Re: [oS-EN] Laptop fails to recover from hibernation, hard locks on black display
"Carlos E. R. via openSUSE Users" <[email protected]> Sun, 2 Aug 2026 20:37:57 +0200
| Newsgroups | gmane.linux.suse.general |
|---|---|
| Message-ID | <[email protected]> |
This is a multi-part message in MIME format.
--------------rn3AhtM06jnoyf1FG1ZJYJOX
Content-Type: text/plain; charset=UTF-8; format=flowed
Content-Transfer-Encoding: quoted-printable
On 2026-08-02 15:45, Andrei Borzenkov wrote:
> 02.08.2026 16:39, Bengt G=C3=B6rd=C3=A9n wrote:
>>
>> BIOS Update (Bootable CD)
>>
>> This is what I've been using for years on my Thinkpads.
>>
>>
>
> Lenovo is quite good at supporting LVFS, the first thing is to check wit=
h
>
> fwupdmgr get-updates
I'm not familiar with that tool.
*WARNING*: UEFI ESP partition may not be set up correctly
Seehttps://github.com/fwupd/fwupd/wiki/PluginFlag:esp-not-valid for mo=
re information.
Firmware metadata has not been updated for 30 days and may not be up t=
o date.
Update now? (Requires internet connection) [y|N]: y
Updating lvfs
Downloading=E2=80=A6 [************************************=
***]
Successfully downloaded new metadata:
=E2=80=A2 21 devices are updatable
=E2=80=A2 5 devices are supported in the enabled remotes (an update =
has been published)
Devices with no available firmware updates:
=E2=80=A2 067F:00 04F3:3209
=E2=80=A2 Integrated RGB Camera
=E2=80=A2 KEK CA
=E2=80=A2 Prometheus (IOTA Config)
=E2=80=A2 ThinkPad Product CA
=E2=80=A2 UEFI CA
=E2=80=A2 UEFI Device Firmware
=E2=80=A2 UEFI Device Firmware
=E2=80=A2 UEFI Device Firmware
=E2=80=A2 UEFI Device Firmware
=E2=80=A2 UEFI Device Firmware
=E2=80=A2 UEFI Device Firmware
=E2=80=A2 UEFI Device Firmware
=E2=80=A2 UEFI Device Firmware
=E2=80=A2 UEFI Device Firmware
=E2=80=A2 Windows Production PCA
LENOVO 21C5CTO1WW
=E2=94=82
=E2=94=9C=E2=94=80KBG5AZNT1T02 LA KIOXIA:
=E2=94=82 =E2=94=82 Device ID: 71b677ca0f1bc2c5b804fa1d59e5=
2064ce589293
=E2=94=82 =E2=94=82 Summary: NVM Express solid state driv=
e
=E2=94=82 =E2=94=82 Current version: 1107ANLA
=E2=94=82 =E2=94=82 Vendor: KIOXIA (PCI:0x1E0F)
=E2=94=82 =E2=94=82 Serial Number: 52QC721BEJS6
=E2=94=82 =E2=94=82 GUIDs: 6cefd2de-46a3-5fb7-acb1-25ef=
14bec6de =E2=86=90 NVME\VEN_1E0F&DEV_000C
=E2=94=82 =E2=94=82 52a1c489-1299-5fa5-a97f-384d=
de8c5fa2 =E2=86=90 NVME\VEN_1E0F&DEV_000C&SUBSYS_1E0F0001
=E2=94=82 =E2=94=82 31d222d5-b7b3-5aad-97f0-b889=
6757ddaa =E2=86=90 KBG5AZNT1T02 LA KIOXIA
=E2=94=82 =E2=94=82 Device Flags: =E2=80=A2 Internal device
=E2=94=82 =E2=94=82 =E2=80=A2 Updatable
=E2=94=82 =E2=94=82 =E2=80=A2 System requires ex=
ternal power source
=E2=94=82 =E2=94=82 =E2=80=A2 Supported on remot=
e server
=E2=94=82 =E2=94=82 =E2=80=A2 Needs a reboot aft=
er installation
=E2=94=82 =E2=94=82 =E2=80=A2 Device is usable f=
or the duration of the update
=E2=94=82 =E2=94=82 =E2=80=A2 Signed Payload
=E2=94=82 =E2=94=82 =E2=80=A2 Can tag for emulat=
ion
=E2=94=82 =E2=94=82
=E2=94=82 =E2=94=9C=E2=94=80KBG5AZNV256G LA / KBG5AZNT256G LA / KBG5AZ=
NV512G LA / KBG5AZNT512G LA / KBG5AZNV1T02 LA / KBG5AZNT1T02 LA SSD Update=
:
=E2=94=82 =E2=94=82 New version: 1110ANLA
=E2=94=82 =E2=94=82 Remote ID: lvfs
=E2=94=82 =E2=94=82 Release ID: 131573
=E2=94=82 =E2=94=82 Summary: KIOXIA BG5 NVMe SSD Firmwre =
for Lenovo PC
=E2=94=82 =E2=94=82 License: Proprietary
=E2=94=82 =E2=94=82 Size: 1.3=C2=A0MB
=E2=94=82 =E2=94=82 Created: 2025-11-05 00:00:00
=E2=94=82 =E2=94=82 Urgency: High
=E2=94=82 =E2=94=82 Tested: 2026-01-16 00:00:00
=E2=94=82 =E2=94=82 Distribution: ubuntu 22.04
=E2=94=82 =E2=94=82 Old version: 1109ANLA
=E2=94=82 =E2=94=82 Version[fwupd]: 1.9.16
=E2=94=82 =E2=94=82 Vendor: Lenovo
=E2=94=82 =E2=94=82 Release Flags: =E2=80=A2 Trusted metadata
=E2=94=82 =E2=94=82 =E2=80=A2 Is upgrade
=E2=94=82 =E2=94=82 =E2=80=A2 Tested by trusted =
vendor
=E2=94=82 =E2=94=82 Description:
=E2=94=82 =E2=94=82 Do NOT turn off your computer or remove the AC=
adapter while update is in progress.
=E2=94=82 =E2=94=82
=E2=94=82 =E2=94=82 The computer shall be restarted after updating=
firmware completely. The device may not properly function until you shut =
down or reboot PC.
=E2=94=82 =E2=94=82
=E2=94=82 =E2=94=82 [Support devices and Firmware version] KBG5AZN=
V256G 1110ANLA, KBG5AZNT256G 1110ANLA, KBG5AZNV512G 1110ANLA, KBG5AZNT512G=
1110ANLA, KBG5AZNV1T02 1110ANLA, KBG5AZNT1T02 1110ANLA
=E2=94=82 =E2=94=82
=E2=94=82 =E2=94=82 [Problem Fixes] Implement a fix to prevent the=
SSD from entering a specific mode.
=E2=94=82 =E2=94=82
=E2=94=82 =E2=94=82 [Support Product Scope] Lenovo ThinkPad, Think=
Centre, ThinkStation, IdeaCentre.
=E2=94=82 =E2=94=82 Checksum: b660c7ec4c828d2c6f99f1a6c3c4=
29f01feeb1d3bcd0ea90b4a87b4e106b452c
=E2=94=82 =E2=94=82
=E2=94=82 =E2=94=9C=E2=94=80KBG5AZNV256G LA / KBG5AZNT256G LA / KBG5AZ=
NV512G LA / KBG5AZNT512G LA / KBG5AZNV1T02 LA / KBG5AZNT1T02 LA SSD Update=
:
=E2=94=82 =E2=94=82 New version: 1109ANLA
=E2=94=82 =E2=94=82 Remote ID: lvfs
=E2=94=82 =E2=94=82 Release ID: 75888
=E2=94=82 =E2=94=82 Summary: KIOXIA BG5 NVMe SSD Firmwre =
for Lenovo PC
=E2=94=82 =E2=94=82 License: Proprietary
=E2=94=82 =E2=94=82 Size: 1.3=C2=A0MB
=E2=94=82 =E2=94=82 Created: 2023-11-21 00:00:00
=E2=94=82 =E2=94=82 Urgency: High
=E2=94=82 =E2=94=82 Tested: 2026-01-16 00:00:00
=E2=94=82 =E2=94=82 Distribution: ubuntu 22.04
=E2=94=82 =E2=94=82 Old version: 1110ANLA
=E2=94=82 =E2=94=82 Version[fwupd]: 1.7.9
=E2=94=82 =E2=94=82 Vendor: Lenovo
=E2=94=82 =E2=94=82 Release Flags: =E2=80=A2 Trusted metadata
=E2=94=82 =E2=94=82 =E2=80=A2 Is upgrade
=E2=94=82 =E2=94=82 =E2=80=A2 Tested by trusted =
vendor
=E2=94=82 =E2=94=82 Description:
=E2=94=82 =E2=94=82 [Support devices and Firmware version] KBG5AZN=
V256G 1109ANLA, KBG5AZNT256G 1109ANLA, KBG5AZNV512G 1109ANLA, KBG5AZNT512G=
1109ANLA, KBG5AZNV1T02 1109ANLA, KBG5AZNT1T02 1109ANLA
=E2=94=82 =E2=94=82
=E2=94=82 =E2=94=82 [Problem Fixes] 1.To fix firmware issue of TCG=
Opal on reset function./2.To fix the firmware issues that SSD hang up due=
to conflict system operation with SSD.
=E2=94=82 =E2=94=82
=E2=94=82 =E2=94=82 [Support Product Scope] Lenovo ThinkPad, Think=
Centre, ThinkStation, IdeaCentre
=E2=94=82 =E2=94=82 Checksum: d8572b136e2dca2d6d278ec8f9ff=
88f07d93b4e17d5dfca534c05eeb9628de62
=E2=94=82 =E2=94=82
=E2=94=82 =E2=94=94=E2=94=80KBG5AZNV256G LA / KBG5AZNT256G LA / KBG5AZ=
NV512G LA / KBG5AZNT512G LA / KBG5AZNV1T02 LA / KBG5AZNT1T02 LA SSD Update=
:
=E2=94=82 New version: 1108ANLA
=E2=94=82 Remote ID: lvfs
=E2=94=82 Release ID: 18995
=E2=94=82 Summary: KIOXIA BG5 NVMe SSD Firmwre for Leno=
vo PC
=E2=94=82 License: Proprietary
=E2=94=82 Size: 1.3=C2=A0MB
=E2=94=82 Created: 2023-02-06 00:00:00
=E2=94=82 Urgency: High
=E2=94=82 Tested: 2024-01-24 00:00:00
=E2=94=82 Distribution: ubuntu 22.04
=E2=94=82 Old version: 1106ANLA
=E2=94=82 Version[fwupd]: 1.7.9
=E2=94=82 Vendor: Lenovo
=E2=94=82 Release Flags: =E2=80=A2 Trusted metadata
=E2=94=82 =E2=80=A2 Is upgrade
=E2=94=82 =E2=80=A2 Tested by trusted vendor
=E2=94=82 Description:
=E2=94=82 [Support devices and Firmware version] KBG5AZNV256G LA=
1108ANLA KBG5AZNT256G LA 1108ANLA, KBG5AZNV512G LA 1108ANLA KBG5AZNT512G =
LA 1108ANLA, KBG5AZNV1T02 LA 1108ANLA KBG5AZNT1T02 LA 1108ANLA
=E2=94=82
=E2=94=82 [Problem fixes]1.Task conflict issue on OS Aging test =
(Fix BSoD issue)/2.Thermal shutdown issue on SMBus enabled system./3.Risk =
of SSD dead due to LUT overwrite./4.Change the SSD mode to Read-only when =
internal LUT clash occurred /5.Drive no response issue on specific modern =
standby system.
=E2=94=82
=E2=94=82 [Support Product Scope]Lenovo ThinkPad, ThinkCentre, T=
hinkStation, IdeaCentre
=E2=94=82 Checksum: 67b6b8bea784b20c76e3a54b8150d96c5b53=
bb74789ec5e107f1019eafb9d433
=E2=94=82
=E2=94=9C=E2=94=80KEK CA:
=E2=94=82 =E2=94=82 Device ID: b7a1d3d90faa1f6275d9a98da4fb=
3be7118e61c7
=E2=94=82 =E2=94=82 Current version: 2011
=E2=94=82 =E2=94=82 Vendor: Microsoft (UEFI:Microsoft)
=E2=94=82 =E2=94=82 GUIDs: 814e950f-1449-566a-a190-42c9=
d3a3a2df =E2=86=90 UEFI\VENDOR_Microsoft&NAME_Microsoft-KEK-CA
=E2=94=82 =E2=94=82 dfa66406-6568-5bdf-bb8e-b53d=
db4be4cf =E2=86=90 UEFI\CRT_9F402B1CC0243CBEDC58A525789816CCCA7687A9
=E2=94=82 =E2=94=82 Device Flags: =E2=80=A2 Internal device
=E2=94=82 =E2=94=82 =E2=80=A2 Updatable
=E2=94=82 =E2=94=82 =E2=80=A2 Supported on remot=
e server
=E2=94=82 =E2=94=82 =E2=80=A2 Needs a reboot aft=
er installation
=E2=94=82 =E2=94=82 =E2=80=A2 Device is usable f=
or the duration of the update
=E2=94=82 =E2=94=82 =E2=80=A2 Signed Payload
=E2=94=82 =E2=94=82 =E2=80=A2 Can tag for emulat=
ion
=E2=94=82 =E2=94=82
=E2=94=82 =E2=94=94=E2=94=80Secure Boot KEK Configuration Update:
=E2=94=82 New version: 2023
=E2=94=82 Remote ID: lvfs
=E2=94=82 Release ID: 114062
=E2=94=82 Summary: UEFI Secure Boot Key Exchange Key
=E2=94=82 Variant: Lenovo
=E2=94=82 License: Proprietary
=E2=94=82 Size: 2.9=C2=A0kB
=E2=94=82 Created: 2025-04-29 00:00:00
=E2=94=82 Urgency: High
=E2=94=82 Vendor: Linux Foundation
=E2=94=82 Release Flags: =E2=80=A2 Trusted metadata
=E2=94=82 =E2=80=A2 Is upgrade
=E2=94=82 Description:
=E2=94=82 This updates the UEFI Signature Database (the "KEK") t=
o the latest release from Microsoft, signed by Lenovo Ltd.PK CA 2012.
=E2=94=82 Checksum: 168b8c108e18a0b61ff8228d56d28d4739ef=
f055ef26022c64c9335e78a2dc33
=E2=94=82
=E2=94=9C=E2=94=80Prometheus:
=E2=94=82 =E2=94=82 Device ID: 813b4757e78d708603a80ead0a2b=
6ef1364b7790
=E2=94=82 =E2=94=82 Summary: Fingerprint reader
=E2=94=82 =E2=94=82 Current version: 10.01.3273255
=E2=94=82 =E2=94=82 Vendor: Synaptics (USB:0x06CB)
=E2=94=82 =E2=94=82 Install Duration: 2 seconds
=E2=94=82 =E2=94=82 Serial Number: 21998257769597
=E2=94=82 =E2=94=82 GUID: 659f7e45-8d45-528d-b3c7-0695=
eed055f6 =E2=86=90 USB\VID_06CB&PID_00F9
=E2=94=82 =E2=94=82 Device Flags: =E2=80=A2 Updatable
=E2=94=82 =E2=94=82 =E2=80=A2 Supported on remot=
e server
=E2=94=82 =E2=94=82 =E2=80=A2 Cryptographic hash=
verification is available
=E2=94=82 =E2=94=82 =E2=80=A2 Signed Payload
=E2=94=82 =E2=94=82 =E2=80=A2 Can tag for emulat=
ion
=E2=94=82 =E2=94=82
=E2=94=82 =E2=94=94=E2=94=80Prometheus Fingerprint Reader Update:
=E2=94=82 New version: 10.01.3478575
=E2=94=82 Remote ID: lvfs
=E2=94=82 Release ID: 10696
=E2=94=82 Summary: Firmware for the Synaptics Prometheu=
s Fingerprint Reader device
=E2=94=82 License: Proprietary
=E2=94=82 Size: 425.5=C2=A0kB
=E2=94=82 Created: 2021-06-09 00:00:00
=E2=94=82 Urgency: Medium
=E2=94=82 Tested: 2024-06-06 00:00:00
=E2=94=82 Distribution: ubuntu 22.04
=E2=94=82 Old version: 10.01.3333223
=E2=94=82 Version[fwupd]: 1.9.15
=E2=94=82 Vendor: Synaptics
=E2=94=82 Duration: 2 seconds
=E2=94=82 Release Flags: =E2=80=A2 Trusted metadata
=E2=94=82 =E2=80=A2 Is upgrade
=E2=94=82 Description:
=E2=94=82 New features and enhancements:
=E2=94=82
=E2=94=82 =E2=80=A2 Fix an authentication issue on FOP project.
=E2=94=82 Checksum: da76c521b478c2c1c03eaf56a91e8498c4ab=
afc0fa6a8d4fd4b067277219e1a4
=E2=94=82
=E2=94=9C=E2=94=80System Firmware:
=E2=94=82 =E2=94=82 Device ID: 2752d7053a55ee134f0f922690cf=
56285b0c2ed5
=E2=94=82 =E2=94=82 Summary: UEFI System Resource Table d=
evice (updated via NVRAM)
=E2=94=82 =E2=94=82 Current version: 0.1.17
=E2=94=82 =E2=94=82 Vendor: Lenovo (DMI:LENOVO)
=E2=94=82 =E2=94=82 Update State: Success
=E2=94=82 =E2=94=82 GUID: 7d789c51-d050-4bda-875a-8022=
4c0cb1ed
=E2=94=82 =E2=94=82 Device Flags: =E2=80=A2 Internal device
=E2=94=82 =E2=94=82 =E2=80=A2 Updatable
=E2=94=82 =E2=94=82 =E2=80=A2 System requires ex=
ternal power source
=E2=94=82 =E2=94=82 =E2=80=A2 Supported on remot=
e server
=E2=94=82 =E2=94=82 =E2=80=A2 Needs a reboot aft=
er installation
=E2=94=82 =E2=94=82 =E2=80=A2 Cryptographic hash=
verification is available
=E2=94=82 =E2=94=82 =E2=80=A2 Device is usable f=
or the duration of the update
=E2=94=82 =E2=94=82 Device Requests: =E2=80=A2 Message
=E2=94=82 =E2=94=82
=E2=94=82 =E2=94=9C=E2=94=80ThinkPad L14L15 Gen3 AMD System Update:
=E2=94=82 =E2=94=82 New version: 0.1.39
=E2=94=82 =E2=94=82 Remote ID: lvfs
=E2=94=82 =E2=94=82 Release ID: 143406
=E2=94=82 =E2=94=82 Summary: ThinkPad L14L15 Gen3 AMD Sys=
tem Firmware
=E2=94=82 =E2=94=82 License: Proprietary
=E2=94=82 =E2=94=82 Size: 34.8=C2=A0MB
=E2=94=82 =E2=94=82 Created: 2026-05-27 00:00:00
=E2=94=82 =E2=94=82 Urgency: High
=E2=94=82 =E2=94=82 Tested: 2026-06-12 00:00:00
=E2=94=82 =E2=94=82 Distribution: ubuntu-core 24
=E2=94=82 =E2=94=82 Old version: 0.1.38
=E2=94=82 =E2=94=82 Version[fwupd]: 2.1.4
=E2=94=82 =E2=94=82 Vendor: Lenovo
=E2=94=82 =E2=94=82 Release Flags: =E2=80=A2 Trusted metadata
=E2=94=82 =E2=94=82 =E2=80=A2 Is upgrade
=E2=94=82 =E2=94=82 =E2=80=A2 Tested by trusted =
vendor
=E2=94=82 =E2=94=82 Description:
=E2=94=82 =E2=94=82 ThinkPad L14L15 Gen3 AMD System Firmware
=E2=94=82 =E2=94=82
=E2=94=82 =E2=94=82 =E2=80=A2 Update Flash Driver and Tool 2026032=
7
=E2=94=82 =E2=94=82 =E2=80=A2 Fix BIOS POST will show error messag=
.
=E2=94=82 =E2=94=82 Checksum: dc700e98719128813d104ce9ad4e=
f0caf61cf434604e59898e395e8ea4def4c8
=E2=94=82 =E2=94=82
=E2=94=82 =E2=94=9C=E2=94=80ThinkPad L14L15 Gen3 AMD System Update:
=E2=94=82 =E2=94=82 New version: 0.1.38
=E2=94=82 =E2=94=82 Remote ID: lvfs
=E2=94=82 =E2=94=82 Release ID: 142240
=E2=94=82 =E2=94=82 Summary: ThinkPad L14L15 Gen3 AMD Sys=
tem Firmware
=E2=94=82 =E2=94=82 License: Proprietary
=E2=94=82 =E2=94=82 Size: 34.6=C2=A0MB
=E2=94=82 =E2=94=82 Created: 2026-04-27 00:00:00
=E2=94=82 =E2=94=82 Urgency: High
=E2=94=82 =E2=94=82 Tested: 2026-06-12 00:00:00
=E2=94=82 =E2=94=82 Distribution: ubuntu-core 24
=E2=94=82 =E2=94=82 Old version: 0.1.37
=E2=94=82 =E2=94=82 Version[fwupd]: 2.1.1
=E2=94=82 =E2=94=82 Vendor: Lenovo
=E2=94=82 =E2=94=82 Release Flags: =E2=80=A2 Trusted metadata
=E2=94=82 =E2=94=82 =E2=80=A2 Is upgrade
=E2=94=82 =E2=94=82 =E2=80=A2 Tested by trusted =
vendor
=E2=94=82 =E2=94=82 Description:
=E2=94=82 =E2=94=82 ThinkPad L14L15 Gen3 AMD System Firmware Secur=
ity patch code update. Security function improvement. Add Smm Range check =
Add SmiLinuxSettings Added SmiStorageMode.
=E2=94=82 =E2=94=82 Issue: CVE-2025-54502
=E2=94=82 =E2=94=82 Checksum: 3cc69c2b89c448d6ad0770db8292=
6d83bf9e76ea7f1512a3fb2d63da74f2b23f
=E2=94=82 =E2=94=82
=E2=94=82 =E2=94=9C=E2=94=80ThinkPad L14L15 Gen3 AMD System Update:
=E2=94=82 =E2=94=82 New version: 0.1.36
=E2=94=82 =E2=94=82 Remote ID: lvfs
=E2=94=82 =E2=94=82 Release ID: 134829
=E2=94=82 =E2=94=82 Summary: ThinkPad L14L15 Gen3 AMD Sys=
tem Firmware
=E2=94=82 =E2=94=82 License: Proprietary
=E2=94=82 =E2=94=82 Size: 34.6=C2=A0MB
=E2=94=82 =E2=94=82 Created: 2025-12-10 00:00:00
=E2=94=82 =E2=94=82 Urgency: High
=E2=94=82 =E2=94=82 Tested: 2026-02-09 00:00:00
=E2=94=82 =E2=94=82 Distribution: ubuntu-core 24
=E2=94=82 =E2=94=82 Old version: 0.1.35
=E2=94=82 =E2=94=82 Version[fwupd]: 2.0.18
=E2=94=82 =E2=94=82 Vendor: Lenovo
=E2=94=82 =E2=94=82 Release Flags: =E2=80=A2 Trusted metadata
=E2=94=82 =E2=94=82 =E2=80=A2 Is upgrade
=E2=94=82 =E2=94=82 =E2=80=A2 Tested by trusted =
vendor
=E2=94=82 =E2=94=82 Description:
=E2=94=82 =E2=94=82 ThinkPad L14L15 Gen3 AMD System Firmware Secur=
ity patch code update. Security function improvement.
=E2=94=82 =E2=94=82
=E2=94=82 =E2=94=82 Add Smm Range check
=E2=94=82 =E2=94=82
=E2=94=82 =E2=94=82 Add SmiLinuxSettings
=E2=94=82 =E2=94=82
=E2=94=82 =E2=94=82 Added SmiStorageMode
=E2=94=82 =E2=94=82 Checksum: 2bc24148acb646c317068e49994c=
9e97ec795dfc95273a99168e3971eecb46ce
=E2=94=82 =E2=94=82
=E2=94=82 =E2=94=9C=E2=94=80ThinkPad L14L15 Gen3 AMD System Update:
=E2=94=82 =E2=94=82 New version: 0.1.35
=E2=94=82 =E2=94=82 Remote ID: lvfs
=E2=94=82 =E2=94=82 Release ID: 116601
=E2=94=82 =E2=94=82 Summary: ThinkPad L14L15 Gen3 AMD Sys=
tem Firmware
=E2=94=82 =E2=94=82 License: Proprietary
=E2=94=82 =E2=94=82 Size: 34.6=C2=A0MB
=E2=94=82 =E2=94=82 Created: 2025-05-27 00:00:00
=E2=94=82 =E2=94=82 Urgency: High
=E2=94=82 =E2=94=82 Tested: 2026-01-21 00:00:00
=E2=94=82 =E2=94=82 Distribution: ubuntu-core 24
=E2=94=82 =E2=94=82 Old version: 0.1.34
=E2=94=82 =E2=94=82 Version[fwupd]: 2.0.11
=E2=94=82 =E2=94=82 Vendor: Lenovo
=E2=94=82 =E2=94=82 Release Flags: =E2=80=A2 Trusted metadata
=E2=94=82 =E2=94=82 =E2=80=A2 Is upgrade
=E2=94=82 =E2=94=82 =E2=80=A2 Tested by trusted =
vendor
=E2=94=82 =E2=94=82 Description:
=E2=94=82 =E2=94=82 ThinkPad L14L15 Gen3 AMD System Firmware
=E2=94=82 =E2=94=82
=E2=94=82 =E2=94=82 Security patch code update.
=E2=94=82 =E2=94=82
=E2=94=82 =E2=94=82 Security function improvement.
=E2=94=82 =E2=94=82 Checksum: fa6b162a151c8d089484903b4223=
f48d184d269a1c79d041b22ce50e52bba4cf
=E2=94=82 =E2=94=82
=E2=94=82 =E2=94=9C=E2=94=80ThinkPad L14L15 Gen3 AMD System Update:
=E2=94=82 =E2=94=82 New version: 0.1.34
=E2=94=82 =E2=94=82 Remote ID: lvfs
=E2=94=82 =E2=94=82 Release ID: 108989
=E2=94=82 =E2=94=82 Summary: ThinkPad L14L15 Gen3 AMD Sys=
tem Firmware
=E2=94=82 =E2=94=82 License: Proprietary
=E2=94=82 =E2=94=82 Size: 34.6=C2=A0MB
=E2=94=82 =E2=94=82 Created: 2025-02-12 00:00:00
=E2=94=82 =E2=94=82 Urgency: High
=E2=94=82 =E2=94=82 Tested: 2025-03-17 00:00:00
=E2=94=82 =E2=94=82 Distribution: ubuntu-core 24
=E2=94=82 =E2=94=82 Old version: 0.1.33
=E2=94=82 =E2=94=82 Version[fwupd]: 2.0.5
=E2=94=82 =E2=94=82 Vendor: Lenovo
=E2=94=82 =E2=94=82 Release Flags: =E2=80=A2 Trusted metadata
=E2=94=82 =E2=94=82 =E2=80=A2 Is upgrade
=E2=94=82 =E2=94=82 =E2=80=A2 Tested by trusted =
vendor
=E2=94=82 =E2=94=82 Description:
=E2=94=82 =E2=94=82 ThinkPad L14L15 Gen3 AMD System Firmware
=E2=94=82 =E2=94=82
=E2=94=82 =E2=94=82 =E2=80=A2 Fix Keyboard backlight issue.
=E2=94=82 =E2=94=82 =E2=80=A2 Fix TouchPad and trackpoint function=
improvement.
=E2=94=82 =E2=94=82 =E2=80=A2 Security patch code update.
=E2=94=82 =E2=94=82 Checksum: 0ac3f890fd41a7ca5b75c83f3bf5=
4471539b98543645b2280a68bcf949c106cb
=E2=94=82 =E2=94=82
=E2=94=82 =E2=94=9C=E2=94=80ThinkPad L14L15 Gen3 AMD System Update:
=E2=94=82 =E2=94=82 New version: 0.1.33
=E2=94=82 =E2=94=82 Remote ID: lvfs
=E2=94=82 =E2=94=82 Release ID: 103787
=E2=94=82 =E2=94=82 Summary: ThinkPad L14L15 Gen3 AMD Sys=
tem Firmware
=E2=94=82 =E2=94=82 License: Proprietary
=E2=94=82 =E2=94=82 Size: 34.6=C2=A0MB
=E2=94=82 =E2=94=82 Created: 2024-11-15 00:00:00
=E2=94=82 =E2=94=82 Urgency: High
=E2=94=82 =E2=94=82 Tested: 2024-12-24 00:00:00
=E2=94=82 =E2=94=82 Distribution: ubuntu-core 24
=E2=94=82 =E2=94=82 Old version: 0.1.32
=E2=94=82 =E2=94=82 Version[fwupd]: 2.0.3
=E2=94=82 =E2=94=82 Vendor: Lenovo
=E2=94=82 =E2=94=82 Release Flags: =E2=80=A2 Trusted metadata
=E2=94=82 =E2=94=82 =E2=80=A2 Is upgrade
=E2=94=82 =E2=94=82 =E2=80=A2 Tested by trusted =
vendor
=E2=94=82 =E2=94=82 Description:
=E2=94=82 =E2=94=82 ThinkPad L14L15 Gen3 AMD System Firmware
=E2=94=82 =E2=94=82
=E2=94=82 =E2=94=82 =E2=80=A2 Improvement RTK Lan report error iss=
ue.
=E2=94=82 =E2=94=82 =E2=80=A2 Update country code Qualcomm WLAN se=
tting.
=E2=94=82 =E2=94=82 =E2=80=A2 BIOS package add "NOTICE" to output =
log.
=E2=94=82 =E2=94=82 Checksum: 02656becdd9d94c11649d81431ed=
a84b80c3d66c4b65b445517016a4eb146802
=E2=94=82 =E2=94=82
=E2=94=82 =E2=94=9C=E2=94=80ThinkPad L14L15 Gen3 AMD System Update:
=E2=94=82 =E2=94=82 New version: 0.1.32
=E2=94=82 =E2=94=82 Remote ID: lvfs
=E2=94=82 =E2=94=82 Release ID: 99485
=E2=94=82 =E2=94=82 Summary: ThinkPad L14L15 Gen3 AMD Sys=
tem Firmware
=E2=94=82 =E2=94=82 License: Proprietary
=E2=94=82 =E2=94=82 Size: 34.6=C2=A0MB
=E2=94=82 =E2=94=82 Created: 2024-09-06 00:00:00
=E2=94=82 =E2=94=82 Urgency: High
=E2=94=82 =E2=94=82 Tested: 2024-09-26 00:00:00
=E2=94=82 =E2=94=82 Distribution: ubuntu 22.04
=E2=94=82 =E2=94=82 Old version: 0.1.30
=E2=94=82 =E2=94=82 Version[fwupd]: 1.9.24
=E2=94=82 =E2=94=82 Vendor: Lenovo
=E2=94=82 =E2=94=82 Release Flags: =E2=80=A2 Trusted metadata
=E2=94=82 =E2=94=82 =E2=80=A2 Is upgrade
=E2=94=82 =E2=94=82 =E2=80=A2 Tested by trusted =
vendor
=E2=94=82 =E2=94=82 Description:
=E2=94=82 =E2=94=82 ThinkPad L14L15 Gen3 AMD System Firmware
=E2=94=82 =E2=94=82
=E2=94=82 =E2=94=82 =E2=80=A2 [SCT#4.3.1.186]Revision: 122819 [Com=
ponent Cezanne] CezannePI-FP6_1.0.1.1
=E2=94=82 =E2=94=82 =E2=80=A2 CP20240626_0008 Remove TCO Logo from=
BRZ Local Products
=E2=94=82 =E2=94=82 =E2=80=A2 CP20240702_0010 Enable TW WIFI6E for=
TP products
=E2=94=82 =E2=94=82 =E2=80=A2 Fixed Ubuntu check_tsc_sync_source f=
ailed
=E2=94=82 =E2=94=82 =E2=80=A2 Fix DFT239683 The Lenovo Copyright i=
s incorrect in diagnostic mode screen.
=E2=94=82 =E2=94=82 Checksum: d049f09f829216c4df762c9dd76d=
4d5b8444f3fea80a495bafe9a34e1c4dafda
=E2=94=82 =E2=94=82
=E2=94=82 =E2=94=9C=E2=94=80ThinkPad L14L15 Gen3 AMD System Update:
=E2=94=82 =E2=94=82 New version: 0.1.31
=E2=94=82 =E2=94=82 Remote ID: lvfs
=E2=94=82 =E2=94=82 Release ID: 94842
=E2=94=82 =E2=94=82 Summary: ThinkPad L14L15 Gen3 AMD Sys=
tem Firmware
=E2=94=82 =E2=94=82 License: Proprietary
=E2=94=82 =E2=94=82 Size: 34.6=C2=A0MB
=E2=94=82 =E2=94=82 Created: 2024-06-07 00:00:00
=E2=94=82 =E2=94=82 Urgency: High
=E2=94=82 =E2=94=82 Tested: 2024-07-02 00:00:00
=E2=94=82 =E2=94=82 Distribution: ubuntu 22.04
=E2=94=82 =E2=94=82 Old version: 0.1.30
=E2=94=82 =E2=94=82 Version[fwupd]: 1.9.16
=E2=94=82 =E2=94=82 Vendor: Lenovo
=E2=94=82 =E2=94=82 Release Flags: =E2=80=A2 Trusted metadata
=E2=94=82 =E2=94=82 =E2=80=A2 Is upgrade
=E2=94=82 =E2=94=82 =E2=80=A2 Tested by trusted =
vendor
=E2=94=82 =E2=94=82 Description:
=E2=94=82 =E2=94=82 ThinkPad L14L15 Gen3 AMD System Firmware
=E2=94=82 =E2=94=82
=E2=94=82 =E2=94=82 =E2=80=A2 MR01221(N3AET79W) - Updated Realtek =
UNDI driver to ver.2.043.
=E2=94=82 =E2=94=82 =E2=80=A2 MR00592(N3XET49W) - add dbx update 2=
3/05
=E2=94=82 =E2=94=82 =E2=80=A2 MR00616(N3XET51W) - Fixed Various vu=
lnerabilities in NetworkPkg IP stack implementation.
=E2=94=82 =E2=94=82 =E2=80=A2 MR00621(N3XET51W) - Add MSFT 2023 ke=
k/db
=E2=94=82 =E2=94=82
=E2=94=82 =E2=94=82 5 Update Absolute module to v2.8 (154756)
=E2=94=82 =E2=94=82
=E2=94=82 =E2=94=82 =E2=80=A2 Improve boot time for DASH Enable
=E2=94=82 =E2=94=82 =E2=80=A2 Correct the output values of the CU_=
WMI_script.ps1
=E2=94=82 =E2=94=82 =E2=80=A2 CP20240328_0006 CS22 Wi-Fi6E for CA
=E2=94=82 =E2=94=82 Checksum: f3cc05c1e35cde3ebbf1cb8e8ee9=
2f6319de9b8ca606319b9f5a610e17249095
=E2=94=82 =E2=94=82
=E2=94=82 =E2=94=9C=E2=94=80ThinkPad L14L15 Gen3 AMD System Update:
=E2=94=82 =E2=94=82 New version: 0.1.30
=E2=94=82 =E2=94=82 Remote ID: lvfs
=E2=94=82 =E2=94=82 Release ID: 87978
=E2=94=82 =E2=94=82 Summary: ThinkPad L14L15 Gen3 AMD Sys=
tem Firmware
=E2=94=82 =E2=94=82 License: Proprietary
=E2=94=82 =E2=94=82 Size: 34.6=C2=A0MB
=E2=94=82 =E2=94=82 Created: 2024-03-01 00:00:00
=E2=94=82 =E2=94=82 Urgency: High
=E2=94=82 =E2=94=82 Tested: 2026-07-22 00:00:00
=E2=94=82 =E2=94=82 Distribution: ubuntu 22.04
=E2=94=82 =E2=94=82 Old version: 0.1.29
=E2=94=82 =E2=94=82 Version[fwupd]: 1.9.15
=E2=94=82 =E2=94=82 Tested: 2026-07-16 00:00:00
=E2=94=82 =E2=94=82 Distribution: ubuntu 22.04
=E2=94=82 =E2=94=82 Old version: 0.1.29
=E2=94=82 =E2=94=82 Version[fwupd]: 1.9.15
=E2=94=82 =E2=94=82 Tested: 2026-07-16 00:00:00
=E2=94=82 =E2=94=82 Distribution: ubuntu 22.04
=E2=94=82 =E2=94=82 Old version: 0.1.29
=E2=94=82 =E2=94=82 Version[fwupd]: 1.9.15
=E2=94=82 =E2=94=82 Tested: 2024-09-26 00:00:00
=E2=94=82 =E2=94=82 Distribution: ubuntu 22.04
=E2=94=82 =E2=94=82 Old version: 0.1.29
=E2=94=82 =E2=94=82 Version[fwupd]: 1.9.15
=E2=94=82 =E2=94=82 Vendor: Lenovo
=E2=94=82 =E2=94=82 Release Flags: =E2=80=A2 Trusted metadata
=E2=94=82 =E2=94=82 =E2=80=A2 Is upgrade
=E2=94=82 =E2=94=82 =E2=80=A2 Tested by trusted =
vendor
=E2=94=82 =E2=94=82 Description:
=E2=94=82 =E2=94=82 ThinkPad L14L15 Gen3 AMD System Firmware
=E2=94=82 =E2=94=82
=E2=94=82 =E2=94=82 =E2=80=A2 [SCT#4.3.1.170]Revision: 107226 [Com=
ponent Mandolin2] PicassoPI-FP5_1.0.1.0.(009-072)
=E2=94=82 =E2=94=82 =E2=80=A2 [SCT#4.3.1.173]Revision: 110567 [Com=
ponent Cezanne] CezannePI-FP6_1.0.0.Fa(009-088)
=E2=94=82 =E2=94=82 =E2=80=A2 [SCT#4.3.1.181]Revision: 116533 [Com=
ponent Cezanne] CezannePI-FP6_1.0.1.0(010-013,009-101)
=E2=94=82 =E2=94=82 Checksum: b93549143e50199342f20e380a1a=
4b25063f5ca1ecbef3fc72f6ff8790bb7b62
=E2=94=82 =E2=94=82
=E2=94=82 =E2=94=94=E2=94=80ThinkPad L14L15 Gen3 AMD System Update:
=E2=94=82 New version: 0.1.29
=E2=94=82 Remote ID: lvfs
=E2=94=82 Release ID: 77923
=E2=94=82 Summary: ThinkPad L14L15 Gen3 AMD System Firm=
ware
=E2=94=82 License: Proprietary
=E2=94=82 Size: 34.6=C2=A0MB
=E2=94=82 Created: 2023-12-08 00:00:00
=E2=94=82 Urgency: High
=E2=94=82 Vendor: Lenovo
=E2=94=82 Release Flags: =E2=80=A2 Trusted metadata
=E2=94=82 =E2=80=A2 Is upgrade
=E2=94=82 Description:
=E2=94=82 ThinkPad L14L15 Gen3 AMD System Firmware
=E2=94=82
=E2=94=82 =E2=80=A2 1CP20231028_0001 CS22 Synaptic FPR reader pr=
eboot manager in BIOS.
=E2=94=82 =E2=80=A2 [SCT 4.3.1.159]Revision: 102112 - [ID 002-02=
6] Update OpenSSL to 1.1.1s (115633)
=E2=94=82 =E2=80=A2 [SCT#4.3.1.170]Revision: 105195 - [ID 002-02=
6] Update EDK2 CryptoPkg for OpenSSL 1.1.1t
=E2=94=82 =E2=80=A2 [SCT#4.3.1.170]Revision: 104714 - [ID 002-02=
7] Update OpenSSL to 1.1.1t
=E2=94=82 =E2=80=A2 [SCT#4.3.1.170]Revision: 106452 - [ID 006-01=
3] Heap buffer overflow issues in Tcg2MeasurePeImage() and Tcg2MeasureGptT=
able() (115697)
=E2=94=82 =E2=80=A2 [SCT#4.3.1.170]Revision: 106453 - [ ID 011-0=
07] Integer Overflow in various edk2 CreateHob() instances (115697)
=E2=94=82 =E2=80=A2 [SCT#4.3.1.169]Revision: 107460 - [ ID 004-0=
33] [EDK2] PiSmmCore: SmmEntryPoint underflow (123534)
=E2=94=82 =E2=80=A2 [SCT#4.3.1.169]Revision: 108587 - [ ID 010-0=
12] [EDK2] IScsiDxe: remotely exploitable buffer overflows(123535)
=E2=94=82 =E2=80=A2 [SCT#4.3.1.170]Revision: 108064 - [ ID 006-0=
15] [EDK2] PCR bank selection and HashLib capability are not synchronized =
(123536)
=E2=94=82 =E2=80=A2 [SCT#4.3.1.170]Revision: 108238 - [ ID 009-0=
91][ ID 006-015][Component Cezanne] CezannePI-FP6_1.0.0.F.(123536)
=E2=94=82 Checksum: 63dcae80b25012a9d454bf02dea4e9b9244b=
11bbb9a27d6b14f23aedaac77f78
=E2=94=82
=E2=94=94=E2=94=80UEFI dbx:
=E2=94=82 Device ID: 362301da643102b9f38477387e2193e57ab=
aa590
=E2=94=82 Summary: UEFI revocation database
=E2=94=82 Current version: 20220801
=E2=94=82 Minimum Version: 20220801
=E2=94=82 Vendor: Microsoft (UEFI:Microsoft)
=E2=94=82 Install Duration: 1 second
=E2=94=82 GUIDs: 5971a208-da00-5fce-b5f5-1234342f9cf=
7 =E2=86=90 UEFI\CRT_A9087D1044AD18F7A94916D284CBC01827CF23CD8F60B79072C9C=
AA1FEF4D649&ARCH_X64
=E2=94=82 f8ba2887-9411-5c36-9cee-88995bb3973=
1 =E2=86=90 UEFI\CRT_A1117F516A32CEFCBA3F2D1ACE10A87972FD6BBE8FE0D0B996E09=
E65D802A503&ARCH_X64
=E2=94=82 Device Flags: =E2=80=A2 Internal device
=E2=94=82 =E2=80=A2 Updatable
=E2=94=82 =E2=80=A2 Supported on remote serve=
r
=E2=94=82 =E2=80=A2 Needs a reboot after inst=
allation
=E2=94=82 =E2=80=A2 Device is usable for the =
duration of the update
=E2=94=82 =E2=80=A2 Only version upgrades are=
allowed
=E2=94=82 =E2=80=A2 Signed Payload
=E2=94=82 =E2=80=A2 Can tag for emulation
=E2=94=82
=E2=94=9C=E2=94=80Secure Boot dbx Configuration Update:
=E2=94=82 New version: 20260402
=E2=94=82 Remote ID: lvfs
=E2=94=82 Release ID: 143971
=E2=94=82 Summary: UEFI Secure Boot Forbidden Signatur=
e Database
=E2=94=82 Variant: x64
=E2=94=82 License: Proprietary
=E2=94=82 Size: 24.6=C2=A0kB
=E2=94=82 Created: 2025-09-02 00:00:00
=E2=94=82 Urgency: High
=E2=94=82 Tested: 2026-07-20 00:00:00
=E2=94=82 Distribution: rhel 10.0
=E2=94=82 Old version: 20160809
=E2=94=82 Version[fwupd]: 2.0.19
=E2=94=82 Vendor: Linux Foundation
=E2=94=82 Duration: 1 second
=E2=94=82 Release Flags: =E2=80=A2 Trusted metadata
=E2=94=82 =E2=80=A2 Is upgrade
=E2=94=82 Description:
=E2=94=82 This updates the list of forbidden signatures (the "d=
bx") to the latest release from Microsoft.
=E2=94=82
=E2=94=82 Some insecure bootloaders were added, due to security=
vulnerabilities that allowed an attacker to bypass UEFI Secure Boot. The =
additional entries were from:
=E2=94=82
=E2=94=82 =E2=80=A2 Baramanudi Management Suite
=E2=94=82 =E2=80=A2 EAZ EasyFix
=E2=94=82 =E2=80=A2 Finland Matriculation Examination Board
=E2=94=82 =E2=80=A2 NTC IT ROSA Linux
=E2=94=82 =E2=80=A2 PC-Doctor
=E2=94=82 =E2=80=A2 Spyrus WTGCreator
=E2=94=82 =E2=80=A2 WhiteCanyon blancco
=E2=94=82 =E2=80=A2 Some ancient shim releases for OpenSUSE, Or=
acle and Red Hat
=E2=94=82 Issues: 616257
=E2=94=82 CVE-2026-8863
=E2=94=82 Checksum: 9edea8bc287bf9bf4659856b28cf421f330=
eb2f658c163eab0a03512a98c0e78
=E2=94=82
=E2=94=9C=E2=94=80Secure Boot dbx Configuration Update:
=E2=94=82 New version: 20250902
=E2=94=82 Remote ID: lvfs
=E2=94=82 Release ID: 130035
=E2=94=82 Summary: UEFI Secure Boot Forbidden Signatur=
e Database
=E2=94=82 Variant: x64
=E2=94=82 License: Proprietary
=E2=94=82 Size: 24.1=C2=A0kB
=E2=94=82 Created: 2025-09-02 00:00:00
=E2=94=82 Urgency: High
=E2=94=82 Tested: 2026-06-08 00:00:00
=E2=94=82 Distribution: ubuntu 26.04
=E2=94=82 Old version: 20230501
=E2=94=82 Version[fwupd]: 2.1.1
=E2=94=82 Tested: 2026-04-20 00:00:00
=E2=94=82 Distribution: ubuntu 25.10
=E2=94=82 Old version: 20230501
=E2=94=82 Version[fwupd]: 2.0.16
=E2=94=82 Tested: 2026-02-25 00:00:00
=E2=94=82 Distribution: ubuntu 25.10
=E2=94=82 Old version: 20230501
=E2=94=82 Version[fwupd]: 2.0.18
=E2=94=82 Tested: 2026-02-13 00:00:00
=E2=94=82 Distribution: ubuntu 25.10
=E2=94=82 Old version: 20230501
=E2=94=82 Version[fwupd]: 2.0.17
=E2=94=82 Tested: 2025-12-05 00:00:00
=E2=94=82 Distribution: fedora 42 (workstation)
=E2=94=82 Old version: 20250507
=E2=94=82 Version[fwupd]: 2.0.17
=E2=94=82 Tested: 2025-11-10 00:00:00
=E2=94=82 Distribution: fedora 43 (kde)
=E2=94=82 Old version: 20230501
=E2=94=82 Version[fwupd]: 2.0.16
=E2=94=82 Vendor: Linux Foundation
=E2=94=82 Duration: 1 second
=E2=94=82 Release Flags: =E2=80=A2 Trusted metadata
=E2=94=82 =E2=80=A2 Is upgrade
=E2=94=82 =E2=80=A2 Tested by trusted vendor
=E2=94=82 Description:
=E2=94=82 This updates the list of forbidden signatures (the "d=
bx") to the latest release from Microsoft.
=E2=94=82
=E2=94=82 Some insecure versions of the IGEL bootloader were ad=
ded, due to a security vulnerability that allowed an attacker to bypass UE=
FI Secure Boot.
=E2=94=82 Issue: CVE-2025-47827
=E2=94=82 Checksum: 7178302fa23fcb875e7540900e299fb30a7=
6758663efb7e1c56edc25cd3f316a
=E2=94=82
=E2=94=9C=E2=94=80Secure Boot dbx Configuration Update:
=E2=94=82 New version: 20250507
=E2=94=82 Remote ID: lvfs
=E2=94=82 Release ID: 115586
=E2=94=82 Summary: UEFI Secure Boot Forbidden Signatur=
e Database
=E2=94=82 Variant: x64
=E2=94=82 License: Proprietary
=E2=94=82 Size: 24.0=C2=A0kB
=E2=94=82 Created: 2025-01-17 00:00:00
=E2=94=82 Urgency: High
=E2=94=82 Tested: 2025-10-17 00:00:00
=E2=94=82 Distribution: fedora 42 (workstation)
=E2=94=82 Old version: 20230501
=E2=94=82 Version[fwupd]: 2.0.16
=E2=94=82 Tested: 2025-06-11 00:00:00
=E2=94=82 Distribution: fedora 42 (workstation)
=E2=94=82 Old version: 20241101
=E2=94=82 Version[fwupd]: 2.0.11
=E2=94=82 Vendor: Linux Foundation
=E2=94=82 Duration: 1 second
=E2=94=82 Release Flags: =E2=80=A2 Trusted metadata
=E2=94=82 =E2=80=A2 Is upgrade
=E2=94=82 =E2=80=A2 Tested by trusted vendor
=E2=94=82 Description:
=E2=94=82 This updates the list of forbidden signatures (the "d=
bx") to the latest release from Microsoft.
=E2=94=82
=E2=94=82 Some insecure versions of BiosFlashShell and Dtbios b=
y DT Research Inc were added, due to a security vulnerability that allowed=
an attacker to bypass UEFI Secure Boot.
=E2=94=82 Issues: 806555
=E2=94=82 CVE-2025-3052
=E2=94=82 Checksum: 40d3a4630619b83026f66bc64d97a582bbd=
9223ad53aa3f519ff5e2121d11ca6
=E2=94=82
=E2=94=94=E2=94=80Secure Boot dbx Configuration Update:
New version: 20241101
Remote ID: lvfs
Release ID: 105821
Summary: UEFI Secure Boot Forbidden Signature Databa=
se
Variant: x64
License: Proprietary
Size: 15.1=C2=A0kB
Created: 2025-01-17 00:00:00
Urgency: High
Tested: 2026-02-25 00:00:00
Distribution: ubuntu 24.04
Old version: 20230501
Version[fwupd]: 1.9.28
Vendor: Linux Foundation
Duration: 1 second
Release Flags: =E2=80=A2 Trusted metadata
=E2=80=A2 Is upgrade
Description:
This updates the list of forbidden signatures (the "dbx") to =
the latest release from Microsoft.
=20
An insecure version of Howyar's SysReturn software was added,=
due to a security vulnerability that allowed an attacker to bypass UEFI S=
ecure Boot.
Issues: 529659
CVE-2024-7344
Checksum: 093e6913dfecefbdaa9374a2e1caee7bf7e74c7eda8=
47624e456e344884ba5f6
=20
*Laicolasse:~ #*=20
What next?=C2=A0 Is the UEFI ESP Partition a problem?
*Laicolasse:~ #* lsblk --output NAME,KNAME,RA,RM,RO,PARTFLAGS,SIZE,TYPE,FS=
TYPE,LABEL,PARTLABEL,PTTYPE,MOUNTPOINT,UUID,PARTUUID,WWN,MODEL,SERIAL,ALIG=
NMENT
NAME KNAME RA RM RO PARTFLAGS SIZE TYPE FSTYPE LABEL PARTLABE=
L PTTYPE MOUNTPOINT UUID PARTUUID =
WWN MODEL SERIAL ALIGNMENT
nvme0n1
=E2=94=82 nvme0n1 1024 0 0 953.9G disk =
gpt =
eui.8ce38e1000956753 KBG5A 52QC72 0
=E2=94=9C=E2=94=80nvme0n1p1
=E2=94=82 nvme0n1p1 1024 0 0 512M part vfat ESP =
ESP gpt /boot/efi 3EBE-58A3 5a916363-=
34cb-4729-b825-8be7a4da7527 eui.8ce38e1000956753 0
=E2=94=9C=E2=94=80nvme0n1p2
=2D-=20
Cheers / Saludos,
=20
Carlos E. R.
(from openSUSE 16.0 (Laicolasse))
--------------rn3AhtM06jnoyf1FG1ZJYJOX
Content-Type: text/html; charset=UTF-8
Content-Transfer-Encoding: quoted-printable
<!DOCTYPE html>
<html>
<head>
<meta http-equiv=3D"Content-Type" content=3D"text/html; charset=3DUTF-=
8">
</head>
<body>
<div class=3D"moz-cite-prefix">On 2026-08-02 15:45, Andrei Borzenkov
wrote:<br>
</div>
<blockquote type=3D"cite"
cite=3D"mid:[email protected]">02.08.20=
26
16:39, Bengt G=C3=B6rd=C3=A9n wrote:
<br>
<blockquote type=3D"cite">
<br>
BIOS Update (Bootable CD)
<br>
<br>
This is what I've been using for years on my Thinkpads.
<br>
<br>
<br>
</blockquote>
<br>
Lenovo is quite good at supporting LVFS, the first thing is to
check with
<br>
<br>
fwupdmgr get-updates=C2=A0<br>
</blockquote>
<p><br>
</p>
<p>I'm not familiar with that tool.</p>
<blockquote>
<pre><font color=3D"#FF5555"><b>WARNING</b></font>: UEFI ESP partiti=
on may not be set up correctly
See <a class=3D"moz-txt-link-freetext" href=3D"https://github.com/fwupd/fw=
upd/wiki/PluginFlag:esp-not-valid">https://github.com/fwupd/fwupd/wiki/Plu=
ginFlag:esp-not-valid</a> for more information.
Firmware metadata has not been updated for 30 days and may not be up to da=
te.
Update now? (Requires internet connection) [y|N]: y
Updating lvfs
Downloading=E2=80=A6 [***************************************]
Successfully downloaded new metadata:
=E2=80=A2 21 devices are updatable
=E2=80=A2 5 devices are supported in the enabled remotes (an update has b=
een published)
Devices with no available firmware updates:
=E2=80=A2 067F:00 04F3:3209
=E2=80=A2 Integrated RGB Camera
=E2=80=A2 KEK CA
=E2=80=A2 Prometheus (IOTA Config)
=E2=80=A2 ThinkPad Product CA
=E2=80=A2 UEFI CA
=E2=80=A2 UEFI Device Firmware
=E2=80=A2 UEFI Device Firmware
=E2=80=A2 UEFI Device Firmware
=E2=80=A2 UEFI Device Firmware
=E2=80=A2 UEFI Device Firmware
=E2=80=A2 UEFI Device Firmware
=E2=80=A2 UEFI Device Firmware
=E2=80=A2 UEFI Device Firmware
=E2=80=A2 UEFI Device Firmware
=E2=80=A2 Windows Production PCA
LENOVO 21C5CTO1WW
=E2=94=82
=E2=94=9C=E2=94=80KBG5AZNT1T02 LA KIOXIA:
=E2=94=82 =E2=94=82 Device ID: 71b677ca0f1bc2c5b804fa1d59e52064=
ce589293
=E2=94=82 =E2=94=82 Summary: NVM Express solid state drive
=E2=94=82 =E2=94=82 Current version: 1107ANLA
=E2=94=82 =E2=94=82 Vendor: KIOXIA (PCI:0x1E0F)
=E2=94=82 =E2=94=82 Serial Number: 52QC721BEJS6
=E2=94=82 =E2=94=82 GUIDs: 6cefd2de-46a3-5fb7-acb1-25ef14be=
c6de =E2=86=90 NVME\VEN_1E0F&DEV_000C
=E2=94=82 =E2=94=82 52a1c489-1299-5fa5-a97f-384dde8c=
5fa2 =E2=86=90 NVME\VEN_1E0F&DEV_000C&SUBSYS_1E0F0001
=E2=94=82 =E2=94=82 31d222d5-b7b3-5aad-97f0-b8896757=
ddaa =E2=86=90 KBG5AZNT1T02 LA KIOXIA
=E2=94=82 =E2=94=82 Device Flags: =E2=80=A2 Internal device
=E2=94=82 =E2=94=82 =E2=80=A2 Updatable
=E2=94=82 =E2=94=82 =E2=80=A2 System requires extern=
al power source
=E2=94=82 =E2=94=82 =E2=80=A2 Supported on remote se=
rver
=E2=94=82 =E2=94=82 =E2=80=A2 Needs a reboot after i=
nstallation
=E2=94=82 =E2=94=82 =E2=80=A2 Device is usable for t=
he duration of the update
=E2=94=82 =E2=94=82 =E2=80=A2 Signed Payload
=E2=94=82 =E2=94=82 =E2=80=A2 Can tag for emulation
=E2=94=82 =E2=94=82=20
=E2=94=82 =E2=94=9C=E2=94=80KBG5AZNV256G LA / KBG5AZNT256G LA / KBG5AZNV51=
2G LA / KBG5AZNT512G LA / KBG5AZNV1T02 LA / KBG5AZNT1T02 LA SSD Update:
=E2=94=82 =E2=94=82 New version: 1110ANLA
=E2=94=82 =E2=94=82 Remote ID: lvfs
=E2=94=82 =E2=94=82 Release ID: 131573
=E2=94=82 =E2=94=82 Summary: KIOXIA BG5 NVMe SSD Firmwre for =
Lenovo PC
=E2=94=82 =E2=94=82 License: Proprietary
=E2=94=82 =E2=94=82 Size: 1.3=C2=A0MB
=E2=94=82 =E2=94=82 Created: 2025-11-05 00:00:00
=E2=94=82 =E2=94=82 Urgency: High
=E2=94=82 =E2=94=82 Tested: 2026-01-16 00:00:00
=E2=94=82 =E2=94=82 Distribution: ubuntu 22.04
=E2=94=82 =E2=94=82 Old version: 1109ANLA
=E2=94=82 =E2=94=82 Version[fwupd]: 1.9.16
=E2=94=82 =E2=94=82 Vendor: Lenovo
=E2=94=82 =E2=94=82 Release Flags: =E2=80=A2 Trusted metadata
=E2=94=82 =E2=94=82 =E2=80=A2 Is upgrade
=E2=94=82 =E2=94=82 =E2=80=A2 Tested by trusted vend=
or
=E2=94=82 =E2=94=82 Description: =20
=E2=94=82 =E2=94=82 Do NOT turn off your computer or remove the AC ada=
pter while update is in progress.
=E2=94=82 =E2=94=82 =20
=E2=94=82 =E2=94=82 The computer shall be restarted after updating fir=
mware completely. The device may not properly function until you shut down=
or reboot PC.
=E2=94=82 =E2=94=82 =20
=E2=94=82 =E2=94=82 [Support devices and Firmware version] KBG5AZNV256=
G 1110ANLA, KBG5AZNT256G 1110ANLA, KBG5AZNV512G 1110ANLA, KBG5AZNT512G 111=
0ANLA, KBG5AZNV1T02 1110ANLA, KBG5AZNT1T02 1110ANLA
=E2=94=82 =E2=94=82 =20
=E2=94=82 =E2=94=82 [Problem Fixes] Implement a fix to prevent the SSD=
from entering a specific mode.
=E2=94=82 =E2=94=82 =20
=E2=94=82 =E2=94=82 [Support Product Scope] Lenovo ThinkPad, ThinkCent=
re, ThinkStation, IdeaCentre.
=E2=94=82 =E2=94=82 Checksum: b660c7ec4c828d2c6f99f1a6c3c429f0=
1feeb1d3bcd0ea90b4a87b4e106b452c
=E2=94=82 =E2=94=82 =20
=E2=94=82 =E2=94=9C=E2=94=80KBG5AZNV256G LA / KBG5AZNT256G LA / KBG5AZNV51=
2G LA / KBG5AZNT512G LA / KBG5AZNV1T02 LA / KBG5AZNT1T02 LA SSD Update:
=E2=94=82 =E2=94=82 New version: 1109ANLA
=E2=94=82 =E2=94=82 Remote ID: lvfs
=E2=94=82 =E2=94=82 Release ID: 75888
=E2=94=82 =E2=94=82 Summary: KIOXIA BG5 NVMe SSD Firmwre for =
Lenovo PC
=E2=94=82 =E2=94=82 License: Proprietary
=E2=94=82 =E2=94=82 Size: 1.3=C2=A0MB
=E2=94=82 =E2=94=82 Created: 2023-11-21 00:00:00
=E2=94=82 =E2=94=82 Urgency: High
=E2=94=82 =E2=94=82 Tested: 2026-01-16 00:00:00
=E2=94=82 =E2=94=82 Distribution: ubuntu 22.04
=E2=94=82 =E2=94=82 Old version: 1110ANLA
=E2=94=82 =E2=94=82 Version[fwupd]: 1.7.9
=E2=94=82 =E2=94=82 Vendor: Lenovo
=E2=94=82 =E2=94=82 Release Flags: =E2=80=A2 Trusted metadata
=E2=94=82 =E2=94=82 =E2=80=A2 Is upgrade
=E2=94=82 =E2=94=82 =E2=80=A2 Tested by trusted vend=
or
=E2=94=82 =E2=94=82 Description: =20
=E2=94=82 =E2=94=82 [Support devices and Firmware version] KBG5AZNV256=
G 1109ANLA, KBG5AZNT256G 1109ANLA, KBG5AZNV512G 1109ANLA, KBG5AZNT512G 110=
9ANLA, KBG5AZNV1T02 1109ANLA, KBG5AZNT1T02 1109ANLA
=E2=94=82 =E2=94=82 =20
=E2=94=82 =E2=94=82 [Problem Fixes] 1.To fix firmware issue of TCG Opa=
l on reset function./2.To fix the firmware issues that SSD hang up due to =
conflict system operation with SSD.
=E2=94=82 =E2=94=82 =20
=E2=94=82 =E2=94=82 [Support Product Scope] Lenovo ThinkPad, ThinkCent=
re, ThinkStation, IdeaCentre
=E2=94=82 =E2=94=82 Checksum: d8572b136e2dca2d6d278ec8f9ff88f0=
7d93b4e17d5dfca534c05eeb9628de62
=E2=94=82 =E2=94=82 =20
=E2=94=82 =E2=94=94=E2=94=80KBG5AZNV256G LA / KBG5AZNT256G LA / KBG5AZNV51=
2G LA / KBG5AZNT512G LA / KBG5AZNV1T02 LA / KBG5AZNT1T02 LA SSD Update:
=E2=94=82 New version: 1108ANLA
=E2=94=82 Remote ID: lvfs
=E2=94=82 Release ID: 18995
=E2=94=82 Summary: KIOXIA BG5 NVMe SSD Firmwre for Lenovo P=
C
=E2=94=82 License: Proprietary
=E2=94=82 Size: 1.3=C2=A0MB
=E2=94=82 Created: 2023-02-06 00:00:00
=E2=94=82 Urgency: High
=E2=94=82 Tested: 2024-01-24 00:00:00
=E2=94=82 Distribution: ubuntu 22.04
=E2=94=82 Old version: 1106ANLA
=E2=94=82 Version[fwupd]: 1.7.9
=E2=94=82 Vendor: Lenovo
=E2=94=82 Release Flags: =E2=80=A2 Trusted metadata
=E2=94=82 =E2=80=A2 Is upgrade
=E2=94=82 =E2=80=A2 Tested by trusted vendor
=E2=94=82 Description: =20
=E2=94=82 [Support devices and Firmware version] KBG5AZNV256G LA 110=
8ANLA KBG5AZNT256G LA 1108ANLA, KBG5AZNV512G LA 1108ANLA KBG5AZNT512G LA 1=
108ANLA, KBG5AZNV1T02 LA 1108ANLA KBG5AZNT1T02 LA 1108ANLA
=E2=94=82 =20
=E2=94=82 [Problem fixes]1.Task conflict issue on OS Aging test (Fix=
BSoD issue)/2.Thermal shutdown issue on SMBus enabled system./3.Risk of S=
SD dead due to LUT overwrite./4.Change the SSD mode to Read-only when inte=
rnal LUT clash occurred /5.Drive no response issue on specific modern stan=
dby system.
=E2=94=82 =20
=E2=94=82 [Support Product Scope]Lenovo ThinkPad, ThinkCentre, Think=
Station, IdeaCentre
=E2=94=82 Checksum: 67b6b8bea784b20c76e3a54b8150d96c5b53bb74=
789ec5e107f1019eafb9d433
=E2=94=82 =20
=E2=94=9C=E2=94=80KEK CA:
=E2=94=82 =E2=94=82 Device ID: b7a1d3d90faa1f6275d9a98da4fb3be7=
118e61c7
=E2=94=82 =E2=94=82 Current version: 2011
=E2=94=82 =E2=94=82 Vendor: Microsoft (UEFI:Microsoft)
=E2=94=82 =E2=94=82 GUIDs: 814e950f-1449-566a-a190-42c9d3a3=
a2df =E2=86=90 UEFI\VENDOR_Microsoft&NAME_Microsoft-KEK-CA
=E2=94=82 =E2=94=82 dfa66406-6568-5bdf-bb8e-b53ddb4b=
e4cf =E2=86=90 UEFI\CRT_9F402B1CC0243CBEDC58A525789816CCCA7687A9
=E2=94=82 =E2=94=82 Device Flags: =E2=80=A2 Internal device
=E2=94=82 =E2=94=82 =E2=80=A2 Updatable
=E2=94=82 =E2=94=82 =E2=80=A2 Supported on remote se=
rver
=E2=94=82 =E2=94=82 =E2=80=A2 Needs a reboot after i=
nstallation
=E2=94=82 =E2=94=82 =E2=80=A2 Device is usable for t=
he duration of the update
=E2=94=82 =E2=94=82 =E2=80=A2 Signed Payload
=E2=94=82 =E2=94=82 =E2=80=A2 Can tag for emulation
=E2=94=82 =E2=94=82=20
=E2=94=82 =E2=94=94=E2=94=80Secure Boot KEK Configuration Update:
=E2=94=82 New version: 2023
=E2=94=82 Remote ID: lvfs
=E2=94=82 Release ID: 114062
=E2=94=82 Summary: UEFI Secure Boot Key Exchange Key
=E2=94=82 Variant: Lenovo
=E2=94=82 License: Proprietary
=E2=94=82 Size: 2.9=C2=A0kB
=E2=94=82 Created: 2025-04-29 00:00:00
=E2=94=82 Urgency: High
=E2=94=82 Vendor: Linux Foundation
=E2=94=82 Release Flags: =E2=80=A2 Trusted metadata
=E2=94=82 =E2=80=A2 Is upgrade
=E2=94=82 Description: =20
=E2=94=82 This updates the UEFI Signature Database (the "KEK") to th=
e latest release from Microsoft, signed by Lenovo Ltd.PK CA 2012.
=E2=94=82 Checksum: 168b8c108e18a0b61ff8228d56d28d4739eff055=
ef26022c64c9335e78a2dc33
=E2=94=82 =20
=E2=94=9C=E2=94=80Prometheus:
=E2=94=82 =E2=94=82 Device ID: 813b4757e78d708603a80ead0a2b6ef1=
364b7790
=E2=94=82 =E2=94=82 Summary: Fingerprint reader
=E2=94=82 =E2=94=82 Current version: 10.01.3273255
=E2=94=82 =E2=94=82 Vendor: Synaptics (USB:0x06CB)
=E2=94=82 =E2=94=82 Install Duration: 2 seconds
=E2=94=82 =E2=94=82 Serial Number: 21998257769597
=E2=94=82 =E2=94=82 GUID: 659f7e45-8d45-528d-b3c7-0695eed0=
55f6 =E2=86=90 USB\VID_06CB&PID_00F9
=E2=94=82 =E2=94=82 Device Flags: =E2=80=A2 Updatable
=E2=94=82 =E2=94=82 =E2=80=A2 Supported on remote se=
rver
=E2=94=82 =E2=94=82 =E2=80=A2 Cryptographic hash ver=
ification is available
=E2=94=82 =E2=94=82 =E2=80=A2 Signed Payload
=E2=94=82 =E2=94=82 =E2=80=A2 Can tag for emulation
=E2=94=82 =E2=94=82=20
=E2=94=82 =E2=94=94=E2=94=80Prometheus Fingerprint Reader Update:
=E2=94=82 New version: 10.01.3478575
=E2=94=82 Remote ID: lvfs
=E2=94=82 Release ID: 10696
=E2=94=82 Summary: Firmware for the Synaptics Prometheus Fi=
ngerprint Reader device
=E2=94=82 License: Proprietary
=E2=94=82 Size: 425.5=C2=A0kB
=E2=94=82 Created: 2021-06-09 00:00:00
=E2=94=82 Urgency: Medium
=E2=94=82 Tested: 2024-06-06 00:00:00
=E2=94=82 Distribution: ubuntu 22.04
=E2=94=82 Old version: 10.01.3333223
=E2=94=82 Version[fwupd]: 1.9.15
=E2=94=82 Vendor: Synaptics
=E2=94=82 Duration: 2 seconds
=E2=94=82 Release Flags: =E2=80=A2 Trusted metadata
=E2=94=82 =E2=80=A2 Is upgrade
=E2=94=82 Description: =20
=E2=94=82 New features and enhancements:
=E2=94=82 =20
=E2=94=82 =E2=80=A2 Fix an authentication issue on FOP project.
=E2=94=82 Checksum: da76c521b478c2c1c03eaf56a91e8498c4abafc0=
fa6a8d4fd4b067277219e1a4
=E2=94=82 =20
=E2=94=9C=E2=94=80System Firmware:
=E2=94=82 =E2=94=82 Device ID: 2752d7053a55ee134f0f922690cf5628=
5b0c2ed5
=E2=94=82 =E2=94=82 Summary: UEFI System Resource Table devic=
e (updated via NVRAM)
=E2=94=82 =E2=94=82 Current version: 0.1.17
=E2=94=82 =E2=94=82 Vendor: Lenovo (DMI:LENOVO)
=E2=94=82 =E2=94=82 Update State: Success
=E2=94=82 =E2=94=82 GUID: 7d789c51-d050-4bda-875a-80224c0c=
b1ed
=E2=94=82 =E2=94=82 Device Flags: =E2=80=A2 Internal device
=E2=94=82 =E2=94=82 =E2=80=A2 Updatable
=E2=94=82 =E2=94=82 =E2=80=A2 System requires extern=
al power source
=E2=94=82 =E2=94=82 =E2=80=A2 Supported on remote se=
rver
=E2=94=82 =E2=94=82 =E2=80=A2 Needs a reboot after i=
nstallation
=E2=94=82 =E2=94=82 =E2=80=A2 Cryptographic hash ver=
ification is available
=E2=94=82 =E2=94=82 =E2=80=A2 Device is usable for t=
he duration of the update
=E2=94=82 =E2=94=82 Device Requests: =E2=80=A2 Message
=E2=94=82 =E2=94=82=20
=E2=94=82 =E2=94=9C=E2=94=80ThinkPad L14L15 Gen3 AMD System Update:
=E2=94=82 =E2=94=82 New version: 0.1.39
=E2=94=82 =E2=94=82 Remote ID: lvfs
=E2=94=82 =E2=94=82 Release ID: 143406
=E2=94=82 =E2=94=82 Summary: ThinkPad L14L15 Gen3 AMD System =
Firmware
=E2=94=82 =E2=94=82 License: Proprietary
=E2=94=82 =E2=94=82 Size: 34.8=C2=A0MB
=E2=94=82 =E2=94=82 Created: 2026-05-27 00:00:00
=E2=94=82 =E2=94=82 Urgency: High
=E2=94=82 =E2=94=82 Tested: 2026-06-12 00:00:00
=E2=94=82 =E2=94=82 Distribution: ubuntu-core 24
=E2=94=82 =E2=94=82 Old version: 0.1.38
=E2=94=82 =E2=94=82 Version[fwupd]: 2.1.4
=E2=94=82 =E2=94=82 Vendor: Lenovo
=E2=94=82 =E2=94=82 Release Flags: =E2=80=A2 Trusted metadata
=E2=94=82 =E2=94=82 =E2=80=A2 Is upgrade
=E2=94=82 =E2=94=82 =E2=80=A2 Tested by trusted vend=
or
=E2=94=82 =E2=94=82 Description: =20
=E2=94=82 =E2=94=82 ThinkPad L14L15 Gen3 AMD System Firmware
=E2=94=82 =E2=94=82 =20
=E2=94=82 =E2=94=82 =E2=80=A2 Update Flash Driver and Tool 20260327
=E2=94=82 =E2=94=82 =E2=80=A2 Fix BIOS POST will show error messag.
=E2=94=82 =E2=94=82 Checksum: dc700e98719128813d104ce9ad4ef0ca=
f61cf434604e59898e395e8ea4def4c8
=E2=94=82 =E2=94=82 =20
=E2=94=82 =E2=94=9C=E2=94=80ThinkPad L14L15 Gen3 AMD System Update:
=E2=94=82 =E2=94=82 New version: 0.1.38
=E2=94=82 =E2=94=82 Remote ID: lvfs
=E2=94=82 =E2=94=82 Release ID: 142240
=E2=94=82 =E2=94=82 Summary: ThinkPad L14L15 Gen3 AMD System =
Firmware
=E2=94=82 =E2=94=82 License: Proprietary
=E2=94=82 =E2=94=82 Size: 34.6=C2=A0MB
=E2=94=82 =E2=94=82 Created: 2026-04-27 00:00:00
=E2=94=82 =E2=94=82 Urgency: High
=E2=94=82 =E2=94=82 Tested: 2026-06-12 00:00:00
=E2=94=82 =E2=94=82 Distribution: ubuntu-core 24
=E2=94=82 =E2=94=82 Old version: 0.1.37
=E2=94=82 =E2=94=82 Version[fwupd]: 2.1.1
=E2=94=82 =E2=94=82 Vendor: Lenovo
=E2=94=82 =E2=94=82 Release Flags: =E2=80=A2 Trusted metadata
=E2=94=82 =E2=94=82 =E2=80=A2 Is upgrade
=E2=94=82 =E2=94=82 =E2=80=A2 Tested by trusted vend=
or
=E2=94=82 =E2=94=82 Description: =20
=E2=94=82 =E2=94=82 ThinkPad L14L15 Gen3 AMD System Firmware Security =
patch code update. Security function improvement. Add Smm Range check Add =
SmiLinuxSettings Added SmiStorageMode.
=E2=94=82 =E2=94=82 Issue: CVE-2025-54502
=E2=94=82 =E2=94=82 Checksum: 3cc69c2b89c448d6ad0770db82926d83=
bf9e76ea7f1512a3fb2d63da74f2b23f
=E2=94=82 =E2=94=82 =20
=E2=94=82 =E2=94=9C=E2=94=80ThinkPad L14L15 Gen3 AMD System Update:
=E2=94=82 =E2=94=82 New version: 0.1.36
=E2=94=82 =E2=94=82 Remote ID: lvfs
=E2=94=82 =E2=94=82 Release ID: 134829
=E2=94=82 =E2=94=82 Summary: ThinkPad L14L15 Gen3 AMD System =
Firmware
=E2=94=82 =E2=94=82 License: Proprietary
=E2=94=82 =E2=94=82 Size: 34.6=C2=A0MB
=E2=94=82 =E2=94=82 Created: 2025-12-10 00:00:00
=E2=94=82 =E2=94=82 Urgency: High
=E2=94=82 =E2=94=82 Tested: 2026-02-09 00:00:00
=E2=94=82 =E2=94=82 Distribution: ubuntu-core 24
=E2=94=82 =E2=94=82 Old version: 0.1.35
=E2=94=82 =E2=94=82 Version[fwupd]: 2.0.18
=E2=94=82 =E2=94=82 Vendor: Lenovo
=E2=94=82 =E2=94=82 Release Flags: =E2=80=A2 Trusted metadata
=E2=94=82 =E2=94=82 =E2=80=A2 Is upgrade
=E2=94=82 =E2=94=82 =E2=80=A2 Tested by trusted vend=
or
=E2=94=82 =E2=94=82 Description: =20
=E2=94=82 =E2=94=82 ThinkPad L14L15 Gen3 AMD System Firmware Security =
patch code update. Security function improvement.
=E2=94=82 =E2=94=82 =20
=E2=94=82 =E2=94=82 Add Smm Range check
=E2=94=82 =E2=94=82 =20
=E2=94=82 =E2=94=82 Add SmiLinuxSettings
=E2=94=82 =E2=94=82 =20
=E2=94=82 =E2=94=82 Added SmiStorageMode
=E2=94=82 =E2=94=82 Checksum: 2bc24148acb646c317068e49994c9e97=
ec795dfc95273a99168e3971eecb46ce
=E2=94=82 =E2=94=82 =20
=E2=94=82 =E2=94=9C=E2=94=80ThinkPad L14L15 Gen3 AMD System Update:
=E2=94=82 =E2=94=82 New version: 0.1.35
=E2=94=82 =E2=94=82 Remote ID: lvfs
=E2=94=82 =E2=94=82 Release ID: 116601
=E2=94=82 =E2=94=82 Summary: ThinkPad L14L15 Gen3 AMD System =
Firmware
=E2=94=82 =E2=94=82 License: Proprietary
=E2=94=82 =E2=94=82 Size: 34.6=C2=A0MB
=E2=94=82 =E2=94=82 Created: 2025-05-27 00:00:00
=E2=94=82 =E2=94=82 Urgency: High
=E2=94=82 =E2=94=82 Tested: 2026-01-21 00:00:00
=E2=94=82 =E2=94=82 Distribution: ubuntu-core 24
=E2=94=82 =E2=94=82 Old version: 0.1.34
=E2=94=82 =E2=94=82 Version[fwupd]: 2.0.11
=E2=94=82 =E2=94=82 Vendor: Lenovo
=E2=94=82 =E2=94=82 Release Flags: =E2=80=A2 Trusted metadata
=E2=94=82 =E2=94=82 =E2=80=A2 Is upgrade
=E2=94=82 =E2=94=82 =E2=80=A2 Tested by trusted vend=
or
=E2=94=82 =E2=94=82 Description: =20
=E2=94=82 =E2=94=82 ThinkPad L14L15 Gen3 AMD System Firmware
=E2=94=82 =E2=94=82 =20
=E2=94=82 =E2=94=82 Security patch code update.
=E2=94=82 =E2=94=82 =20
=E2=94=82 =E2=94=82 Security function improvement.
=E2=94=82 =E2=94=82 Checksum: fa6b162a151c8d089484903b4223f48d=
184d269a1c79d041b22ce50e52bba4cf
=E2=94=82 =E2=94=82 =20
=E2=94=82 =E2=94=9C=E2=94=80ThinkPad L14L15 Gen3 AMD System Update:
=E2=94=82 =E2=94=82 New version: 0.1.34
=E2=94=82 =E2=94=82 Remote ID: lvfs
=E2=94=82 =E2=94=82 Release ID: 108989
=E2=94=82 =E2=94=82 Summary: ThinkPad L14L15 Gen3 AMD System =
Firmware
=E2=94=82 =E2=94=82 License: Proprietary
=E2=94=82 =E2=94=82 Size: 34.6=C2=A0MB
=E2=94=82 =E2=94=82 Created: 2025-02-12 00:00:00
=E2=94=82 =E2=94=82 Urgency: High
=E2=94=82 =E2=94=82 Tested: 2025-03-17 00:00:00
=E2=94=82 =E2=94=82 Distribution: ubuntu-core 24
=E2=94=82 =E2=94=82 Old version: 0.1.33
=E2=94=82 =E2=94=82 Version[fwupd]: 2.0.5
=E2=94=82 =E2=94=82 Vendor: Lenovo
=E2=94=82 =E2=94=82 Release Flags: =E2=80=A2 Trusted metadata
=E2=94=82 =E2=94=82 =E2=80=A2 Is upgrade
=E2=94=82 =E2=94=82 =E2=80=A2 Tested by trusted vend=
or
=E2=94=82 =E2=94=82 Description: =20
=E2=94=82 =E2=94=82 ThinkPad L14L15 Gen3 AMD System Firmware
=E2=94=82 =E2=94=82 =20
=E2=94=82 =E2=94=82 =E2=80=A2 Fix Keyboard backlight issue.
=E2=94=82 =E2=94=82 =E2=80=A2 Fix TouchPad and trackpoint function imp=
rovement.
=E2=94=82 =E2=94=82 =E2=80=A2 Security patch code update.
=E2=94=82 =E2=94=82 Checksum: 0ac3f890fd41a7ca5b75c83f3bf54471=
539b98543645b2280a68bcf949c106cb
=E2=94=82 =E2=94=82 =20
=E2=94=82 =E2=94=9C=E2=94=80ThinkPad L14L15 Gen3 AMD System Update:
=E2=94=82 =E2=94=82 New version: 0.1.33
=E2=94=82 =E2=94=82 Remote ID: lvfs
=E2=94=82 =E2=94=82 Release ID: 103787
=E2=94=82 =E2=94=82 Summary: ThinkPad L14L15 Gen3 AMD System =
Firmware
=E2=94=82 =E2=94=82 License: Proprietary
=E2=94=82 =E2=94=82 Size: 34.6=C2=A0MB
=E2=94=82 =E2=94=82 Created: 2024-11-15 00:00:00
=E2=94=82 =E2=94=82 Urgency: High
=E2=94=82 =E2=94=82 Tested: 2024-12-24 00:00:00
=E2=94=82 =E2=94=82 Distribution: ubuntu-core 24
=E2=94=82 =E2=94=82 Old version: 0.1.32
=E2=94=82 =E2=94=82 Version[fwupd]: 2.0.3
=E2=94=82 =E2=94=82 Vendor: Lenovo
=E2=94=82 =E2=94=82 Release Flags: =E2=80=A2 Trusted metadata
=E2=94=82 =E2=94=82 =E2=80=A2 Is upgrade
=E2=94=82 =E2=94=82 =E2=80=A2 Tested by trusted vend=
or
=E2=94=82 =E2=94=82 Description: =20
=E2=94=82 =E2=94=82 ThinkPad L14L15 Gen3 AMD System Firmware
=E2=94=82 =E2=94=82 =20
=E2=94=82 =E2=94=82 =E2=80=A2 Improvement RTK Lan report error issue.
=E2=94=82 =E2=94=82 =E2=80=A2 Update country code Qualcomm WLAN settin=
g.
=E2=94=82 =E2=94=82 =E2=80=A2 BIOS package add "NOTICE" to output log.
=E2=94=82 =E2=94=82 Checksum: 02656becdd9d94c11649d81431eda84b=
80c3d66c4b65b445517016a4eb146802
=E2=94=82 =E2=94=82 =20
=E2=94=82 =E2=94=9C=E2=94=80ThinkPad L14L15 Gen3 AMD System Update:
=E2=94=82 =E2=94=82 New version: 0.1.32
=E2=94=82 =E2=94=82 Remote ID: lvfs
=E2=94=82 =E2=94=82 Release ID: 99485
=E2=94=82 =E2=94=82 Summary: ThinkPad L14L15 Gen3 AMD System =
Firmware
=E2=94=82 =E2=94=82 License: Proprietary
=E2=94=82 =E2=94=82 Size: 34.6=C2=A0MB
=E2=94=82 =E2=94=82 Created: 2024-09-06 00:00:00
=E2=94=82 =E2=94=82 Urgency: High
=E2=94=82 =E2=94=82 Tested: 2024-09-26 00:00:00
=E2=94=82 =E2=94=82 Distribution: ubuntu 22.04
=E2=94=82 =E2=94=82 Old version: 0.1.30
=E2=94=82 =E2=94=82 Version[fwupd]: 1.9.24
=E2=94=82 =E2=94=82 Vendor: Lenovo
=E2=94=82 =E2=94=82 Release Flags: =E2=80=A2 Trusted metadata
=E2=94=82 =E2=94=82 =E2=80=A2 Is upgrade
=E2=94=82 =E2=94=82 =E2=80=A2 Tested by trusted vend=
or
=E2=94=82 =E2=94=82 Description: =20
=E2=94=82 =E2=94=82 ThinkPad L14L15 Gen3 AMD System Firmware
=E2=94=82 =E2=94=82 =20
=E2=94=82 =E2=94=82 =E2=80=A2 [SCT#4.3.1.186]Revision: 122819 [Compone=
nt Cezanne] CezannePI-FP6_1.0.1.1
=E2=94=82 =E2=94=82 =E2=80=A2 CP20240626_0008 Remove TCO Logo from BRZ=
Local Products
=E2=94=82 =E2=94=82 =E2=80=A2 CP20240702_0010 Enable TW WIFI6E for TP =
products
=E2=94=82 =E2=94=82 =E2=80=A2 Fixed Ubuntu check_tsc_sync_source faile=
d
=E2=94=82 =E2=94=82 =E2=80=A2 Fix DFT239683 The Lenovo Copyright is in=
correct in diagnostic mode screen.
=E2=94=82 =E2=94=82 Checksum: d049f09f829216c4df762c9dd76d4d5b=
8444f3fea80a495bafe9a34e1c4dafda
=E2=94=82 =E2=94=82 =20
=E2=94=82 =E2=94=9C=E2=94=80ThinkPad L14L15 Gen3 AMD System Update:
=E2=94=82 =E2=94=82 New version: 0.1.31
=E2=94=82 =E2=94=82 Remote ID: lvfs
=E2=94=82 =E2=94=82 Release ID: 94842
=E2=94=82 =E2=94=82 Summary: ThinkPad L14L15 Gen3 AMD System =
Firmware
=E2=94=82 =E2=94=82 License: Proprietary
=E2=94=82 =E2=94=82 Size: 34.6=C2=A0MB
=E2=94=82 =E2=94=82 Created: 2024-06-07 00:00:00
=E2=94=82 =E2=94=82 Urgency: High
=E2=94=82 =E2=94=82 Tested: 2024-07-02 00:00:00
=E2=94=82 =E2=94=82 Distribution: ubuntu 22.04
=E2=94=82 =E2=94=82 Old version: 0.1.30
=E2=94=82 =E2=94=82 Version[fwupd]: 1.9.16
=E2=94=82 =E2=94=82 Vendor: Lenovo
=E2=94=82 =E2=94=82 Release Flags: =E2=80=A2 Trusted metadata
=E2=94=82 =E2=94=82 =E2=80=A2 Is upgrade
=E2=94=82 =E2=94=82 =E2=80=A2 Tested by trusted vend=
or
=E2=94=82 =E2=94=82 Description: =20
=E2=94=82 =E2=94=82 ThinkPad L14L15 Gen3 AMD System Firmware
=E2=94=82 =E2=94=82 =20
=E2=94=82 =E2=94=82 =E2=80=A2 MR01221(N3AET79W) - Updated Realtek UNDI=
driver to ver.2.043.
=E2=94=82 =E2=94=82 =E2=80=A2 MR00592(N3XET49W) - add dbx update 23/05
=E2=94=82 =E2=94=82 =E2=80=A2 MR00616(N3XET51W) - Fixed Various vulner=
abilities in NetworkPkg IP stack implementation.
=E2=94=82 =E2=94=82 =E2=80=A2 MR00621(N3XET51W) - Add MSFT 2023 kek/db
=E2=94=82 =E2=94=82 =20
=E2=94=82 =E2=94=82 5 Update Absolute module to v2.8 (154756)
=E2=94=82 =E2=94=82 =20
=E2=94=82 =E2=94=82 =E2=80=A2 Improve boot time for DASH Enable
=E2=94=82 =E2=94=82 =E2=80=A2 Correct the output values of the CU_WMI_=
script.ps1
=E2=94=82 =E2=94=82 =E2=80=A2 CP20240328_0006 CS22 Wi-Fi6E for CA
=E2=94=82 =E2=94=82 Checksum: f3cc05c1e35cde3ebbf1cb8e8ee92f63=
19de9b8ca606319b9f5a610e17249095
=E2=94=82 =E2=94=82 =20
=E2=94=82 =E2=94=9C=E2=94=80ThinkPad L14L15 Gen3 AMD System Update:
=E2=94=82 =E2=94=82 New version: 0.1.30
=E2=94=82 =E2=94=82 Remote ID: lvfs
=E2=94=82 =E2=94=82 Release ID: 87978
=E2=94=82 =E2=94=82 Summary: ThinkPad L14L15 Gen3 AMD System =
Firmware
=E2=94=82 =E2=94=82 License: Proprietary
=E2=94=82 =E2=94=82 Size: 34.6=C2=A0MB
=E2=94=82 =E2=94=82 Created: 2024-03-01 00:00:00
=E2=94=82 =E2=94=82 Urgency: High
=E2=94=82 =E2=94=82 Tested: 2026-07-22 00:00:00
=E2=94=82 =E2=94=82 Distribution: ubuntu 22.04
=E2=94=82 =E2=94=82 Old version: 0.1.29
=E2=94=82 =E2=94=82 Version[fwupd]: 1.9.15
=E2=94=82 =E2=94=82 Tested: 2026-07-16 00:00:00
=E2=94=82 =E2=94=82 Distribution: ubuntu 22.04
=E2=94=82 =E2=94=82 Old version: 0.1.29
=E2=94=82 =E2=94=82 Version[fwupd]: 1.9.15
=E2=94=82 =E2=94=82 Tested: 2026-07-16 00:00:00
=E2=94=82 =E2=94=82 Distribution: ubuntu 22.04
=E2=94=82 =E2=94=82 Old version: 0.1.29
=E2=94=82 =E2=94=82 Version[fwupd]: 1.9.15
=E2=94=82 =E2=94=82 Tested: 2024-09-26 00:00:00
=E2=94=82 =E2=94=82 Distribution: ubuntu 22.04
=E2=94=82 =E2=94=82 Old version: 0.1.29
=E2=94=82 =E2=94=82 Version[fwupd]: 1.9.15
=E2=94=82 =E2=94=82 Vendor: Lenovo
=E2=94=82 =E2=94=82 Release Flags: =E2=80=A2 Trusted metadata
=E2=94=82 =E2=94=82 =E2=80=A2 Is upgrade
=E2=94=82 =E2=94=82 =E2=80=A2 Tested by trusted vend=
or
=E2=94=82 =E2=94=82 Description: =20
=E2=94=82 =E2=94=82 ThinkPad L14L15 Gen3 AMD System Firmware
=E2=94=82 =E2=94=82 =20
=E2=94=82 =E2=94=82 =E2=80=A2 [SCT#4.3.1.170]Revision: 107226 [Compone=
nt Mandolin2] PicassoPI-FP5_1.0.1.0.(009-072)
=E2=94=82 =E2=94=82 =E2=80=A2 [SCT#4.3.1.173]Revision: 110567 [Compone=
nt Cezanne] CezannePI-FP6_1.0.0.Fa(009-088)
=E2=94=82 =E2=94=82 =E2=80=A2 [SCT#4.3.1.181]Revision: 116533 [Compone=
nt Cezanne] CezannePI-FP6_1.0.1.0(010-013,009-101)
=E2=94=82 =E2=94=82 Checksum: b93549143e50199342f20e380a1a4b25=
063f5ca1ecbef3fc72f6ff8790bb7b62
=E2=94=82 =E2=94=82 =20
=E2=94=82 =E2=94=94=E2=94=80ThinkPad L14L15 Gen3 AMD System Update:
=E2=94=82 New version: 0.1.29
=E2=94=82 Remote ID: lvfs
=E2=94=82 Release ID: 77923
=E2=94=82 Summary: ThinkPad L14L15 Gen3 AMD System Firmware
=E2=94=82 License: Proprietary
=E2=94=82 Size: 34.6=C2=A0MB
=E2=94=82 Created: 2023-12-08 00:00:00
=E2=94=82 Urgency: High
=E2=94=82 Vendor: Lenovo
=E2=94=82 Release Flags: =E2=80=A2 Trusted metadata
=E2=94=82 =E2=80=A2 Is upgrade
=E2=94=82 Description: =20
=E2=94=82 ThinkPad L14L15 Gen3 AMD System Firmware
=E2=94=82 =20
=E2=94=82 =E2=80=A2 1CP20231028_0001 CS22 Synaptic FPR reader preboo=
t manager in BIOS.
=E2=94=82 =E2=80=A2 [SCT 4.3.1.159]Revision: 102112 - [ID 002-026] U=
pdate OpenSSL to 1.1.1s (115633)
=E2=94=82 =E2=80=A2 [SCT#4.3.1.170]Revision: 105195 - [ID 002-026] U=
pdate EDK2 CryptoPkg for OpenSSL 1.1.1t
=E2=94=82 =E2=80=A2 [SCT#4.3.1.170]Revision: 104714 - [ID 002-027] U=
pdate OpenSSL to 1.1.1t
=E2=94=82 =E2=80=A2 [SCT#4.3.1.170]Revision: 106452 - [ID 006-013] H=
eap buffer overflow issues in Tcg2MeasurePeImage() and Tcg2MeasureGptTable=
() (115697)
=E2=94=82 =E2=80=A2 [SCT#4.3.1.170]Revision: 106453 - [ ID 011-007] =
Integer Overflow in various edk2 CreateHob() instances (115697)
=E2=94=82 =E2=80=A2 [SCT#4.3.1.169]Revision: 107460 - [ ID 004-033] =
[EDK2] PiSmmCore: SmmEntryPoint underflow (123534)
=E2=94=82 =E2=80=A2 [SCT#4.3.1.169]Revision: 108587 - [ ID 010-012] =
[EDK2] IScsiDxe: remotely exploitable buffer overflows(123535)
=E2=94=82 =E2=80=A2 [SCT#4.3.1.170]Revision: 108064 - [ ID 006-015] =
[EDK2] PCR bank selection and HashLib capability are not synchronized (123=
536)
=E2=94=82 =E2=80=A2 [SCT#4.3.1.170]Revision: 108238 - [ ID 009-091][=
ID 006-015][Component Cezanne] CezannePI-FP6_1.0.0.F.(123536)
=E2=94=82 Checksum: 63dcae80b25012a9d454bf02dea4e9b9244b11bb=
b9a27d6b14f23aedaac77f78
=E2=94=82 =20
=E2=94=94=E2=94=80UEFI dbx:
=E2=94=82 Device ID: 362301da643102b9f38477387e2193e57abaa590
=E2=94=82 Summary: UEFI revocation database
=E2=94=82 Current version: 20220801
=E2=94=82 Minimum Version: 20220801
=E2=94=82 Vendor: Microsoft (UEFI:Microsoft)
=E2=94=82 Install Duration: 1 second
=E2=94=82 GUIDs: 5971a208-da00-5fce-b5f5-1234342f9cf7 =E2=
=86=90 UEFI\CRT_A9087D1044AD18F7A94916D284CBC01827CF23CD8F60B79072C9CAA1FE=
F4D649&ARCH_X64
=E2=94=82 f8ba2887-9411-5c36-9cee-88995bb39731 =E2=
=86=90 UEFI\CRT_A1117F516A32CEFCBA3F2D1ACE10A87972FD6BBE8FE0D0B996E09E65D8=
02A503&ARCH_X64
=E2=94=82 Device Flags: =E2=80=A2 Internal device
=E2=94=82 =E2=80=A2 Updatable
=E2=94=82 =E2=80=A2 Supported on remote server
=E2=94=82 =E2=80=A2 Needs a reboot after installat=
ion
=E2=94=82 =E2=80=A2 Device is usable for the durat=
ion of the update
=E2=94=82 =E2=80=A2 Only version upgrades are allo=
wed
=E2=94=82 =E2=80=A2 Signed Payload
=E2=94=82 =E2=80=A2 Can tag for emulation
=E2=94=82=20
=E2=94=9C=E2=94=80Secure Boot dbx Configuration Update:
=E2=94=82 New version: 20260402
=E2=94=82 Remote ID: lvfs
=E2=94=82 Release ID: 143971
=E2=94=82 Summary: UEFI Secure Boot Forbidden Signature Dat=
abase
=E2=94=82 Variant: x64
=E2=94=82 License: Proprietary
=E2=94=82 Size: 24.6=C2=A0kB
=E2=94=82 Created: 2025-09-02 00:00:00
=E2=94=82 Urgency: High
=E2=94=82 Tested: 2026-07-20 00:00:00
=E2=94=82 Distribution: rhel 10.0
=E2=94=82 Old version: 20160809
=E2=94=82 Version[fwupd]: 2.0.19
=E2=94=82 Vendor: Linux Foundation
=E2=94=82 Duration: 1 second
=E2=94=82 Release Flags: =E2=80=A2 Trusted metadata
=E2=94=82 =E2=80=A2 Is upgrade
=E2=94=82 Description: =20
=E2=94=82 This updates the list of forbidden signatures (the "dbx") =
to the latest release from Microsoft.
=E2=94=82 =20
=E2=94=82 Some insecure bootloaders were added, due to security vuln=
erabilities that allowed an attacker to bypass UEFI Secure Boot. The addit=
ional entries were from:
=E2=94=82 =20
=E2=94=82 =E2=80=A2 Baramanudi Management Suite
=E2=94=82 =E2=80=A2 EAZ EasyFix
=E2=94=82 =E2=80=A2 Finland Matriculation Examination Board
=E2=94=82 =E2=80=A2 NTC IT ROSA Linux
=E2=94=82 =E2=80=A2 PC-Doctor
=E2=94=82 =E2=80=A2 Spyrus WTGCreator
=E2=94=82 =E2=80=A2 WhiteCanyon blancco
=E2=94=82 =E2=80=A2 Some ancient shim releases for OpenSUSE, Oracle =
and Red Hat
=E2=94=82 Issues: 616257
=E2=94=82 CVE-2026-8863
=E2=94=82 Checksum: 9edea8bc287bf9bf4659856b28cf421f330eb2f6=
58c163eab0a03512a98c0e78
=E2=94=82 =20
=E2=94=9C=E2=94=80Secure Boot dbx Configuration Update:
=E2=94=82 New version: 20250902
=E2=94=82 Remote ID: lvfs
=E2=94=82 Release ID: 130035
=E2=94=82 Summary: UEFI Secure Boot Forbidden Signature Dat=
abase
=E2=94=82 Variant: x64
=E2=94=82 License: Proprietary
=E2=94=82 Size: 24.1=C2=A0kB
=E2=94=82 Created: 2025-09-02 00:00:00
=E2=94=82 Urgency: High
=E2=94=82 Tested: 2026-06-08 00:00:00
=E2=94=82 Distribution: ubuntu 26.04
=E2=94=82 Old version: 20230501
=E2=94=82 Version[fwupd]: 2.1.1
=E2=94=82 Tested: 2026-04-20 00:00:00
=E2=94=82 Distribution: ubuntu 25.10
=E2=94=82 Old version: 20230501
=E2=94=82 Version[fwupd]: 2.0.16
=E2=94=82 Tested: 2026-02-25 00:00:00
=E2=94=82 Distribution: ubuntu 25.10
=E2=94=82 Old version: 20230501
=E2=94=82 Version[fwupd]: 2.0.18
=E2=94=82 Tested: 2026-02-13 00:00:00
=E2=94=82 Distribution: ubuntu 25.10
=E2=94=82 Old version: 20230501
=E2=94=82 Version[fwupd]: 2.0.17
=E2=94=82 Tested: 2025-12-05 00:00:00
=E2=94=82 Distribution: fedora 42 (workstation)
=E2=94=82 Old version: 20250507
=E2=94=82 Version[fwupd]: 2.0.17
=E2=94=82 Tested: 2025-11-10 00:00:00
=E2=94=82 Distribution: fedora 43 (kde)
=E2=94=82 Old version: 20230501
=E2=94=82 Version[fwupd]: 2.0.16
=E2=94=82 Vendor: Linux Foundation
=E2=94=82 Duration: 1 second
=E2=94=82 Release Flags: =E2=80=A2 Trusted metadata
=E2=94=82 =E2=80=A2 Is upgrade
=E2=94=82 =E2=80=A2 Tested by trusted vendor
=E2=94=82 Description: =20
=E2=94=82 This updates the list of forbidden signatures (the "dbx") =
to the latest release from Microsoft.
=E2=94=82 =20
=E2=94=82 Some insecure versions of the IGEL bootloader were added, =
due to a security vulnerability that allowed an attacker to bypass UEFI Se=
cure Boot.
=E2=94=82 Issue: CVE-2025-47827
=E2=94=82 Checksum: 7178302fa23fcb875e7540900e299fb30a767586=
63efb7e1c56edc25cd3f316a
=E2=94=82 =20
=E2=94=9C=E2=94=80Secure Boot dbx Configuration Update:
=E2=94=82 New version: 20250507
=E2=94=82 Remote ID: lvfs
=E2=94=82 Release ID: 115586
=E2=94=82 Summary: UEFI Secure Boot Forbidden Signature Dat=
abase
=E2=94=82 Variant: x64
=E2=94=82 License: Proprietary
=E2=94=82 Size: 24.0=C2=A0kB
=E2=94=82 Created: 2025-01-17 00:00:00
=E2=94=82 Urgency: High
=E2=94=82 Tested: 2025-10-17 00:00:00
=E2=94=82 Distribution: fedora 42 (workstation)
=E2=94=82 Old version: 20230501
=E2=94=82 Version[fwupd]: 2.0.16
=E2=94=82 Tested: 2025-06-11 00:00:00
=E2=94=82 Distribution: fedora 42 (workstation)
=E2=94=82 Old version: 20241101
=E2=94=82 Version[fwupd]: 2.0.11
=E2=94=82 Vendor: Linux Foundation
=E2=94=82 Duration: 1 second
=E2=94=82 Release Flags: =E2=80=A2 Trusted metadata
=E2=94=82 =E2=80=A2 Is upgrade
=E2=94=82 =E2=80=A2 Tested by trusted vendor
=E2=94=82 Description: =20
=E2=94=82 This updates the list of forbidden signatures (the "dbx") =
to the latest release from Microsoft.
=E2=94=82 =20
=E2=94=82 Some insecure versions of BiosFlashShell and Dtbios by DT =
Research Inc were added, due to a security vulnerability that allowed an a=
ttacker to bypass UEFI Secure Boot.
=E2=94=82 Issues: 806555
=E2=94=82 CVE-2025-3052
=E2=94=82 Checksum: 40d3a4630619b83026f66bc64d97a582bbd9223a=
d53aa3f519ff5e2121d11ca6
=E2=94=82 =20
=E2=94=94=E2=94=80Secure Boot dbx Configuration Update:
New version: 20241101
Remote ID: lvfs
Release ID: 105821
Summary: UEFI Secure Boot Forbidden Signature Database
Variant: x64
License: Proprietary
Size: 15.1=C2=A0kB
Created: 2025-01-17 00:00:00
Urgency: High
Tested: 2026-02-25 00:00:00
Distribution: ubuntu 24.04
Old version: 20230501
Version[fwupd]: 1.9.28
Vendor: Linux Foundation
Duration: 1 second
Release Flags: =E2=80=A2 Trusted metadata
=E2=80=A2 Is upgrade
Description: =20
This updates the list of forbidden signatures (the "dbx") to the l=
atest release from Microsoft.
=20
An insecure version of Howyar's SysReturn software was added, due =
to a security vulnerability that allowed an attacker to bypass UEFI Secure=
Boot.
Issues: 529659
CVE-2024-7344
Checksum: 093e6913dfecefbdaa9374a2e1caee7bf7e74c7eda847624=
e456e344884ba5f6
=20
<font color=3D"#FF5555"><b>Laicolasse:~ #</b></font>=20
</pre>
</blockquote>
<p><br>
</p>
<p>What next?=C2=A0 Is the UEFI ESP Partition a problem?</p>
<pre><font color=3D"#FF5555"><b>Laicolasse:~ #</b></font> lsblk --outp=
ut NAME,KNAME,RA,RM,RO,PARTFLAGS,SIZE,TYPE,FSTYPE,LABEL,PARTLABEL,PTTYPE,M=
OUNTPOINT,UUID,PARTUUID,WWN,MODEL,SERIAL,ALIGNMENT=20
NAME KNAME RA RM RO PARTFLAGS SIZE TYPE FSTYPE LABEL PARTLABE=
L PTTYPE MOUNTPOINT UUID PARTUUID =
WWN MODEL SERIAL ALIGNMENT
nvme0n1
=E2=94=82 nvme0n1 1024 0 0 953.9G disk =
gpt =
eui.8ce38e1000956753 KBG5A 52QC72 0
=E2=94=9C=E2=94=80nvme0n1p1
=E2=94=82 nvme0n1p1 1024 0 0 512M part vfat ESP =
ESP gpt /boot/efi 3EBE-58A3 5a916363-=
34cb-4729-b825-8be7a4da7527 eui.8ce38e1000956753 0
=E2=94=9C=E2=94=80nvme0n1p2
</pre>
<p><br>
</p>
<p><br>
</p>
<pre class=3D"moz-signature" cols=3D"72">--=20
Cheers / Saludos,
=20
Carlos E. R.
(from openSUSE 16.0 (Laicolasse))
</pre>
</body>
</html>
--------------rn3AhtM06jnoyf1FG1ZJYJOX--