It was discovered that some Intel processors may not properly invalidate cache entries used by Intel Virtualization Technology for Directed I/O (VT-d). This may allow a local user to perform a privilege escalation attack. (CVE-2020-24489)
Joseph Nuzman discovered that some Intel processors may not properly apply EIBRS mitigations (originally developed for CVE-2017-5715) and hence may allow unauthorized memory reads via sidechannel attacks. A local attacker could use this to expose sensitive information, including kernel memory. (CVE-2020-24511)
Travis Downs discovered that some Intel processors did not properly flush cache-lines for trivial-data values. This may allow an unauthorized user to infer the presence of these trivial-data-cache-lines via timing sidechannel attacks. A local attacker could use this to expose sensitive information. (CVE-2020-24512)
It was discovered that certain Intel Atom processors could expose memory contents stored in microarchitectural buffers. A local attacker could use this to expose sensitive information. (CVE-2020-24513)
{ "availability": "Available with Ubuntu Pro (Infra-only): https://ubuntu.com/pro", "binaries": [ { "binary_version": "3.20210608.0ubuntu0.14.04.1+esm1", "binary_name": "intel-microcode" } ] }
{ "cves_map": { "cves": [ { "severity": [ { "type": "CVSS_V3", "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H" }, { "type": "Ubuntu", "score": "high" } ], "id": "CVE-2020-24489" }, { "severity": [ { "type": "CVSS_V3", "score": "CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:C/C:H/I:N/A:N" }, { "type": "CVSS_V3", "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:C/C:H/I:N/A:N" }, { "type": "Ubuntu", "score": "medium" } ], "id": "CVE-2020-24511" }, { "severity": [ { "type": "CVSS_V3", "score": "CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:C/C:L/I:N/A:N" }, { "type": "CVSS_V3", "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N" }, { "type": "Ubuntu", "score": "medium" } ], "id": "CVE-2020-24512" }, { "severity": [ { "type": "CVSS_V3", "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:C/C:H/I:N/A:N" }, { "type": "Ubuntu", "score": "medium" } ], "id": "CVE-2020-24513" } ], "ecosystem": "Ubuntu:Pro:14.04:LTS" } }
{ "availability": "Available with Ubuntu Pro (Infra-only): https://ubuntu.com/pro", "binaries": [ { "binary_version": "3.20210608.0ubuntu0.16.04.1+esm1", "binary_name": "intel-microcode" } ] }
{ "cves_map": { "cves": [ { "severity": [ { "type": "CVSS_V3", "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H" }, { "type": "Ubuntu", "score": "high" } ], "id": "CVE-2020-24489" }, { "severity": [ { "type": "CVSS_V3", "score": "CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:C/C:H/I:N/A:N" }, { "type": "CVSS_V3", "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:C/C:H/I:N/A:N" }, { "type": "Ubuntu", "score": "medium" } ], "id": "CVE-2020-24511" }, { "severity": [ { "type": "CVSS_V3", "score": "CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:C/C:L/I:N/A:N" }, { "type": "CVSS_V3", "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N" }, { "type": "Ubuntu", "score": "medium" } ], "id": "CVE-2020-24512" }, { "severity": [ { "type": "CVSS_V3", "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:C/C:H/I:N/A:N" }, { "type": "Ubuntu", "score": "medium" } ], "id": "CVE-2020-24513" } ], "ecosystem": "Ubuntu:Pro:16.04:LTS" } }
{ "availability": "No subscription required", "binaries": [ { "binary_version": "3.20210608.0ubuntu0.18.04.1", "binary_name": "intel-microcode" } ] }
{ "cves_map": { "cves": [ { "severity": [ { "type": "CVSS_V3", "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H" }, { "type": "Ubuntu", "score": "high" } ], "id": "CVE-2020-24489" }, { "severity": [ { "type": "CVSS_V3", "score": "CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:C/C:H/I:N/A:N" }, { "type": "CVSS_V3", "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:C/C:H/I:N/A:N" }, { "type": "Ubuntu", "score": "medium" } ], "id": "CVE-2020-24511" }, { "severity": [ { "type": "CVSS_V3", "score": "CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:C/C:L/I:N/A:N" }, { "type": "CVSS_V3", "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N" }, { "type": "Ubuntu", "score": "medium" } ], "id": "CVE-2020-24512" }, { "severity": [ { "type": "CVSS_V3", "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:C/C:H/I:N/A:N" }, { "type": "Ubuntu", "score": "medium" } ], "id": "CVE-2020-24513" } ], "ecosystem": "Ubuntu:18.04:LTS" } }
{ "availability": "No subscription required", "binaries": [ { "binary_version": "3.20210608.0ubuntu0.20.04.1", "binary_name": "intel-microcode" } ] }
{ "cves_map": { "cves": [ { "severity": [ { "type": "CVSS_V3", "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H" }, { "type": "Ubuntu", "score": "high" } ], "id": "CVE-2020-24489" }, { "severity": [ { "type": "CVSS_V3", "score": "CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:C/C:H/I:N/A:N" }, { "type": "CVSS_V3", "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:C/C:H/I:N/A:N" }, { "type": "Ubuntu", "score": "medium" } ], "id": "CVE-2020-24511" }, { "severity": [ { "type": "CVSS_V3", "score": "CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:C/C:L/I:N/A:N" }, { "type": "CVSS_V3", "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N" }, { "type": "Ubuntu", "score": "medium" } ], "id": "CVE-2020-24512" }, { "severity": [ { "type": "CVSS_V3", "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:C/C:H/I:N/A:N" }, { "type": "Ubuntu", "score": "medium" } ], "id": "CVE-2020-24513" } ], "ecosystem": "Ubuntu:20.04:LTS" } }