USN-7077-1: AMD Microcode vulnerability
21 October 2024
AMD processors may allow a privileged local attacker to further escalate their privileged and execute arbitrary code within the processor's firmware layer.
Releases
Packages
- amd64-microcode - Platform firmware and microcode for AMD CPUs and SoCs
Details
Enrique Nissim and Krzysztof Okupski discovered that some AMD processors
did not properly restrict access to the System Management Mode (SMM)
configuration when the SMM Lock was enabled. A privileged local attacker
could possibly use this issue to further escalate their privileges and
execute arbitrary code within the processor's firmware layer.
Update instructions
The problem can be corrected by updating your system to the following package versions:
Ubuntu 24.10
Ubuntu 24.04
Ubuntu 22.04
Ubuntu 20.04
Ubuntu 18.04
-
amd64-microcode
-
3.20191021.1+really3.20181128.1~ubuntu0.18.04.1+esm3
Available with Ubuntu Pro
Ubuntu 16.04
-
amd64-microcode
-
3.20191021.1+really3.20180524.1~ubuntu0.16.04.2+esm3
Available with Ubuntu Pro
After a standard system update you need to reboot your computer to make
all the necessary changes.