[External] Re: [BUG] blacklist: Problem blacklisting hash (-13) during boot

Jeremy Kerr jk at codeconstruct.com.au
Mon Feb 27 01:42:39 UTC 2023


Hi Thomas,

> > Given there's (at least) a few months' worth of GA machines with
> > this issue, can we suppress the warning?
> 
> In 6.3 this message will be downgraded to a warning.
> https://git.kernel.org/pub/scm/linux/kernel/git/torvalds/linux.git/commit/?id=c95e8f6fd157b45ef0685c221931561e943e82da

Nice, thanks for that.

> A fixed firmware is still desirable, though.

Yep, definitely.

Not to discourage a firmware fix, but I could look at adding support to
one of the utils (mokutil?) to delete duplicate kek/db/dbx entries...

Cheers,


Jeremy



More information about the Linux-security-module-archive mailing list