{"id":"ALSA-2024:7484","summary":"Moderate: linux-firmware security update","details":"The linux-firmware packages contain all of the firmware files that are required by various devices to operate.\n\nSecurity Fix(es):\n\n* kernel: hw:amd:IOMMU improperly handles certain special address leading to a loss of guest integrity (CVE-2023-20584)\n* kernel: hw: amd:Incomplete system memory cleanup in SEV firmware corrupt guest private memory (CVE-2023-31356)\n\nFor more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.","modified":"2026-01-30T01:08:03.757083Z","published":"2024-10-02T00:00:00Z","related":["CVE-2023-20584","CVE-2023-31356"],"references":[{"type":"ADVISORY","url":"https://access.redhat.com/errata/RHSA-2024:7484"},{"type":"REPORT","url":"https://access.redhat.com/security/cve/CVE-2023-20584"},{"type":"REPORT","url":"https://access.redhat.com/security/cve/CVE-2023-31356"},{"type":"REPORT","url":"https://bugzilla.redhat.com/2304583"},{"type":"REPORT","url":"https://bugzilla.redhat.com/2304593"},{"type":"ADVISORY","url":"https://errata.almalinux.org/9/ALSA-2024-7484.html"}],"affected":[{"package":{"name":"iwl100-firmware","ecosystem":"AlmaLinux:9","purl":"pkg:rpm/almalinux/iwl100-firmware"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"39.31.5.1-143.3.el9_4"}]}],"database_specific":{"source":"https://github.com/AlmaLinux/osv-database/blob/master/advisories/almalinux9/ALSA-2024:7484.json"}},{"package":{"name":"iwl1000-firmware","ecosystem":"AlmaLinux:9","purl":"pkg:rpm/almalinux/iwl1000-firmware"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"1:39.31.5.1-143.3.el9_4"}]}],"database_specific":{"source":"https://github.com/AlmaLinux/osv-database/blob/master/advisories/almalinux9/ALSA-2024:7484.json"}},{"package":{"name":"iwl105-firmware","ecosystem":"AlmaLinux:9","purl":"pkg:rpm/almalinux/iwl105-firmware"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"18.168.6.1-143.3.el9_4"}]}],"database_specific":{"source":"https://github.com/AlmaLinux/osv-database/blob/master/advisories/almalinux9/ALSA-2024:7484.json"}},{"package":{"name":"iwl135-firmware","ecosystem":"AlmaLinux:9","purl":"pkg:rpm/almalinux/iwl135-firmware"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"18.168.6.1-143.3.el9_4"}]}],"database_specific":{"source":"https://github.com/AlmaLinux/osv-database/blob/master/advisories/almalinux9/ALSA-2024:7484.json"}},{"package":{"name":"iwl2000-firmware","ecosystem":"AlmaLinux:9","purl":"pkg:rpm/almalinux/iwl2000-firmware"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"18.168.6.1-143.3.el9_4"}]}],"database_specific":{"source":"https://github.com/AlmaLinux/osv-database/blob/master/advisories/almalinux9/ALSA-2024:7484.json"}},{"package":{"name":"iwl2030-firmware","ecosystem":"AlmaLinux:9","purl":"pkg:rpm/almalinux/iwl2030-firmware"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"18.168.6.1-143.3.el9_4"}]}],"database_specific":{"source":"https://github.com/AlmaLinux/osv-database/blob/master/advisories/almalinux9/ALSA-2024:7484.json"}},{"package":{"name":"iwl3160-firmware","ecosystem":"AlmaLinux:9","purl":"pkg:rpm/almalinux/iwl3160-firmware"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"1:25.30.13.0-143.3.el9_4"}]}],"database_specific":{"source":"https://github.com/AlmaLinux/osv-database/blob/master/advisories/almalinux9/ALSA-2024:7484.json"}},{"package":{"name":"iwl5000-firmware","ecosystem":"AlmaLinux:9","purl":"pkg:rpm/almalinux/iwl5000-firmware"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"8.83.5.1_1-143.3.el9_4"}]}],"database_specific":{"source":"https://github.com/AlmaLinux/osv-database/blob/master/advisories/almalinux9/ALSA-2024:7484.json"}},{"package":{"name":"iwl5150-firmware","ecosystem":"AlmaLinux:9","purl":"pkg:rpm/almalinux/iwl5150-firmware"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"8.24.2.2-143.3.el9_4"}]}],"database_specific":{"source":"https://github.com/AlmaLinux/osv-database/blob/master/advisories/almalinux9/ALSA-2024:7484.json"}},{"package":{"name":"iwl6000g2a-firmware","ecosystem":"AlmaLinux:9","purl":"pkg:rpm/almalinux/iwl6000g2a-firmware"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"18.168.6.1-143.3.el9_4"}]}],"database_specific":{"source":"https://github.com/AlmaLinux/osv-database/blob/master/advisories/almalinux9/ALSA-2024:7484.json"}},{"package":{"name":"iwl6000g2b-firmware","ecosystem":"AlmaLinux:9","purl":"pkg:rpm/almalinux/iwl6000g2b-firmware"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"18.168.6.1-143.3.el9_4"}]}],"database_specific":{"source":"https://github.com/AlmaLinux/osv-database/blob/master/advisories/almalinux9/ALSA-2024:7484.json"}},{"package":{"name":"iwl6050-firmware","ecosystem":"AlmaLinux:9","purl":"pkg:rpm/almalinux/iwl6050-firmware"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"41.28.5.1-143.3.el9_4"}]}],"database_specific":{"source":"https://github.com/AlmaLinux/osv-database/blob/master/advisories/almalinux9/ALSA-2024:7484.json"}},{"package":{"name":"iwl7260-firmware","ecosystem":"AlmaLinux:9","purl":"pkg:rpm/almalinux/iwl7260-firmware"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"1:25.30.13.0-143.3.el9_4"}]}],"database_specific":{"source":"https://github.com/AlmaLinux/osv-database/blob/master/advisories/almalinux9/ALSA-2024:7484.json"}},{"package":{"name":"libertas-sd8787-firmware","ecosystem":"AlmaLinux:9","purl":"pkg:rpm/almalinux/libertas-sd8787-firmware"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"20240905-143.3.el9_4"}]}],"database_specific":{"source":"https://github.com/AlmaLinux/osv-database/blob/master/advisories/almalinux9/ALSA-2024:7484.json"}},{"package":{"name":"linux-firmware","ecosystem":"AlmaLinux:9","purl":"pkg:rpm/almalinux/linux-firmware"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"20240905-143.3.el9_4"}]}],"database_specific":{"source":"https://github.com/AlmaLinux/osv-database/blob/master/advisories/almalinux9/ALSA-2024:7484.json"}},{"package":{"name":"linux-firmware-whence","ecosystem":"AlmaLinux:9","purl":"pkg:rpm/almalinux/linux-firmware-whence"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"20240905-143.3.el9_4"}]}],"database_specific":{"source":"https://github.com/AlmaLinux/osv-database/blob/master/advisories/almalinux9/ALSA-2024:7484.json"}},{"package":{"name":"netronome-firmware","ecosystem":"AlmaLinux:9","purl":"pkg:rpm/almalinux/netronome-firmware"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"20240905-143.3.el9_4"}]}],"database_specific":{"source":"https://github.com/AlmaLinux/osv-database/blob/master/advisories/almalinux9/ALSA-2024:7484.json"}}],"schema_version":"1.7.3"}