Intel Family (Hardware) March 2024 Security Update Advisory

Overview

 

Intel (https://www.intel.com) has released a security update that fixes vulnerabilities in products it has been made. users of affected products are advised to update to the latest version.

 

Affected Products

 

Generation Intel® Xeon® Scalable processors 4th Generation

Generation Intel® Xeon® Platinum processors 4th Gen

Generation Intel® Xeon® Gold processors 4th Gen

Generation Intel® Xeon® Silver processors 4th Gen

Generation Intel® Xeon® Bronze processors 4th Gen

Intel® Xeon® CPU Max Series processors

13th Generation Intel® Core™ Processor Family

14th Generation Intel® Core™ Processor Family

Intel® Pentium® Gold Processor Family

Intel® Celeron® Processor Family Intel Pentium Processor G7400/G7400T

Intel® Xeon® E processor family

Intel® Xeon® CPU Max Series processors (High Bandwidth Memory HBM)

Generation Intel® Xeon® Scalable processors 4th Generation

Generation Intel® Xeon® Scalable processors 5th Generation

Generation Intel® Xeon® Platinum processors 4th Gen

Generation Intel® Xeon® Gold Processors 4th Gen

Generation Intel® Xeon® Silver Processors 4th Gen

Generation Intel® Xeon®Bronze Processors 4th Gen

Intel® Xeon® W workstation processors

Intel® Core™ Processor N series

Intel® Processor N-series

Intel Atom® Processor X Series

 

Resolved Vulnerabilities

 

Privilege escalation vulnerability via local access due to an on-chip debug and test interface with improper access control in some 4th Generation Intel® Xeon® processors when using Intel® SGX or Intel® TDX (CVE-2023-32666)

Information disclosure vulnerability due to opaque sharing of revenue predictor variable targets between contexts on some Intel® processors (CVE-2023-38575)

denial of Service Vulnerability due to a protection mechanism error in the bus lock regulator for some Intel® processors (CVE-2023-39368)

 

Vulnerability Patches

 

Vulnerability Patches were made available in the March 12, 2024 Update. For more information on Vulnerability Patches, please refer to the “Recommendation” section of the product-specific Referenced Sites documentation.

 

Referenced Sites

 

[1] 4th Gen Intel® Xeon® Processor Advisory

https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00986.html

[2] 2024.1 IPU – Intel® Processor Return Predictions Advisory

https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00982.html

[3] 2024.1 IPU – Intel® Processor Bus Lock Advisory

https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00972.html

[4] Affected Processors: Guidance for Security Issues on Intel® Processors

https://www.intel.com/content/www/us/en/developer/topic-technology/software-security-guidance/processors-affected-consolidated-product-cpu-model.html