USN-6319-1: AMD Microcode vulnerability
30 August 2023
AMD processors may allow an attacker to expose sensitive information due to a speculative execution vulnerability.
Releases
Packages
- amd64-microcode - Processor microcode firmware for AMD CPUs
Details
Daniƫl Trujillo, Johannes Wikner, and Kaveh Razavi discovered that some AMD
processors utilising speculative execution and branch prediction may allow
unauthorised memory reads via a speculative side-channel attack. A local
attacker could use this to expose sensitive information, including kernel
memory.
Update instructions
The problem can be corrected by updating your system to the following package versions:
Ubuntu 23.04
Ubuntu 22.04
Ubuntu 20.04
Ubuntu 18.04
-
amd64-microcode
-
3.20191021.1+really3.20181128.1~ubuntu0.18.04.1+esm2
Available with Ubuntu Pro
Ubuntu 16.04
-
amd64-microcode
-
3.20191021.1+really3.20180524.1~ubuntu0.16.04.2+esm2
Available with Ubuntu Pro
After a standard system update you need to reboot your computer to make
all the necessary changes.