[ubuntu/resolute-proposed] intel-microcode 3.20260210.1ubuntu1 (Accepted)

Rodrigo Figueiredo Zaiden rodrigo.zaiden at canonical.com
Mon Mar 2 15:15:16 UTC 2026


intel-microcode (3.20260210.1ubuntu1) resolute; urgency=medium

  * SECURITY UPDATE: Merge from Debian unstable; remaining changes:
    - debian/control: Add dracut and tiny-initramfs as alternative
      recommends
    - debian/tests/initramfs: update test for location of GenuineIntel.bin
      since in Ubuntu this lives under the cpio2 initramfs so test for
      its presence in any cpio
    - debian/tests/control: update generic kernel dep as an alternative to
      the original one from Debian
    - debian/tests/initramfs: invoke update-initramfs with -c to ensure an
      initrd is generated if one does not already exist so that the rest
      of the test can proceed as expected

intel-microcode (3.20260210.1) unstable; urgency=medium

  * New upstream microcode datafile 20260210 (closes: #1127837)
    - Updated mitigations for INTEL-SA-01083 (CVE-2024-24853)
      Incorrect behavior order in transition between executive monitor and SMI
      transfer monitor (STM) in some Intel Processors may allow a privileged
      user to potentially enable escalation of privilege via local access.
    - Mitigations for INTEL-SA-01396 (CVE-2025-31648)
      Improper handling of values in the microcode flow for some Intel
      Processor Family may allow an escalation of privilege.  Startup code and
      SMM adversary with a privileged user combined with a high complexity
      attack may enable escalation of privilege via local access when attack
      requirements are present, with low impact to the confidentiality and
      integrity of the vulnerable system.
    - Fixes for undisclosed functional issues on several processors
  * Updated microcodes:
    + sig 0x000606a6, pf_mask 0x87, 2025-08-19, rev 0xd000421, size 309248
    + sig 0x000606c1, pf_mask 0x10, 2025-08-19, rev 0x10002f1, size 301056
    + sig 0x000706e5, pf_mask 0x80, 2025-07-24, rev 0x00cc, size 115712
    + sig 0x000806c1, pf_mask 0x80, 2025-07-24, rev 0x00be, size 112640
    + sig 0x000806c2, pf_mask 0xc2, 2025-07-24, rev 0x003e, size 99328
    + sig 0x000806d1, pf_mask 0xc2, 2025-07-24, rev 0x0058, size 105472
    + sig 0x000806f8, pf_mask 0x87, 2025-08-25, rev 0x2b000661, size 595968
    + sig 0x000806f7, pf_mask 0x87, 2025-08-25, rev 0x2b000661
    + sig 0x000806f6, pf_mask 0x87, 2025-08-25, rev 0x2b000661
    + sig 0x000806f5, pf_mask 0x87, 2025-08-25, rev 0x2b000661
    + sig 0x000806f4, pf_mask 0x87, 2025-08-25, rev 0x2b000661
    + sig 0x000806f8, pf_mask 0x10, 2025-08-25, rev 0x2c000421, size 626688
    + sig 0x000806f8, pf_mask 0x10, 2025-08-25, rev 0x2c000421
    + sig 0x000806f6, pf_mask 0x10, 2025-08-25, rev 0x2c000421
    + sig 0x000806f5, pf_mask 0x10, 2025-08-25, rev 0x2c000421
    + sig 0x000806f4, pf_mask 0x10, 2025-08-25, rev 0x2c000421
    + sig 0x00090672, pf_mask 0x07, 2025-10-12, rev 0x003e, size 227328
    + sig 0x00090675, pf_mask 0x07, 2025-10-12, rev 0x003e
    + sig 0x000b06f2, pf_mask 0x07, 2025-10-12, rev 0x003e
    + sig 0x000b06f5, pf_mask 0x07, 2025-10-12, rev 0x003e
    + sig 0x000b06f6, pf_mask 0x07, 2025-10-12, rev 0x003e
    + sig 0x000b06f7, pf_mask 0x07, 2025-10-12, rev 0x003e
    + sig 0x000906a3, pf_mask 0x80, 2025-10-12, rev 0x043b, size 225280
    + sig 0x000906a4, pf_mask 0x80, 2025-10-12, rev 0x043b
    + sig 0x000906a4, pf_mask 0x40, 2025-07-10, rev 0x000c, size 119808
    + sig 0x000a0671, pf_mask 0x02, 2025-07-24, rev 0x0065, size 108544
    + sig 0x000a06a4, pf_mask 0xe6, 2025-09-24, rev 0x0028, size 141312
    + sig 0x000a06d1, pf_mask 0x95, 2025-10-31, rev 0x1000405, size 1672192
    + sig 0x000a06d1, pf_mask 0x20, 2025-10-09, rev 0xa000133, size 1643520
    + sig 0x000a06e1, pf_mask 0x97, 2025-11-03, rev 0x10002f3, size 1645568
    + sig 0x000b0650, pf_mask 0x80, 2025-09-25, rev 0x000d, size 137216
    + sig 0x000b0671, pf_mask 0x32, 2025-10-08, rev 0x0133, size 219136
    + sig 0x000b0674, pf_mask 0x32, 2025-10-08, rev 0x0133
    + sig 0x000b06a2, pf_mask 0xe0, 2025-10-08, rev 0x6134, size 224256
    + sig 0x000b06a3, pf_mask 0xe0, 2025-10-08, rev 0x6134
    + sig 0x000b06a8, pf_mask 0xe0, 2025-10-08, rev 0x6134
    + sig 0x000b06e0, pf_mask 0x19, 2025-09-12, rev 0x0021, size 142336
    + sig 0x000c0662, pf_mask 0x82, 2025-08-03, rev 0x011b, size 91136
    + sig 0x000c06a2, pf_mask 0x82, 2025-08-03, rev 0x011b
    + sig 0x000c0652, pf_mask 0x82, 2025-08-03, rev 0x011b
    + sig 0x000c0664, pf_mask 0x82, 2025-08-03, rev 0x011b
    + sig 0x000c06f2, pf_mask 0x87, 2025-08-25, rev 0x210002d3, size 566272
    + sig 0x000c06f1, pf_mask 0x87, 2025-08-25, rev 0x210002d3

intel-microcode (3.20251111.1) unstable; urgency=high

  * New upstream microcode datafile 20251111 (closes: #1120589)
    - Fixes for unspecified functional issues on several Intel, Intel
      Core and Intel Xeon processor models.
    - Fixes errata RPL070/ADL083/LNL047/ALR054/SPR154/EMR147:
      REP SCASB, REP CMPSB may return incorrect results when racing
      memory access with another core or thread, on Raptor Lake, Arrow
      Lake, Lunar Lake, 4th/5th gen Xeon Scalable and maybe other
      processor models
  * New microcodes:
    + sig 0x000a06e1, pf_mask 0x97, 2025-06-27, rev 0x1000273, size 1635328
  * Updated microcodes:
    + sig 0x000806f8, pf_mask 0x87, 2025-05-29, rev 0x2b000650, size 593920
    + sig 0x000806f7, pf_mask 0x87, 2025-05-29, rev 0x2b000650
    + sig 0x000806f6, pf_mask 0x87, 2025-05-29, rev 0x2b000650
    + sig 0x000806f5, pf_mask 0x87, 2025-05-29, rev 0x2b000650
    + sig 0x000806f4, pf_mask 0x87, 2025-05-29, rev 0x2b000650
    + sig 0x000806f8, pf_mask 0x10, 2025-05-29, rev 0x2c000410, size 625664
    + sig 0x000806f6, pf_mask 0x10, 2025-05-29, rev 0x2c000410
    + sig 0x000806f5, pf_mask 0x10, 2025-05-29, rev 0x2c000410
    + sig 0x000806f4, pf_mask 0x10, 2025-05-29, rev 0x2c000410
    + sig 0x00090672, pf_mask 0x07, 2025-10-12, rev 0x003d, size 226304
    + sig 0x00090675, pf_mask 0x07, 2025-10-12, rev 0x003d
    + sig 0x000b06f2, pf_mask 0x07, 2025-10-12, rev 0x003d
    + sig 0x000b06f5, pf_mask 0x07, 2025-10-12, rev 0x003d
    + sig 0x000b06f6, pf_mask 0x07, 2025-10-12, rev 0x003d
    + sig 0x000b06f7, pf_mask 0x07, 2025-10-12, rev 0x003d
    + sig 0x000906a3, pf_mask 0x80, 2025-10-12, rev 0x043a, size 224256
    + sig 0x000906a4, pf_mask 0x80, 2025-10-12, rev 0x043a
    + sig 0x000906a4, pf_mask 0x40, 2025-06-13, rev 0x000b, size 119808
    + sig 0x000a06d1, pf_mask 0x95, 2025-07-23, rev 0x10003f0, size 1670144
    + sig 0x000a06d1, pf_mask 0x20, 2025-08-29, rev 0xa000124, size 1642496
    + sig 0x000a06f3, pf_mask 0x01, 2025-07-30, rev 0x3000382, size 1534976
    + sig 0x000b0671, pf_mask 0x32, 2025-10-08, rev 0x0132, size 219136
    + sig 0x000b0674, pf_mask 0x32, 2025-10-08, rev 0x0132
    + sig 0x000b06a2, pf_mask 0xe0, 2025-10-08, rev 0x6133, size 224256
    + sig 0x000b06a3, pf_mask 0xe0, 2025-10-08, rev 0x6133
    + sig 0x000b06a8, pf_mask 0xe0, 2025-10-08, rev 0x6133
    + sig 0x000b06d1, pf_mask 0x80, 2025-08-28, rev 0x0125, size 80896
    + sig 0x000b06e0, pf_mask 0x19, 2025-05-16, rev 0x001e, size 139264
    + sig 0x000c0662, pf_mask 0x82, 2025-06-30, rev 0x011a, size 90112
    + sig 0x000c06a2, pf_mask 0x82, 2025-06-30, rev 0x011a
    + sig 0x000c0652, pf_mask 0x82, 2025-06-30, rev 0x011a
    + sig 0x000c0664, pf_mask 0x82, 2025-06-30, rev 0x011a
    + sig 0x000c06f2, pf_mask 0x87, 2025-05-29, rev 0x210002c0, size 564224
    + sig 0x000c06f1, pf_mask 0x87, 2025-05-29, rev 0x210002c0
  * source: update symlinks to reflect id of the latest release, 20251111

Date: Fri, 27 Feb 2026 17:08:06 -0300
Changed-By: Rodrigo Figueiredo Zaiden <rodrigo.zaiden at canonical.com>
Maintainer: Ubuntu Developers <ubuntu-devel-discuss at lists.ubuntu.com>
Signed-By: Marc Deslauriers <marc.deslauriers at canonical.com>
https://launchpad.net/ubuntu/+source/intel-microcode/3.20260210.1ubuntu1
-------------- next part --------------
Format: 1.8
Date: Fri, 27 Feb 2026 17:08:06 -0300
Source: intel-microcode
Built-For-Profiles: noudeb
Architecture: source
Version: 3.20260210.1ubuntu1
Distribution: resolute
Urgency: high
Maintainer: Ubuntu Developers <ubuntu-devel-discuss at lists.ubuntu.com>
Changed-By: Rodrigo Figueiredo Zaiden <rodrigo.zaiden at canonical.com>
Closes: 1120589 1127837
Changes:
 intel-microcode (3.20260210.1ubuntu1) resolute; urgency=medium
 .
   * SECURITY UPDATE: Merge from Debian unstable; remaining changes:
     - debian/control: Add dracut and tiny-initramfs as alternative
       recommends
     - debian/tests/initramfs: update test for location of GenuineIntel.bin
       since in Ubuntu this lives under the cpio2 initramfs so test for
       its presence in any cpio
     - debian/tests/control: update generic kernel dep as an alternative to
       the original one from Debian
     - debian/tests/initramfs: invoke update-initramfs with -c to ensure an
       initrd is generated if one does not already exist so that the rest
       of the test can proceed as expected
 .
 intel-microcode (3.20260210.1) unstable; urgency=medium
 .
   * New upstream microcode datafile 20260210 (closes: #1127837)
     - Updated mitigations for INTEL-SA-01083 (CVE-2024-24853)
       Incorrect behavior order in transition between executive monitor and SMI
       transfer monitor (STM) in some Intel Processors may allow a privileged
       user to potentially enable escalation of privilege via local access.
     - Mitigations for INTEL-SA-01396 (CVE-2025-31648)
       Improper handling of values in the microcode flow for some Intel
       Processor Family may allow an escalation of privilege.  Startup code and
       SMM adversary with a privileged user combined with a high complexity
       attack may enable escalation of privilege via local access when attack
       requirements are present, with low impact to the confidentiality and
       integrity of the vulnerable system.
     - Fixes for undisclosed functional issues on several processors
   * Updated microcodes:
     + sig 0x000606a6, pf_mask 0x87, 2025-08-19, rev 0xd000421, size 309248
     + sig 0x000606c1, pf_mask 0x10, 2025-08-19, rev 0x10002f1, size 301056
     + sig 0x000706e5, pf_mask 0x80, 2025-07-24, rev 0x00cc, size 115712
     + sig 0x000806c1, pf_mask 0x80, 2025-07-24, rev 0x00be, size 112640
     + sig 0x000806c2, pf_mask 0xc2, 2025-07-24, rev 0x003e, size 99328
     + sig 0x000806d1, pf_mask 0xc2, 2025-07-24, rev 0x0058, size 105472
     + sig 0x000806f8, pf_mask 0x87, 2025-08-25, rev 0x2b000661, size 595968
     + sig 0x000806f7, pf_mask 0x87, 2025-08-25, rev 0x2b000661
     + sig 0x000806f6, pf_mask 0x87, 2025-08-25, rev 0x2b000661
     + sig 0x000806f5, pf_mask 0x87, 2025-08-25, rev 0x2b000661
     + sig 0x000806f4, pf_mask 0x87, 2025-08-25, rev 0x2b000661
     + sig 0x000806f8, pf_mask 0x10, 2025-08-25, rev 0x2c000421, size 626688
     + sig 0x000806f8, pf_mask 0x10, 2025-08-25, rev 0x2c000421
     + sig 0x000806f6, pf_mask 0x10, 2025-08-25, rev 0x2c000421
     + sig 0x000806f5, pf_mask 0x10, 2025-08-25, rev 0x2c000421
     + sig 0x000806f4, pf_mask 0x10, 2025-08-25, rev 0x2c000421
     + sig 0x00090672, pf_mask 0x07, 2025-10-12, rev 0x003e, size 227328
     + sig 0x00090675, pf_mask 0x07, 2025-10-12, rev 0x003e
     + sig 0x000b06f2, pf_mask 0x07, 2025-10-12, rev 0x003e
     + sig 0x000b06f5, pf_mask 0x07, 2025-10-12, rev 0x003e
     + sig 0x000b06f6, pf_mask 0x07, 2025-10-12, rev 0x003e
     + sig 0x000b06f7, pf_mask 0x07, 2025-10-12, rev 0x003e
     + sig 0x000906a3, pf_mask 0x80, 2025-10-12, rev 0x043b, size 225280
     + sig 0x000906a4, pf_mask 0x80, 2025-10-12, rev 0x043b
     + sig 0x000906a4, pf_mask 0x40, 2025-07-10, rev 0x000c, size 119808
     + sig 0x000a0671, pf_mask 0x02, 2025-07-24, rev 0x0065, size 108544
     + sig 0x000a06a4, pf_mask 0xe6, 2025-09-24, rev 0x0028, size 141312
     + sig 0x000a06d1, pf_mask 0x95, 2025-10-31, rev 0x1000405, size 1672192
     + sig 0x000a06d1, pf_mask 0x20, 2025-10-09, rev 0xa000133, size 1643520
     + sig 0x000a06e1, pf_mask 0x97, 2025-11-03, rev 0x10002f3, size 1645568
     + sig 0x000b0650, pf_mask 0x80, 2025-09-25, rev 0x000d, size 137216
     + sig 0x000b0671, pf_mask 0x32, 2025-10-08, rev 0x0133, size 219136
     + sig 0x000b0674, pf_mask 0x32, 2025-10-08, rev 0x0133
     + sig 0x000b06a2, pf_mask 0xe0, 2025-10-08, rev 0x6134, size 224256
     + sig 0x000b06a3, pf_mask 0xe0, 2025-10-08, rev 0x6134
     + sig 0x000b06a8, pf_mask 0xe0, 2025-10-08, rev 0x6134
     + sig 0x000b06e0, pf_mask 0x19, 2025-09-12, rev 0x0021, size 142336
     + sig 0x000c0662, pf_mask 0x82, 2025-08-03, rev 0x011b, size 91136
     + sig 0x000c06a2, pf_mask 0x82, 2025-08-03, rev 0x011b
     + sig 0x000c0652, pf_mask 0x82, 2025-08-03, rev 0x011b
     + sig 0x000c0664, pf_mask 0x82, 2025-08-03, rev 0x011b
     + sig 0x000c06f2, pf_mask 0x87, 2025-08-25, rev 0x210002d3, size 566272
     + sig 0x000c06f1, pf_mask 0x87, 2025-08-25, rev 0x210002d3
 .
 intel-microcode (3.20251111.1) unstable; urgency=high
 .
   * New upstream microcode datafile 20251111 (closes: #1120589)
     - Fixes for unspecified functional issues on several Intel, Intel
       Core and Intel Xeon processor models.
     - Fixes errata RPL070/ADL083/LNL047/ALR054/SPR154/EMR147:
       REP SCASB, REP CMPSB may return incorrect results when racing
       memory access with another core or thread, on Raptor Lake, Arrow
       Lake, Lunar Lake, 4th/5th gen Xeon Scalable and maybe other
       processor models
   * New microcodes:
     + sig 0x000a06e1, pf_mask 0x97, 2025-06-27, rev 0x1000273, size 1635328
   * Updated microcodes:
     + sig 0x000806f8, pf_mask 0x87, 2025-05-29, rev 0x2b000650, size 593920
     + sig 0x000806f7, pf_mask 0x87, 2025-05-29, rev 0x2b000650
     + sig 0x000806f6, pf_mask 0x87, 2025-05-29, rev 0x2b000650
     + sig 0x000806f5, pf_mask 0x87, 2025-05-29, rev 0x2b000650
     + sig 0x000806f4, pf_mask 0x87, 2025-05-29, rev 0x2b000650
     + sig 0x000806f8, pf_mask 0x10, 2025-05-29, rev 0x2c000410, size 625664
     + sig 0x000806f6, pf_mask 0x10, 2025-05-29, rev 0x2c000410
     + sig 0x000806f5, pf_mask 0x10, 2025-05-29, rev 0x2c000410
     + sig 0x000806f4, pf_mask 0x10, 2025-05-29, rev 0x2c000410
     + sig 0x00090672, pf_mask 0x07, 2025-10-12, rev 0x003d, size 226304
     + sig 0x00090675, pf_mask 0x07, 2025-10-12, rev 0x003d
     + sig 0x000b06f2, pf_mask 0x07, 2025-10-12, rev 0x003d
     + sig 0x000b06f5, pf_mask 0x07, 2025-10-12, rev 0x003d
     + sig 0x000b06f6, pf_mask 0x07, 2025-10-12, rev 0x003d
     + sig 0x000b06f7, pf_mask 0x07, 2025-10-12, rev 0x003d
     + sig 0x000906a3, pf_mask 0x80, 2025-10-12, rev 0x043a, size 224256
     + sig 0x000906a4, pf_mask 0x80, 2025-10-12, rev 0x043a
     + sig 0x000906a4, pf_mask 0x40, 2025-06-13, rev 0x000b, size 119808
     + sig 0x000a06d1, pf_mask 0x95, 2025-07-23, rev 0x10003f0, size 1670144
     + sig 0x000a06d1, pf_mask 0x20, 2025-08-29, rev 0xa000124, size 1642496
     + sig 0x000a06f3, pf_mask 0x01, 2025-07-30, rev 0x3000382, size 1534976
     + sig 0x000b0671, pf_mask 0x32, 2025-10-08, rev 0x0132, size 219136
     + sig 0x000b0674, pf_mask 0x32, 2025-10-08, rev 0x0132
     + sig 0x000b06a2, pf_mask 0xe0, 2025-10-08, rev 0x6133, size 224256
     + sig 0x000b06a3, pf_mask 0xe0, 2025-10-08, rev 0x6133
     + sig 0x000b06a8, pf_mask 0xe0, 2025-10-08, rev 0x6133
     + sig 0x000b06d1, pf_mask 0x80, 2025-08-28, rev 0x0125, size 80896
     + sig 0x000b06e0, pf_mask 0x19, 2025-05-16, rev 0x001e, size 139264
     + sig 0x000c0662, pf_mask 0x82, 2025-06-30, rev 0x011a, size 90112
     + sig 0x000c06a2, pf_mask 0x82, 2025-06-30, rev 0x011a
     + sig 0x000c0652, pf_mask 0x82, 2025-06-30, rev 0x011a
     + sig 0x000c0664, pf_mask 0x82, 2025-06-30, rev 0x011a
     + sig 0x000c06f2, pf_mask 0x87, 2025-05-29, rev 0x210002c0, size 564224
     + sig 0x000c06f1, pf_mask 0x87, 2025-05-29, rev 0x210002c0
   * source: update symlinks to reflect id of the latest release, 20251111
Checksums-Sha1:
 62e7fd728c424651467bbd26b5d16f647c9aa767 2007 intel-microcode_3.20260210.1ubuntu1.dsc
 56be5e26c4cc3eee70b70ba03364d54487d44015 14286716 intel-microcode_3.20260210.1ubuntu1.tar.xz
 e8a90bcc8daf3424d09b09f66cab25c0d19517ee 6279 intel-microcode_3.20260210.1ubuntu1_source.buildinfo
Checksums-Sha256:
 1760ee516b080b41807b52c187493d8a41052c308eab8268de9b2e5255181885 2007 intel-microcode_3.20260210.1ubuntu1.dsc
 27ead0690392beef670220eebdc5fd8f315eb9750fa17fe2b5d3ab03f6c3941b 14286716 intel-microcode_3.20260210.1ubuntu1.tar.xz
 117a5a873ccd9cde1148059edaf202232791cac675721879192c875a2c68ee45 6279 intel-microcode_3.20260210.1ubuntu1_source.buildinfo
Files:
 a946e5f5bb4ffb8a14aa9133212744a9 2007 non-free-firmware/admin standard intel-microcode_3.20260210.1ubuntu1.dsc
 98f4da1dad3bf9bcfd304a0f90522245 14286716 non-free-firmware/admin standard intel-microcode_3.20260210.1ubuntu1.tar.xz
 c6c1b7e3a17c840fb67427724419edb3 6279 non-free-firmware/admin standard intel-microcode_3.20260210.1ubuntu1_source.buildinfo
Original-Maintainer: Henrique de Moraes Holschuh <hmh at debian.org>


More information about the Resolute-changes mailing list