From cf390f30faf840911b2737c9046556c4858dc180 Mon Sep 17 00:00:00 2001 From: Solar Designer Date: Wed, 15 Nov 2023 20:01:25 +0100 Subject: [PATCH] Add microcode_ctl --- docs/index.md | 1 + docs/packages/microcode_ctl.md | 18 ++++++++++++++++++ 2 files changed, 19 insertions(+) create mode 100644 docs/packages/microcode_ctl.md diff --git a/docs/index.md b/docs/index.md index c5127fa..8499ef5 100644 --- a/docs/index.md +++ b/docs/index.md @@ -46,6 +46,7 @@ Install the package with `rpm -U --nodeps`. The `--nodeps` option is needed to b ### Override packages (currently only for EL9) - [glibc](packages/glibc.md) (adds many security-hardening changes originating from Owl and ALT Linux on top of EL package) +- [microcode_ctl](packages/microcode_ctl.md) (updates Intel CPU microcode to microcode-20231114, which fixes CVE-2023-23583) - [openssh](packages/openssh.md) (fewer shared libraries exposed in sshd processes while otherwise fully matching EL package's functionality) The changes are described in more detail on the per-package wiki pages linked above, as well as in the package changelogs. diff --git a/docs/packages/microcode_ctl.md b/docs/packages/microcode_ctl.md new file mode 100644 index 0000000..b326d9e --- /dev/null +++ b/docs/packages/microcode_ctl.md @@ -0,0 +1,18 @@ +# Override package: microcode_ctl + +## EL9 + +- Version `4:20231114-1` +- Based on `4:20230808-2` + +### Changes summary + +- Update Intel CPU microcode to microcode-20231114 (fixes [CVE-2023-23583](https://www.openwall.com/lists/oss-security/2023/11/14/4)), temporarily dropping most documentation patches + +### Change log + +``` +* Tue Nov 14 2023 Solar Designer - 4:20231114-1 +- Update Intel CPU microcode to microcode-20231114 (fixes CVE-2023-23583), + temporarily dropping most documentation patches +```