From 32c387ca9fbc2fec82c0cd15ec2997397031f4ddc231da5d95ed6c81a49492c3 Mon Sep 17 00:00:00 2001 From: Marcus Meissner Date: Thu, 5 Jul 2018 07:07:51 +0000 Subject: [PATCH] - Update to 20180703 release, for the listed CPU chipsets this fixes CVE-2018-3640 (Spectre v3a) CVE-2018-3639 (Spectre v4). (bsc#1100147 bsc#1087082 bsc#1087083) https://downloadcenter.intel.com/download/27945/Linux-Processor-Microcode-Data-File Following chipsets are fixed in this round: Model Stepping F-MO-S/PI Old->New ---- updated platforms ------------------------------------ SNB-EP C1 6-2d-6/6d 0000061c->0000061d Xeon E5 SNB-EP C2 6-2d-7/6d 00000713->00000714 Xeon E5 IVT C0 6-3e-4/ed 0000042c->0000042d Xeon E5 v2; Core i7-4960X/4930K/4820K IVT D1 6-3e-7/ed 00000713->00000714 Xeon E5 v2 HSX-E/EP/4S C0 6-3f-2/6f 0000003c->0000003d Xeon E5 v3 HSX-EX E0 6-3f-4/80 00000011->00000012 Xeon E7 v3 SKX-SP/D/W/X H0 6-55-4/b7 02000043->0200004d Xeon Bronze 31xx, Silver 41xx, Gold 51xx/61xx Platinum 81xx, D/W-21xx; Core i9-7xxxX BDX-DE A1 6-56-5/10 0e000009->0e00000a Xeon D-15x3N ---- intel-ucode-with-caveats/ ---------------------------- BDX-ML B/M/R0 6-4f-1/ef 0b00002c->0b00002e Xeon E5/E7 v4; Core i7-69xx/68xx OBS-URL: https://build.opensuse.org/package/show/Base:System/ucode-intel?expand=0&rev=69 --- microcode-20180425.tgz | 3 --- microcode-20180703.tgz | 3 +++ ucode-intel.changes | 25 +++++++++++++++++++++++++ ucode-intel.spec | 10 +++------- 4 files changed, 31 insertions(+), 10 deletions(-) delete mode 100644 microcode-20180425.tgz create mode 100644 microcode-20180703.tgz diff --git a/microcode-20180425.tgz b/microcode-20180425.tgz deleted file mode 100644 index 3f7a1ca..0000000 --- a/microcode-20180425.tgz +++ /dev/null @@ -1,3 +0,0 @@ -version https://git-lfs.github.com/spec/v1 -oid sha256:f0d2492f4561e2559f6c9471b231cb8262d45762c0e7cccf787be5c189b4e2d6 -size 1565473 diff --git a/microcode-20180703.tgz b/microcode-20180703.tgz new file mode 100644 index 0000000..a227b8b --- /dev/null +++ b/microcode-20180703.tgz @@ -0,0 +1,3 @@ +version https://git-lfs.github.com/spec/v1 +oid sha256:4a1a346fdf48e1626d4c9d0d47bbbc6a4052f56e359c85a3dd2d10fd555e5938 +size 1550181 diff --git a/ucode-intel.changes b/ucode-intel.changes index 5699d2c..b28304b 100644 --- a/ucode-intel.changes +++ b/ucode-intel.changes @@ -1,3 +1,28 @@ +------------------------------------------------------------------- +Wed Jul 4 15:05:31 UTC 2018 - meissner@suse.com + +- Update to 20180703 release, for the listed CPU chipsets + this fixes CVE-2018-3640 (Spectre v3a) CVE-2018-3639 (Spectre v4). + (bsc#1100147 bsc#1087082 bsc#1087083) + + https://downloadcenter.intel.com/download/27945/Linux-Processor-Microcode-Data-File + + Following chipsets are fixed in this round: + + Model Stepping F-MO-S/PI Old->New + ---- updated platforms ------------------------------------ + SNB-EP C1 6-2d-6/6d 0000061c->0000061d Xeon E5 + SNB-EP C2 6-2d-7/6d 00000713->00000714 Xeon E5 + IVT C0 6-3e-4/ed 0000042c->0000042d Xeon E5 v2; Core i7-4960X/4930K/4820K + IVT D1 6-3e-7/ed 00000713->00000714 Xeon E5 v2 + HSX-E/EP/4S C0 6-3f-2/6f 0000003c->0000003d Xeon E5 v3 + HSX-EX E0 6-3f-4/80 00000011->00000012 Xeon E7 v3 + SKX-SP/D/W/X H0 6-55-4/b7 02000043->0200004d Xeon Bronze 31xx, Silver 41xx, Gold 51xx/61xx Platinum 81xx, D/W-21xx; Core i9-7xxxX + BDX-DE A1 6-56-5/10 0e000009->0e00000a Xeon D-15x3N + + ---- intel-ucode-with-caveats/ ---------------------------- + BDX-ML B/M/R0 6-4f-1/ef 0b00002c->0b00002e Xeon E5/E7 v4; Core i7-69xx/68xx + ------------------------------------------------------------------- Tue May 15 15:01:30 UTC 2018 - trenn@suse.de diff --git a/ucode-intel.spec b/ucode-intel.spec index f5d090f..3692a8b 100644 --- a/ucode-intel.spec +++ b/ucode-intel.spec @@ -17,15 +17,15 @@ Name: ucode-intel -Version: 20180425 +Version: 20180703 Release: 0 Summary: Microcode Updates for Intel x86/x86-64 CPUs License: SUSE-Firmware Group: Hardware/Other BuildRequires: suse-module-tools #License is: Intel Software License Agreement -Url: https://downloadcenter.intel.com/download/27776/Linux-Processor-Microcode-Data-File?v=t -Source0: https://downloadmirror.intel.com/27776/eng/microcode-%{version}.tgz +Url: https://downloadcenter.intel.com/download/27945/Linux-Processor-Microcode-Data-File +Source0: https://downloadmirror.intel.com/27945/eng/microcode-%{version}.tgz Source1: ucode-intel-rpmlintrc Source2: LICENSE Supplements: modalias(x86cpu:vendor%3A0000%3Afamily%3A*%3Amodel%3A*%3Afeature%3A*) @@ -48,9 +48,6 @@ cp %{SOURCE2} . %install mkdir -p %{buildroot}/lib/firmware/intel-ucode -mv intel-ucode/list ./microcode_list -cat intel-ucode-with-caveats/list >> ./microcode_list -rm intel-ucode-with-caveats/list cp intel-ucode/* %{buildroot}/lib/firmware/intel-ucode cd intel-ucode-with-caveats for microcode in *;do @@ -69,7 +66,6 @@ done %files %defattr(-,root,root) %doc LICENSE -%doc microcode_list %doc releasenote /lib/firmware/intel-ucode/