• Accepted amd64-microcode 3.20240820.1~deb11u1 (source) into oldstable-p

    From Debian FTP Masters@21:1/5 to All on Sat Aug 24 17:40:01 2024
    -----BEGIN PGP SIGNED MESSAGE-----
    Hash: SHA512

    Format: 1.8
    Date: Sat, 24 Aug 2024 09:28:39 -0300
    Source: amd64-microcode
    Architecture: source
    Version: 3.20240820.1~deb11u1
    Distribution: bullseye
    Urgency: high
    Maintainer: Henrique de Moraes Holschuh <hmh@debian.org>
    Changed-By: Henrique de Moraes Holschuh <hmh@debian.org>
    Changes:
    amd64-microcode (3.20240820.1~deb11u1) bullseye; urgency=medium
    .
    * Rebuild for bullseye
    * Revert merged-usr changes from unstable
    * Revert move to non-free-firmware
    .
    amd64-microcode (3.20240820.1) unstable; urgency=high
    .
    * Update package data from linux-firmware 20240820
    * New AMD-SEV firmware from AMD upstream (20240820)
    + Updated SEV firmware:
    Family 17h models 30h-3fh: version 0.24 build 20
    Family 19h models 00h-0fh: version 1.55 build 21
    Family 19h models 10h-1fh: version 1.55 build 37
    + New SEV firmware:
    Family 19h models a0h-afh: version 1.55 build 37
    * SECURITY UPDATE (AMD-SB-3003):
    * Mitigates CVE-2023-20584: IOMMU improperly handles certain special
    address ranges with invalid device table entries (DTEs), which may allow
    an attacker with privileges and a compromised Hypervisor to induce DTE
    faults to bypass RMP checks in SEV-SNP, potentially leading to a loss of
    guest integrity.
    * Mitigates CVE-2023-31356: Incomplete system memory cleanup in SEV
    firmware could allow a privileged attacker to corrupt guest private
    memory, potentially resulting in a loss of data integrity. Checksums-Sha1:
    24996ea71afc583b4fdcb763781db0f26f25e9ae 1718 amd64-microcode_3.20240820.1~deb11u1.dsc
    4a0cb83c43c0df2b5139b327229cf13413437f37 178452 amd64-microcode_3.20240820.1~deb11u1.tar.xz
    720e074cba8bbb38003f86f3cde5d58c5ea78200 6066 amd64-microcode_3.20240820.1~deb11u1_amd64.buildinfo
    Checksums-Sha256:
    83c3866b1385475c57902bb5f9a4e2767c0157735bcbf053657fe7920995f37b 1718 amd64-microcode_3.20240820.1~deb11u1.dsc
    592b8b3c1345e7fc600027f1110a8be18ec5948a694fa1fd3757cc4b8d7a62e2 178452 amd64-microcode_3.20240820.1~deb11u1.tar.xz
    0e82bd5c7c308dc4b049efe4361bc3c23d2b08a87a48a1864695082ad5c12631 6066 amd64-microcode_3.20240820.1~deb11u1_amd64.buildinfo
    Files:
    702459b7face9c016d33f01c3067b94a 1718 non-free/admin standard amd64-microcode_3.20240820.1~deb11u1.dsc
    84ad32dc6247cba517a5f63d41b447d6 178452 non-free/admin standard amd64-microcode_3.20240820.1~deb11u1.tar.xz
    5ecd2e473b24939291569a9cea48e29b 6066 non-free/admin standard amd64-microcode_3.20240820.1~deb11u1_amd64.buildinfo

    -----BEGIN PGP SIGNATURE-----

    iQIzBAEBCgAdFiEEpvbMGUAhfu+gsYOwlOXoPKamj0cFAmbJ0zwACgkQlOXoPKam j0f0YBAAiNbHOqSeW8+cIoNdGfAobr0OV++Hb+Rp6TXBgEO9VFsp76yimmV7Rv4L 4CGV15lkkJVpL6dkf8kihGmbqBeUtDKNj2nyJM1fHA8eKdCI4KI9E4JadxkM1ALq W2p+3BFOjAx9D8qLaJRDdMt6XfAff2P8xSXxD6GJICDo7y+wVBOwn7n9iYXDlkj0 T3lIVJj2QOWKvyszgW4aUPQ6THE9dh5j59wjP2DrQRdhY7xN12qY4IlqqOuzbFuI zgi7ncxTkk11rbWXPxMBE/10ZqHB/RSrAMIlFfhrboSoHnF36ZW04PsPy+k3D643 kWInm/Drtzd0guixqnC9ZHPA0iA5hki+qhpxxCjoIOYIL3LQyF5wJ8EH07rM9y2t QsqvEV5MZlnQRdAWDk0DW+wmoGt3b+P8D+/MkTdnqaLTR145KbONxO4W+YHWe7Hl Q7GuK2T1sHptvxpsNfuZW4sZj0Tz3diwAhWH8mmQbvqdwStREG/MOC8k/lZurtXO bSRKsE+3nRsLjjZcP9w2ADSXQE2ewCzlC8UMrjQO/uFFPByGvBTIhgb8ZjTywGbY nx+FMZprihmwWRXBCBKJufxexS4B+C1usptVsuEMYZSKonKIEI717prTEgtuSYKL qKp6CEv5/f46+7s2XBlqWyQ5px1jqotzvY68JvaGG1kyvmfXgc0=
    =v66d
    -----END PGP SIGNATURE-----


    --==============%79364496935524100=Content-Type: application/pgp-signature

    -----BEGIN PGP SIGNATURE-----

    iHUEABYIAB0WIQTziqJOuF8J+ZI8pJSb9qggYcy5IQUCZsn9CwAKCRCb9qggYcy5 Ia7nAP4j0kW1QUIZIzxxbijIwx1oz0sv53bWGyl4KVy5J+n+rwD/XnTUmdck2698 ih/zKv4cjfrya0wgMLL4XXK3t8HOCA4=Jb4T
    -----END PGP SIGNATURE-----

    --- SoupGate-Win32 v1.05
    * Origin: fsxNet Usenet Gateway (21:1/5)