Microsoft will take almost a year to patch Secure Boot bug
Microsoft could need almost a year to patch a zero-day Secure Boot bug impacting Windows 10 and 11 PCs, Ars Technica reports.
The bug relates to the BlackLotus bootkit malware, and Microsoft patched the original vulnerability — CVE-2022-21894 — in January. It published a new fix for a second vulnerability, tracked as CVE-2023-24932, on Tuesday, 9 May 2023.
Microsoft could need almost a year to patch a zero-day Secure Boot bug impacting Windows 10 and 11 PCs, Ars Technica reports.
The bug relates to the BlackLotus bootkit malware, and Microsoft patched the original vulnerability — CVE-2022-21894 — in January. It published a new fix for a second vulnerability, tracked as CVE-2023-24932, on Tuesday, 9 May 2023.

