openSUSE Security Announce
Threads by month
- ----- 2024 -----
- November
- October
- September
- August
- July
- June
- May
- April
- March
- February
- January
- ----- 2023 -----
- December
- November
- October
- September
- August
- July
- June
- May
- April
- March
- February
- January
- ----- 2022 -----
- December
- November
- October
- September
- August
- July
- June
- May
- April
- March
- February
- January
- ----- 2021 -----
- December
- November
- October
- September
- August
- July
- June
- May
- April
- March
- February
- January
- ----- 2020 -----
- December
- November
- October
- September
- August
- July
- June
- May
- April
- March
- February
- January
- ----- 2019 -----
- December
- November
- October
- September
- August
- July
- June
- May
- April
- March
- February
- January
- ----- 2018 -----
- December
- November
- October
- September
- August
- July
- June
- May
- April
- March
- February
- January
- ----- 2017 -----
- December
- November
- October
- September
- August
- July
- June
- May
- April
- March
- February
- January
- ----- 2016 -----
- December
- November
- October
- September
- August
- July
- June
- May
- April
- March
- February
- January
- ----- 2015 -----
- December
- November
- October
- September
- August
- July
- June
- May
- April
- March
- February
- January
- ----- 2014 -----
- December
- November
- October
- September
- August
- July
- June
- May
- April
- March
- February
- January
- ----- 2013 -----
- December
- November
- October
- September
- August
- July
- June
- May
- April
- March
- February
- January
- ----- 2012 -----
- December
- November
- October
- September
- August
- July
- June
- May
- April
- March
- February
- January
- ----- 2011 -----
- December
- November
- October
- September
- August
- July
- June
- May
- April
- March
- February
- January
- ----- 2010 -----
- December
- November
- October
- September
- August
- July
- June
- May
- April
- March
- February
- January
- ----- 2009 -----
- December
- November
- October
- September
- August
- July
- June
- May
- April
- March
- February
- January
- ----- 2008 -----
- December
- November
- October
- September
- August
- July
- June
- May
- April
- March
- February
- January
- ----- 2007 -----
- December
- November
- October
- September
- August
- July
- June
- May
- April
- March
- February
- January
- ----- 2006 -----
- December
- November
- October
- September
- August
- July
- June
- May
- April
- March
- February
- January
- ----- 2005 -----
- December
- November
- October
- September
- August
- July
- June
- May
- April
- March
- February
- January
- ----- 2004 -----
- December
- November
- October
- September
- August
- July
- June
- May
- April
- March
- February
- January
- ----- 2003 -----
- December
- November
- October
- September
- August
- July
- June
- May
- April
- March
- February
- January
- ----- 2002 -----
- December
- November
- October
- September
- August
- July
- June
- May
- April
- March
- February
- January
- ----- 2001 -----
- December
- November
- October
- September
- August
- July
- June
- May
- April
- March
- February
- January
- ----- 2000 -----
- December
- November
- October
- September
- August
- July
- June
- May
- April
- March
- February
- January
- ----- 1999 -----
- December
- November
- October
- September
- August
August 2024
- 3 participants
- 81 discussions
SUSE-SU-2024:2785-1: moderate: Security update for kernel-firmware
by OPENSUSE-SECURITY-UPDATES 06 Aug '24
by OPENSUSE-SECURITY-UPDATES 06 Aug '24
06 Aug '24
# Security update for kernel-firmware
Announcement ID: SUSE-SU-2024:2785-1
Rating: moderate
References:
* bsc#1225600
* bsc#1225601
Cross-References:
* CVE-2023-38417
* CVE-2023-47210
CVSS scores:
* CVE-2023-38417 ( SUSE ): 4.3 CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L
* CVE-2023-47210 ( SUSE ): 4.7 CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:C/C:N/I:N/A:L
Affected Products:
* Basesystem Module 15-SP6
* openSUSE Leap 15.6
* SUSE Linux Enterprise Desktop 15 SP6
* SUSE Linux Enterprise Real Time 15 SP6
* SUSE Linux Enterprise Server 15 SP6
* SUSE Linux Enterprise Server for SAP Applications 15 SP6
An update that solves two vulnerabilities can now be installed.
## Description:
This update for kernel-firmware fixes the following issues:
Update to version 20240728:
* amdgpu: update DMCUB to v0.0.227.0 for DCN35 and DCN351
* Revert "iwlwifi: update ty/So/Ma firmwares for core89-58 release"
* linux-firmware: update firmware for MT7922 WiFi device
* linux-firmware: update firmware for MT7921 WiFi device
* linux-firmware: update firmware for mediatek bluetooth chip (MT7922)
* linux-firmware: update firmware for mediatek bluetooth chip (MT7921)
* iwlwifi: add gl FW for core89-58 release
* iwlwifi: update ty/So/Ma firmwares for core89-58 release
* iwlwifi: update cc/Qu/QuZ firmwares for core89-58 release
* mediatek: Update mt8195 SOF firmware and sof-tplg
* ASoC: tas2781: fix the license issue for tas781 firmware
* rtl_bt: Update RTL8852B BT USB FW to 0x048F_4008
* i915: Update Xe2LPD DMC to v2.21
* qcom: move signed x1e80100 signed firmware to the SoC subdir
* qcom: add video firmware file for vpu-3.0
* intel: avs: Add topology file for I2S Analog Devices 4567
* intel: avs: Add topology file for I2S Nuvoton 8825
* intel: avs: Add topology file for I2S Maxim 98927
* intel: avs: Add topology file for I2S Maxim 98373
* intel: avs: Add topology file for I2S Maxim 98357a
* intel: avs: Add topology file for I2S Dialog 7219
* intel: avs: Add topology file for I2S Realtek 5663
* intel: avs: Add topology file for I2S Realtek 5640
* intel: avs: Add topology file for I2S Realtek 5514
* intel: avs: Add topology file for I2S Realtek 298
* intel: avs: Add topology file for I2S Realtek 286
* intel: avs: Add topology file for I2S Realtek 274
* intel: avs: Add topology file for Digital Microphone Array
* intel: avs: Add topology file for HDMI codecs
* intel: avs: Add topology file for HDAudio codecs
* intel: avs: Update AudioDSP base firmware for APL-based platforms
## Special Instructions and Notes:
* Please reboot the system after installing this update.
## Patch Instructions:
To install this SUSE update use the SUSE recommended installation methods like
YaST online_update or "zypper patch".
Alternatively you can run the command listed for your product:
* openSUSE Leap 15.6
zypper in -t patch SUSE-2024-2785=1 openSUSE-SLE-15.6-2024-2785=1
* Basesystem Module 15-SP6
zypper in -t patch SUSE-SLE-Module-Basesystem-15-SP6-2024-2785=1
## Package List:
* openSUSE Leap 15.6 (noarch)
* kernel-firmware-marvell-20240728-150600.3.6.1
* kernel-firmware-iwlwifi-20240728-150600.3.6.1
* kernel-firmware-nfp-20240728-150600.3.6.1
* kernel-firmware-ath10k-20240728-150600.3.6.1
* kernel-firmware-ueagle-20240728-150600.3.6.1
* kernel-firmware-bluetooth-20240728-150600.3.6.1
* kernel-firmware-network-20240728-150600.3.6.1
* kernel-firmware-usb-network-20240728-150600.3.6.1
* kernel-firmware-qlogic-20240728-150600.3.6.1
* kernel-firmware-brcm-20240728-150600.3.6.1
* kernel-firmware-ti-20240728-150600.3.6.1
* kernel-firmware-mediatek-20240728-150600.3.6.1
* kernel-firmware-20240728-150600.3.6.1
* kernel-firmware-dpaa2-20240728-150600.3.6.1
* kernel-firmware-radeon-20240728-150600.3.6.1
* kernel-firmware-liquidio-20240728-150600.3.6.1
* kernel-firmware-ath12k-20240728-150600.3.6.1
* kernel-firmware-i915-20240728-150600.3.6.1
* kernel-firmware-serial-20240728-150600.3.6.1
* kernel-firmware-bnx2-20240728-150600.3.6.1
* kernel-firmware-ath11k-20240728-150600.3.6.1
* kernel-firmware-platform-20240728-150600.3.6.1
* kernel-firmware-prestera-20240728-150600.3.6.1
* kernel-firmware-nvidia-20240728-150600.3.6.1
* kernel-firmware-qcom-20240728-150600.3.6.1
* kernel-firmware-mwifiex-20240728-150600.3.6.1
* kernel-firmware-realtek-20240728-150600.3.6.1
* kernel-firmware-all-20240728-150600.3.6.1
* kernel-firmware-media-20240728-150600.3.6.1
* kernel-firmware-amdgpu-20240728-150600.3.6.1
* ucode-amd-20240728-150600.3.6.1
* kernel-firmware-intel-20240728-150600.3.6.1
* kernel-firmware-mellanox-20240728-150600.3.6.1
* kernel-firmware-atheros-20240728-150600.3.6.1
* kernel-firmware-chelsio-20240728-150600.3.6.1
* kernel-firmware-sound-20240728-150600.3.6.1
* Basesystem Module 15-SP6 (noarch)
* kernel-firmware-marvell-20240728-150600.3.6.1
* kernel-firmware-iwlwifi-20240728-150600.3.6.1
* kernel-firmware-nfp-20240728-150600.3.6.1
* kernel-firmware-ath10k-20240728-150600.3.6.1
* kernel-firmware-ueagle-20240728-150600.3.6.1
* kernel-firmware-bluetooth-20240728-150600.3.6.1
* kernel-firmware-network-20240728-150600.3.6.1
* kernel-firmware-usb-network-20240728-150600.3.6.1
* kernel-firmware-qlogic-20240728-150600.3.6.1
* kernel-firmware-brcm-20240728-150600.3.6.1
* kernel-firmware-ti-20240728-150600.3.6.1
* kernel-firmware-mediatek-20240728-150600.3.6.1
* kernel-firmware-dpaa2-20240728-150600.3.6.1
* kernel-firmware-radeon-20240728-150600.3.6.1
* kernel-firmware-liquidio-20240728-150600.3.6.1
* kernel-firmware-ath12k-20240728-150600.3.6.1
* kernel-firmware-i915-20240728-150600.3.6.1
* kernel-firmware-serial-20240728-150600.3.6.1
* kernel-firmware-bnx2-20240728-150600.3.6.1
* kernel-firmware-ath11k-20240728-150600.3.6.1
* kernel-firmware-platform-20240728-150600.3.6.1
* kernel-firmware-prestera-20240728-150600.3.6.1
* kernel-firmware-nvidia-20240728-150600.3.6.1
* kernel-firmware-qcom-20240728-150600.3.6.1
* kernel-firmware-mwifiex-20240728-150600.3.6.1
* kernel-firmware-realtek-20240728-150600.3.6.1
* kernel-firmware-all-20240728-150600.3.6.1
* kernel-firmware-media-20240728-150600.3.6.1
* kernel-firmware-amdgpu-20240728-150600.3.6.1
* ucode-amd-20240728-150600.3.6.1
* kernel-firmware-intel-20240728-150600.3.6.1
* kernel-firmware-mellanox-20240728-150600.3.6.1
* kernel-firmware-atheros-20240728-150600.3.6.1
* kernel-firmware-chelsio-20240728-150600.3.6.1
* kernel-firmware-sound-20240728-150600.3.6.1
## References:
* https://www.suse.com/security/cve/CVE-2023-38417.html
* https://www.suse.com/security/cve/CVE-2023-47210.html
* https://bugzilla.suse.com/show_bug.cgi?id=1225600
* https://bugzilla.suse.com/show_bug.cgi?id=1225601
1
0