{"id":"ALSA-2023:5068","summary":"Moderate: linux-firmware security update","details":"The linux-firmware packages contain all of the firmware files that are required by various devices to operate.\n\nSecurity Fix(es):\n\n* hw: amd: Cross-Process Information Leak (CVE-2023-20593)\n\nFor more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.","modified":"2026-01-30T00:54:10.775884Z","published":"2023-09-12T00:00:00Z","related":["CVE-2023-20593"],"references":[{"type":"ADVISORY","url":"https://access.redhat.com/errata/RHSA-2023:5068"},{"type":"REPORT","url":"https://access.redhat.com/security/cve/CVE-2023-20593"},{"type":"REPORT","url":"https://bugzilla.redhat.com/2217845"},{"type":"ADVISORY","url":"https://errata.almalinux.org/9/ALSA-2023-5068.html"}],"affected":[{"package":{"name":"iwl100-firmware","ecosystem":"AlmaLinux:9","purl":"pkg:rpm/almalinux/iwl100-firmware"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"39.31.5.1-135.el9_2.alma.1"}]}],"database_specific":{"source":"https://github.com/AlmaLinux/osv-database/blob/master/advisories/almalinux9/ALSA-2023:5068.json"}},{"package":{"name":"iwl1000-firmware","ecosystem":"AlmaLinux:9","purl":"pkg:rpm/almalinux/iwl1000-firmware"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"1:39.31.5.1-135.el9_2.alma.1"}]}],"database_specific":{"source":"https://github.com/AlmaLinux/osv-database/blob/master/advisories/almalinux9/ALSA-2023:5068.json"}},{"package":{"name":"iwl105-firmware","ecosystem":"AlmaLinux:9","purl":"pkg:rpm/almalinux/iwl105-firmware"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"18.168.6.1-135.el9_2.alma.1"}]}],"database_specific":{"source":"https://github.com/AlmaLinux/osv-database/blob/master/advisories/almalinux9/ALSA-2023:5068.json"}},{"package":{"name":"iwl135-firmware","ecosystem":"AlmaLinux:9","purl":"pkg:rpm/almalinux/iwl135-firmware"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"18.168.6.1-135.el9_2.alma.1"}]}],"database_specific":{"source":"https://github.com/AlmaLinux/osv-database/blob/master/advisories/almalinux9/ALSA-2023:5068.json"}},{"package":{"name":"iwl2000-firmware","ecosystem":"AlmaLinux:9","purl":"pkg:rpm/almalinux/iwl2000-firmware"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"18.168.6.1-135.el9_2.alma.1"}]}],"database_specific":{"source":"https://github.com/AlmaLinux/osv-database/blob/master/advisories/almalinux9/ALSA-2023:5068.json"}},{"package":{"name":"iwl2030-firmware","ecosystem":"AlmaLinux:9","purl":"pkg:rpm/almalinux/iwl2030-firmware"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"18.168.6.1-135.el9_2.alma.1"}]}],"database_specific":{"source":"https://github.com/AlmaLinux/osv-database/blob/master/advisories/almalinux9/ALSA-2023:5068.json"}},{"package":{"name":"iwl3160-firmware","ecosystem":"AlmaLinux:9","purl":"pkg:rpm/almalinux/iwl3160-firmware"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"1:25.30.13.0-135.el9_2.alma.1"}]}],"database_specific":{"source":"https://github.com/AlmaLinux/osv-database/blob/master/advisories/almalinux9/ALSA-2023:5068.json"}},{"package":{"name":"iwl5000-firmware","ecosystem":"AlmaLinux:9","purl":"pkg:rpm/almalinux/iwl5000-firmware"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"8.83.5.1_1-135.el9_2.alma.1"}]}],"database_specific":{"source":"https://github.com/AlmaLinux/osv-database/blob/master/advisories/almalinux9/ALSA-2023:5068.json"}},{"package":{"name":"iwl5150-firmware","ecosystem":"AlmaLinux:9","purl":"pkg:rpm/almalinux/iwl5150-firmware"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"8.24.2.2-135.el9_2.alma.1"}]}],"database_specific":{"source":"https://github.com/AlmaLinux/osv-database/blob/master/advisories/almalinux9/ALSA-2023:5068.json"}},{"package":{"name":"iwl6000g2a-firmware","ecosystem":"AlmaLinux:9","purl":"pkg:rpm/almalinux/iwl6000g2a-firmware"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"18.168.6.1-135.el9_2.alma.1"}]}],"database_specific":{"source":"https://github.com/AlmaLinux/osv-database/blob/master/advisories/almalinux9/ALSA-2023:5068.json"}},{"package":{"name":"iwl6000g2b-firmware","ecosystem":"AlmaLinux:9","purl":"pkg:rpm/almalinux/iwl6000g2b-firmware"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"18.168.6.1-135.el9_2.alma.1"}]}],"database_specific":{"source":"https://github.com/AlmaLinux/osv-database/blob/master/advisories/almalinux9/ALSA-2023:5068.json"}},{"package":{"name":"iwl6050-firmware","ecosystem":"AlmaLinux:9","purl":"pkg:rpm/almalinux/iwl6050-firmware"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"41.28.5.1-135.el9_2.alma.1"}]}],"database_specific":{"source":"https://github.com/AlmaLinux/osv-database/blob/master/advisories/almalinux9/ALSA-2023:5068.json"}},{"package":{"name":"iwl7260-firmware","ecosystem":"AlmaLinux:9","purl":"pkg:rpm/almalinux/iwl7260-firmware"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"1:25.30.13.0-135.el9_2.alma.1"}]}],"database_specific":{"source":"https://github.com/AlmaLinux/osv-database/blob/master/advisories/almalinux9/ALSA-2023:5068.json"}},{"package":{"name":"libertas-sd8787-firmware","ecosystem":"AlmaLinux:9","purl":"pkg:rpm/almalinux/libertas-sd8787-firmware"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"20230310-135.el9_2.alma.1"}]}],"database_specific":{"source":"https://github.com/AlmaLinux/osv-database/blob/master/advisories/almalinux9/ALSA-2023:5068.json"}},{"package":{"name":"linux-firmware","ecosystem":"AlmaLinux:9","purl":"pkg:rpm/almalinux/linux-firmware"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"20230310-135.el9_2.alma.1"}]}],"database_specific":{"source":"https://github.com/AlmaLinux/osv-database/blob/master/advisories/almalinux9/ALSA-2023:5068.json"}},{"package":{"name":"linux-firmware-whence","ecosystem":"AlmaLinux:9","purl":"pkg:rpm/almalinux/linux-firmware-whence"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"20230310-135.el9_2.alma.1"}]}],"database_specific":{"source":"https://github.com/AlmaLinux/osv-database/blob/master/advisories/almalinux9/ALSA-2023:5068.json"}},{"package":{"name":"netronome-firmware","ecosystem":"AlmaLinux:9","purl":"pkg:rpm/almalinux/netronome-firmware"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"20230310-135.el9_2.alma.1"}]}],"database_specific":{"source":"https://github.com/AlmaLinux/osv-database/blob/master/advisories/almalinux9/ALSA-2023:5068.json"}}],"schema_version":"1.7.3"}