package/intel-microcode: security bump to version 20201118
authorPeter Korsgaard <peter@korsgaard.com>
Tue, 9 Feb 2021 16:36:40 +0000 (17:36 +0100)
committerYann E. MORIN <yann.morin.1998@free.fr>
Tue, 9 Feb 2021 18:20:27 +0000 (19:20 +0100)
commit9974d8836295797fdaa73f4ad61f741101b0c677
tree1258cedb2dc06ba95e966ba28f8e717ef76e555a
parenta8e524d2743ce549c4a5f4eec88317ba1caaf7bd
package/intel-microcode: security bump to version 20201118

Fixes the following security issues:

- CVE-2020-8694: Insufficient access control in the Linux kernel driver for
  some Intel(R) Processors may allow an authenticated user to potentially
  enable information disclosure via local access.

  https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00389.html

- CVE-2020-8695: Observable discrepancy in the RAPL interface for some
  Intel(R) Processors may allow a privileged user to potentially enable
  information disclosure via local access.

  https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00389.html

- CVE-2020-8698: Improper removal of sensitive information before storage or
  transfer in some Intel(R) Processors may allow an authenticated user to
  potentially enable information disclosure via local access.

  https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00381.html

Signed-off-by: Peter Korsgaard <peter@korsgaard.com>
Signed-off-by: Yann E. MORIN <yann.morin.1998@free.fr>
package/intel-microcode/intel-microcode.hash
package/intel-microcode/intel-microcode.mk