microcode_ctl vulnerabilities

Direct Vulnerabilities

Known vulnerabilities in the microcode_ctl package. This does not include vulnerabilities belonging to this package’s dependencies.

Fix vulnerabilities automatically

Snyk's AI Trust Platform automatically finds the best upgrade path and integrates with your development workflows. Secure your code at zero cost.

Fix for free
VulnerabilityVulnerable Version
  • M
CVE-2024-28956

<4:20250512-1.el8_10
  • M
Insufficient Resource Pool

*
  • M
Uncaught Exception

*
  • M
CVE-2025-20623

<4:20250512-1.el8_10
  • M
Hardware Features Enable Physical Attacks from Software

*
  • M
CVE-2024-45332

<4:20250512-1.el8_10
  • M
CVE-2024-43420

<4:20250512-1.el8_10
  • M
Incorrect Behavior Order

<4:20250512-1.el8_10
  • M
CVE-2025-24495

<4:20250512-1.el8_10
  • M
Improper Access Control

*
  • M
Improper Finite State Machines (FSMs) in Hardware Logic

*
  • M
Improper Finite State Machines (FSMs) in Hardware Logic

*
  • M
Insufficient Granularity of Access Control

*
  • M
Improper Initialization

*
  • H
Improper Input Validation

*
  • H
Improper Input Validation

*
  • H
Improper Input Validation

*
  • M
Improper Input Validation

*
  • H
Improper Input Validation

*
  • H
Improper Input Validation

*
  • M
Improper Finite State Machines (FSMs) in Hardware Logic

*
  • M
Resource Exhaustion

*
  • L
Information Exposure

*
  • M
Protection Mechanism Failure

*
  • M
Incorrect Calculation

*
  • M
Non-Transparent Sharing of Microarchitectural Resources

*
  • M
Protection Mechanism Failure

*
  • M
CVE-2023-28746

*
  • H
Unauthorized Error Injection Can Degrade Hardware Redundancy

<4:20220809-2.20230808.2.el8_8
  • H
Expected Behavior Violation

<4:20190618-1.20191112.1.el8_1
  • M
CVE-2022-38090

*
  • M
Incorrect Calculation

*
  • H
Incorrect Default Permissions

<4:20230808-2.el8
  • H
CVE-2022-21216

<4:20230808-2.el8
  • M
Out-of-bounds Read

*
  • M
CVE-2021-0127

*
  • M
Improper Initialization

*
  • H
Information Exposure

<4:20210216-1.20210525.1.el8_4
  • H
Information Exposure

<4:20210216-1.20210608.1.el8_4
  • H
Information Exposure

<4:20210216-1.20210608.1.el8_4
  • H
Incomplete Cleanup

<4:20210216-1.20210608.1.el8_4
  • H
Improper Cross-boundary Removal of Sensitive Data

<4:20210216-1.20210608.1.el8_4
  • H
Information Exposure

<4:20210216-1.20210608.1.el8_4
  • H
Information Exposure

<4:20210216-1.20210608.1.el8_4
  • H
Information Exposure

<4:20210216-1.20210608.1.el8_4
  • H
Information Exposure

<4:20210216-1.20210608.1.el8_4
  • H
Insufficient Granularity of Access Control

<4:20190618-1.20191112.1.el8_1
  • H
Improper Cross-boundary Removal of Sensitive Data

<4:20210216-1.20210608.1.el8_4