CVE-2023-46103: Medium severity ubuntu/intel-microcode vulnerability
Published May 16, 2024
·Updated
Sequence of processor instructions leads to unexpected behavior in Intel(R) Core(TM) Ultra Processors may allow an authenticated user to potentially enable denial of service via local access.
Affected Software
7 affected componentsFixes available
ubuntu/intel-microcode<3.20240514.0ubuntu0.18.04.1+
3.20240514.0ubuntu0.18.04.1+
ubuntu/intel-microcode<3.20240514.0ubuntu0.20.04.1
3.20240514.0ubuntu0.20.04.1
ubuntu/intel-microcode<3.20240514.0ubuntu0.22.04.1
3.20240514.0ubuntu0.22.04.1
ubuntu/intel-microcode<3.20240514.0ubuntu0.23.10.1
3.20240514.0ubuntu0.23.10.1
ubuntu/intel-microcode<3.20240514.0ubuntu0.24.04.1
3.20240514.0ubuntu0.24.04.1
ubuntu/intel-microcode<3.20240514.0ubuntu0.16.04.1+
3.20240514.0ubuntu0.16.04.1+
debian/intel-microcode<=3.20231114.1~deb11u1, <=3.20231114.1~deb12u1
3.20240514.1~deb11u13.20240514.1~deb12u13.20240813.2
Event History
May 16, 2024
CVE Published
via Ubuntu·12:00 AM
CVE Published
via MITRE·08:47 PM
Data Sourced
via MITRE·08:47 PM
DescriptionSeverityWeakness
Data Sourced
via NVD·09:15 PM
DescriptionSeverityWeakness
May 29, 2024
Data Sourced
via Launchpad·12:47 PM
Description
Jun 14, 2024
Data Sourced
via Red Hat·01:18 AM
DescriptionSeverityAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2023-46103?
CVE-2023-46103 has a medium severity rating, potentially allowing denial of service through a sequence of processor instructions.
2
How do I fix CVE-2023-46103?
To fix CVE-2023-46103, you should update the intel-microcode package to the specific versions indicated for your Ubuntu or Debian distribution.
3
Which processors are affected by CVE-2023-46103?
CVE-2023-46103 affects Intel Core Ultra Processors.
4
Can CVE-2023-46103 be exploited remotely?
No, CVE-2023-46103 requires local access to exploit, as it affects authenticated users.
5
Is there a patch available for CVE-2023-46103?
Yes, patches for CVE-2023-46103 are available in the form of updated intel-microcode packages.