlmaLinux:8 / iwl2000-firmware

Package

Name
iwl2000-firmware

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
18.168.6.1-124.el8_10.1

AlmaLinux:8 / iwl2030-firmware

Package

Name
iwl2030-firmware

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
18.168.6.1-124.el8_10.1

AlmaLinux:8 / iwl3160-firmware

Package

Name
iwl3160-firmware

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
1:25.30.13.0-124.el8_10.1

AlmaLinux:8 / iwl3945-firmware

Package

Name
iwl3945-firmware

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
15.32.2.9-124.el8_10.1

AlmaLinux:8 / iwl4965-firmware

Package

Name
iwl4965-firmware

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
228.61.2.24-124.el8_10.1

AlmaLinux:8 / iwl5000-firmware

Package

Name
iwl5000-firmware

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
8.83.5.1_1-124.el8_10.1

AlmaLinux:8 / iwl5150-firmware

Package

Name
iwl5150-firmware

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
8.24.2.2-124.el8_10.1

AlmaLinux:8 / iwl6000-firmware

Package

Name
iwl6000-firmware

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
9.221.4.1-124.el8_10.1

AlmaLinux:8 / iwl6000g2a-firmware

Package

Name
iwl6000g2a-firmware

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
18.168.6.1-124.el8_10.1

AlmaLinux:8 / iwl6000g2b-firmware

Package

Name
iwl6000g2b-firmware

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
18.168.6.1-124.el8_10.1

AlmaLinux:8 / iwl6050-firmware

Package

Name
iwl6050-firmware

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
41.28.5.1-124.el8_10.1

AlmaLinux:8 / iwl7260-firmware

Package

Name
iwl7260-firmware

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
1:25.30.13.0-124.el8_10.1

AlmaLinux:8 / libertas-sd8686-firmware

Package

Name
libertas-sd8686-firmware

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
20240827-124.git3cff7109.el8_10

AlmaLinux:8 / libertas-sd8787-firmware

Package

Name
libertas-sd8787-firmware

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
20240827-124.git3cff7109.el8_10

AlmaLinux:8 / libertas-usb8388-firmware

Package

Name
libertas-usb8388-firmware

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
2:20240827-124.git3cff7109.el8_10

AlmaLinux:8 / libertas-usb8388-olpc-firmware

Package

Name
libertas-usb8388-olpc-firmware

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
20240827-124.git3cff7109.el8_10

AlmaLinux:8 / linux-firmware

Package

Name
linux-firmware

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
20240827-124.git3cff7109.el8_10