{"id":456707,"date":"2022-08-16T09:36:40","date_gmt":"2022-08-16T07:36:40","guid":{"rendered":"https:\/\/mybroadband.co.za\/news\/?p=456707"},"modified":"2022-08-16T09:37:15","modified_gmt":"2022-08-16T07:37:15","slug":"microsoft-warns-secure-boot-update-might-fail-to-install","status":"publish","type":"post","link":"https:\/\/mybroadband.co.za\/news\/security\/456707-microsoft-warns-secure-boot-update-might-fail-to-install.html","title":{"rendered":"Microsoft warns Secure Boot update might fail to install"},"content":{"rendered":"<p>Microsoft has <strong><a href=\"https:\/\/docs.microsoft.com\/en-us\/windows\/release-health\/status-windows-10-21H2#2883msgdesc\">warned<\/a><\/strong>\u00a0users trying to install the Windows KB5012170 Secure Boot security update that they might receive a 0x800f0922 error.<\/p>\n<p>\u201cWhen attempting to install KB5012170, it might fail to install, and you might receive an error 0x800f0922,\u201d Microsoft said.<\/p>\n<p>\u201cThis issue can be mitigated on some devices by updating the UEFI bios to the latest version before attempting to install KB5012170.\u201d<\/p>\n<p>Microsoft noted that this error only affects the security update for the Secure Boot Forbidden Signature Database (DBX) and excludes the latest cumulative security updates, monthly rollups, or security-only updates released on 9 August.<\/p>\n<p>The error message is directly related to a disclosure from Eclypsium security researchers on 12 August, warning users against <strong><a href=\"https:\/\/mybroadband.co.za\/news\/security\/456575-microsoft-approved-uefi-bootloaders-let-attackers-execute-unauthorised-code.html\">three Microsoft-approved Unified Extensible Firmware Interface (UEFI) bootloaders<\/a><\/strong> with critical security flaws.<\/p>\n<p>The bootloader vulnerabilities could let attackers execute malicious code before a computer\u2019s operating system loads.<\/p>\n<p>The three bootloaders and associated security vulnerabilities were disclosed as follows:<\/p>\n<ul>\n<li>Eurosoft (UK) Ltd \u2014 CVE-2022-34301<\/li>\n<li>New Horizon Datasys Inc \u2014 CVE-2022-34302<\/li>\n<li>CryptoPro Secure Disk for BitLocker \u2014 CVE-2022-34303<\/li>\n<\/ul>\n<p>Eclypsium researchers said that mitigating the vulnerabilities requires that original equipment manufacturers or operating system vendors update the Secure Boot DBX.<\/p>\n<p>Microsoft implemented these steps by updating the Secure Boot DBX with the KB5012170 patch.<\/p>\n<p>However, just as Eclypsium explained, updating the DBX on systems with the affected bootloaders before users could install a non-vulnerable bootloader version has led to some devices failing to start up.<\/p>\n<hr \/>\n<h3 class=\"my-4\">Now read: <a href=\"https:\/\/mybroadband.co.za\/news\/security\/456575-microsoft-approved-uefi-bootloaders-let-attackers-execute-unauthorised-code.html\">Microsoft-approved UEFI bootloaders let attackers execute unauthorised code<\/a><\/h3>\n","protected":false},"excerpt":{"rendered":"<p>Microsoft has cautioned users against installing a Secure Boot update, as it might lead to their computers failing to boot.<\/p>\n","protected":false},"author":341094,"featured_media":456711,"comment_status":"open","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[27],"tags":[80601,123,80637,68866,77988],"class_list":["post-456707","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-security","tag-eclypsium","tag-microsoft","tag-secure-boot","tag-security-update","tag-unified-extensible-firmware-interface-uefi"],"_links":{"self":[{"href":"https:\/\/mybroadband.co.za\/news\/wp-json\/wp\/v2\/posts\/456707"}],"collection":[{"href":"https:\/\/mybroadband.co.za\/news\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/mybroadband.co.za\/news\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/mybroadband.co.za\/news\/wp-json\/wp\/v2\/users\/341094"}],"replies":[{"embeddable":true,"href":"https:\/\/mybroadband.co.za\/news\/wp-json\/wp\/v2\/comments?post=456707"}],"version-history":[{"count":1,"href":"https:\/\/mybroadband.co.za\/news\/wp-json\/wp\/v2\/posts\/456707\/revisions"}],"predecessor-version":[{"id":456719,"href":"https:\/\/mybroadband.co.za\/news\/wp-json\/wp\/v2\/posts\/456707\/revisions\/456719"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/mybroadband.co.za\/news\/wp-json\/wp\/v2\/media\/456711"}],"wp:attachment":[{"href":"https:\/\/mybroadband.co.za\/news\/wp-json\/wp\/v2\/media?parent=456707"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/mybroadband.co.za\/news\/wp-json\/wp\/v2\/categories?post=456707"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/mybroadband.co.za\/news\/wp-json\/wp\/v2\/tags?post=456707"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}