From patchwork Sun Jun 13 21:10:11 2021 Content-Type: text/plain; charset="utf-8" MIME-Version: 1.0 Content-Transfer-Encoding: 8bit X-Patchwork-Submitter: Peter Korsgaard X-Patchwork-Id: 1491500 Return-Path: X-Original-To: incoming-buildroot@patchwork.ozlabs.org Delivered-To: patchwork-incoming-buildroot@bilbo.ozlabs.org Authentication-Results: ozlabs.org; spf=pass (sender SPF authorized) smtp.mailfrom=busybox.net (client-ip=2605:bc80:3010::133; helo=smtp2.osuosl.org; envelope-from=buildroot-bounces@busybox.net; receiver=) Authentication-Results: ozlabs.org; dkim=fail reason="signature verification failed" (2048-bit key; unprotected) header.d=gmail.com header.i=@gmail.com header.a=rsa-sha256 header.s=20161025 header.b=C/mbwF4Q; dkim-atps=neutral Received: from smtp2.osuosl.org (smtp2.osuosl.org [IPv6:2605:bc80:3010::133]) (using TLSv1.3 with cipher TLS_AES_256_GCM_SHA384 (256/256 bits) key-exchange X25519 server-signature RSA-PSS (4096 bits) server-digest SHA256) (No client certificate requested) by ozlabs.org (Postfix) with ESMTPS id 4G36g82LPpz9sVb for ; Mon, 14 Jun 2021 07:10:26 +1000 (AEST) Received: from localhost (localhost [127.0.0.1]) by smtp2.osuosl.org (Postfix) with ESMTP id 5DFE740154; Sun, 13 Jun 2021 21:10:23 +0000 (UTC) X-Virus-Scanned: amavisd-new at osuosl.org Received: from smtp2.osuosl.org ([127.0.0.1]) by localhost (smtp2.osuosl.org [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id AciF9p009vVA; Sun, 13 Jun 2021 21:10:22 +0000 (UTC) Received: from ash.osuosl.org (ash.osuosl.org [140.211.166.34]) by smtp2.osuosl.org (Postfix) with ESMTP id A1D4D4012E; Sun, 13 Jun 2021 21:10:21 +0000 (UTC) X-Original-To: buildroot@lists.busybox.net Delivered-To: buildroot@osuosl.org Received: from smtp4.osuosl.org (smtp4.osuosl.org [140.211.166.137]) by ash.osuosl.org (Postfix) with ESMTP id 1C1A61BF341 for ; Sun, 13 Jun 2021 21:10:20 +0000 (UTC) Received: from localhost (localhost [127.0.0.1]) by smtp4.osuosl.org (Postfix) with ESMTP id 0AA0A4038A for ; Sun, 13 Jun 2021 21:10:20 +0000 (UTC) X-Virus-Scanned: amavisd-new at osuosl.org Authentication-Results: smtp4.osuosl.org (amavisd-new); dkim=pass (2048-bit key) header.d=gmail.com Received: from smtp4.osuosl.org ([127.0.0.1]) by localhost (smtp4.osuosl.org [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id 4DEex21dKPhs for ; Sun, 13 Jun 2021 21:10:18 +0000 (UTC) X-Greylist: whitelisted by SQLgrey-1.8.0 Received: from mail-ej1-x635.google.com (mail-ej1-x635.google.com [IPv6:2a00:1450:4864:20::635]) by smtp4.osuosl.org (Postfix) with ESMTPS id 84CBC40388 for ; Sun, 13 Jun 2021 21:10:17 +0000 (UTC) Received: by mail-ej1-x635.google.com with SMTP id ci15so13120832ejc.10 for ; Sun, 13 Jun 2021 14:10:17 -0700 (PDT) DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=gmail.com; s=20161025; h=sender:from:to:cc:subject:date:message-id:mime-version :content-transfer-encoding; bh=EqmYhZxr9J/hF4KmxrGcgRy6l0FU8iinQ0UI3Qnc8lA=; b=C/mbwF4QLTK2X6IMujOR3XKJvbA7jRIeekLjEBzEJMn1sQ8lBUVNmYqr3f/bHSDBMq 7x+Mvv1QRix6aFEYpjQYrtTTS3kkwOaf1r4IylqmqEtq8n7+deKYzj6rGfqKahr6FcWJ bQ0c1gYb8aLl3mTJZwb5MiGAYlHxbFu/VRo8F8WGZglc6Y1LExP0Xb5QsHxwelCS81Rq ZHySONJZgFXx5dDpE8jZrrB5X5fbIrW7T8vovoMi56luCnYC1Q5OfRwPFR9HYBDicByN dpsmoN/pELJH3I42SSvWhYt3exdwW3F2RLoVCR+X7/vzVUes8dekvhc1bWFcEQrkLzdI FQ/g== X-Google-DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=1e100.net; s=20161025; h=x-gm-message-state:sender:from:to:cc:subject:date:message-id :mime-version:content-transfer-encoding; bh=EqmYhZxr9J/hF4KmxrGcgRy6l0FU8iinQ0UI3Qnc8lA=; b=RULopoNSKdKTXo3AiTsrD52lED985bjA+J4ZpcAHjcYCXGotMzPFeztRxFoDFwpKJT 5YJEZBNdZ7O6SKnVt6h3t7kyZamYz2ysX2cxJD5AUeKfQ0LgsRXXh8C4UQKkXJiZpeSp okeYi7RmHRy0GFzpcJa6RGJ+SbDz9Gs17fXDqkuBeazSAL6Y9+9WXPzu3nao/W+b/BAm H+xAqlsAxsd314Igjruf2Qsq7CHFF4zCBJRygJxT82b43znK8mf494LBX0XmKHtZgEmp Q9Kq6/U+vTqXewU/184brNgUJbdHE0HmT+FLtD3Bg7Hthg2cLowtdeWdeDT/sma/htTr IJhg== X-Gm-Message-State: AOAM530d3idCJmOyKAXKRWq7Z2RHB8ugZBIJC93qX9Wb58xi+XOD0IeO 2qYD6q+D+41kg2hsm+hEB5vVlEQt4co= X-Google-Smtp-Source: ABdhPJz5Z95ZB+IV6ejGBVdHyYd5wRPfKrlFp5H3WCg2/Bc5AZRqScXYvke7m/J8NdCVPFqqsQ2hJQ== X-Received: by 2002:a17:906:24d8:: with SMTP id f24mr12809163ejb.188.1623618616265; Sun, 13 Jun 2021 14:10:16 -0700 (PDT) Received: from dell.be.48ers.dk (d51a5bc31.access.telenet.be. [81.165.188.49]) by smtp.gmail.com with ESMTPSA id kb20sm5565606ejc.58.2021.06.13.14.10.14 (version=TLS1_3 cipher=TLS_AES_256_GCM_SHA384 bits=256/256); Sun, 13 Jun 2021 14:10:15 -0700 (PDT) Received: from peko by dell.be.48ers.dk with local (Exim 4.92) (envelope-from ) id 1lsXN0-0006BV-56; Sun, 13 Jun 2021 23:10:14 +0200 From: Peter Korsgaard To: buildroot@buildroot.org Date: Sun, 13 Jun 2021 23:10:11 +0200 Message-Id: <20210613211011.23696-1-peter@korsgaard.com> X-Mailer: git-send-email 2.20.1 MIME-Version: 1.0 Subject: [Buildroot] [PATCH] package/intel-microcode: security bump to version 20210608 X-BeenThere: buildroot@busybox.net X-Mailman-Version: 2.1.29 Precedence: list List-Id: Discussion and development of buildroot List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , Cc: Maxime Hadjinlian Errors-To: buildroot-bounces@busybox.net Sender: "buildroot" Fixes the following security issues: - CVE-2020-24489: A potential security vulnerability in some Intel® Virtualization Technology for Directed I/0 (VT-d) products may allow escalation of privilege. Intel is releasing firmware updates to mitigate this potential vulnerability. https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00442.html - CVE-2020-24511: Potential security vulnerabilities in some Intel® Processors may allow information disclosure. Intel is releasing firmware updates to mitigate these potential vulnerabilities. https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00464.html - CVE-2020-24513: A potential security vulnerability in some Intel Atom® Processors may allow information disclosure. Intel is releasing firmware updates to mitigate this potential vulnerability. https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00465.html For more details, see the release notes: https://github.com/intel/Intel-Linux-Processor-Microcode-Data-Files/releases/tag/microcode-20210608 Signed-off-by: Peter Korsgaard --- package/intel-microcode/intel-microcode.hash | 2 +- package/intel-microcode/intel-microcode.mk | 2 +- 2 files changed, 2 insertions(+), 2 deletions(-) diff --git a/package/intel-microcode/intel-microcode.hash b/package/intel-microcode/intel-microcode.hash index 23191d9531..6687d4c0eb 100644 --- a/package/intel-microcode/intel-microcode.hash +++ b/package/intel-microcode/intel-microcode.hash @@ -1,3 +1,3 @@ # Locally computed -sha256 b855c81f78705f35341248a0603aa1a6e199ca7f59cd425e061b579329aa9eaa intel-microcode-20210216.tar.gz +sha256 fd85b6b769efd029dec6a2c07106fd18fb4dcb548b7bc4cde09295a8344ef6d7 intel-microcode-20210608.tar.gz sha256 03efb1491c7e899feb2665fa299363e64035e5444c1b8bc1f6ebed30de964e12 license diff --git a/package/intel-microcode/intel-microcode.mk b/package/intel-microcode/intel-microcode.mk index 2089003880..af7f6fa804 100644 --- a/package/intel-microcode/intel-microcode.mk +++ b/package/intel-microcode/intel-microcode.mk @@ -4,7 +4,7 @@ # ################################################################################ -INTEL_MICROCODE_VERSION = 20210216 +INTEL_MICROCODE_VERSION = 20210608 INTEL_MICROCODE_SITE = $(call github,intel,Intel-Linux-Processor-Microcode-Data-Files,microcode-$(INTEL_MICROCODE_VERSION)) INTEL_MICROCODE_LICENSE = PROPRIETARY INTEL_MICROCODE_LICENSE_FILES = license