ALSA-2024:7484

Source
https://errata.almalinux.org/9/ALSA-2024-7484.html
Import Source
https://github.com/AlmaLinux/osv-database/blob/master/advisories/almalinux9/ALSA-2024:7484.json
JSON Data
https://api.test.osv.dev/v1/vulns/ALSA-2024:7484
Related
Published
2024-10-02T00:00:00Z
Modified
2024-10-03T13:02:51Z
Summary
Moderate: linux-firmware security update
Details

The linux-firmware packages contain all of the firmware files that are required by various devices to operate.

Security Fix(es):

  • kernel: hw:amd:IOMMU improperly handles certain special address leading to a loss of guest integrity (CVE-2023-20584)
  • kernel: hw: amd:Incomplete system memory cleanup in SEV firmware corrupt guest private memory (CVE-2023-31356)

For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.

References

Affected packages

AlmaLinux:9 / iwl100-firmware

Package

Name
iwl100-firmware

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
39.31.5.1-143.3.el9_4

AlmaLinux:9 / iwl1000-firmware

Package

Name
iwl1000-firmware

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
1:39.31.5.1-143.3.el9_4

AlmaLinux:9 / iwl105-firmware

Package

Name
iwl105-firmware

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
18.168.6.1-143.3.el9_4

AlmaLinux:9 / iwl135-firmware

Package

Name
iwl135-firmware

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
18.168.6.1-143.3.el9_4

AlmaLinux:9 / iwl2000-firmware

Package

Name
iwl2000-firmware

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
18.168.6.1-143.3.el9_4

AlmaLinux:9 / iwl2030-firmware

Package

Name
iwl2030-firmware

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
18.168.6.1-143.3.el9_4

AlmaLinux:9 / iwl3160-firmware

Package

Name
iwl3160-firmware

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
1:25.30.13.0-143.3.el9_4

AlmaLinux:9 / iwl5000-firmware

Package

Name
iwl5000-firmware

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
8.83.5.1_1-143.3.el9_4

AlmaLinux:9 / iwl5150-firmware

Package

Name
iwl5150-firmware

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
8.24.2.2-143.3.el9_4

AlmaLinux:9 / iwl6000g2a-firmware

Package

Name
iwl6000g2a-firmware

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
18.168.6.1-143.3.el9_4

AlmaLinux:9 / iwl6000g2b-firmware

Package

Name
iwl6000g2b-firmware

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
18.168.6.1-143.3.el9_4

AlmaLinux:9 / iwl6050-firmware

Package

Name
iwl6050-firmware

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
41.28.5.1-143.3.el9_4

AlmaLinux:9 / iwl7260-firmware

Package

Name
iwl7260-firmware

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
1:25.30.13.0-143.3.el9_4

AlmaLinux:9 / libertas-sd8787-firmware

Package

Name
libertas-sd8787-firmware

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
20240905-143.3.el9_4

AlmaLinux:9 / linux-firmware

Package

Name
linux-firmware

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
20240905-143.3.el9_4

AlmaLinux:9 / linux-firmware-whence

Package

Name
linux-firmware-whence

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
20240905-143.3.el9_4

AlmaLinux:9 / netronome-firmware

Package

Name
netronome-firmware

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
20240905-143.3.el9_4