Tool to transform and deploy CPU microcode update for x86.
Go to file
Denys Vlasenko 62777c4823 Update Intel CPU microcode to microcode-20260812 release
- Update Intel CPU microcode to microcode-20260812 release (RHEL-240771)
- Security advisories:
  https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-01379.html
  CVE-2025-31936
  https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-01404.html
  CVE-2025-31938
  https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-01423.html
  CVE-2026-20917
  https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-01428.html
  CVE-2025-35973
  https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-01435.html
  CVE-2026-20716
  https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-01441.html
  CVE-2026-20760
  https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-01442.html
  CVE-2026-20713, CVE-2026-20901
  https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-01443.html
  CVE-2026-20707
- New microcode files (in hex):
  06-b7-04: Raptor Lake: revision 0137
  06-cc-02: Panther Lake: revision 011c
  06-cc-03: Panther Lake: revision 011c
  06-d5-01: Wildcat Lake: revision 000c
  06-d7-00: Bartlett Lake: revision 0137
- Microcode files (/platform_mask shown) with revision updates (in hex):
  06-6a-06/87: Ice Lake-X: d000421 to d000433
  06-6c-01/10: Ice Lake-D: 10002f1 to 1000301
  06-7e-05/80: Ice Lake-L: 00cc to 00ce
  06-8f-07/87: Sapphire Rapids: 2b000661 to 2b000685
  06-8f-08/10: Sapphire Rapids with HBM: 2c000421 to 2c000435
  06-8f-08/87: Sapphire Rapids: 2b000661 to 2b000685
  06-a7-01/02: Rocket Lake: 0065 to 0066
  06-ad-01/20: Granite Rapids-X: a000133 to a000151
  06-ad-01/95: Granite Rapids-X: 1000405 to 1000434
  06-ae-01/97: Granite Rapids-D: 10002f3 to 1000309
  06-af-03/01: Crestmont (Sierra Forest): 3000382 to 30003b2
  06-b5-00/80: Arrow Lake-U: 000d to 000e
  06-b7-01/36: Raptor Lake: 0133 to 0137, platform bit 04 added
  06-bd-01/80: Lunar Lake: 0125 to 0128
  06-c5-02/82: Arrow Lake-H: 011b to 0122
  06-c6-02/82: Arrow Lake: 011b to 0122
  06-cf-02/87: Emerald Rapids: 210002d3 to 210002f4
Resolves: RHEL-240771

Signed-off-by: Denys Vlasenko <dvlasenk@redhat.com>
2026-08-14 18:39:30 +02:00
.gitignore Update Intel CPU microcode to microcode-20250512 release 2025-06-10 12:50:30 +02:00
01-microcode.conf Import RHEL packaging 2021-07-26 18:44:11 +02:00
06-2d-07_config Import RHEL packaging 2021-07-26 18:44:11 +02:00
06-2d-07_disclaimer Import RHEL packaging 2021-07-26 18:44:11 +02:00
06-2d-07_readme Import RHEL packaging 2021-07-26 18:44:11 +02:00
06-4e-03_config Import RHEL packaging 2021-07-26 18:44:11 +02:00
06-4e-03_disclaimer Import RHEL packaging 2021-07-26 18:44:11 +02:00
06-4e-03_readme Update Intel CPU microcode to microcode-20220510 release 2022-06-14 18:04:13 +02:00
06-4f-01_config Import RHEL packaging 2021-07-26 18:44:11 +02:00
06-4f-01_disclaimer Import RHEL packaging 2021-07-26 18:44:11 +02:00
06-4f-01_readme Import RHEL packaging 2021-07-26 18:44:11 +02:00
06-5e-03_config Import RHEL packaging 2021-07-26 18:44:11 +02:00
06-5e-03_disclaimer Import RHEL packaging 2021-07-26 18:44:11 +02:00
06-5e-03_readme Update Intel CPU microcode to microcode-20220510 release 2022-06-14 18:04:13 +02:00
06-8c-01_config Import RHEL packaging 2021-07-26 18:44:11 +02:00
06-8c-01_disclaimer Import RHEL packaging 2021-07-26 18:44:11 +02:00
06-8c-01_readme Update Intel CPU microcode to microcode-20250512 release 2025-06-10 12:50:30 +02:00
06-8e-9e-0x-0xca_config Import RHEL packaging 2021-07-26 18:44:11 +02:00
06-8e-9e-0x-0xca_disclaimer Import RHEL packaging 2021-07-26 18:44:11 +02:00
06-8e-9e-0x-0xca_readme Update Intel CPU microcode to microcode-20250512 release 2025-06-10 12:50:30 +02:00
06-8e-9e-0x-dell_config Import RHEL packaging 2021-07-26 18:44:11 +02:00
06-8e-9e-0x-dell_disclaimer Import RHEL packaging 2021-07-26 18:44:11 +02:00
06-8e-9e-0x-dell_readme Update Intel CPU microcode to microcode-20250512 release 2025-06-10 12:50:30 +02:00
06-8f-08_config Update Intel CPU microcode to microcode-20251111 release 2025-11-28 04:13:22 +01:00
06-8f-08_disclaimer Update Intel CPU microcode to microcode-20250512 release 2025-06-10 12:50:30 +02:00
06-8f-08_readme Update Intel CPU microcode to microcode-20250512 release 2025-06-10 12:50:30 +02:00
06-55-04_config Import RHEL packaging 2021-07-26 18:44:11 +02:00
06-55-04_disclaimer Import RHEL packaging 2021-07-26 18:44:11 +02:00
06-55-04_readme Update Intel CPU microcode to microcode-20230808 release 2023-08-22 21:34:50 +02:00
99-microcode-override.conf Import RHEL packaging 2021-07-26 18:44:11 +02:00
0001-releasenote.md-cleanup-eliminated-usage-of-U-0080.patch Update Intel CPU microcode to microcode-20250512 release 2025-06-10 12:50:30 +02:00
0002-releasenote.md-remove-excess-Release-Notes-headers.patch Update Intel CPU microcode to microcode-20250512 release 2025-06-10 12:50:30 +02:00
0003-releasenote.md-sort-the-entries-of-the-20230808-rele.patch Update Intel CPU microcode to microcode-20250512 release 2025-06-10 12:50:30 +02:00
0004-releasenote.md-fix-incorrect-platform-mask-for-RPL-H.patch Update Intel CPU microcode to microcode-20250512 release 2025-06-10 12:50:30 +02:00
0005-releasenote.md-fix-stepping-for-RPL-S.patch Update Intel CPU microcode to microcode-20250512 release 2025-06-10 12:50:30 +02:00
0006-releasenote.md-add-missing-06-ba-03-e0-to-the-new-mi.patch Update Intel CPU microcode to microcode-20250512 release 2025-06-10 12:50:30 +02:00
0007-releasenote.md-remove-the-duplicating-06-9e-0c-22-re.patch Update Intel CPU microcode to microcode-20250512 release 2025-06-10 12:50:30 +02:00
0008-releasenote.md-fix-old-revisions-for-06-8e-09-10-and.patch Update Intel CPU microcode to microcode-20250512 release 2025-06-10 12:50:30 +02:00
0009-releasenote.md-add-old-revisions-for-06-be-00-11-06-.patch Update Intel CPU microcode to microcode-20250512 release 2025-06-10 12:50:30 +02:00
0010-releasenote.md-eliminate-trailing-white-space.patch Update Intel CPU microcode to microcode-20250512 release 2025-06-10 12:50:30 +02:00
0011-releasenote.md-add-information-about-updates-and-rem.patch Update Intel CPU microcode to microcode-20250512 release 2025-06-10 12:50:30 +02:00
0012-releasenote.md-add-information-about-06-ba-08-microc.patch Update Intel CPU microcode to microcode-20250512 release 2025-06-10 12:50:30 +02:00
0013-releasenote.md-fix-whitespace-in-microcode-20240531-.patch Update Intel CPU microcode to microcode-20250512 release 2025-06-10 12:50:30 +02:00
0014-releasenote.md-use-None-for-the-empty-list-of-new-pl.patch Update Intel CPU microcode to microcode-20250512 release 2025-06-10 12:50:30 +02:00
0015-releasenote.md-add-missing-old-revision-in-microcode.patch Update Intel CPU microcode to microcode-20250512 release 2025-06-10 12:50:30 +02:00
0016-releasenote.md-use-new-lines-consistently.patch Update Intel CPU microcode to microcode-20260812 release 2026-08-14 18:39:30 +02:00
0017-releasenote.md-add-information-about-removal-of-CLX-.patch Update Intel CPU microcode to microcode-20251111 release 2025-11-28 04:13:22 +01:00
0101-releasenote.md-drop-Removed-Platforms-from-microcode.patch Update Intel CPU microcode to microcode-20251111 release 2025-11-28 04:13:22 +01:00
check_caveats check_caveats, reload_microcode, update_ucode: reset locale to C 2023-08-09 09:59:48 +02:00
codenames.list Update Intel CPU microcode to microcode-20250512 release 2025-06-10 12:50:30 +02:00
dracut_99microcode_ctl-fw_dir_override_module_init.sh dracut_99microcode_ctl-fw_dir_override_module_init.sh: add new default fw_dir 2023-08-23 01:46:41 +02:00
gating.yaml add RHEL9 gating.yaml file 2021-06-30 14:42:43 -05:00
gen_provides.sh gen_provides.sh: make microcode header decoding endianness-agnostic 2021-07-26 23:18:05 +02:00
gen_updates2.py gen_updates2.py: consistently specify endianness in struct.unpack formats 2021-07-26 23:18:05 +02:00
intel_config Import RHEL packaging 2021-07-26 18:44:11 +02:00
intel_disclaimer Import RHEL packaging 2021-07-26 18:44:11 +02:00
intel_readme Import RHEL packaging 2021-07-26 18:44:11 +02:00
microcode_ctl.spec Update Intel CPU microcode to microcode-20260812 release 2026-08-14 18:39:30 +02:00
microcode.service Import RHEL packaging 2021-07-26 18:44:11 +02:00
README Import RHEL packaging 2021-07-26 18:44:11 +02:00
README.caveats Update Intel CPU microcode to microcode-20250512 release 2025-06-10 12:50:30 +02:00
reload_microcode check_caveats, reload_microcode, update_ucode: reset locale to C 2023-08-09 09:59:48 +02:00
sources Update Intel CPU microcode to microcode-20260812 release 2026-08-14 18:39:30 +02:00
update_ucode Update Intel CPU microcode to microcode-20240531 release 2024-07-31 05:15:57 +02:00

The microcode_ctl package contains microcode files (vendor-provided binary data
and/or code in proprietary format that affects behaviour of a device) for Intel
CPUs that may be loaded into the CPU during boot.

This directory contains information regarding various aspects of the provided
microcode files and their usage.

 * LICENSE.intel-ucode
   "license" file from the Intel x86 CPU microcode archive.
 * README
   This file.
 * README.caveats
   Caveats (mechanism for enabling/disabling usage of sets of microcode files
   based on caveat configuration and user preferences) documentation.
   Also contains general information about microcode update behaviour and links
   with additional information about the relevant microarchitectural
   vulnerabilities.
 * README.intel-ucode
   "README.md" file from the Intel x86 CPU microcode archive.
 * RELEASE_NOTES.intel-ucode
   "releasenote.md" file from the Intel x86 CPU microcode archive.
 * SECURITY.intel-ucode
   "security.md" file from the Intel x86 CPU microcode archive.
 * SUMMARY.intel-ucode
   Information about supplied microcode files extracted from their headers,
   in a table form.  Columns have the following meaning:
    * "Path": path to the microcode file under one of the following directories:
       * /usr/share/microcode_ctl/ucode_with_caveats/intel
       * /usr/share/microcode_ctl/ucode_with_caveats
       * /usr/share/microcode_ctl
       * /lib/firmware
       * /etc/firmware
    * "Offset": offset of the microcode blob within the micocode file in bytes.
    * "Ext. Offset": offset of the extended signature header within
      the microcode file in bytes.
    * "Data Size": size of microcode data in bytes.  0 means 2000 bytes.
    * "Total Size": size of microcode blob in bytes, incuding headers.
      0 means 2048 bytes.
    * "CPUID": CPU ID signature (in format returned by the CPUID instruction).
    * "Platform ID Mask": mask of suitable Platform IDs (provided in bits
      52..50 of MSR 0x17).
    * "Revision": microcode revision.
    * "Date": microcode creation date.
    * "Checksum": sum (in base 1<< 32) of all 32-bit values comprising
      the microcode (from Offset up to Offset + Total Size).
    * "Codenames": list of known CPU codenames associated with the CPUID
      and Platform ID Mask combination.
   Please refer to README.cavets, section "Microcode file structure"
   for additional information regarding microcode header fields.
 * caveats
   Directory that contains readme files for each specific caveat.