<div class="container">
<h1>Security update for kernel-firmware</h1>
<table class="table table-striped table-bordered">
<tbody>
<tr>
<th>Announcement ID:</th>
<td>SUSE-SU-2023:3019-1</td>
</tr>
<tr>
<th>Rating:</th>
<td>moderate</td>
</tr>
<tr>
<th>References:</th>
<td>
<ul>
<li style="display: inline;">
<a href="https://bugzilla.suse.com/show_bug.cgi?id=1213286">#1213286</a>
</li>
</ul>
</td>
</tr>
<tr>
<th>
Cross-References:
</th>
<td>
<ul>
<li style="display: inline;">
<a href="https://www.suse.com/security/cve/CVE-2023-20593.html">CVE-2023-20593</a>
</li>
</ul>
</td>
</tr>
<tr>
<th>CVSS scores:</th>
<td>
<ul class="list-group">
<li class="list-group-item">
<span class="cvss-reference">CVE-2023-20593</span>
<span class="cvss-source">
(
SUSE
):
</span>
<span class="cvss-score">6.2</span>
<span class="cvss-vector">CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N</span>
</li>
</ul>
</td>
</tr>
<tr>
<th>Affected Products:</th>
<td>
<ul class="list-group">
<li class="list-group-item">Basesystem Module 15-SP5</li>
<li class="list-group-item">openSUSE Leap 15.5</li>
<li class="list-group-item">SUSE Linux Enterprise Desktop 15 SP5</li>
<li class="list-group-item">SUSE Linux Enterprise High Performance Computing 15 SP5</li>
<li class="list-group-item">SUSE Linux Enterprise Real Time 15 SP5</li>
<li class="list-group-item">SUSE Linux Enterprise Server 15 SP5</li>
<li class="list-group-item">SUSE Linux Enterprise Server for SAP Applications 15 SP5</li>
</ul>
</td>
</tr>
</tbody>
</table>
<p>An update that solves one vulnerability can now be installed.</p>
<h2>Description:</h2>
<p>This update for kernel-firmware fixes the following issues:</p>
<p>Updated to version 20230724 (git commit 59fbffa9ec8e):</p>
<ul>
<li>CVE-2023-20593: Fixed AMD ucode for ZenBleed vulnerability (bsc#1213286).</li>
</ul>
<p>Bugfixes:</p>
<ul>
<li>Fix qcom ASoC tglp WHENCE entry</li>
<li>Group all Conexant V4L devices together</li>
<li>Makefile, copy-firmware: support xz/zstd compressed firmware</li>
<li>Updated NXP SR150 UWB firmware</li>
<li>WHENCE: Cleanup Realtek BT firmware provenance</li>
<li>WHENCE: comment out duplicate MediaTek firmware</li>
<li>amdgpu: Add GC 11.0.4 firmware</li>
<li>amdgpu: Add PSP 13.0.11 firmware</li>
<li>amdgpu: DMCUB updates for DCN 3.1.4 and 3.1.5</li>
<li>amdgpu: DMCUB updates for various AMDGPU asics</li>
<li>amdgpu: Update DCN 3.1.4 firmware</li>
<li>amdgpu: Update GC 11.0.1 and 11.0.4</li>
<li>amdgpu: Update GC 11.0.1 firmware</li>
<li>amdgpu: Update PSP 13.0.4 firmware</li>
<li>amdgpu: Update SDMA 6.0.1 firmware</li>
<li>amdgpu: add initial GC 11.0.3 firmware</li>
<li>amdgpu: add initial PSP 13.0.10 firmware</li>
<li>amdgpu: add initial SDMA 6.0.3 firmware</li>
<li>amdgpu: add initial SMU 13.0.10 firmware</li>
<li>amdgpu: update 13.0.8 firmware for amd.5.5 release</li>
<li>amdgpu: update DCN 3.1.6 DMCUB firmware</li>
<li>amdgpu: update DMCUB to v0.0.172.0 for various AMDGPU ASICs</li>
<li>amdgpu: update DMCUB to v0.0.175.0 for various AMDGPU ASICs</li>
<li>amdgpu: update GC 10.3.6 firmware for amd.5.5 release</li>
<li>amdgpu: update GC 10.3.7 firmware for amd.5.5 release</li>
<li>amdgpu: update GC 11.0.0 firmware for amd.5.5 release</li>
<li>amdgpu: update GC 11.0.1 firmware for amd.5.5 release</li>
<li>amdgpu: update GC 11.0.2 firmware for amd.5.5 release</li>
<li>amdgpu: update GC 11.0.4 firmware for amd.5.5 release</li>
<li>amdgpu: update PSP 13.0.0 firmware for amd.5.5 release</li>
<li>amdgpu: update PSP 13.0.11 firmware for amd.5.5 release</li>
<li>amdgpu: update PSP 13.0.4 firmware for amd.5.5 release</li>
<li>amdgpu: update PSP 13.0.7 firmware for amd.5.5 release</li>
<li>amdgpu: update Picasso VCN firmware</li>
<li>amdgpu: update SDMA 6.0.1 firmware for amd.5.5 release</li>
<li>amdgpu: update SMU 13.0.0 firmware for amd.5.5 release</li>
<li>amdgpu: update SMU 13.0.7 firmware for amd.5.5 release</li>
<li>amdgpu: update VCN 4.0.0 firmware</li>
<li>amdgpu: update VCN 4.0.0 firmware for amd.5.5 release</li>
<li>amdgpu: update VCN 4.0.4 firmware for amd.5.5 release</li>
<li>amdgpu: update aldebaran firmware for amd.5.5 release</li>
<li>amdgpu: update arcturus firmware for amd.5.5 release</li>
<li>amdgpu: update beige goby firmware for amd.5.5 release</li>
<li>amdgpu: update dimgrey cavefish firmware for amd.5.5 release</li>
<li>amdgpu: update green sardine VCN firmware</li>
<li>amdgpu: update green sardine firmware for amd.5.5 release</li>
<li>amdgpu: update navi10 firmware for amd.5.5 release</li>
<li>amdgpu: update navi12 firmware for amd.5.5 release</li>
<li>amdgpu: update navi14 firmware for amd.5.5 release</li>
<li>amdgpu: update navy flounder firmware for amd.5.5 release</li>
<li>amdgpu: update psp 13.0.5 firmware for amd.5.5 release</li>
<li>amdgpu: update raven VCN firmware</li>
<li>amdgpu: update raven2 VCN firmware</li>
<li>amdgpu: update renoir VCN firmware</li>
<li>amdgpu: update renoir firmware for amd.5.5 release</li>
<li>amdgpu: update sienna cichlid firmware for amd.5.5 release</li>
<li>amdgpu: update vangogh firmware for amd.5.5 release</li>
<li>amdgpu: update vcn 3.1.2 firmware for amd.5.5 release</li>
<li>amdgpu: update vega10 firmware for amd.5.5 release</li>
<li>amdgpu: update vega12 firmware for amd.5.5 release</li>
<li>amdgpu: update vega20 firmware for amd.5.5 release</li>
<li>amdgpu: update yellow carp firmware for amd.5.5 release</li>
<li>ath10k: QCA4019 hw1.0: update board-2.bin</li>
<li>ath10k: QCA6174 hw3.0: update board-2.bin</li>
<li>ath10k: QCA9888 hw2.0: update board-2.bin</li>
<li>ath10k: QCA9984 hw1.0: update board-2.bin</li>
<li>ath10k: QCA99X0 hw2.0: update board-2.bin</li>
<li>ath11k: IPQ6018 hw1.0: update board-2.bin</li>
<li>ath11k: IPQ6018 hw1.0: update to WLAN.HK.2.7.0.1-01744-QCAHKSWPL_SILICONZ-1</li>
<li>ath11k: IPQ8074 hw2.0: update board-2.bin</li>
<li>ath11k: IPQ8074 hw2.0: update to WLAN.HK.2.7.0.1-01744-QCAHKSWPL_SILICONZ-1</li>
<li>ath11k: QCN9074 hw1.0: update to WLAN.HK.2.7.0.1-01744-QCAHKSWPL_SILICONZ-1</li>
<li>ath11k: WCN6750 hw1.0: update to WLAN.MSL.1.0.1-01160-QCAMSLSWPLZ-1</li>
<li>ath11k: WCN6855 hw2.0: update board-2.bin</li>
<li>brcm: Add symlinks from Pine64 devices to AW-CM256SM.txt</li>
<li>check_whence: Check link targets are valid</li>
<li>check_whence: error if File: is actually a link</li>
<li>check_whence: error if symlinks are in-tree</li>
<li>check_whence: error on directory listed as File</li>
<li>check_whence: error on duplicate file entries</li>
<li>check_whence: strip quotation marks</li>
<li>cirrus: Add CS35L41 firmware for ASUS ROG 2023 Models</li>
<li>cirrus: Add firmware and tuning files for HP G10 series laptops</li>
<li>cirrus: Add firmware and tuning files for Lenovo ThinkPad P1 Gen 6</li>
<li>cirrus: Add firmware for new Asus ROG Laptops</li>
<li>cnm: update chips&media wave521c firmware.</li>
<li>copy-firmware: drop obsolete backticks, quote</li>
<li>copy-firmware: quote deskdir and dirname</li>
<li>copy-firmware: silence the last shellcheck warnings</li>
<li>copy-firmware: tweak sed invocation</li>
<li>cxgb4: Update firmware to revision 1.27.3.0</li>
<li>fix broken cirrus firmware symlinks</li>
<li>i915: Add GuC v70.6.6 for MTL</li>
<li>i915: Add HuC v8.5.0 for MTL</li>
<li>i915: update DG2 GuC to v70.8.0</li>
<li>i915: update to GuC 70.8.0 and HuC 8.5.1 for MTL</li>
<li>ice: update ice DDP comms package to 1.3.40.0</li>
<li>ice: update ice DDP wireless_edge package to 1.3.10.0</li>
<li>iwlwifi: add new FWs from core78-32 release</li>
<li>iwlwifi: add new FWs from core80-39 release</li>
<li>iwlwifi: update 9000-family firmwares to core78-32</li>
<li>iwlwifi: update cc/Qu/QuZ firmwares for core80-39 release</li>
<li>linux-firmware: Add firmware for Cirrus CS35L41 on Lenovo Laptops</li>
<li>linux-firmware: Amphion: Update vpu firmware</li>
<li>linux-firmware: Update AMD cpu microcode</li>
<li>linux-firmware: Update AMD cpu microcode</li>
<li>linux-firmware: Update AMD fam17h cpu microcode</li>
<li>linux-firmware: Update firmware file for Intel Bluetooth AX200</li>
<li>linux-firmware: Update firmware file for Intel Bluetooth AX201</li>
<li>linux-firmware: Update firmware file for Intel Bluetooth AX203</li>
<li>linux-firmware: Update firmware file for Intel Bluetooth AX210</li>
<li>linux-firmware: Update firmware file for Intel Bluetooth AX211</li>
<li>linux-firmware: add firmware for MT7981</li>
<li>linux-firmware: update firmware for MT7916</li>
<li>linux-firmware: update firmware for MT7921 WiFi device</li>
<li>linux-firmware: update firmware for MT7922 WiFi device</li>
<li>linux-firmware: update firmware for MT7981</li>
<li>linux-firmware: update firmware for mediatek bluetooth chip (MT7921)</li>
<li>linux-firmware: update firmware for mediatek bluetooth chip (MT7922)</li>
<li>linux-firmware: update firmware for mediatek bluetooth chip (MT7922)</li>
<li>linux-firmware: update qat firmware</li>
<li>linux-firmware: wilc1000: update WILC1000 firmware to v16.0</li>
<li>mediatek: Update mt8195 SCP firmware to support 10bit mode</li>
<li>mediatek: Update mt8195 SCP firmware to support hevc</li>
<li>mt76xx: Move the old Mediatek WiFi firmware to mediatek</li>
<li>nvidia: update Tu10x and Tu11x signed firmware to support newer Turing HW</li>
<li>qca: Update firmware files for BT chip WCN6750</li>
<li>qcom: Add Audio firmware for SC8280XP X13s</li>
<li>qcom: Update the microcode files for Adreno a630 GPUs.</li>
<li>qcom: apq8016: add Dragonboard 410c WiFi and modem firmware</li>
<li>qcom: sdm845: rename the modem firmware</li>
<li>qcom: sdm845: update remoteproc firmware</li>
<li>rtl_bt: Add firmware and config files for RTL8851B</li>
<li>rtl_bt: Update RTL8761B BT UART firmware to 0x9DC6_D922</li>
<li>rtl_bt: Update RTL8761B BT USB firmware to 0xDFC6_D922</li>
<li>rtl_bt: Update RTL8852A BT USB firmware to 0xDAC7_480D</li>
<li>rtl_bt: Update RTL8852B BT USB firmware to 0xDBC6_B20F</li>
<li>rtl_bt: Update RTL8852C BT USB firmware to 0x040D_7225</li>
<li>rtl_nic: update firmware of USB devices</li>
<li>rtlwifi: Add firmware v6.0 for RTL8192FU</li>
<li>rtlwifi: Update firmware for RTL8188EU to v28.0</li>
<li>rtw88: 8822c: Update normal firmware to v9.9.15</li>
<li>rtw89: 8851b: add firmware v0.29.41.0</li>
<li>rtw89: 8852b: update format-1 fw to v0.29.29.1</li>
<li>rtw89: 8852c: update fw to v0.27.56.13</li>
<li>wfx: update to firmware 3.16.1</li>
</ul>
<h2>Special Instructions and Notes:</h2>
<ul>
<li>Please reboot the system after installing this update.</li>
</ul>
<h2>Patch Instructions:</h2>
<p>
To install this SUSE Moderate update use the SUSE recommended
installation methods like YaST online_update or "zypper patch".<br/>
Alternatively you can run the command listed for your product:
</p>
<ul class="list-group">
<li class="list-group-item">
openSUSE Leap 15.5
<br/>
<code>zypper in -t patch SUSE-2023-3019=1 openSUSE-SLE-15.5-2023-3019=1</code>
</li>
<li class="list-group-item">
Basesystem Module 15-SP5
<br/>
<code>zypper in -t patch SUSE-SLE-Module-Basesystem-15-SP5-2023-3019=1</code>
</li>
</ul>
<h2>Package List:</h2>
<ul>
<li>
openSUSE Leap 15.5 (noarch)
<ul>
<li>kernel-firmware-i915-20230724-150500.3.3.1</li>
<li>kernel-firmware-ath10k-20230724-150500.3.3.1</li>
<li>kernel-firmware-usb-network-20230724-150500.3.3.1</li>
<li>kernel-firmware-network-20230724-150500.3.3.1</li>
<li>kernel-firmware-platform-20230724-150500.3.3.1</li>
<li>kernel-firmware-bluetooth-20230724-150500.3.3.1</li>
<li>kernel-firmware-intel-20230724-150500.3.3.1</li>
<li>kernel-firmware-atheros-20230724-150500.3.3.1</li>
<li>kernel-firmware-20230724-150500.3.3.1</li>
<li>kernel-firmware-dpaa2-20230724-150500.3.3.1</li>
<li>kernel-firmware-mediatek-20230724-150500.3.3.1</li>
<li>kernel-firmware-sound-20230724-150500.3.3.1</li>
<li>kernel-firmware-brcm-20230724-150500.3.3.1</li>
<li>kernel-firmware-ti-20230724-150500.3.3.1</li>
<li>kernel-firmware-liquidio-20230724-150500.3.3.1</li>
<li>kernel-firmware-amdgpu-20230724-150500.3.3.1</li>
<li>kernel-firmware-radeon-20230724-150500.3.3.1</li>
<li>kernel-firmware-iwlwifi-20230724-150500.3.3.1</li>
<li>kernel-firmware-marvell-20230724-150500.3.3.1</li>
<li>kernel-firmware-mellanox-20230724-150500.3.3.1</li>
<li>kernel-firmware-nfp-20230724-150500.3.3.1</li>
<li>ucode-amd-20230724-150500.3.3.1</li>
<li>kernel-firmware-realtek-20230724-150500.3.3.1</li>
<li>kernel-firmware-media-20230724-150500.3.3.1</li>
<li>kernel-firmware-bnx2-20230724-150500.3.3.1</li>
<li>kernel-firmware-nvidia-20230724-150500.3.3.1</li>
<li>kernel-firmware-mwifiex-20230724-150500.3.3.1</li>
<li>kernel-firmware-prestera-20230724-150500.3.3.1</li>
<li>kernel-firmware-serial-20230724-150500.3.3.1</li>
<li>kernel-firmware-qlogic-20230724-150500.3.3.1</li>
<li>kernel-firmware-chelsio-20230724-150500.3.3.1</li>
<li>kernel-firmware-qcom-20230724-150500.3.3.1</li>
<li>kernel-firmware-ath11k-20230724-150500.3.3.1</li>
<li>kernel-firmware-all-20230724-150500.3.3.1</li>
<li>kernel-firmware-ueagle-20230724-150500.3.3.1</li>
</ul>
</li>
<li>
Basesystem Module 15-SP5 (noarch)
<ul>
<li>kernel-firmware-i915-20230724-150500.3.3.1</li>
<li>kernel-firmware-ath10k-20230724-150500.3.3.1</li>
<li>kernel-firmware-usb-network-20230724-150500.3.3.1</li>
<li>kernel-firmware-network-20230724-150500.3.3.1</li>
<li>kernel-firmware-platform-20230724-150500.3.3.1</li>
<li>kernel-firmware-bluetooth-20230724-150500.3.3.1</li>
<li>kernel-firmware-intel-20230724-150500.3.3.1</li>
<li>kernel-firmware-atheros-20230724-150500.3.3.1</li>
<li>kernel-firmware-dpaa2-20230724-150500.3.3.1</li>
<li>kernel-firmware-mediatek-20230724-150500.3.3.1</li>
<li>kernel-firmware-sound-20230724-150500.3.3.1</li>
<li>kernel-firmware-brcm-20230724-150500.3.3.1</li>
<li>kernel-firmware-ti-20230724-150500.3.3.1</li>
<li>kernel-firmware-liquidio-20230724-150500.3.3.1</li>
<li>kernel-firmware-amdgpu-20230724-150500.3.3.1</li>
<li>kernel-firmware-radeon-20230724-150500.3.3.1</li>
<li>kernel-firmware-iwlwifi-20230724-150500.3.3.1</li>
<li>kernel-firmware-marvell-20230724-150500.3.3.1</li>
<li>kernel-firmware-mellanox-20230724-150500.3.3.1</li>
<li>kernel-firmware-nfp-20230724-150500.3.3.1</li>
<li>ucode-amd-20230724-150500.3.3.1</li>
<li>kernel-firmware-realtek-20230724-150500.3.3.1</li>
<li>kernel-firmware-media-20230724-150500.3.3.1</li>
<li>kernel-firmware-bnx2-20230724-150500.3.3.1</li>
<li>kernel-firmware-nvidia-20230724-150500.3.3.1</li>
<li>kernel-firmware-mwifiex-20230724-150500.3.3.1</li>
<li>kernel-firmware-prestera-20230724-150500.3.3.1</li>
<li>kernel-firmware-serial-20230724-150500.3.3.1</li>
<li>kernel-firmware-qlogic-20230724-150500.3.3.1</li>
<li>kernel-firmware-chelsio-20230724-150500.3.3.1</li>
<li>kernel-firmware-qcom-20230724-150500.3.3.1</li>
<li>kernel-firmware-ath11k-20230724-150500.3.3.1</li>
<li>kernel-firmware-all-20230724-150500.3.3.1</li>
<li>kernel-firmware-ueagle-20230724-150500.3.3.1</li>
</ul>
</li>
</ul>
<h2>References:</h2>
<ul>
<li>
<a href="https://www.suse.com/security/cve/CVE-2023-20593.html">https://www.suse.com/security/cve/CVE-2023-20593.html</a>
</li>
<li>
<a href="https://bugzilla.suse.com/show_bug.cgi?id=1213286">https://bugzilla.suse.com/show_bug.cgi?id=1213286</a>
</li>
</ul>
</div>