Koji contains linux-firmware-20171215-82.git2451bb22.fc27 which contains intel-ucode from 20171117. But I don't know if this firmware contains the microcode required to completely secure from Spectre variant 2. https://access.redhat.com/articles/3311301 "This vulnerability requires both updated microcode and kernel patches" Intel has released microcode 20180108, but there are no builds in koji yet for this version so I manually applied them from https://downloadcenter.intel.com/download/27431/Linux-Processor-Microcode-Data-File and also updated the initramfs with dracut -f so the change is persistent. This does change the microcode on my laptop compared to the Fedora supplied microcode. Intel doesn't provide very good release notes about what the microcode is doing. Someone asked about this on a message board regarding the 2018 release, and the response is merely "we're looking into it". https://communities.intel.com/message/518872#518872 -- Chris Murphy _______________________________________________ devel mailing list -- devel@xxxxxxxxxxxxxxxxxxxxxxx To unsubscribe send an email to devel-leave@xxxxxxxxxxxxxxxxxxxxxxx