[El-errata] ELSA-2026-500239 Important: Oracle Linux 9 microcode_ctl security update

Errata Announcements for Oracle Linux el-errata at oss.oracle.com
Thu Sep 17 13:23:01 UTC 2026


Oracle Linux Security Advisory ELSA-2026-500239

http://linux.oracle.com/errata/ELSA-2026-500239.html

The following updated rpms for Oracle Linux 9 have been uploaded to the Unbreakable Linux Network:

x86_64:
microcode_ctl-20260812-1.0.2.el9_8.noarch.rpm



SRPMS:
http://oss.oracle.com/ol9/SRPMS-updates/microcode_ctl-20260812-1.0.2.el9_8.src.rpm

Related CVEs:

CVE-2026-20705
CVE-2026-20707
CVE-2026-20708
CVE-2026-20712
CVE-2026-20713
CVE-2026-20715
CVE-2026-20734
CVE-2026-20760
CVE-2026-20775
CVE-2026-20885
CVE-2026-20898
CVE-2026-20901
CVE-2026-20917
CVE-2025-31356




Description of changes:

[20260812-1.0.2]
- disable late update for 06-ad-01

[20260812-1.0.1]
- add support for UEK7/UEK8 and ueknext kernels
- don't bother calling dracut if virtualized [Orabug: 35710094]
- ensure UEK also rebuilds initramfs [Orabug: 34280058]
- enable early update for 06-4f-01
- remove no longer appropriate caveats for 06-2d-07 and 06-55-04
- enable early and late load on RHCK

[4:20260812-1]
- Update Intel CPU microcode to microcode-20260812 release (RHEL-240771)
- Security advisories:
  https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-01379.html
  CVE-2025-31936
  https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-01404.html
  CVE-2025-31938
  https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-01423.html
  CVE-2026-20917
  https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-01428.html
  CVE-2025-35973
  https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-01435.html
  CVE-2026-20716
  https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-01441.html
  CVE-2026-20760
  https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-01442.html
  CVE-2026-20713, CVE-2026-20901
  https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-01443.html
  CVE-2026-20707
- New microcode files (in hex):
  06-b7-04: Raptor Lake: revision 0137
  06-cc-02: Panther Lake: revision 011c
  06-cc-03: Panther Lake: revision 011c
  06-d5-01: Wildcat Lake: revision 000c
  06-d7-00: Bartlett Lake: revision 0137
- Microcode files (/platform_mask shown) with revision updates (in hex):
  06-6a-06/87: Ice Lake-X: d000421 to d000433
  06-6c-01/10: Ice Lake-D: 10002f1 to 1000301
  06-7e-05/80: Ice Lake-L: 00cc to 00ce
  06-8f-07/87: Sapphire Rapids: 2b000661 to 2b000685
  06-8f-08/10: Sapphire Rapids with HBM: 2c000421 to 2c000435
  06-8f-08/87: Sapphire Rapids: 2b000661 to 2b000685
  06-a7-01/02: Rocket Lake: 0065 to 0066
  06-ad-01/20: Granite Rapids-X: a000133 to a000151
  06-ad-01/95: Granite Rapids-X: 1000405 to 1000434
  06-ae-01/97: Granite Rapids-D: 10002f3 to 1000309
  06-af-03/01: Crestmont (Sierra Forest): 3000382 to 30003b2
  06-b5-00/80: Arrow Lake-U: 000d to 000e
  06-b7-01/36: Raptor Lake: 0133 to 0137, platform bit 04 added
  06-bd-01/80: Lunar Lake: 0125 to 0128
  06-c5-02/82: Arrow Lake-H: 011b to 0122
  06-c6-02/82: Arrow Lake: 011b to 0122
  06-cf-02/87: Emerald Rapids: 210002d3 to 210002f4




More information about the El-errata mailing list