{"id":"ALSA-2024:7481","summary":"Important: linux-firmware security update","details":"The linux-firmware packages contain all of the firmware files that are required by various devices to operate.\n\nSecurity Fix(es):\n\n* kernel: hw:amd:IOMMU improperly handles certain special address leading to a loss of guest integrity (CVE-2023-20584)\n* kernel: hw: amd:Incomplete system memory cleanup in SEV firmware corrupt guest private memory (CVE-2023-31356)\n\nFor more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.","modified":"2026-02-04T04:33:32.799096Z","published":"2024-10-02T00:00:00Z","related":["CVE-2023-20584","CVE-2023-31356"],"references":[{"type":"ADVISORY","url":"https://access.redhat.com/errata/RHSA-2024:7481"},{"type":"REPORT","url":"https://access.redhat.com/security/cve/CVE-2023-20584"},{"type":"REPORT","url":"https://access.redhat.com/security/cve/CVE-2023-31356"},{"type":"REPORT","url":"https://bugzilla.redhat.com/2304583"},{"type":"REPORT","url":"https://bugzilla.redhat.com/2304593"},{"type":"ADVISORY","url":"https://errata.almalinux.org/8/ALSA-2024-7481.html"}],"affected":[{"package":{"name":"iwl100-firmware","ecosystem":"AlmaLinux:8","purl":"pkg:rpm/almalinux/iwl100-firmware"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"39.31.5.1-124.el8_10.1"}]}],"database_specific":{"source":"https://github.com/AlmaLinux/osv-database/blob/master/advisories/almalinux8/ALSA-2024:7481.json"}},{"package":{"name":"iwl1000-firmware","ecosystem":"AlmaLinux:8","purl":"pkg:rpm/almalinux/iwl1000-firmware"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"1:39.31.5.1-124.el8_10.1"}]}],"database_specific":{"source":"https://github.com/AlmaLinux/osv-database/blob/master/advisories/almalinux8/ALSA-2024:7481.json"}},{"package":{"name":"iwl105-firmware","ecosystem":"AlmaLinux:8","purl":"pkg:rpm/almalinux/iwl105-firmware"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"18.168.6.1-124.el8_10.1"}]}],"database_specific":{"source":"https://github.com/AlmaLinux/osv-database/blob/master/advisories/almalinux8/ALSA-2024:7481.json"}},{"package":{"name":"iwl135-firmware","ecosystem":"AlmaLinux:8","purl":"pkg:rpm/almalinux/iwl135-firmware"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"18.168.6.1-124.el8_10.1"}]}],"database_specific":{"source":"https://github.com/AlmaLinux/osv-database/blob/master/advisories/almalinux8/ALSA-2024:7481.json"}},{"package":{"name":"iwl2000-firmware","ecosystem":"AlmaLinux:8","purl":"pkg:rpm/almalinux/iwl2000-firmware"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"18.168.6.1-124.el8_10.1"}]}],"database_specific":{"source":"https://github.com/AlmaLinux/osv-database/blob/master/advisories/almalinux8/ALSA-2024:7481.json"}},{"package":{"name":"iwl2030-firmware","ecosystem":"AlmaLinux:8","purl":"pkg:rpm/almalinux/iwl2030-firmware"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"18.168.6.1-124.el8_10.1"}]}],"database_specific":{"source":"https://github.com/AlmaLinux/osv-database/blob/master/advisories/almalinux8/ALSA-2024:7481.json"}},{"package":{"name":"iwl3160-firmware","ecosystem":"AlmaLinux:8","purl":"pkg:rpm/almalinux/iwl3160-firmware"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"1:25.30.13.0-124.el8_10.1"}]}],"database_specific":{"source":"https://github.com/AlmaLinux/osv-database/blob/master/advisories/almalinux8/ALSA-2024:7481.json"}},{"package":{"name":"iwl3945-firmware","ecosystem":"AlmaLinux:8","purl":"pkg:rpm/almalinux/iwl3945-firmware"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"15.32.2.9-124.el8_10.1"}]}],"database_specific":{"source":"https://github.com/AlmaLinux/osv-database/blob/master/advisories/almalinux8/ALSA-2024:7481.json"}},{"package":{"name":"iwl4965-firmware","ecosystem":"AlmaLinux:8","purl":"pkg:rpm/almalinux/iwl4965-firmware"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"228.61.2.24-124.el8_10.1"}]}],"database_specific":{"source":"https://github.com/AlmaLinux/osv-database/blob/master/advisories/almalinux8/ALSA-2024:7481.json"}},{"package":{"name":"iwl5000-firmware","ecosystem":"AlmaLinux:8","purl":"pkg:rpm/almalinux/iwl5000-firmware"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"8.83.5.1_1-124.el8_10.1"}]}],"database_specific":{"source":"https://github.com/AlmaLinux/osv-database/blob/master/advisories/almalinux8/ALSA-2024:7481.json"}},{"package":{"name":"iwl5150-firmware","ecosystem":"AlmaLinux:8","purl":"pkg:rpm/almalinux/iwl5150-firmware"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"8.24.2.2-124.el8_10.1"}]}],"database_specific":{"source":"https://github.com/AlmaLinux/osv-database/blob/master/advisories/almalinux8/ALSA-2024:7481.json"}},{"package":{"name":"iwl6000-firmware","ecosystem":"AlmaLinux:8","purl":"pkg:rpm/almalinux/iwl6000-firmware"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"9.221.4.1-124.el8_10.1"}]}],"database_specific":{"source":"https://github.com/AlmaLinux/osv-database/blob/master/advisories/almalinux8/ALSA-2024:7481.json"}},{"package":{"name":"iwl6000g2a-firmware","ecosystem":"AlmaLinux:8","purl":"pkg:rpm/almalinux/iwl6000g2a-firmware"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"18.168.6.1-124.el8_10.1"}]}],"database_specific":{"source":"https://github.com/AlmaLinux/osv-database/blob/master/advisories/almalinux8/ALSA-2024:7481.json"}},{"package":{"name":"iwl6000g2b-firmware","ecosystem":"AlmaLinux:8","purl":"pkg:rpm/almalinux/iwl6000g2b-firmware"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"18.168.6.1-124.el8_10.1"}]}],"database_specific":{"source":"https://github.com/AlmaLinux/osv-database/blob/master/advisories/almalinux8/ALSA-2024:7481.json"}},{"package":{"name":"iwl6050-firmware","ecosystem":"AlmaLinux:8","purl":"pkg:rpm/almalinux/iwl6050-firmware"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"41.28.5.1-124.el8_10.1"}]}],"database_specific":{"source":"https://github.com/AlmaLinux/osv-database/blob/master/advisories/almalinux8/ALSA-2024:7481.json"}},{"package":{"name":"iwl7260-firmware","ecosystem":"AlmaLinux:8","purl":"pkg:rpm/almalinux/iwl7260-firmware"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"1:25.30.13.0-124.el8_10.1"}]}],"database_specific":{"source":"https://github.com/AlmaLinux/osv-database/blob/master/advisories/almalinux8/ALSA-2024:7481.json"}},{"package":{"name":"libertas-sd8686-firmware","ecosystem":"AlmaLinux:8","purl":"pkg:rpm/almalinux/libertas-sd8686-firmware"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"20240827-124.git3cff7109.el8_10"}]}],"database_specific":{"source":"https://github.com/AlmaLinux/osv-database/blob/master/advisories/almalinux8/ALSA-2024:7481.json"}},{"package":{"name":"libertas-sd8787-firmware","ecosystem":"AlmaLinux:8","purl":"pkg:rpm/almalinux/libertas-sd8787-firmware"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"20240827-124.git3cff7109.el8_10"}]}],"database_specific":{"source":"https://github.com/AlmaLinux/osv-database/blob/master/advisories/almalinux8/ALSA-2024:7481.json"}},{"package":{"name":"libertas-usb8388-firmware","ecosystem":"AlmaLinux:8","purl":"pkg:rpm/almalinux/libertas-usb8388-firmware"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"2:20240827-124.git3cff7109.el8_10"}]}],"database_specific":{"source":"https://github.com/AlmaLinux/osv-database/blob/master/advisories/almalinux8/ALSA-2024:7481.json"}},{"package":{"name":"libertas-usb8388-olpc-firmware","ecosystem":"AlmaLinux:8","purl":"pkg:rpm/almalinux/libertas-usb8388-olpc-firmware"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"20240827-124.git3cff7109.el8_10"}]}],"database_specific":{"source":"https://github.com/AlmaLinux/osv-database/blob/master/advisories/almalinux8/ALSA-2024:7481.json"}},{"package":{"name":"linux-firmware","ecosystem":"AlmaLinux:8","purl":"pkg:rpm/almalinux/linux-firmware"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"20240827-124.git3cff7109.el8_10"}]}],"database_specific":{"source":"https://github.com/AlmaLinux/osv-database/blob/master/advisories/almalinux8/ALSA-2024:7481.json"}}],"schema_version":"1.7.3"}