[El-errata] ELSA-2026-500239 Important: Oracle Linux 9 microcode_ctl security update
Errata Announcements for Oracle Linux
el-errata at oss.oracle.com
Thu Sep 17 13:23:01 UTC 2026
Oracle Linux Security Advisory ELSA-2026-500239
http://linux.oracle.com/errata/ELSA-2026-500239.html
The following updated rpms for Oracle Linux 9 have been uploaded to the Unbreakable Linux Network:
x86_64:
microcode_ctl-20260812-1.0.2.el9_8.noarch.rpm
SRPMS:
http://oss.oracle.com/ol9/SRPMS-updates/microcode_ctl-20260812-1.0.2.el9_8.src.rpm
Related CVEs:
CVE-2026-20705
CVE-2026-20707
CVE-2026-20708
CVE-2026-20712
CVE-2026-20713
CVE-2026-20715
CVE-2026-20734
CVE-2026-20760
CVE-2026-20775
CVE-2026-20885
CVE-2026-20898
CVE-2026-20901
CVE-2026-20917
CVE-2025-31356
Description of changes:
[20260812-1.0.2]
- disable late update for 06-ad-01
[20260812-1.0.1]
- add support for UEK7/UEK8 and ueknext kernels
- don't bother calling dracut if virtualized [Orabug: 35710094]
- ensure UEK also rebuilds initramfs [Orabug: 34280058]
- enable early update for 06-4f-01
- remove no longer appropriate caveats for 06-2d-07 and 06-55-04
- enable early and late load on RHCK
[4:20260812-1]
- Update Intel CPU microcode to microcode-20260812 release (RHEL-240771)
- Security advisories:
https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-01379.html
CVE-2025-31936
https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-01404.html
CVE-2025-31938
https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-01423.html
CVE-2026-20917
https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-01428.html
CVE-2025-35973
https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-01435.html
CVE-2026-20716
https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-01441.html
CVE-2026-20760
https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-01442.html
CVE-2026-20713, CVE-2026-20901
https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-01443.html
CVE-2026-20707
- New microcode files (in hex):
06-b7-04: Raptor Lake: revision 0137
06-cc-02: Panther Lake: revision 011c
06-cc-03: Panther Lake: revision 011c
06-d5-01: Wildcat Lake: revision 000c
06-d7-00: Bartlett Lake: revision 0137
- Microcode files (/platform_mask shown) with revision updates (in hex):
06-6a-06/87: Ice Lake-X: d000421 to d000433
06-6c-01/10: Ice Lake-D: 10002f1 to 1000301
06-7e-05/80: Ice Lake-L: 00cc to 00ce
06-8f-07/87: Sapphire Rapids: 2b000661 to 2b000685
06-8f-08/10: Sapphire Rapids with HBM: 2c000421 to 2c000435
06-8f-08/87: Sapphire Rapids: 2b000661 to 2b000685
06-a7-01/02: Rocket Lake: 0065 to 0066
06-ad-01/20: Granite Rapids-X: a000133 to a000151
06-ad-01/95: Granite Rapids-X: 1000405 to 1000434
06-ae-01/97: Granite Rapids-D: 10002f3 to 1000309
06-af-03/01: Crestmont (Sierra Forest): 3000382 to 30003b2
06-b5-00/80: Arrow Lake-U: 000d to 000e
06-b7-01/36: Raptor Lake: 0133 to 0137, platform bit 04 added
06-bd-01/80: Lunar Lake: 0125 to 0128
06-c5-02/82: Arrow Lake-H: 011b to 0122
06-c6-02/82: Arrow Lake: 011b to 0122
06-cf-02/87: Emerald Rapids: 210002d3 to 210002f4
More information about the El-errata
mailing list