ELSA-2023-12839

ELSA-2023-12839 - kernel security update

Type:SECURITY
Impact:IMPORTANT
Release Date:2023-09-29

Description


[4.18.0-477.27.1.el8_8.OL8]
- x86/microcode/intel: Expose collect_cpu_info_early() for IFS
- x86/cpu: Load microcode during restore_processor_state()
- x86/microcode: Deprecate MICROCODE_OLD_INTERFACE
- x86/microcode: Rip out the OLD_INTERFACE
- x86/microcode: Default-disable late loading
- x86/microcode: Taint and warn on late loading
- x86/microcode: Remove unnecessary perf callback
- x86/microcode: Print previous version of microcode after reload
- x86/microcode: Rip out the subsys interface gunk
- x86/microcode: Simplify init path even more
- x86/microcode/AMD: Rename a couple of functions {CVE-2023-20593}
- x86/microcode: Add a parameter to microcode_check() to store CPU capabilities {CVE-2023-20593}
- x86/microcode: Check CPU capabilities after late microcode update correctly {CVE-2023-20593}
- x86/microcode: Adjust late loading result reporting message {CVE-2023-20593}
- x86/amd: Cache debug register values in percpu variables {CVE-2023-20593}
- x86/microcode: Remove ->request_microcode_user()
- x86/microcode: Kill refresh_fw
- x86/microcode/amd: Remove load_microcode_amd()'s bsp parameter {CVE-2023-20593}
- x86/microcode: Drop struct ucode_cpu_info.valid
- x86/microcode/AMD: Add a @cpu parameter to the reloading functions {CVE-2023-20593}
- x86/microcode/AMD: Track patch allocation size explicitly
- x86/microcode/AMD: Fix mixed steppings support {CVE-2023-20593}
- x86/microcode/core: Return an error only when necessary {CVE-2023-20593}
- x86/apic: Don't disable x2APIC if locked
- x86/cpu/amd: Move the errata checking functionality up {CVE-2023-20593}
- x86/cpu: Remove redundant extern x86_read_arch_cap_msr()
- x86/cpu, kvm: Add support for CPUID_80000021_EAX
- KVM: x86: Advertise that the SMM_CTL MSR is not supported
- KVM: x86: Move open-coded CPUID leaf 0x80000021 EAX bit propagation code
- x86/cpu, kvm: Add the NO_NESTED_DATA_BP feature
- x86/bugs: Make sure MSR_SPEC_CTRL is updated properly upon resume from S3
- x86/cpu: Support AMD Automatic IBRS
- x86/CPU/AMD: Make sure EFER[AIBRSE] is set
- x86/cpu/amd: Add a Zenbleed fix {CVE-2023-20593}
- netfilter: nf_tables: incorrect error path handling with NFT_MSG_NEWRULE {CVE-2023-3390}


Related CVEs


CVE-2023-3390
CVE-2023-20593

Updated Packages


Release/ArchitectureFilenamesha256Superseded By AdvisoryChannel Label
Oracle Linux 8 (aarch64) kernel-4.18.0-477.27.1.el8_8.src.rpmfae2ad0d55d19afa798458373dd666b4ae2c9b249df28162f78090db9b483f24-ol8_aarch64_baseos_latest
kernel-4.18.0-477.27.1.el8_8.src.rpmfae2ad0d55d19afa798458373dd666b4ae2c9b249df28162f78090db9b483f24-ol8_aarch64_codeready_builder
kernel-4.18.0-477.27.1.el8_8.src.rpmfae2ad0d55d19afa798458373dd666b4ae2c9b249df28162f78090db9b483f24-ol8_aarch64_u8_baseos_patch
bpftool-4.18.0-477.27.1.el8_8.aarch64.rpm0e0f005476139b12fb2803db3fb8696cdd52007c2aec362edf5d6714baebb4ba-ol8_aarch64_baseos_latest
bpftool-4.18.0-477.27.1.el8_8.aarch64.rpm0e0f005476139b12fb2803db3fb8696cdd52007c2aec362edf5d6714baebb4ba-ol8_aarch64_u8_baseos_patch
kernel-cross-headers-4.18.0-477.27.1.el8_8.aarch64.rpmd8a0c9c6206f202e8d61a07b2edd2db6dd4c99d58debc8ef5381ccec45243086-ol8_aarch64_baseos_latest
kernel-cross-headers-4.18.0-477.27.1.el8_8.aarch64.rpmd8a0c9c6206f202e8d61a07b2edd2db6dd4c99d58debc8ef5381ccec45243086-ol8_aarch64_u8_baseos_patch
kernel-headers-4.18.0-477.27.1.el8_8.aarch64.rpmbb18602ad4214b051d8265312a0f41f35862f189d3e14578da817ef17c452b8b-ol8_aarch64_baseos_latest
kernel-headers-4.18.0-477.27.1.el8_8.aarch64.rpmbb18602ad4214b051d8265312a0f41f35862f189d3e14578da817ef17c452b8b-ol8_aarch64_u8_baseos_patch
kernel-tools-4.18.0-477.27.1.el8_8.aarch64.rpmc086d35ca2a3876a43cc404929c2bf4a70fb01a7b3588772ece667a97cd03be5-ol8_aarch64_baseos_latest
kernel-tools-4.18.0-477.27.1.el8_8.aarch64.rpmc086d35ca2a3876a43cc404929c2bf4a70fb01a7b3588772ece667a97cd03be5-ol8_aarch64_u8_baseos_patch
kernel-tools-libs-4.18.0-477.27.1.el8_8.aarch64.rpm1b23327b0a6423c4d5d7bb6640b39e2ec4bd69f54d3ccecc2091d873ba1c4782-ol8_aarch64_baseos_latest
kernel-tools-libs-4.18.0-477.27.1.el8_8.aarch64.rpm1b23327b0a6423c4d5d7bb6640b39e2ec4bd69f54d3ccecc2091d873ba1c4782-ol8_aarch64_u8_baseos_patch
kernel-tools-libs-devel-4.18.0-477.27.1.el8_8.aarch64.rpmd34f5c77b11a2999684fa48a49bb5c5e024a410e4dc661b92aa669c37182a0cc-ol8_aarch64_codeready_builder
perf-4.18.0-477.27.1.el8_8.aarch64.rpm9de57c8e47bb7882eb01e0d31158bc524e9c755fc7354eafb37c05f7df1f00a6-ol8_aarch64_baseos_latest
perf-4.18.0-477.27.1.el8_8.aarch64.rpm9de57c8e47bb7882eb01e0d31158bc524e9c755fc7354eafb37c05f7df1f00a6-ol8_aarch64_u8_baseos_patch
python3-perf-4.18.0-477.27.1.el8_8.aarch64.rpmce4502eaa84601ef3700269fbd45f6e413c94709fc4bbdf149ceee63db640a62-ol8_aarch64_baseos_latest
python3-perf-4.18.0-477.27.1.el8_8.aarch64.rpmce4502eaa84601ef3700269fbd45f6e413c94709fc4bbdf149ceee63db640a62-ol8_aarch64_u8_baseos_patch
Oracle Linux 8 (x86_64) kernel-4.18.0-477.27.1.el8_8.src.rpmfae2ad0d55d19afa798458373dd666b4ae2c9b249df28162f78090db9b483f24-ol8_x86_64_baseos_latest
kernel-4.18.0-477.27.1.el8_8.src.rpmfae2ad0d55d19afa798458373dd666b4ae2c9b249df28162f78090db9b483f24-ol8_x86_64_codeready_builder
kernel-4.18.0-477.27.1.el8_8.src.rpmfae2ad0d55d19afa798458373dd666b4ae2c9b249df28162f78090db9b483f24-ol8_x86_64_u8_baseos_patch
bpftool-4.18.0-477.27.1.el8_8.x86_64.rpm8096b5030f84f9c434073b6b79ef9fcb6499c3a17af4b05bd68bdefefbd12f3b-ol8_x86_64_baseos_latest
bpftool-4.18.0-477.27.1.el8_8.x86_64.rpm8096b5030f84f9c434073b6b79ef9fcb6499c3a17af4b05bd68bdefefbd12f3b-ol8_x86_64_u8_baseos_patch
kernel-4.18.0-477.27.1.el8_8.x86_64.rpm03923bc301c56ec70ac7207f98b7018b895579d502c1099896e639e25d93fe33-ol8_x86_64_baseos_latest
kernel-4.18.0-477.27.1.el8_8.x86_64.rpm03923bc301c56ec70ac7207f98b7018b895579d502c1099896e639e25d93fe33-ol8_x86_64_u8_baseos_patch
kernel-abi-stablelists-4.18.0-477.27.1.el8_8.noarch.rpmae599eacfb3e4befeb4f7bfd785dd5decfc90acce52037770be941bfa4a11115-ol8_x86_64_baseos_latest
kernel-abi-stablelists-4.18.0-477.27.1.el8_8.noarch.rpmae599eacfb3e4befeb4f7bfd785dd5decfc90acce52037770be941bfa4a11115-ol8_x86_64_u8_baseos_patch
kernel-core-4.18.0-477.27.1.el8_8.x86_64.rpma3cc121bfbbc17ee636dc88da233d12bdda09dd6b36b26e73ce717a638689b3e-ol8_x86_64_baseos_latest
kernel-core-4.18.0-477.27.1.el8_8.x86_64.rpma3cc121bfbbc17ee636dc88da233d12bdda09dd6b36b26e73ce717a638689b3e-ol8_x86_64_u8_baseos_patch
kernel-cross-headers-4.18.0-477.27.1.el8_8.x86_64.rpm4d13e2dcf074c3bedfc2040870ad1f5a36d6ddef0397e946502af6b5816f2ac8-ol8_x86_64_baseos_latest
kernel-cross-headers-4.18.0-477.27.1.el8_8.x86_64.rpm4d13e2dcf074c3bedfc2040870ad1f5a36d6ddef0397e946502af6b5816f2ac8-ol8_x86_64_u8_baseos_patch
kernel-debug-4.18.0-477.27.1.el8_8.x86_64.rpma3aff0442a1194b7767a2b4b7a87cbce9c3ccd58ad51aa51f89f9e65f205c9ac-ol8_x86_64_baseos_latest
kernel-debug-4.18.0-477.27.1.el8_8.x86_64.rpma3aff0442a1194b7767a2b4b7a87cbce9c3ccd58ad51aa51f89f9e65f205c9ac-ol8_x86_64_u8_baseos_patch
kernel-debug-core-4.18.0-477.27.1.el8_8.x86_64.rpm834088e03d863061888a36a7ac7958c1e90ad13604b116d71cfa6d16f0120eb8-ol8_x86_64_baseos_latest
kernel-debug-core-4.18.0-477.27.1.el8_8.x86_64.rpm834088e03d863061888a36a7ac7958c1e90ad13604b116d71cfa6d16f0120eb8-ol8_x86_64_u8_baseos_patch
kernel-debug-devel-4.18.0-477.27.1.el8_8.x86_64.rpm35b7ddce6b962b44d6fc478dfe8fc0455b7cdee4d6713b3e44cc98dc1b64e49b-ol8_x86_64_baseos_latest
kernel-debug-devel-4.18.0-477.27.1.el8_8.x86_64.rpm35b7ddce6b962b44d6fc478dfe8fc0455b7cdee4d6713b3e44cc98dc1b64e49b-ol8_x86_64_u8_baseos_patch
kernel-debug-modules-4.18.0-477.27.1.el8_8.x86_64.rpm0b0e9948d21ccd071ec02d113942320d8b5c43dccd88e323b05f28f13bee6927-ol8_x86_64_baseos_latest
kernel-debug-modules-4.18.0-477.27.1.el8_8.x86_64.rpm0b0e9948d21ccd071ec02d113942320d8b5c43dccd88e323b05f28f13bee6927-ol8_x86_64_u8_baseos_patch
kernel-debug-modules-extra-4.18.0-477.27.1.el8_8.x86_64.rpm9bf44d5e4232a3dfa907abe6ccf37083db2306215875af1d7d63bf908505fa55-ol8_x86_64_baseos_latest
kernel-debug-modules-extra-4.18.0-477.27.1.el8_8.x86_64.rpm9bf44d5e4232a3dfa907abe6ccf37083db2306215875af1d7d63bf908505fa55-ol8_x86_64_u8_baseos_patch
kernel-devel-4.18.0-477.27.1.el8_8.x86_64.rpmccfc641dcbd7cfa0f99def12c55adb88cb9b4aa801bd2126ff6c878f8699ec3e-ol8_x86_64_baseos_latest
kernel-devel-4.18.0-477.27.1.el8_8.x86_64.rpmccfc641dcbd7cfa0f99def12c55adb88cb9b4aa801bd2126ff6c878f8699ec3e-ol8_x86_64_u8_baseos_patch
kernel-doc-4.18.0-477.27.1.el8_8.noarch.rpmb6a55dcd6e528db48ef7ce536dc827a599be9a4034244bf308b29214b85e8efa-ol8_x86_64_baseos_latest
kernel-doc-4.18.0-477.27.1.el8_8.noarch.rpmb6a55dcd6e528db48ef7ce536dc827a599be9a4034244bf308b29214b85e8efa-ol8_x86_64_u8_baseos_patch
kernel-headers-4.18.0-477.27.1.el8_8.x86_64.rpm20e44d3a31281a51276310f42f380b801b4578819238ef69030be8fb85511d4d-exadata_dbserver_23.1.7.0.0_x86_64_base
kernel-headers-4.18.0-477.27.1.el8_8.x86_64.rpm20e44d3a31281a51276310f42f380b801b4578819238ef69030be8fb85511d4d-exadata_dbserver_23.1.8.0.0_x86_64_base
kernel-headers-4.18.0-477.27.1.el8_8.x86_64.rpm20e44d3a31281a51276310f42f380b801b4578819238ef69030be8fb85511d4d-ol8_x86_64_baseos_latest
kernel-headers-4.18.0-477.27.1.el8_8.x86_64.rpm20e44d3a31281a51276310f42f380b801b4578819238ef69030be8fb85511d4d-ol8_x86_64_u8_baseos_patch
kernel-modules-4.18.0-477.27.1.el8_8.x86_64.rpm135af292164f14a06b8ec9d7af35177f771ce5c8e7efe85dc6bb2b27ae6d530a-ol8_x86_64_baseos_latest
kernel-modules-4.18.0-477.27.1.el8_8.x86_64.rpm135af292164f14a06b8ec9d7af35177f771ce5c8e7efe85dc6bb2b27ae6d530a-ol8_x86_64_u8_baseos_patch
kernel-modules-extra-4.18.0-477.27.1.el8_8.x86_64.rpme5709bc2adbf76aefb3923a20465b79446f83467087c354cf6a2a88e8bd5ee6d-ol8_x86_64_baseos_latest
kernel-modules-extra-4.18.0-477.27.1.el8_8.x86_64.rpme5709bc2adbf76aefb3923a20465b79446f83467087c354cf6a2a88e8bd5ee6d-ol8_x86_64_u8_baseos_patch
kernel-tools-4.18.0-477.27.1.el8_8.x86_64.rpm35a093b09c368ce27da14bd2aa93866e5a14fe3a90e3860edf5dbd8c2d6f13ae-ol8_x86_64_baseos_latest
kernel-tools-4.18.0-477.27.1.el8_8.x86_64.rpm35a093b09c368ce27da14bd2aa93866e5a14fe3a90e3860edf5dbd8c2d6f13ae-ol8_x86_64_u8_baseos_patch
kernel-tools-libs-4.18.0-477.27.1.el8_8.x86_64.rpmb903c471316dc05a90da26780e3f53014363bb9632b28408346d8b5c49a3d116-ol8_x86_64_baseos_latest
kernel-tools-libs-4.18.0-477.27.1.el8_8.x86_64.rpmb903c471316dc05a90da26780e3f53014363bb9632b28408346d8b5c49a3d116-ol8_x86_64_u8_baseos_patch
kernel-tools-libs-devel-4.18.0-477.27.1.el8_8.x86_64.rpmc3187c6436753ef0e2d9ef978503e7b366df26897ef43368878fa1f1106dead0-ol8_x86_64_codeready_builder
perf-4.18.0-477.27.1.el8_8.x86_64.rpm59954bc999c12513a830e593a7693d22e461327785bc5bbc9cefd925a7d6615b-ol8_x86_64_baseos_latest
perf-4.18.0-477.27.1.el8_8.x86_64.rpm59954bc999c12513a830e593a7693d22e461327785bc5bbc9cefd925a7d6615b-ol8_x86_64_u8_baseos_patch
python3-perf-4.18.0-477.27.1.el8_8.x86_64.rpma037460241c9575da42451c7dd9d0f2161c24b2694100fce4356ac9421e52c4f-ol8_x86_64_baseos_latest
python3-perf-4.18.0-477.27.1.el8_8.x86_64.rpma037460241c9575da42451c7dd9d0f2161c24b2694100fce4356ac9421e52c4f-ol8_x86_64_u8_baseos_patch



This page is generated automatically and has not been checked for errors or omissions. For clarification or corrections please contact the Oracle Linux ULN team

software.hardware.complete