diff --git a/kernel-firmware.changes b/kernel-firmware.changes index 2098c3b..d22ddce 100644 --- a/kernel-firmware.changes +++ b/kernel-firmware.changes @@ -1,3 +1,8 @@ +------------------------------------------------------------------- +Mon Dec 25 16:38:52 UTC 2017 - meissner@suse.com + +- Add microcode_amd_fam17h.bin (bsc#1068032 CVE-2017-5715) + ------------------------------------------------------------------- Sat Dec 23 08:34:13 UTC 2017 - mpluskal@suse.com diff --git a/kernel-firmware.spec b/kernel-firmware.spec index 3377680..a8fe2fd 100644 --- a/kernel-firmware.spec +++ b/kernel-firmware.spec @@ -1,7 +1,7 @@ # # spec file for package kernel-firmware # -# Copyright (c) 2017 SUSE LINUX GmbH, Nuernberg, Germany. +# Copyright (c) 2018 SUSE LINUX GmbH, Nuernberg, Germany. # # All modifications and additions to the file contributed by third parties # remain the property of their copyright owners, unless otherwise agreed @@ -38,6 +38,8 @@ Source8: ql2600_fw.bin Source9: ql2700_fw.bin Source10: ql8300_fw.bin Source99: %{name}-rpmlintrc +# CVE-2017-5715 +Source200: microcode_amd_fam17h.bin BuildRequires: fdupes BuildRequires: suse-module-tools Requires(post): coreutils @@ -102,6 +104,8 @@ sed -i "s|/usr/bin/python$|/usr/bin/python3|" ./check_whence.py mkdir -p %{buildroot}/lib/firmware cp -avf * %{buildroot}/lib/firmware rm -f %{buildroot}/lib/firmware/WHENCE +# CVE-2017-5715 fix +cp %{SOURCE200} %{buildroot}/lib/firmware/amd-ucode/ %fdupes %{buildroot} # In alsa-firmware rm -f %{buildroot}/lib/firmware/ctefx.bin diff --git a/microcode_amd_fam17h.bin b/microcode_amd_fam17h.bin new file mode 100644 index 0000000..1ce229b Binary files /dev/null and b/microcode_amd_fam17h.bin differ