Re: [oS-EN] Laptop fails to recover from hibernation, hard locks on black display

"Carlos E. R. via openSUSE Users" <[email protected]> Sun, 2 Aug 2026 20:37:57 +0200
Newsgroups gmane.linux.suse.general
Message-ID <[email protected]>
This is a multi-part message in MIME format.
--------------rn3AhtM06jnoyf1FG1ZJYJOX
Content-Type: text/plain; charset=UTF-8; format=flowed
Content-Transfer-Encoding: quoted-printable

On 2026-08-02 15:45, Andrei Borzenkov wrote:
> 02.08.2026 16:39, Bengt G=C3=B6rd=C3=A9n wrote:
>>
>> BIOS Update (Bootable CD)
>>
>> This is what I've been using for years on my Thinkpads.
>>
>>
>
> Lenovo is quite good at supporting LVFS, the first thing is to check wit=
h
>
> fwupdmgr get-updates


I'm not familiar with that tool.

    *WARNING*: UEFI ESP partition may not be set up correctly
    Seehttps://github.com/fwupd/fwupd/wiki/PluginFlag:esp-not-valid for mo=
re information.
    Firmware metadata has not been updated for 30 days and may not be up t=
o date.
    Update now? (Requires internet connection) [y|N]: y
    Updating lvfs
    Downloading=E2=80=A6             [************************************=
***]
    Successfully downloaded new metadata:
      =E2=80=A2 21 devices are updatable
      =E2=80=A2 5 devices are supported in the enabled remotes (an update =
has been published)
    Devices with no available firmware updates:
      =E2=80=A2 067F:00 04F3:3209
      =E2=80=A2 Integrated RGB Camera
      =E2=80=A2 KEK CA
      =E2=80=A2 Prometheus (IOTA Config)
      =E2=80=A2 ThinkPad Product CA
      =E2=80=A2 UEFI CA
      =E2=80=A2 UEFI Device Firmware
      =E2=80=A2 UEFI Device Firmware
      =E2=80=A2 UEFI Device Firmware
      =E2=80=A2 UEFI Device Firmware
      =E2=80=A2 UEFI Device Firmware
      =E2=80=A2 UEFI Device Firmware
      =E2=80=A2 UEFI Device Firmware
      =E2=80=A2 UEFI Device Firmware
      =E2=80=A2 UEFI Device Firmware
      =E2=80=A2 Windows Production PCA
    LENOVO 21C5CTO1WW
    =E2=94=82
    =E2=94=9C=E2=94=80KBG5AZNT1T02 LA KIOXIA:
    =E2=94=82 =E2=94=82   Device ID:          71b677ca0f1bc2c5b804fa1d59e5=
2064ce589293
    =E2=94=82 =E2=94=82   Summary:            NVM Express solid state driv=
e
    =E2=94=82 =E2=94=82   Current version:    1107ANLA
    =E2=94=82 =E2=94=82   Vendor:             KIOXIA (PCI:0x1E0F)
    =E2=94=82 =E2=94=82   Serial Number:      52QC721BEJS6
    =E2=94=82 =E2=94=82   GUIDs:              6cefd2de-46a3-5fb7-acb1-25ef=
14bec6de =E2=86=90 NVME\VEN_1E0F&DEV_000C
    =E2=94=82 =E2=94=82                       52a1c489-1299-5fa5-a97f-384d=
de8c5fa2 =E2=86=90 NVME\VEN_1E0F&DEV_000C&SUBSYS_1E0F0001
    =E2=94=82 =E2=94=82                       31d222d5-b7b3-5aad-97f0-b889=
6757ddaa =E2=86=90 KBG5AZNT1T02 LA KIOXIA
    =E2=94=82 =E2=94=82   Device Flags:       =E2=80=A2 Internal device
    =E2=94=82 =E2=94=82                       =E2=80=A2 Updatable
    =E2=94=82 =E2=94=82                       =E2=80=A2 System requires ex=
ternal power source
    =E2=94=82 =E2=94=82                       =E2=80=A2 Supported on remot=
e server
    =E2=94=82 =E2=94=82                       =E2=80=A2 Needs a reboot aft=
er installation
    =E2=94=82 =E2=94=82                       =E2=80=A2 Device is usable f=
or the duration of the update
    =E2=94=82 =E2=94=82                       =E2=80=A2 Signed Payload
    =E2=94=82 =E2=94=82                       =E2=80=A2 Can tag for emulat=
ion
    =E2=94=82 =E2=94=82
    =E2=94=82 =E2=94=9C=E2=94=80KBG5AZNV256G LA / KBG5AZNT256G LA / KBG5AZ=
NV512G LA / KBG5AZNT512G LA / KBG5AZNV1T02 LA / KBG5AZNT1T02 LA SSD Update=
:
    =E2=94=82 =E2=94=82     New version:      1110ANLA
    =E2=94=82 =E2=94=82     Remote ID:        lvfs
    =E2=94=82 =E2=94=82     Release ID:       131573
    =E2=94=82 =E2=94=82     Summary:          KIOXIA BG5 NVMe SSD Firmwre =
for Lenovo PC
    =E2=94=82 =E2=94=82     License:          Proprietary
    =E2=94=82 =E2=94=82     Size:             1.3=C2=A0MB
    =E2=94=82 =E2=94=82     Created:          2025-11-05 00:00:00
    =E2=94=82 =E2=94=82     Urgency:          High
    =E2=94=82 =E2=94=82       Tested:         2026-01-16 00:00:00
    =E2=94=82 =E2=94=82       Distribution:   ubuntu 22.04
    =E2=94=82 =E2=94=82       Old version:    1109ANLA
    =E2=94=82 =E2=94=82       Version[fwupd]: 1.9.16
    =E2=94=82 =E2=94=82     Vendor:           Lenovo
    =E2=94=82 =E2=94=82     Release Flags:    =E2=80=A2 Trusted metadata
    =E2=94=82 =E2=94=82                       =E2=80=A2 Is upgrade
    =E2=94=82 =E2=94=82                       =E2=80=A2 Tested by trusted =
vendor
    =E2=94=82 =E2=94=82     Description:
    =E2=94=82 =E2=94=82     Do NOT turn off your computer or remove the AC=
 adapter while update is in progress.
    =E2=94=82 =E2=94=82
    =E2=94=82 =E2=94=82     The computer shall be restarted after updating=
 firmware completely. The device may not properly function until you shut =
down or reboot PC.
    =E2=94=82 =E2=94=82
    =E2=94=82 =E2=94=82     [Support devices and Firmware version] KBG5AZN=
V256G 1110ANLA, KBG5AZNT256G 1110ANLA, KBG5AZNV512G 1110ANLA, KBG5AZNT512G=
 1110ANLA, KBG5AZNV1T02 1110ANLA, KBG5AZNT1T02 1110ANLA
    =E2=94=82 =E2=94=82
    =E2=94=82 =E2=94=82     [Problem Fixes] Implement a fix to prevent the=
 SSD from entering a specific mode.
    =E2=94=82 =E2=94=82
    =E2=94=82 =E2=94=82     [Support Product Scope] Lenovo ThinkPad, Think=
Centre, ThinkStation, IdeaCentre.
    =E2=94=82 =E2=94=82     Checksum:         b660c7ec4c828d2c6f99f1a6c3c4=
29f01feeb1d3bcd0ea90b4a87b4e106b452c
    =E2=94=82 =E2=94=82
    =E2=94=82 =E2=94=9C=E2=94=80KBG5AZNV256G LA / KBG5AZNT256G LA / KBG5AZ=
NV512G LA / KBG5AZNT512G LA / KBG5AZNV1T02 LA / KBG5AZNT1T02 LA SSD Update=
:
    =E2=94=82 =E2=94=82     New version:      1109ANLA
    =E2=94=82 =E2=94=82     Remote ID:        lvfs
    =E2=94=82 =E2=94=82     Release ID:       75888
    =E2=94=82 =E2=94=82     Summary:          KIOXIA BG5 NVMe SSD Firmwre =
for Lenovo PC
    =E2=94=82 =E2=94=82     License:          Proprietary
    =E2=94=82 =E2=94=82     Size:             1.3=C2=A0MB
    =E2=94=82 =E2=94=82     Created:          2023-11-21 00:00:00
    =E2=94=82 =E2=94=82     Urgency:          High
    =E2=94=82 =E2=94=82       Tested:         2026-01-16 00:00:00
    =E2=94=82 =E2=94=82       Distribution:   ubuntu 22.04
    =E2=94=82 =E2=94=82       Old version:    1110ANLA
    =E2=94=82 =E2=94=82       Version[fwupd]: 1.7.9
    =E2=94=82 =E2=94=82     Vendor:           Lenovo
    =E2=94=82 =E2=94=82     Release Flags:    =E2=80=A2 Trusted metadata
    =E2=94=82 =E2=94=82                       =E2=80=A2 Is upgrade
    =E2=94=82 =E2=94=82                       =E2=80=A2 Tested by trusted =
vendor
    =E2=94=82 =E2=94=82     Description:
    =E2=94=82 =E2=94=82     [Support devices and Firmware version] KBG5AZN=
V256G 1109ANLA, KBG5AZNT256G 1109ANLA, KBG5AZNV512G 1109ANLA, KBG5AZNT512G=
 1109ANLA, KBG5AZNV1T02 1109ANLA, KBG5AZNT1T02 1109ANLA
    =E2=94=82 =E2=94=82
    =E2=94=82 =E2=94=82     [Problem Fixes] 1.To fix firmware issue of TCG=
 Opal on reset function./2.To fix the firmware issues that SSD hang up due=
 to conflict system operation with SSD.
    =E2=94=82 =E2=94=82
    =E2=94=82 =E2=94=82     [Support Product Scope] Lenovo ThinkPad, Think=
Centre, ThinkStation, IdeaCentre
    =E2=94=82 =E2=94=82     Checksum:         d8572b136e2dca2d6d278ec8f9ff=
88f07d93b4e17d5dfca534c05eeb9628de62
    =E2=94=82 =E2=94=82
    =E2=94=82 =E2=94=94=E2=94=80KBG5AZNV256G LA / KBG5AZNT256G LA / KBG5AZ=
NV512G LA / KBG5AZNT512G LA / KBG5AZNV1T02 LA / KBG5AZNT1T02 LA SSD Update=
:
    =E2=94=82       New version:      1108ANLA
    =E2=94=82       Remote ID:        lvfs
    =E2=94=82       Release ID:       18995
    =E2=94=82       Summary:          KIOXIA BG5 NVMe SSD Firmwre for Leno=
vo PC
    =E2=94=82       License:          Proprietary
    =E2=94=82       Size:             1.3=C2=A0MB
    =E2=94=82       Created:          2023-02-06 00:00:00
    =E2=94=82       Urgency:          High
    =E2=94=82         Tested:         2024-01-24 00:00:00
    =E2=94=82         Distribution:   ubuntu 22.04
    =E2=94=82         Old version:    1106ANLA
    =E2=94=82         Version[fwupd]: 1.7.9
    =E2=94=82       Vendor:           Lenovo
    =E2=94=82       Release Flags:    =E2=80=A2 Trusted metadata
    =E2=94=82                         =E2=80=A2 Is upgrade
    =E2=94=82                         =E2=80=A2 Tested by trusted vendor
    =E2=94=82       Description:
    =E2=94=82       [Support devices and Firmware version] KBG5AZNV256G LA=
 1108ANLA KBG5AZNT256G LA 1108ANLA, KBG5AZNV512G LA 1108ANLA KBG5AZNT512G =
LA 1108ANLA, KBG5AZNV1T02 LA 1108ANLA KBG5AZNT1T02 LA 1108ANLA
    =E2=94=82
    =E2=94=82       [Problem fixes]1.Task conflict issue on OS Aging test =
(Fix BSoD issue)/2.Thermal shutdown issue on SMBus enabled system./3.Risk =
of SSD dead due to LUT overwrite./4.Change the SSD mode to Read-only when =
internal LUT clash occurred /5.Drive no response issue on specific modern =
standby system.
    =E2=94=82
    =E2=94=82       [Support Product Scope]Lenovo ThinkPad, ThinkCentre, T=
hinkStation, IdeaCentre
    =E2=94=82       Checksum:         67b6b8bea784b20c76e3a54b8150d96c5b53=
bb74789ec5e107f1019eafb9d433
    =E2=94=82
    =E2=94=9C=E2=94=80KEK CA:
    =E2=94=82 =E2=94=82   Device ID:          b7a1d3d90faa1f6275d9a98da4fb=
3be7118e61c7
    =E2=94=82 =E2=94=82   Current version:    2011
    =E2=94=82 =E2=94=82   Vendor:             Microsoft (UEFI:Microsoft)
    =E2=94=82 =E2=94=82   GUIDs:              814e950f-1449-566a-a190-42c9=
d3a3a2df =E2=86=90 UEFI\VENDOR_Microsoft&NAME_Microsoft-KEK-CA
    =E2=94=82 =E2=94=82                       dfa66406-6568-5bdf-bb8e-b53d=
db4be4cf =E2=86=90 UEFI\CRT_9F402B1CC0243CBEDC58A525789816CCCA7687A9
    =E2=94=82 =E2=94=82   Device Flags:       =E2=80=A2 Internal device
    =E2=94=82 =E2=94=82                       =E2=80=A2 Updatable
    =E2=94=82 =E2=94=82                       =E2=80=A2 Supported on remot=
e server
    =E2=94=82 =E2=94=82                       =E2=80=A2 Needs a reboot aft=
er installation
    =E2=94=82 =E2=94=82                       =E2=80=A2 Device is usable f=
or the duration of the update
    =E2=94=82 =E2=94=82                       =E2=80=A2 Signed Payload
    =E2=94=82 =E2=94=82                       =E2=80=A2 Can tag for emulat=
ion
    =E2=94=82 =E2=94=82
    =E2=94=82 =E2=94=94=E2=94=80Secure Boot KEK Configuration Update:
    =E2=94=82       New version:      2023
    =E2=94=82       Remote ID:        lvfs
    =E2=94=82       Release ID:       114062
    =E2=94=82       Summary:          UEFI Secure Boot Key Exchange Key
    =E2=94=82       Variant:          Lenovo
    =E2=94=82       License:          Proprietary
    =E2=94=82       Size:             2.9=C2=A0kB
    =E2=94=82       Created:          2025-04-29 00:00:00
    =E2=94=82       Urgency:          High
    =E2=94=82       Vendor:           Linux Foundation
    =E2=94=82       Release Flags:    =E2=80=A2 Trusted metadata
    =E2=94=82                         =E2=80=A2 Is upgrade
    =E2=94=82       Description:
    =E2=94=82       This updates the UEFI Signature Database (the "KEK") t=
o the latest release from Microsoft, signed by Lenovo Ltd.PK CA 2012.
    =E2=94=82       Checksum:         168b8c108e18a0b61ff8228d56d28d4739ef=
f055ef26022c64c9335e78a2dc33
    =E2=94=82
    =E2=94=9C=E2=94=80Prometheus:
    =E2=94=82 =E2=94=82   Device ID:          813b4757e78d708603a80ead0a2b=
6ef1364b7790
    =E2=94=82 =E2=94=82   Summary:            Fingerprint reader
    =E2=94=82 =E2=94=82   Current version:    10.01.3273255
    =E2=94=82 =E2=94=82   Vendor:             Synaptics (USB:0x06CB)
    =E2=94=82 =E2=94=82   Install Duration:   2 seconds
    =E2=94=82 =E2=94=82   Serial Number:      21998257769597
    =E2=94=82 =E2=94=82   GUID:               659f7e45-8d45-528d-b3c7-0695=
eed055f6 =E2=86=90 USB\VID_06CB&PID_00F9
    =E2=94=82 =E2=94=82   Device Flags:       =E2=80=A2 Updatable
    =E2=94=82 =E2=94=82                       =E2=80=A2 Supported on remot=
e server
    =E2=94=82 =E2=94=82                       =E2=80=A2 Cryptographic hash=
 verification is available
    =E2=94=82 =E2=94=82                       =E2=80=A2 Signed Payload
    =E2=94=82 =E2=94=82                       =E2=80=A2 Can tag for emulat=
ion
    =E2=94=82 =E2=94=82
    =E2=94=82 =E2=94=94=E2=94=80Prometheus Fingerprint Reader Update:
    =E2=94=82       New version:      10.01.3478575
    =E2=94=82       Remote ID:        lvfs
    =E2=94=82       Release ID:       10696
    =E2=94=82       Summary:          Firmware for the Synaptics Prometheu=
s Fingerprint Reader device
    =E2=94=82       License:          Proprietary
    =E2=94=82       Size:             425.5=C2=A0kB
    =E2=94=82       Created:          2021-06-09 00:00:00
    =E2=94=82       Urgency:          Medium
    =E2=94=82         Tested:         2024-06-06 00:00:00
    =E2=94=82         Distribution:   ubuntu 22.04
    =E2=94=82         Old version:    10.01.3333223
    =E2=94=82         Version[fwupd]: 1.9.15
    =E2=94=82       Vendor:           Synaptics
    =E2=94=82       Duration:         2 seconds
    =E2=94=82       Release Flags:    =E2=80=A2 Trusted metadata
    =E2=94=82                         =E2=80=A2 Is upgrade
    =E2=94=82       Description:
    =E2=94=82       New features and enhancements:
    =E2=94=82
    =E2=94=82       =E2=80=A2 Fix an authentication issue on FOP project.
    =E2=94=82       Checksum:         da76c521b478c2c1c03eaf56a91e8498c4ab=
afc0fa6a8d4fd4b067277219e1a4
    =E2=94=82
    =E2=94=9C=E2=94=80System Firmware:
    =E2=94=82 =E2=94=82   Device ID:          2752d7053a55ee134f0f922690cf=
56285b0c2ed5
    =E2=94=82 =E2=94=82   Summary:            UEFI System Resource Table d=
evice (updated via NVRAM)
    =E2=94=82 =E2=94=82   Current version:    0.1.17
    =E2=94=82 =E2=94=82   Vendor:             Lenovo (DMI:LENOVO)
    =E2=94=82 =E2=94=82   Update State:       Success
    =E2=94=82 =E2=94=82   GUID:               7d789c51-d050-4bda-875a-8022=
4c0cb1ed
    =E2=94=82 =E2=94=82   Device Flags:       =E2=80=A2 Internal device
    =E2=94=82 =E2=94=82                       =E2=80=A2 Updatable
    =E2=94=82 =E2=94=82                       =E2=80=A2 System requires ex=
ternal power source
    =E2=94=82 =E2=94=82                       =E2=80=A2 Supported on remot=
e server
    =E2=94=82 =E2=94=82                       =E2=80=A2 Needs a reboot aft=
er installation
    =E2=94=82 =E2=94=82                       =E2=80=A2 Cryptographic hash=
 verification is available
    =E2=94=82 =E2=94=82                       =E2=80=A2 Device is usable f=
or the duration of the update
    =E2=94=82 =E2=94=82   Device Requests:    =E2=80=A2 Message
    =E2=94=82 =E2=94=82
    =E2=94=82 =E2=94=9C=E2=94=80ThinkPad L14L15 Gen3 AMD System Update:
    =E2=94=82 =E2=94=82     New version:      0.1.39
    =E2=94=82 =E2=94=82     Remote ID:        lvfs
    =E2=94=82 =E2=94=82     Release ID:       143406
    =E2=94=82 =E2=94=82     Summary:          ThinkPad L14L15 Gen3 AMD Sys=
tem Firmware
    =E2=94=82 =E2=94=82     License:          Proprietary
    =E2=94=82 =E2=94=82     Size:             34.8=C2=A0MB
    =E2=94=82 =E2=94=82     Created:          2026-05-27 00:00:00
    =E2=94=82 =E2=94=82     Urgency:          High
    =E2=94=82 =E2=94=82       Tested:         2026-06-12 00:00:00
    =E2=94=82 =E2=94=82       Distribution:   ubuntu-core 24
    =E2=94=82 =E2=94=82       Old version:    0.1.38
    =E2=94=82 =E2=94=82       Version[fwupd]: 2.1.4
    =E2=94=82 =E2=94=82     Vendor:           Lenovo
    =E2=94=82 =E2=94=82     Release Flags:    =E2=80=A2 Trusted metadata
    =E2=94=82 =E2=94=82                       =E2=80=A2 Is upgrade
    =E2=94=82 =E2=94=82                       =E2=80=A2 Tested by trusted =
vendor
    =E2=94=82 =E2=94=82     Description:
    =E2=94=82 =E2=94=82     ThinkPad L14L15 Gen3 AMD System Firmware
    =E2=94=82 =E2=94=82
    =E2=94=82 =E2=94=82     =E2=80=A2 Update Flash Driver and Tool 2026032=
7
    =E2=94=82 =E2=94=82     =E2=80=A2 Fix BIOS POST will show error messag=
.
    =E2=94=82 =E2=94=82     Checksum:         dc700e98719128813d104ce9ad4e=
f0caf61cf434604e59898e395e8ea4def4c8
    =E2=94=82 =E2=94=82
    =E2=94=82 =E2=94=9C=E2=94=80ThinkPad L14L15 Gen3 AMD System Update:
    =E2=94=82 =E2=94=82     New version:      0.1.38
    =E2=94=82 =E2=94=82     Remote ID:        lvfs
    =E2=94=82 =E2=94=82     Release ID:       142240
    =E2=94=82 =E2=94=82     Summary:          ThinkPad L14L15 Gen3 AMD Sys=
tem Firmware
    =E2=94=82 =E2=94=82     License:          Proprietary
    =E2=94=82 =E2=94=82     Size:             34.6=C2=A0MB
    =E2=94=82 =E2=94=82     Created:          2026-04-27 00:00:00
    =E2=94=82 =E2=94=82     Urgency:          High
    =E2=94=82 =E2=94=82       Tested:         2026-06-12 00:00:00
    =E2=94=82 =E2=94=82       Distribution:   ubuntu-core 24
    =E2=94=82 =E2=94=82       Old version:    0.1.37
    =E2=94=82 =E2=94=82       Version[fwupd]: 2.1.1
    =E2=94=82 =E2=94=82     Vendor:           Lenovo
    =E2=94=82 =E2=94=82     Release Flags:    =E2=80=A2 Trusted metadata
    =E2=94=82 =E2=94=82                       =E2=80=A2 Is upgrade
    =E2=94=82 =E2=94=82                       =E2=80=A2 Tested by trusted =
vendor
    =E2=94=82 =E2=94=82     Description:
    =E2=94=82 =E2=94=82     ThinkPad L14L15 Gen3 AMD System Firmware Secur=
ity patch code update. Security function improvement. Add Smm Range check =
Add SmiLinuxSettings Added SmiStorageMode.
    =E2=94=82 =E2=94=82     Issue:            CVE-2025-54502
    =E2=94=82 =E2=94=82     Checksum:         3cc69c2b89c448d6ad0770db8292=
6d83bf9e76ea7f1512a3fb2d63da74f2b23f
    =E2=94=82 =E2=94=82
    =E2=94=82 =E2=94=9C=E2=94=80ThinkPad L14L15 Gen3 AMD System Update:
    =E2=94=82 =E2=94=82     New version:      0.1.36
    =E2=94=82 =E2=94=82     Remote ID:        lvfs
    =E2=94=82 =E2=94=82     Release ID:       134829
    =E2=94=82 =E2=94=82     Summary:          ThinkPad L14L15 Gen3 AMD Sys=
tem Firmware
    =E2=94=82 =E2=94=82     License:          Proprietary
    =E2=94=82 =E2=94=82     Size:             34.6=C2=A0MB
    =E2=94=82 =E2=94=82     Created:          2025-12-10 00:00:00
    =E2=94=82 =E2=94=82     Urgency:          High
    =E2=94=82 =E2=94=82       Tested:         2026-02-09 00:00:00
    =E2=94=82 =E2=94=82       Distribution:   ubuntu-core 24
    =E2=94=82 =E2=94=82       Old version:    0.1.35
    =E2=94=82 =E2=94=82       Version[fwupd]: 2.0.18
    =E2=94=82 =E2=94=82     Vendor:           Lenovo
    =E2=94=82 =E2=94=82     Release Flags:    =E2=80=A2 Trusted metadata
    =E2=94=82 =E2=94=82                       =E2=80=A2 Is upgrade
    =E2=94=82 =E2=94=82                       =E2=80=A2 Tested by trusted =
vendor
    =E2=94=82 =E2=94=82     Description:
    =E2=94=82 =E2=94=82     ThinkPad L14L15 Gen3 AMD System Firmware Secur=
ity patch code update. Security function improvement.
    =E2=94=82 =E2=94=82
    =E2=94=82 =E2=94=82     Add Smm Range check
    =E2=94=82 =E2=94=82
    =E2=94=82 =E2=94=82     Add SmiLinuxSettings
    =E2=94=82 =E2=94=82
    =E2=94=82 =E2=94=82     Added SmiStorageMode
    =E2=94=82 =E2=94=82     Checksum:         2bc24148acb646c317068e49994c=
9e97ec795dfc95273a99168e3971eecb46ce
    =E2=94=82 =E2=94=82
    =E2=94=82 =E2=94=9C=E2=94=80ThinkPad L14L15 Gen3 AMD System Update:
    =E2=94=82 =E2=94=82     New version:      0.1.35
    =E2=94=82 =E2=94=82     Remote ID:        lvfs
    =E2=94=82 =E2=94=82     Release ID:       116601
    =E2=94=82 =E2=94=82     Summary:          ThinkPad L14L15 Gen3 AMD Sys=
tem Firmware
    =E2=94=82 =E2=94=82     License:          Proprietary
    =E2=94=82 =E2=94=82     Size:             34.6=C2=A0MB
    =E2=94=82 =E2=94=82     Created:          2025-05-27 00:00:00
    =E2=94=82 =E2=94=82     Urgency:          High
    =E2=94=82 =E2=94=82       Tested:         2026-01-21 00:00:00
    =E2=94=82 =E2=94=82       Distribution:   ubuntu-core 24
    =E2=94=82 =E2=94=82       Old version:    0.1.34
    =E2=94=82 =E2=94=82       Version[fwupd]: 2.0.11
    =E2=94=82 =E2=94=82     Vendor:           Lenovo
    =E2=94=82 =E2=94=82     Release Flags:    =E2=80=A2 Trusted metadata
    =E2=94=82 =E2=94=82                       =E2=80=A2 Is upgrade
    =E2=94=82 =E2=94=82                       =E2=80=A2 Tested by trusted =
vendor
    =E2=94=82 =E2=94=82     Description:
    =E2=94=82 =E2=94=82     ThinkPad L14L15 Gen3 AMD System Firmware
    =E2=94=82 =E2=94=82
    =E2=94=82 =E2=94=82     Security patch code update.
    =E2=94=82 =E2=94=82
    =E2=94=82 =E2=94=82     Security function improvement.
    =E2=94=82 =E2=94=82     Checksum:         fa6b162a151c8d089484903b4223=
f48d184d269a1c79d041b22ce50e52bba4cf
    =E2=94=82 =E2=94=82
    =E2=94=82 =E2=94=9C=E2=94=80ThinkPad L14L15 Gen3 AMD System Update:
    =E2=94=82 =E2=94=82     New version:      0.1.34
    =E2=94=82 =E2=94=82     Remote ID:        lvfs
    =E2=94=82 =E2=94=82     Release ID:       108989
    =E2=94=82 =E2=94=82     Summary:          ThinkPad L14L15 Gen3 AMD Sys=
tem Firmware
    =E2=94=82 =E2=94=82     License:          Proprietary
    =E2=94=82 =E2=94=82     Size:             34.6=C2=A0MB
    =E2=94=82 =E2=94=82     Created:          2025-02-12 00:00:00
    =E2=94=82 =E2=94=82     Urgency:          High
    =E2=94=82 =E2=94=82       Tested:         2025-03-17 00:00:00
    =E2=94=82 =E2=94=82       Distribution:   ubuntu-core 24
    =E2=94=82 =E2=94=82       Old version:    0.1.33
    =E2=94=82 =E2=94=82       Version[fwupd]: 2.0.5
    =E2=94=82 =E2=94=82     Vendor:           Lenovo
    =E2=94=82 =E2=94=82     Release Flags:    =E2=80=A2 Trusted metadata
    =E2=94=82 =E2=94=82                       =E2=80=A2 Is upgrade
    =E2=94=82 =E2=94=82                       =E2=80=A2 Tested by trusted =
vendor
    =E2=94=82 =E2=94=82     Description:
    =E2=94=82 =E2=94=82     ThinkPad L14L15 Gen3 AMD System Firmware
    =E2=94=82 =E2=94=82
    =E2=94=82 =E2=94=82     =E2=80=A2 Fix Keyboard backlight issue.
    =E2=94=82 =E2=94=82     =E2=80=A2 Fix TouchPad and trackpoint function=
 improvement.
    =E2=94=82 =E2=94=82     =E2=80=A2 Security patch code update.
    =E2=94=82 =E2=94=82     Checksum:         0ac3f890fd41a7ca5b75c83f3bf5=
4471539b98543645b2280a68bcf949c106cb
    =E2=94=82 =E2=94=82
    =E2=94=82 =E2=94=9C=E2=94=80ThinkPad L14L15 Gen3 AMD System Update:
    =E2=94=82 =E2=94=82     New version:      0.1.33
    =E2=94=82 =E2=94=82     Remote ID:        lvfs
    =E2=94=82 =E2=94=82     Release ID:       103787
    =E2=94=82 =E2=94=82     Summary:          ThinkPad L14L15 Gen3 AMD Sys=
tem Firmware
    =E2=94=82 =E2=94=82     License:          Proprietary
    =E2=94=82 =E2=94=82     Size:             34.6=C2=A0MB
    =E2=94=82 =E2=94=82     Created:          2024-11-15 00:00:00
    =E2=94=82 =E2=94=82     Urgency:          High
    =E2=94=82 =E2=94=82       Tested:         2024-12-24 00:00:00
    =E2=94=82 =E2=94=82       Distribution:   ubuntu-core 24
    =E2=94=82 =E2=94=82       Old version:    0.1.32
    =E2=94=82 =E2=94=82       Version[fwupd]: 2.0.3
    =E2=94=82 =E2=94=82     Vendor:           Lenovo
    =E2=94=82 =E2=94=82     Release Flags:    =E2=80=A2 Trusted metadata
    =E2=94=82 =E2=94=82                       =E2=80=A2 Is upgrade
    =E2=94=82 =E2=94=82                       =E2=80=A2 Tested by trusted =
vendor
    =E2=94=82 =E2=94=82     Description:
    =E2=94=82 =E2=94=82     ThinkPad L14L15 Gen3 AMD System Firmware
    =E2=94=82 =E2=94=82
    =E2=94=82 =E2=94=82     =E2=80=A2 Improvement RTK Lan report error iss=
ue.
    =E2=94=82 =E2=94=82     =E2=80=A2 Update country code Qualcomm WLAN se=
tting.
    =E2=94=82 =E2=94=82     =E2=80=A2 BIOS package add "NOTICE" to output =
log.
    =E2=94=82 =E2=94=82     Checksum:         02656becdd9d94c11649d81431ed=
a84b80c3d66c4b65b445517016a4eb146802
    =E2=94=82 =E2=94=82
    =E2=94=82 =E2=94=9C=E2=94=80ThinkPad L14L15 Gen3 AMD System Update:
    =E2=94=82 =E2=94=82     New version:      0.1.32
    =E2=94=82 =E2=94=82     Remote ID:        lvfs
    =E2=94=82 =E2=94=82     Release ID:       99485
    =E2=94=82 =E2=94=82     Summary:          ThinkPad L14L15 Gen3 AMD Sys=
tem Firmware
    =E2=94=82 =E2=94=82     License:          Proprietary
    =E2=94=82 =E2=94=82     Size:             34.6=C2=A0MB
    =E2=94=82 =E2=94=82     Created:          2024-09-06 00:00:00
    =E2=94=82 =E2=94=82     Urgency:          High
    =E2=94=82 =E2=94=82       Tested:         2024-09-26 00:00:00
    =E2=94=82 =E2=94=82       Distribution:   ubuntu 22.04
    =E2=94=82 =E2=94=82       Old version:    0.1.30
    =E2=94=82 =E2=94=82       Version[fwupd]: 1.9.24
    =E2=94=82 =E2=94=82     Vendor:           Lenovo
    =E2=94=82 =E2=94=82     Release Flags:    =E2=80=A2 Trusted metadata
    =E2=94=82 =E2=94=82                       =E2=80=A2 Is upgrade
    =E2=94=82 =E2=94=82                       =E2=80=A2 Tested by trusted =
vendor
    =E2=94=82 =E2=94=82     Description:
    =E2=94=82 =E2=94=82     ThinkPad L14L15 Gen3 AMD System Firmware
    =E2=94=82 =E2=94=82
    =E2=94=82 =E2=94=82     =E2=80=A2 [SCT#4.3.1.186]Revision: 122819 [Com=
ponent Cezanne] CezannePI-FP6_1.0.1.1
    =E2=94=82 =E2=94=82     =E2=80=A2 CP20240626_0008 Remove TCO Logo from=
 BRZ Local Products
    =E2=94=82 =E2=94=82     =E2=80=A2 CP20240702_0010 Enable TW WIFI6E for=
 TP products
    =E2=94=82 =E2=94=82     =E2=80=A2 Fixed Ubuntu check_tsc_sync_source f=
ailed
    =E2=94=82 =E2=94=82     =E2=80=A2 Fix DFT239683 The Lenovo Copyright i=
s incorrect in diagnostic mode screen.
    =E2=94=82 =E2=94=82     Checksum:         d049f09f829216c4df762c9dd76d=
4d5b8444f3fea80a495bafe9a34e1c4dafda
    =E2=94=82 =E2=94=82
    =E2=94=82 =E2=94=9C=E2=94=80ThinkPad L14L15 Gen3 AMD System Update:
    =E2=94=82 =E2=94=82     New version:      0.1.31
    =E2=94=82 =E2=94=82     Remote ID:        lvfs
    =E2=94=82 =E2=94=82     Release ID:       94842
    =E2=94=82 =E2=94=82     Summary:          ThinkPad L14L15 Gen3 AMD Sys=
tem Firmware
    =E2=94=82 =E2=94=82     License:          Proprietary
    =E2=94=82 =E2=94=82     Size:             34.6=C2=A0MB
    =E2=94=82 =E2=94=82     Created:          2024-06-07 00:00:00
    =E2=94=82 =E2=94=82     Urgency:          High
    =E2=94=82 =E2=94=82       Tested:         2024-07-02 00:00:00
    =E2=94=82 =E2=94=82       Distribution:   ubuntu 22.04
    =E2=94=82 =E2=94=82       Old version:    0.1.30
    =E2=94=82 =E2=94=82       Version[fwupd]: 1.9.16
    =E2=94=82 =E2=94=82     Vendor:           Lenovo
    =E2=94=82 =E2=94=82     Release Flags:    =E2=80=A2 Trusted metadata
    =E2=94=82 =E2=94=82                       =E2=80=A2 Is upgrade
    =E2=94=82 =E2=94=82                       =E2=80=A2 Tested by trusted =
vendor
    =E2=94=82 =E2=94=82     Description:
    =E2=94=82 =E2=94=82     ThinkPad L14L15 Gen3 AMD System Firmware
    =E2=94=82 =E2=94=82
    =E2=94=82 =E2=94=82     =E2=80=A2 MR01221(N3AET79W) - Updated Realtek =
UNDI driver to ver.2.043.
    =E2=94=82 =E2=94=82     =E2=80=A2 MR00592(N3XET49W) - add dbx update 2=
3/05
    =E2=94=82 =E2=94=82     =E2=80=A2 MR00616(N3XET51W) - Fixed Various vu=
lnerabilities in NetworkPkg IP stack implementation.
    =E2=94=82 =E2=94=82     =E2=80=A2 MR00621(N3XET51W) - Add MSFT 2023 ke=
k/db
    =E2=94=82 =E2=94=82
    =E2=94=82 =E2=94=82     5 Update Absolute module to v2.8 (154756)
    =E2=94=82 =E2=94=82
    =E2=94=82 =E2=94=82     =E2=80=A2 Improve boot time for DASH Enable
    =E2=94=82 =E2=94=82     =E2=80=A2 Correct the output values of the CU_=
WMI_script.ps1
    =E2=94=82 =E2=94=82     =E2=80=A2 CP20240328_0006 CS22 Wi-Fi6E for CA
    =E2=94=82 =E2=94=82     Checksum:         f3cc05c1e35cde3ebbf1cb8e8ee9=
2f6319de9b8ca606319b9f5a610e17249095
    =E2=94=82 =E2=94=82
    =E2=94=82 =E2=94=9C=E2=94=80ThinkPad L14L15 Gen3 AMD System Update:
    =E2=94=82 =E2=94=82     New version:      0.1.30
    =E2=94=82 =E2=94=82     Remote ID:        lvfs
    =E2=94=82 =E2=94=82     Release ID:       87978
    =E2=94=82 =E2=94=82     Summary:          ThinkPad L14L15 Gen3 AMD Sys=
tem Firmware
    =E2=94=82 =E2=94=82     License:          Proprietary
    =E2=94=82 =E2=94=82     Size:             34.6=C2=A0MB
    =E2=94=82 =E2=94=82     Created:          2024-03-01 00:00:00
    =E2=94=82 =E2=94=82     Urgency:          High
    =E2=94=82 =E2=94=82       Tested:         2026-07-22 00:00:00
    =E2=94=82 =E2=94=82       Distribution:   ubuntu 22.04
    =E2=94=82 =E2=94=82       Old version:    0.1.29
    =E2=94=82 =E2=94=82       Version[fwupd]: 1.9.15
    =E2=94=82 =E2=94=82       Tested:         2026-07-16 00:00:00
    =E2=94=82 =E2=94=82       Distribution:   ubuntu 22.04
    =E2=94=82 =E2=94=82       Old version:    0.1.29
    =E2=94=82 =E2=94=82       Version[fwupd]: 1.9.15
    =E2=94=82 =E2=94=82       Tested:         2026-07-16 00:00:00
    =E2=94=82 =E2=94=82       Distribution:   ubuntu 22.04
    =E2=94=82 =E2=94=82       Old version:    0.1.29
    =E2=94=82 =E2=94=82       Version[fwupd]: 1.9.15
    =E2=94=82 =E2=94=82       Tested:         2024-09-26 00:00:00
    =E2=94=82 =E2=94=82       Distribution:   ubuntu 22.04
    =E2=94=82 =E2=94=82       Old version:    0.1.29
    =E2=94=82 =E2=94=82       Version[fwupd]: 1.9.15
    =E2=94=82 =E2=94=82     Vendor:           Lenovo
    =E2=94=82 =E2=94=82     Release Flags:    =E2=80=A2 Trusted metadata
    =E2=94=82 =E2=94=82                       =E2=80=A2 Is upgrade
    =E2=94=82 =E2=94=82                       =E2=80=A2 Tested by trusted =
vendor
    =E2=94=82 =E2=94=82     Description:
    =E2=94=82 =E2=94=82     ThinkPad L14L15 Gen3 AMD System Firmware
    =E2=94=82 =E2=94=82
    =E2=94=82 =E2=94=82     =E2=80=A2 [SCT#4.3.1.170]Revision: 107226 [Com=
ponent Mandolin2] PicassoPI-FP5_1.0.1.0.(009-072)
    =E2=94=82 =E2=94=82     =E2=80=A2 [SCT#4.3.1.173]Revision: 110567 [Com=
ponent Cezanne] CezannePI-FP6_1.0.0.Fa(009-088)
    =E2=94=82 =E2=94=82     =E2=80=A2 [SCT#4.3.1.181]Revision: 116533 [Com=
ponent Cezanne] CezannePI-FP6_1.0.1.0(010-013,009-101)
    =E2=94=82 =E2=94=82     Checksum:         b93549143e50199342f20e380a1a=
4b25063f5ca1ecbef3fc72f6ff8790bb7b62
    =E2=94=82 =E2=94=82
    =E2=94=82 =E2=94=94=E2=94=80ThinkPad L14L15 Gen3 AMD System Update:
    =E2=94=82       New version:      0.1.29
    =E2=94=82       Remote ID:        lvfs
    =E2=94=82       Release ID:       77923
    =E2=94=82       Summary:          ThinkPad L14L15 Gen3 AMD System Firm=
ware
    =E2=94=82       License:          Proprietary
    =E2=94=82       Size:             34.6=C2=A0MB
    =E2=94=82       Created:          2023-12-08 00:00:00
    =E2=94=82       Urgency:          High
    =E2=94=82       Vendor:           Lenovo
    =E2=94=82       Release Flags:    =E2=80=A2 Trusted metadata
    =E2=94=82                         =E2=80=A2 Is upgrade
    =E2=94=82       Description:
    =E2=94=82       ThinkPad L14L15 Gen3 AMD System Firmware
    =E2=94=82
    =E2=94=82       =E2=80=A2 1CP20231028_0001 CS22 Synaptic FPR reader pr=
eboot manager in BIOS.
    =E2=94=82       =E2=80=A2 [SCT 4.3.1.159]Revision: 102112 - [ID 002-02=
6] Update OpenSSL to 1.1.1s (115633)
    =E2=94=82       =E2=80=A2 [SCT#4.3.1.170]Revision: 105195 - [ID 002-02=
6] Update EDK2 CryptoPkg for OpenSSL 1.1.1t
    =E2=94=82       =E2=80=A2 [SCT#4.3.1.170]Revision: 104714 - [ID 002-02=
7] Update OpenSSL to 1.1.1t
    =E2=94=82       =E2=80=A2 [SCT#4.3.1.170]Revision: 106452 - [ID 006-01=
3] Heap buffer overflow issues in Tcg2MeasurePeImage() and Tcg2MeasureGptT=
able() (115697)
    =E2=94=82       =E2=80=A2 [SCT#4.3.1.170]Revision: 106453 - [ ID 011-0=
07] Integer Overflow in various edk2 CreateHob() instances (115697)
    =E2=94=82       =E2=80=A2 [SCT#4.3.1.169]Revision: 107460 - [ ID 004-0=
33] [EDK2] PiSmmCore: SmmEntryPoint underflow (123534)
    =E2=94=82       =E2=80=A2 [SCT#4.3.1.169]Revision: 108587 - [ ID 010-0=
12] [EDK2] IScsiDxe: remotely exploitable buffer overflows(123535)
    =E2=94=82       =E2=80=A2 [SCT#4.3.1.170]Revision: 108064 - [ ID 006-0=
15] [EDK2] PCR bank selection and HashLib capability are not synchronized =
(123536)
    =E2=94=82       =E2=80=A2 [SCT#4.3.1.170]Revision: 108238 - [ ID 009-0=
91][ ID 006-015][Component Cezanne] CezannePI-FP6_1.0.0.F.(123536)
    =E2=94=82       Checksum:         63dcae80b25012a9d454bf02dea4e9b9244b=
11bbb9a27d6b14f23aedaac77f78
    =E2=94=82
    =E2=94=94=E2=94=80UEFI dbx:
       =E2=94=82   Device ID:          362301da643102b9f38477387e2193e57ab=
aa590
       =E2=94=82   Summary:            UEFI revocation database
       =E2=94=82   Current version:    20220801
       =E2=94=82   Minimum Version:    20220801
       =E2=94=82   Vendor:             Microsoft (UEFI:Microsoft)
       =E2=94=82   Install Duration:   1 second
       =E2=94=82   GUIDs:              5971a208-da00-5fce-b5f5-1234342f9cf=
7 =E2=86=90 UEFI\CRT_A9087D1044AD18F7A94916D284CBC01827CF23CD8F60B79072C9C=
AA1FEF4D649&ARCH_X64
       =E2=94=82                       f8ba2887-9411-5c36-9cee-88995bb3973=
1 =E2=86=90 UEFI\CRT_A1117F516A32CEFCBA3F2D1ACE10A87972FD6BBE8FE0D0B996E09=
E65D802A503&ARCH_X64
       =E2=94=82   Device Flags:       =E2=80=A2 Internal device
       =E2=94=82                       =E2=80=A2 Updatable
       =E2=94=82                       =E2=80=A2 Supported on remote serve=
r
       =E2=94=82                       =E2=80=A2 Needs a reboot after inst=
allation
       =E2=94=82                       =E2=80=A2 Device is usable for the =
duration of the update
       =E2=94=82                       =E2=80=A2 Only version upgrades are=
 allowed
       =E2=94=82                       =E2=80=A2 Signed Payload
       =E2=94=82                       =E2=80=A2 Can tag for emulation
       =E2=94=82
       =E2=94=9C=E2=94=80Secure Boot dbx Configuration Update:
       =E2=94=82     New version:      20260402
       =E2=94=82     Remote ID:        lvfs
       =E2=94=82     Release ID:       143971
       =E2=94=82     Summary:          UEFI Secure Boot Forbidden Signatur=
e Database
       =E2=94=82     Variant:          x64
       =E2=94=82     License:          Proprietary
       =E2=94=82     Size:             24.6=C2=A0kB
       =E2=94=82     Created:          2025-09-02 00:00:00
       =E2=94=82     Urgency:          High
       =E2=94=82       Tested:         2026-07-20 00:00:00
       =E2=94=82       Distribution:   rhel 10.0
       =E2=94=82       Old version:    20160809
       =E2=94=82       Version[fwupd]: 2.0.19
       =E2=94=82     Vendor:           Linux Foundation
       =E2=94=82     Duration:         1 second
       =E2=94=82     Release Flags:    =E2=80=A2 Trusted metadata
       =E2=94=82                       =E2=80=A2 Is upgrade
       =E2=94=82     Description:
       =E2=94=82     This updates the list of forbidden signatures (the "d=
bx") to the latest release from Microsoft.
       =E2=94=82
       =E2=94=82     Some insecure bootloaders were added, due to security=
 vulnerabilities that allowed an attacker to bypass UEFI Secure Boot. The =
additional entries were from:
       =E2=94=82
       =E2=94=82     =E2=80=A2 Baramanudi Management Suite
       =E2=94=82     =E2=80=A2 EAZ EasyFix
       =E2=94=82     =E2=80=A2 Finland Matriculation Examination Board
       =E2=94=82     =E2=80=A2 NTC IT ROSA Linux
       =E2=94=82     =E2=80=A2 PC-Doctor
       =E2=94=82     =E2=80=A2 Spyrus WTGCreator
       =E2=94=82     =E2=80=A2 WhiteCanyon blancco
       =E2=94=82     =E2=80=A2 Some ancient shim releases for OpenSUSE, Or=
acle and Red Hat
       =E2=94=82     Issues:           616257
       =E2=94=82                       CVE-2026-8863
       =E2=94=82     Checksum:         9edea8bc287bf9bf4659856b28cf421f330=
eb2f658c163eab0a03512a98c0e78
       =E2=94=82
       =E2=94=9C=E2=94=80Secure Boot dbx Configuration Update:
       =E2=94=82     New version:      20250902
       =E2=94=82     Remote ID:        lvfs
       =E2=94=82     Release ID:       130035
       =E2=94=82     Summary:          UEFI Secure Boot Forbidden Signatur=
e Database
       =E2=94=82     Variant:          x64
       =E2=94=82     License:          Proprietary
       =E2=94=82     Size:             24.1=C2=A0kB
       =E2=94=82     Created:          2025-09-02 00:00:00
       =E2=94=82     Urgency:          High
       =E2=94=82       Tested:         2026-06-08 00:00:00
       =E2=94=82       Distribution:   ubuntu 26.04
       =E2=94=82       Old version:    20230501
       =E2=94=82       Version[fwupd]: 2.1.1
       =E2=94=82       Tested:         2026-04-20 00:00:00
       =E2=94=82       Distribution:   ubuntu 25.10
       =E2=94=82       Old version:    20230501
       =E2=94=82       Version[fwupd]: 2.0.16
       =E2=94=82       Tested:         2026-02-25 00:00:00
       =E2=94=82       Distribution:   ubuntu 25.10
       =E2=94=82       Old version:    20230501
       =E2=94=82       Version[fwupd]: 2.0.18
       =E2=94=82       Tested:         2026-02-13 00:00:00
       =E2=94=82       Distribution:   ubuntu 25.10
       =E2=94=82       Old version:    20230501
       =E2=94=82       Version[fwupd]: 2.0.17
       =E2=94=82       Tested:         2025-12-05 00:00:00
       =E2=94=82       Distribution:   fedora 42 (workstation)
       =E2=94=82       Old version:    20250507
       =E2=94=82       Version[fwupd]: 2.0.17
       =E2=94=82       Tested:         2025-11-10 00:00:00
       =E2=94=82       Distribution:   fedora 43 (kde)
       =E2=94=82       Old version:    20230501
       =E2=94=82       Version[fwupd]: 2.0.16
       =E2=94=82     Vendor:           Linux Foundation
       =E2=94=82     Duration:         1 second
       =E2=94=82     Release Flags:    =E2=80=A2 Trusted metadata
       =E2=94=82                       =E2=80=A2 Is upgrade
       =E2=94=82                       =E2=80=A2 Tested by trusted vendor
       =E2=94=82     Description:
       =E2=94=82     This updates the list of forbidden signatures (the "d=
bx") to the latest release from Microsoft.
       =E2=94=82
       =E2=94=82     Some insecure versions of the IGEL bootloader were ad=
ded, due to a security vulnerability that allowed an attacker to bypass UE=
FI Secure Boot.
       =E2=94=82     Issue:            CVE-2025-47827
       =E2=94=82     Checksum:         7178302fa23fcb875e7540900e299fb30a7=
6758663efb7e1c56edc25cd3f316a
       =E2=94=82
       =E2=94=9C=E2=94=80Secure Boot dbx Configuration Update:
       =E2=94=82     New version:      20250507
       =E2=94=82     Remote ID:        lvfs
       =E2=94=82     Release ID:       115586
       =E2=94=82     Summary:          UEFI Secure Boot Forbidden Signatur=
e Database
       =E2=94=82     Variant:          x64
       =E2=94=82     License:          Proprietary
       =E2=94=82     Size:             24.0=C2=A0kB
       =E2=94=82     Created:          2025-01-17 00:00:00
       =E2=94=82     Urgency:          High
       =E2=94=82       Tested:         2025-10-17 00:00:00
       =E2=94=82       Distribution:   fedora 42 (workstation)
       =E2=94=82       Old version:    20230501
       =E2=94=82       Version[fwupd]: 2.0.16
       =E2=94=82       Tested:         2025-06-11 00:00:00
       =E2=94=82       Distribution:   fedora 42 (workstation)
       =E2=94=82       Old version:    20241101
       =E2=94=82       Version[fwupd]: 2.0.11
       =E2=94=82     Vendor:           Linux Foundation
       =E2=94=82     Duration:         1 second
       =E2=94=82     Release Flags:    =E2=80=A2 Trusted metadata
       =E2=94=82                       =E2=80=A2 Is upgrade
       =E2=94=82                       =E2=80=A2 Tested by trusted vendor
       =E2=94=82     Description:
       =E2=94=82     This updates the list of forbidden signatures (the "d=
bx") to the latest release from Microsoft.
       =E2=94=82
       =E2=94=82     Some insecure versions of BiosFlashShell and Dtbios b=
y DT Research Inc were added, due to a security vulnerability that allowed=
 an attacker to bypass UEFI Secure Boot.
       =E2=94=82     Issues:           806555
       =E2=94=82                       CVE-2025-3052
       =E2=94=82     Checksum:         40d3a4630619b83026f66bc64d97a582bbd=
9223ad53aa3f519ff5e2121d11ca6
       =E2=94=82
       =E2=94=94=E2=94=80Secure Boot dbx Configuration Update:
             New version:      20241101
             Remote ID:        lvfs
             Release ID:       105821
             Summary:          UEFI Secure Boot Forbidden Signature Databa=
se
             Variant:          x64
             License:          Proprietary
             Size:             15.1=C2=A0kB
             Created:          2025-01-17 00:00:00
             Urgency:          High
               Tested:         2026-02-25 00:00:00
               Distribution:   ubuntu 24.04
               Old version:    20230501
               Version[fwupd]: 1.9.28
             Vendor:           Linux Foundation
             Duration:         1 second
             Release Flags:    =E2=80=A2 Trusted metadata
                               =E2=80=A2 Is upgrade
             Description:
             This updates the list of forbidden signatures (the "dbx") to =
the latest release from Microsoft.
            =20
             An insecure version of Howyar's SysReturn software was added,=
 due to a security vulnerability that allowed an attacker to bypass UEFI S=
ecure Boot.
             Issues:           529659
                               CVE-2024-7344
             Checksum:         093e6913dfecefbdaa9374a2e1caee7bf7e74c7eda8=
47624e456e344884ba5f6
          =20
    *Laicolasse:~ #*=20


What next?=C2=A0 Is the UEFI ESP Partition a problem?

*Laicolasse:~ #* lsblk --output NAME,KNAME,RA,RM,RO,PARTFLAGS,SIZE,TYPE,FS=
TYPE,LABEL,PARTLABEL,PTTYPE,MOUNTPOINT,UUID,PARTUUID,WWN,MODEL,SERIAL,ALIG=
NMENT
NAME KNAME       RA RM RO PARTFLAGS   SIZE TYPE  FSTYPE LABEL     PARTLABE=
L PTTYPE MOUNTPOINT UUID                                 PARTUUID         =
                    WWN                  MODEL SERIAL ALIGNMENT
nvme0n1
=E2=94=82    nvme0n1   1024  0  0           953.9G disk                   =
          gpt                                                             =
                            eui.8ce38e1000956753 KBG5A 52QC72         0
=E2=94=9C=E2=94=80nvme0n1p1
=E2=94=82    nvme0n1p1 1024  0  0             512M part  vfat   ESP       =
ESP       gpt    /boot/efi  3EBE-58A3                            5a916363-=
34cb-4729-b825-8be7a4da7527 eui.8ce38e1000956753                      0
=E2=94=9C=E2=94=80nvme0n1p2



=2D-=20
Cheers / Saludos,
               =20
		Carlos E. R.

   (from openSUSE 16.0 (Laicolasse))

--------------rn3AhtM06jnoyf1FG1ZJYJOX
Content-Type: text/html; charset=UTF-8
Content-Transfer-Encoding: quoted-printable

<!DOCTYPE html>
<html>
  <head>
    <meta http-equiv=3D"Content-Type" content=3D"text/html; charset=3DUTF-=
8">
  </head>
  <body>
    <div class=3D"moz-cite-prefix">On 2026-08-02 15:45, Andrei Borzenkov
      wrote:<br>
    </div>
    <blockquote type=3D"cite"
      cite=3D"mid:[email protected]">02.08.20=
26
      16:39, Bengt G=C3=B6rd=C3=A9n wrote:
      <br>
      <blockquote type=3D"cite">
        <br>
        BIOS Update (Bootable CD)
        <br>
        <br>
        This is what I've been using for years on my Thinkpads.
        <br>
        <br>
        <br>
      </blockquote>
      <br>
      Lenovo is quite good at supporting LVFS, the first thing is to
      check with
      <br>
      <br>
      fwupdmgr get-updates=C2=A0<br>
    </blockquote>
    <p><br>
    </p>
    <p>I'm not familiar with that tool.</p>
    <blockquote>
      <pre><font color=3D"#FF5555"><b>WARNING</b></font>: UEFI ESP partiti=
on may not be set up correctly
See <a class=3D"moz-txt-link-freetext" href=3D"https://github.com/fwupd/fw=
upd/wiki/PluginFlag:esp-not-valid">https://github.com/fwupd/fwupd/wiki/Plu=
ginFlag:esp-not-valid</a> for more information.
Firmware metadata has not been updated for 30 days and may not be up to da=
te.
Update now? (Requires internet connection) [y|N]: y
Updating lvfs
Downloading=E2=80=A6             [***************************************]
Successfully downloaded new metadata:
 =E2=80=A2 21 devices are updatable
 =E2=80=A2 5 devices are supported in the enabled remotes (an update has b=
een published)
Devices with no available firmware updates:
 =E2=80=A2 067F:00 04F3:3209
 =E2=80=A2 Integrated RGB Camera
 =E2=80=A2 KEK CA
 =E2=80=A2 Prometheus (IOTA Config)
 =E2=80=A2 ThinkPad Product CA
 =E2=80=A2 UEFI CA
 =E2=80=A2 UEFI Device Firmware
 =E2=80=A2 UEFI Device Firmware
 =E2=80=A2 UEFI Device Firmware
 =E2=80=A2 UEFI Device Firmware
 =E2=80=A2 UEFI Device Firmware
 =E2=80=A2 UEFI Device Firmware
 =E2=80=A2 UEFI Device Firmware
 =E2=80=A2 UEFI Device Firmware
 =E2=80=A2 UEFI Device Firmware
 =E2=80=A2 Windows Production PCA
LENOVO 21C5CTO1WW
=E2=94=82
=E2=94=9C=E2=94=80KBG5AZNT1T02 LA KIOXIA:
=E2=94=82 =E2=94=82   Device ID:          71b677ca0f1bc2c5b804fa1d59e52064=
ce589293
=E2=94=82 =E2=94=82   Summary:            NVM Express solid state drive
=E2=94=82 =E2=94=82   Current version:    1107ANLA
=E2=94=82 =E2=94=82   Vendor:             KIOXIA (PCI:0x1E0F)
=E2=94=82 =E2=94=82   Serial Number:      52QC721BEJS6
=E2=94=82 =E2=94=82   GUIDs:              6cefd2de-46a3-5fb7-acb1-25ef14be=
c6de =E2=86=90 NVME\VEN_1E0F&amp;DEV_000C
=E2=94=82 =E2=94=82                       52a1c489-1299-5fa5-a97f-384dde8c=
5fa2 =E2=86=90 NVME\VEN_1E0F&amp;DEV_000C&amp;SUBSYS_1E0F0001
=E2=94=82 =E2=94=82                       31d222d5-b7b3-5aad-97f0-b8896757=
ddaa =E2=86=90 KBG5AZNT1T02 LA KIOXIA
=E2=94=82 =E2=94=82   Device Flags:       =E2=80=A2 Internal device
=E2=94=82 =E2=94=82                       =E2=80=A2 Updatable
=E2=94=82 =E2=94=82                       =E2=80=A2 System requires extern=
al power source
=E2=94=82 =E2=94=82                       =E2=80=A2 Supported on remote se=
rver
=E2=94=82 =E2=94=82                       =E2=80=A2 Needs a reboot after i=
nstallation
=E2=94=82 =E2=94=82                       =E2=80=A2 Device is usable for t=
he duration of the update
=E2=94=82 =E2=94=82                       =E2=80=A2 Signed Payload
=E2=94=82 =E2=94=82                       =E2=80=A2 Can tag for emulation
=E2=94=82 =E2=94=82=20
=E2=94=82 =E2=94=9C=E2=94=80KBG5AZNV256G LA / KBG5AZNT256G LA / KBG5AZNV51=
2G LA / KBG5AZNT512G LA / KBG5AZNV1T02 LA / KBG5AZNT1T02 LA SSD Update:
=E2=94=82 =E2=94=82     New version:      1110ANLA
=E2=94=82 =E2=94=82     Remote ID:        lvfs
=E2=94=82 =E2=94=82     Release ID:       131573
=E2=94=82 =E2=94=82     Summary:          KIOXIA BG5 NVMe SSD Firmwre for =
Lenovo PC
=E2=94=82 =E2=94=82     License:          Proprietary
=E2=94=82 =E2=94=82     Size:             1.3=C2=A0MB
=E2=94=82 =E2=94=82     Created:          2025-11-05 00:00:00
=E2=94=82 =E2=94=82     Urgency:          High
=E2=94=82 =E2=94=82       Tested:         2026-01-16 00:00:00
=E2=94=82 =E2=94=82       Distribution:   ubuntu 22.04
=E2=94=82 =E2=94=82       Old version:    1109ANLA
=E2=94=82 =E2=94=82       Version[fwupd]: 1.9.16
=E2=94=82 =E2=94=82     Vendor:           Lenovo
=E2=94=82 =E2=94=82     Release Flags:    =E2=80=A2 Trusted metadata
=E2=94=82 =E2=94=82                       =E2=80=A2 Is upgrade
=E2=94=82 =E2=94=82                       =E2=80=A2 Tested by trusted vend=
or
=E2=94=82 =E2=94=82     Description:     =20
=E2=94=82 =E2=94=82     Do NOT turn off your computer or remove the AC ada=
pter while update is in progress.
=E2=94=82 =E2=94=82    =20
=E2=94=82 =E2=94=82     The computer shall be restarted after updating fir=
mware completely. The device may not properly function until you shut down=
 or reboot PC.
=E2=94=82 =E2=94=82    =20
=E2=94=82 =E2=94=82     [Support devices and Firmware version] KBG5AZNV256=
G 1110ANLA, KBG5AZNT256G 1110ANLA, KBG5AZNV512G 1110ANLA, KBG5AZNT512G 111=
0ANLA, KBG5AZNV1T02 1110ANLA, KBG5AZNT1T02 1110ANLA
=E2=94=82 =E2=94=82    =20
=E2=94=82 =E2=94=82     [Problem Fixes] Implement a fix to prevent the SSD=
 from entering a specific mode.
=E2=94=82 =E2=94=82    =20
=E2=94=82 =E2=94=82     [Support Product Scope] Lenovo ThinkPad, ThinkCent=
re, ThinkStation, IdeaCentre.
=E2=94=82 =E2=94=82     Checksum:         b660c7ec4c828d2c6f99f1a6c3c429f0=
1feeb1d3bcd0ea90b4a87b4e106b452c
=E2=94=82 =E2=94=82  =20
=E2=94=82 =E2=94=9C=E2=94=80KBG5AZNV256G LA / KBG5AZNT256G LA / KBG5AZNV51=
2G LA / KBG5AZNT512G LA / KBG5AZNV1T02 LA / KBG5AZNT1T02 LA SSD Update:
=E2=94=82 =E2=94=82     New version:      1109ANLA
=E2=94=82 =E2=94=82     Remote ID:        lvfs
=E2=94=82 =E2=94=82     Release ID:       75888
=E2=94=82 =E2=94=82     Summary:          KIOXIA BG5 NVMe SSD Firmwre for =
Lenovo PC
=E2=94=82 =E2=94=82     License:          Proprietary
=E2=94=82 =E2=94=82     Size:             1.3=C2=A0MB
=E2=94=82 =E2=94=82     Created:          2023-11-21 00:00:00
=E2=94=82 =E2=94=82     Urgency:          High
=E2=94=82 =E2=94=82       Tested:         2026-01-16 00:00:00
=E2=94=82 =E2=94=82       Distribution:   ubuntu 22.04
=E2=94=82 =E2=94=82       Old version:    1110ANLA
=E2=94=82 =E2=94=82       Version[fwupd]: 1.7.9
=E2=94=82 =E2=94=82     Vendor:           Lenovo
=E2=94=82 =E2=94=82     Release Flags:    =E2=80=A2 Trusted metadata
=E2=94=82 =E2=94=82                       =E2=80=A2 Is upgrade
=E2=94=82 =E2=94=82                       =E2=80=A2 Tested by trusted vend=
or
=E2=94=82 =E2=94=82     Description:     =20
=E2=94=82 =E2=94=82     [Support devices and Firmware version] KBG5AZNV256=
G 1109ANLA, KBG5AZNT256G 1109ANLA, KBG5AZNV512G 1109ANLA, KBG5AZNT512G 110=
9ANLA, KBG5AZNV1T02 1109ANLA, KBG5AZNT1T02 1109ANLA
=E2=94=82 =E2=94=82    =20
=E2=94=82 =E2=94=82     [Problem Fixes] 1.To fix firmware issue of TCG Opa=
l on reset function./2.To fix the firmware issues that SSD hang up due to =
conflict system operation with SSD.
=E2=94=82 =E2=94=82    =20
=E2=94=82 =E2=94=82     [Support Product Scope] Lenovo ThinkPad, ThinkCent=
re, ThinkStation, IdeaCentre
=E2=94=82 =E2=94=82     Checksum:         d8572b136e2dca2d6d278ec8f9ff88f0=
7d93b4e17d5dfca534c05eeb9628de62
=E2=94=82 =E2=94=82  =20
=E2=94=82 =E2=94=94=E2=94=80KBG5AZNV256G LA / KBG5AZNT256G LA / KBG5AZNV51=
2G LA / KBG5AZNT512G LA / KBG5AZNV1T02 LA / KBG5AZNT1T02 LA SSD Update:
=E2=94=82       New version:      1108ANLA
=E2=94=82       Remote ID:        lvfs
=E2=94=82       Release ID:       18995
=E2=94=82       Summary:          KIOXIA BG5 NVMe SSD Firmwre for Lenovo P=
C
=E2=94=82       License:          Proprietary
=E2=94=82       Size:             1.3=C2=A0MB
=E2=94=82       Created:          2023-02-06 00:00:00
=E2=94=82       Urgency:          High
=E2=94=82         Tested:         2024-01-24 00:00:00
=E2=94=82         Distribution:   ubuntu 22.04
=E2=94=82         Old version:    1106ANLA
=E2=94=82         Version[fwupd]: 1.7.9
=E2=94=82       Vendor:           Lenovo
=E2=94=82       Release Flags:    =E2=80=A2 Trusted metadata
=E2=94=82                         =E2=80=A2 Is upgrade
=E2=94=82                         =E2=80=A2 Tested by trusted vendor
=E2=94=82       Description:     =20
=E2=94=82       [Support devices and Firmware version] KBG5AZNV256G LA 110=
8ANLA KBG5AZNT256G LA 1108ANLA, KBG5AZNV512G LA 1108ANLA KBG5AZNT512G LA 1=
108ANLA, KBG5AZNV1T02 LA 1108ANLA KBG5AZNT1T02 LA 1108ANLA
=E2=94=82      =20
=E2=94=82       [Problem fixes]1.Task conflict issue on OS Aging test (Fix=
 BSoD issue)/2.Thermal shutdown issue on SMBus enabled system./3.Risk of S=
SD dead due to LUT overwrite./4.Change the SSD mode to Read-only when inte=
rnal LUT clash occurred /5.Drive no response issue on specific modern stan=
dby system.
=E2=94=82      =20
=E2=94=82       [Support Product Scope]Lenovo ThinkPad, ThinkCentre, Think=
Station, IdeaCentre
=E2=94=82       Checksum:         67b6b8bea784b20c76e3a54b8150d96c5b53bb74=
789ec5e107f1019eafb9d433
=E2=94=82    =20
=E2=94=9C=E2=94=80KEK CA:
=E2=94=82 =E2=94=82   Device ID:          b7a1d3d90faa1f6275d9a98da4fb3be7=
118e61c7
=E2=94=82 =E2=94=82   Current version:    2011
=E2=94=82 =E2=94=82   Vendor:             Microsoft (UEFI:Microsoft)
=E2=94=82 =E2=94=82   GUIDs:              814e950f-1449-566a-a190-42c9d3a3=
a2df =E2=86=90 UEFI\VENDOR_Microsoft&amp;NAME_Microsoft-KEK-CA
=E2=94=82 =E2=94=82                       dfa66406-6568-5bdf-bb8e-b53ddb4b=
e4cf =E2=86=90 UEFI\CRT_9F402B1CC0243CBEDC58A525789816CCCA7687A9
=E2=94=82 =E2=94=82   Device Flags:       =E2=80=A2 Internal device
=E2=94=82 =E2=94=82                       =E2=80=A2 Updatable
=E2=94=82 =E2=94=82                       =E2=80=A2 Supported on remote se=
rver
=E2=94=82 =E2=94=82                       =E2=80=A2 Needs a reboot after i=
nstallation
=E2=94=82 =E2=94=82                       =E2=80=A2 Device is usable for t=
he duration of the update
=E2=94=82 =E2=94=82                       =E2=80=A2 Signed Payload
=E2=94=82 =E2=94=82                       =E2=80=A2 Can tag for emulation
=E2=94=82 =E2=94=82=20
=E2=94=82 =E2=94=94=E2=94=80Secure Boot KEK Configuration Update:
=E2=94=82       New version:      2023
=E2=94=82       Remote ID:        lvfs
=E2=94=82       Release ID:       114062
=E2=94=82       Summary:          UEFI Secure Boot Key Exchange Key
=E2=94=82       Variant:          Lenovo
=E2=94=82       License:          Proprietary
=E2=94=82       Size:             2.9=C2=A0kB
=E2=94=82       Created:          2025-04-29 00:00:00
=E2=94=82       Urgency:          High
=E2=94=82       Vendor:           Linux Foundation
=E2=94=82       Release Flags:    =E2=80=A2 Trusted metadata
=E2=94=82                         =E2=80=A2 Is upgrade
=E2=94=82       Description:     =20
=E2=94=82       This updates the UEFI Signature Database (the "KEK") to th=
e latest release from Microsoft, signed by Lenovo Ltd.PK CA 2012.
=E2=94=82       Checksum:         168b8c108e18a0b61ff8228d56d28d4739eff055=
ef26022c64c9335e78a2dc33
=E2=94=82    =20
=E2=94=9C=E2=94=80Prometheus:
=E2=94=82 =E2=94=82   Device ID:          813b4757e78d708603a80ead0a2b6ef1=
364b7790
=E2=94=82 =E2=94=82   Summary:            Fingerprint reader
=E2=94=82 =E2=94=82   Current version:    10.01.3273255
=E2=94=82 =E2=94=82   Vendor:             Synaptics (USB:0x06CB)
=E2=94=82 =E2=94=82   Install Duration:   2 seconds
=E2=94=82 =E2=94=82   Serial Number:      21998257769597
=E2=94=82 =E2=94=82   GUID:               659f7e45-8d45-528d-b3c7-0695eed0=
55f6 =E2=86=90 USB\VID_06CB&amp;PID_00F9
=E2=94=82 =E2=94=82   Device Flags:       =E2=80=A2 Updatable
=E2=94=82 =E2=94=82                       =E2=80=A2 Supported on remote se=
rver
=E2=94=82 =E2=94=82                       =E2=80=A2 Cryptographic hash ver=
ification is available
=E2=94=82 =E2=94=82                       =E2=80=A2 Signed Payload
=E2=94=82 =E2=94=82                       =E2=80=A2 Can tag for emulation
=E2=94=82 =E2=94=82=20
=E2=94=82 =E2=94=94=E2=94=80Prometheus Fingerprint Reader Update:
=E2=94=82       New version:      10.01.3478575
=E2=94=82       Remote ID:        lvfs
=E2=94=82       Release ID:       10696
=E2=94=82       Summary:          Firmware for the Synaptics Prometheus Fi=
ngerprint Reader device
=E2=94=82       License:          Proprietary
=E2=94=82       Size:             425.5=C2=A0kB
=E2=94=82       Created:          2021-06-09 00:00:00
=E2=94=82       Urgency:          Medium
=E2=94=82         Tested:         2024-06-06 00:00:00
=E2=94=82         Distribution:   ubuntu 22.04
=E2=94=82         Old version:    10.01.3333223
=E2=94=82         Version[fwupd]: 1.9.15
=E2=94=82       Vendor:           Synaptics
=E2=94=82       Duration:         2 seconds
=E2=94=82       Release Flags:    =E2=80=A2 Trusted metadata
=E2=94=82                         =E2=80=A2 Is upgrade
=E2=94=82       Description:     =20
=E2=94=82       New features and enhancements:
=E2=94=82      =20
=E2=94=82       =E2=80=A2 Fix an authentication issue on FOP project.
=E2=94=82       Checksum:         da76c521b478c2c1c03eaf56a91e8498c4abafc0=
fa6a8d4fd4b067277219e1a4
=E2=94=82    =20
=E2=94=9C=E2=94=80System Firmware:
=E2=94=82 =E2=94=82   Device ID:          2752d7053a55ee134f0f922690cf5628=
5b0c2ed5
=E2=94=82 =E2=94=82   Summary:            UEFI System Resource Table devic=
e (updated via NVRAM)
=E2=94=82 =E2=94=82   Current version:    0.1.17
=E2=94=82 =E2=94=82   Vendor:             Lenovo (DMI:LENOVO)
=E2=94=82 =E2=94=82   Update State:       Success
=E2=94=82 =E2=94=82   GUID:               7d789c51-d050-4bda-875a-80224c0c=
b1ed
=E2=94=82 =E2=94=82   Device Flags:       =E2=80=A2 Internal device
=E2=94=82 =E2=94=82                       =E2=80=A2 Updatable
=E2=94=82 =E2=94=82                       =E2=80=A2 System requires extern=
al power source
=E2=94=82 =E2=94=82                       =E2=80=A2 Supported on remote se=
rver
=E2=94=82 =E2=94=82                       =E2=80=A2 Needs a reboot after i=
nstallation
=E2=94=82 =E2=94=82                       =E2=80=A2 Cryptographic hash ver=
ification is available
=E2=94=82 =E2=94=82                       =E2=80=A2 Device is usable for t=
he duration of the update
=E2=94=82 =E2=94=82   Device Requests:    =E2=80=A2 Message
=E2=94=82 =E2=94=82=20
=E2=94=82 =E2=94=9C=E2=94=80ThinkPad L14L15 Gen3 AMD System Update:
=E2=94=82 =E2=94=82     New version:      0.1.39
=E2=94=82 =E2=94=82     Remote ID:        lvfs
=E2=94=82 =E2=94=82     Release ID:       143406
=E2=94=82 =E2=94=82     Summary:          ThinkPad L14L15 Gen3 AMD System =
Firmware
=E2=94=82 =E2=94=82     License:          Proprietary
=E2=94=82 =E2=94=82     Size:             34.8=C2=A0MB
=E2=94=82 =E2=94=82     Created:          2026-05-27 00:00:00
=E2=94=82 =E2=94=82     Urgency:          High
=E2=94=82 =E2=94=82       Tested:         2026-06-12 00:00:00
=E2=94=82 =E2=94=82       Distribution:   ubuntu-core 24
=E2=94=82 =E2=94=82       Old version:    0.1.38
=E2=94=82 =E2=94=82       Version[fwupd]: 2.1.4
=E2=94=82 =E2=94=82     Vendor:           Lenovo
=E2=94=82 =E2=94=82     Release Flags:    =E2=80=A2 Trusted metadata
=E2=94=82 =E2=94=82                       =E2=80=A2 Is upgrade
=E2=94=82 =E2=94=82                       =E2=80=A2 Tested by trusted vend=
or
=E2=94=82 =E2=94=82     Description:     =20
=E2=94=82 =E2=94=82     ThinkPad L14L15 Gen3 AMD System Firmware
=E2=94=82 =E2=94=82    =20
=E2=94=82 =E2=94=82     =E2=80=A2 Update Flash Driver and Tool 20260327
=E2=94=82 =E2=94=82     =E2=80=A2 Fix BIOS POST will show error messag.
=E2=94=82 =E2=94=82     Checksum:         dc700e98719128813d104ce9ad4ef0ca=
f61cf434604e59898e395e8ea4def4c8
=E2=94=82 =E2=94=82  =20
=E2=94=82 =E2=94=9C=E2=94=80ThinkPad L14L15 Gen3 AMD System Update:
=E2=94=82 =E2=94=82     New version:      0.1.38
=E2=94=82 =E2=94=82     Remote ID:        lvfs
=E2=94=82 =E2=94=82     Release ID:       142240
=E2=94=82 =E2=94=82     Summary:          ThinkPad L14L15 Gen3 AMD System =
Firmware
=E2=94=82 =E2=94=82     License:          Proprietary
=E2=94=82 =E2=94=82     Size:             34.6=C2=A0MB
=E2=94=82 =E2=94=82     Created:          2026-04-27 00:00:00
=E2=94=82 =E2=94=82     Urgency:          High
=E2=94=82 =E2=94=82       Tested:         2026-06-12 00:00:00
=E2=94=82 =E2=94=82       Distribution:   ubuntu-core 24
=E2=94=82 =E2=94=82       Old version:    0.1.37
=E2=94=82 =E2=94=82       Version[fwupd]: 2.1.1
=E2=94=82 =E2=94=82     Vendor:           Lenovo
=E2=94=82 =E2=94=82     Release Flags:    =E2=80=A2 Trusted metadata
=E2=94=82 =E2=94=82                       =E2=80=A2 Is upgrade
=E2=94=82 =E2=94=82                       =E2=80=A2 Tested by trusted vend=
or
=E2=94=82 =E2=94=82     Description:     =20
=E2=94=82 =E2=94=82     ThinkPad L14L15 Gen3 AMD System Firmware Security =
patch code update. Security function improvement. Add Smm Range check Add =
SmiLinuxSettings Added SmiStorageMode.
=E2=94=82 =E2=94=82     Issue:            CVE-2025-54502
=E2=94=82 =E2=94=82     Checksum:         3cc69c2b89c448d6ad0770db82926d83=
bf9e76ea7f1512a3fb2d63da74f2b23f
=E2=94=82 =E2=94=82  =20
=E2=94=82 =E2=94=9C=E2=94=80ThinkPad L14L15 Gen3 AMD System Update:
=E2=94=82 =E2=94=82     New version:      0.1.36
=E2=94=82 =E2=94=82     Remote ID:        lvfs
=E2=94=82 =E2=94=82     Release ID:       134829
=E2=94=82 =E2=94=82     Summary:          ThinkPad L14L15 Gen3 AMD System =
Firmware
=E2=94=82 =E2=94=82     License:          Proprietary
=E2=94=82 =E2=94=82     Size:             34.6=C2=A0MB
=E2=94=82 =E2=94=82     Created:          2025-12-10 00:00:00
=E2=94=82 =E2=94=82     Urgency:          High
=E2=94=82 =E2=94=82       Tested:         2026-02-09 00:00:00
=E2=94=82 =E2=94=82       Distribution:   ubuntu-core 24
=E2=94=82 =E2=94=82       Old version:    0.1.35
=E2=94=82 =E2=94=82       Version[fwupd]: 2.0.18
=E2=94=82 =E2=94=82     Vendor:           Lenovo
=E2=94=82 =E2=94=82     Release Flags:    =E2=80=A2 Trusted metadata
=E2=94=82 =E2=94=82                       =E2=80=A2 Is upgrade
=E2=94=82 =E2=94=82                       =E2=80=A2 Tested by trusted vend=
or
=E2=94=82 =E2=94=82     Description:     =20
=E2=94=82 =E2=94=82     ThinkPad L14L15 Gen3 AMD System Firmware Security =
patch code update. Security function improvement.
=E2=94=82 =E2=94=82    =20
=E2=94=82 =E2=94=82     Add Smm Range check
=E2=94=82 =E2=94=82    =20
=E2=94=82 =E2=94=82     Add SmiLinuxSettings
=E2=94=82 =E2=94=82    =20
=E2=94=82 =E2=94=82     Added SmiStorageMode
=E2=94=82 =E2=94=82     Checksum:         2bc24148acb646c317068e49994c9e97=
ec795dfc95273a99168e3971eecb46ce
=E2=94=82 =E2=94=82  =20
=E2=94=82 =E2=94=9C=E2=94=80ThinkPad L14L15 Gen3 AMD System Update:
=E2=94=82 =E2=94=82     New version:      0.1.35
=E2=94=82 =E2=94=82     Remote ID:        lvfs
=E2=94=82 =E2=94=82     Release ID:       116601
=E2=94=82 =E2=94=82     Summary:          ThinkPad L14L15 Gen3 AMD System =
Firmware
=E2=94=82 =E2=94=82     License:          Proprietary
=E2=94=82 =E2=94=82     Size:             34.6=C2=A0MB
=E2=94=82 =E2=94=82     Created:          2025-05-27 00:00:00
=E2=94=82 =E2=94=82     Urgency:          High
=E2=94=82 =E2=94=82       Tested:         2026-01-21 00:00:00
=E2=94=82 =E2=94=82       Distribution:   ubuntu-core 24
=E2=94=82 =E2=94=82       Old version:    0.1.34
=E2=94=82 =E2=94=82       Version[fwupd]: 2.0.11
=E2=94=82 =E2=94=82     Vendor:           Lenovo
=E2=94=82 =E2=94=82     Release Flags:    =E2=80=A2 Trusted metadata
=E2=94=82 =E2=94=82                       =E2=80=A2 Is upgrade
=E2=94=82 =E2=94=82                       =E2=80=A2 Tested by trusted vend=
or
=E2=94=82 =E2=94=82     Description:     =20
=E2=94=82 =E2=94=82     ThinkPad L14L15 Gen3 AMD System Firmware
=E2=94=82 =E2=94=82    =20
=E2=94=82 =E2=94=82     Security patch code update.
=E2=94=82 =E2=94=82    =20
=E2=94=82 =E2=94=82     Security function improvement.
=E2=94=82 =E2=94=82     Checksum:         fa6b162a151c8d089484903b4223f48d=
184d269a1c79d041b22ce50e52bba4cf
=E2=94=82 =E2=94=82  =20
=E2=94=82 =E2=94=9C=E2=94=80ThinkPad L14L15 Gen3 AMD System Update:
=E2=94=82 =E2=94=82     New version:      0.1.34
=E2=94=82 =E2=94=82     Remote ID:        lvfs
=E2=94=82 =E2=94=82     Release ID:       108989
=E2=94=82 =E2=94=82     Summary:          ThinkPad L14L15 Gen3 AMD System =
Firmware
=E2=94=82 =E2=94=82     License:          Proprietary
=E2=94=82 =E2=94=82     Size:             34.6=C2=A0MB
=E2=94=82 =E2=94=82     Created:          2025-02-12 00:00:00
=E2=94=82 =E2=94=82     Urgency:          High
=E2=94=82 =E2=94=82       Tested:         2025-03-17 00:00:00
=E2=94=82 =E2=94=82       Distribution:   ubuntu-core 24
=E2=94=82 =E2=94=82       Old version:    0.1.33
=E2=94=82 =E2=94=82       Version[fwupd]: 2.0.5
=E2=94=82 =E2=94=82     Vendor:           Lenovo
=E2=94=82 =E2=94=82     Release Flags:    =E2=80=A2 Trusted metadata
=E2=94=82 =E2=94=82                       =E2=80=A2 Is upgrade
=E2=94=82 =E2=94=82                       =E2=80=A2 Tested by trusted vend=
or
=E2=94=82 =E2=94=82     Description:     =20
=E2=94=82 =E2=94=82     ThinkPad L14L15 Gen3 AMD System Firmware
=E2=94=82 =E2=94=82    =20
=E2=94=82 =E2=94=82     =E2=80=A2 Fix Keyboard backlight issue.
=E2=94=82 =E2=94=82     =E2=80=A2 Fix TouchPad and trackpoint function imp=
rovement.
=E2=94=82 =E2=94=82     =E2=80=A2 Security patch code update.
=E2=94=82 =E2=94=82     Checksum:         0ac3f890fd41a7ca5b75c83f3bf54471=
539b98543645b2280a68bcf949c106cb
=E2=94=82 =E2=94=82  =20
=E2=94=82 =E2=94=9C=E2=94=80ThinkPad L14L15 Gen3 AMD System Update:
=E2=94=82 =E2=94=82     New version:      0.1.33
=E2=94=82 =E2=94=82     Remote ID:        lvfs
=E2=94=82 =E2=94=82     Release ID:       103787
=E2=94=82 =E2=94=82     Summary:          ThinkPad L14L15 Gen3 AMD System =
Firmware
=E2=94=82 =E2=94=82     License:          Proprietary
=E2=94=82 =E2=94=82     Size:             34.6=C2=A0MB
=E2=94=82 =E2=94=82     Created:          2024-11-15 00:00:00
=E2=94=82 =E2=94=82     Urgency:          High
=E2=94=82 =E2=94=82       Tested:         2024-12-24 00:00:00
=E2=94=82 =E2=94=82       Distribution:   ubuntu-core 24
=E2=94=82 =E2=94=82       Old version:    0.1.32
=E2=94=82 =E2=94=82       Version[fwupd]: 2.0.3
=E2=94=82 =E2=94=82     Vendor:           Lenovo
=E2=94=82 =E2=94=82     Release Flags:    =E2=80=A2 Trusted metadata
=E2=94=82 =E2=94=82                       =E2=80=A2 Is upgrade
=E2=94=82 =E2=94=82                       =E2=80=A2 Tested by trusted vend=
or
=E2=94=82 =E2=94=82     Description:     =20
=E2=94=82 =E2=94=82     ThinkPad L14L15 Gen3 AMD System Firmware
=E2=94=82 =E2=94=82    =20
=E2=94=82 =E2=94=82     =E2=80=A2 Improvement RTK Lan report error issue.
=E2=94=82 =E2=94=82     =E2=80=A2 Update country code Qualcomm WLAN settin=
g.
=E2=94=82 =E2=94=82     =E2=80=A2 BIOS package add "NOTICE" to output log.
=E2=94=82 =E2=94=82     Checksum:         02656becdd9d94c11649d81431eda84b=
80c3d66c4b65b445517016a4eb146802
=E2=94=82 =E2=94=82  =20
=E2=94=82 =E2=94=9C=E2=94=80ThinkPad L14L15 Gen3 AMD System Update:
=E2=94=82 =E2=94=82     New version:      0.1.32
=E2=94=82 =E2=94=82     Remote ID:        lvfs
=E2=94=82 =E2=94=82     Release ID:       99485
=E2=94=82 =E2=94=82     Summary:          ThinkPad L14L15 Gen3 AMD System =
Firmware
=E2=94=82 =E2=94=82     License:          Proprietary
=E2=94=82 =E2=94=82     Size:             34.6=C2=A0MB
=E2=94=82 =E2=94=82     Created:          2024-09-06 00:00:00
=E2=94=82 =E2=94=82     Urgency:          High
=E2=94=82 =E2=94=82       Tested:         2024-09-26 00:00:00
=E2=94=82 =E2=94=82       Distribution:   ubuntu 22.04
=E2=94=82 =E2=94=82       Old version:    0.1.30
=E2=94=82 =E2=94=82       Version[fwupd]: 1.9.24
=E2=94=82 =E2=94=82     Vendor:           Lenovo
=E2=94=82 =E2=94=82     Release Flags:    =E2=80=A2 Trusted metadata
=E2=94=82 =E2=94=82                       =E2=80=A2 Is upgrade
=E2=94=82 =E2=94=82                       =E2=80=A2 Tested by trusted vend=
or
=E2=94=82 =E2=94=82     Description:     =20
=E2=94=82 =E2=94=82     ThinkPad L14L15 Gen3 AMD System Firmware
=E2=94=82 =E2=94=82    =20
=E2=94=82 =E2=94=82     =E2=80=A2 [SCT#4.3.1.186]Revision: 122819 [Compone=
nt Cezanne] CezannePI-FP6_1.0.1.1
=E2=94=82 =E2=94=82     =E2=80=A2 CP20240626_0008 Remove TCO Logo from BRZ=
 Local Products
=E2=94=82 =E2=94=82     =E2=80=A2 CP20240702_0010 Enable TW WIFI6E for TP =
products
=E2=94=82 =E2=94=82     =E2=80=A2 Fixed Ubuntu check_tsc_sync_source faile=
d
=E2=94=82 =E2=94=82     =E2=80=A2 Fix DFT239683 The Lenovo Copyright is in=
correct in diagnostic mode screen.
=E2=94=82 =E2=94=82     Checksum:         d049f09f829216c4df762c9dd76d4d5b=
8444f3fea80a495bafe9a34e1c4dafda
=E2=94=82 =E2=94=82  =20
=E2=94=82 =E2=94=9C=E2=94=80ThinkPad L14L15 Gen3 AMD System Update:
=E2=94=82 =E2=94=82     New version:      0.1.31
=E2=94=82 =E2=94=82     Remote ID:        lvfs
=E2=94=82 =E2=94=82     Release ID:       94842
=E2=94=82 =E2=94=82     Summary:          ThinkPad L14L15 Gen3 AMD System =
Firmware
=E2=94=82 =E2=94=82     License:          Proprietary
=E2=94=82 =E2=94=82     Size:             34.6=C2=A0MB
=E2=94=82 =E2=94=82     Created:          2024-06-07 00:00:00
=E2=94=82 =E2=94=82     Urgency:          High
=E2=94=82 =E2=94=82       Tested:         2024-07-02 00:00:00
=E2=94=82 =E2=94=82       Distribution:   ubuntu 22.04
=E2=94=82 =E2=94=82       Old version:    0.1.30
=E2=94=82 =E2=94=82       Version[fwupd]: 1.9.16
=E2=94=82 =E2=94=82     Vendor:           Lenovo
=E2=94=82 =E2=94=82     Release Flags:    =E2=80=A2 Trusted metadata
=E2=94=82 =E2=94=82                       =E2=80=A2 Is upgrade
=E2=94=82 =E2=94=82                       =E2=80=A2 Tested by trusted vend=
or
=E2=94=82 =E2=94=82     Description:     =20
=E2=94=82 =E2=94=82     ThinkPad L14L15 Gen3 AMD System Firmware
=E2=94=82 =E2=94=82    =20
=E2=94=82 =E2=94=82     =E2=80=A2 MR01221(N3AET79W) - Updated Realtek UNDI=
 driver to ver.2.043.
=E2=94=82 =E2=94=82     =E2=80=A2 MR00592(N3XET49W) - add dbx update 23/05
=E2=94=82 =E2=94=82     =E2=80=A2 MR00616(N3XET51W) - Fixed Various vulner=
abilities in NetworkPkg IP stack implementation.
=E2=94=82 =E2=94=82     =E2=80=A2 MR00621(N3XET51W) - Add MSFT 2023 kek/db
=E2=94=82 =E2=94=82    =20
=E2=94=82 =E2=94=82     5 Update Absolute module to v2.8 (154756)
=E2=94=82 =E2=94=82    =20
=E2=94=82 =E2=94=82     =E2=80=A2 Improve boot time for DASH Enable
=E2=94=82 =E2=94=82     =E2=80=A2 Correct the output values of the CU_WMI_=
script.ps1
=E2=94=82 =E2=94=82     =E2=80=A2 CP20240328_0006 CS22 Wi-Fi6E for CA
=E2=94=82 =E2=94=82     Checksum:         f3cc05c1e35cde3ebbf1cb8e8ee92f63=
19de9b8ca606319b9f5a610e17249095
=E2=94=82 =E2=94=82  =20
=E2=94=82 =E2=94=9C=E2=94=80ThinkPad L14L15 Gen3 AMD System Update:
=E2=94=82 =E2=94=82     New version:      0.1.30
=E2=94=82 =E2=94=82     Remote ID:        lvfs
=E2=94=82 =E2=94=82     Release ID:       87978
=E2=94=82 =E2=94=82     Summary:          ThinkPad L14L15 Gen3 AMD System =
Firmware
=E2=94=82 =E2=94=82     License:          Proprietary
=E2=94=82 =E2=94=82     Size:             34.6=C2=A0MB
=E2=94=82 =E2=94=82     Created:          2024-03-01 00:00:00
=E2=94=82 =E2=94=82     Urgency:          High
=E2=94=82 =E2=94=82       Tested:         2026-07-22 00:00:00
=E2=94=82 =E2=94=82       Distribution:   ubuntu 22.04
=E2=94=82 =E2=94=82       Old version:    0.1.29
=E2=94=82 =E2=94=82       Version[fwupd]: 1.9.15
=E2=94=82 =E2=94=82       Tested:         2026-07-16 00:00:00
=E2=94=82 =E2=94=82       Distribution:   ubuntu 22.04
=E2=94=82 =E2=94=82       Old version:    0.1.29
=E2=94=82 =E2=94=82       Version[fwupd]: 1.9.15
=E2=94=82 =E2=94=82       Tested:         2026-07-16 00:00:00
=E2=94=82 =E2=94=82       Distribution:   ubuntu 22.04
=E2=94=82 =E2=94=82       Old version:    0.1.29
=E2=94=82 =E2=94=82       Version[fwupd]: 1.9.15
=E2=94=82 =E2=94=82       Tested:         2024-09-26 00:00:00
=E2=94=82 =E2=94=82       Distribution:   ubuntu 22.04
=E2=94=82 =E2=94=82       Old version:    0.1.29
=E2=94=82 =E2=94=82       Version[fwupd]: 1.9.15
=E2=94=82 =E2=94=82     Vendor:           Lenovo
=E2=94=82 =E2=94=82     Release Flags:    =E2=80=A2 Trusted metadata
=E2=94=82 =E2=94=82                       =E2=80=A2 Is upgrade
=E2=94=82 =E2=94=82                       =E2=80=A2 Tested by trusted vend=
or
=E2=94=82 =E2=94=82     Description:     =20
=E2=94=82 =E2=94=82     ThinkPad L14L15 Gen3 AMD System Firmware
=E2=94=82 =E2=94=82    =20
=E2=94=82 =E2=94=82     =E2=80=A2 [SCT#4.3.1.170]Revision: 107226 [Compone=
nt Mandolin2] PicassoPI-FP5_1.0.1.0.(009-072)
=E2=94=82 =E2=94=82     =E2=80=A2 [SCT#4.3.1.173]Revision: 110567 [Compone=
nt Cezanne] CezannePI-FP6_1.0.0.Fa(009-088)
=E2=94=82 =E2=94=82     =E2=80=A2 [SCT#4.3.1.181]Revision: 116533 [Compone=
nt Cezanne] CezannePI-FP6_1.0.1.0(010-013,009-101)
=E2=94=82 =E2=94=82     Checksum:         b93549143e50199342f20e380a1a4b25=
063f5ca1ecbef3fc72f6ff8790bb7b62
=E2=94=82 =E2=94=82  =20
=E2=94=82 =E2=94=94=E2=94=80ThinkPad L14L15 Gen3 AMD System Update:
=E2=94=82       New version:      0.1.29
=E2=94=82       Remote ID:        lvfs
=E2=94=82       Release ID:       77923
=E2=94=82       Summary:          ThinkPad L14L15 Gen3 AMD System Firmware
=E2=94=82       License:          Proprietary
=E2=94=82       Size:             34.6=C2=A0MB
=E2=94=82       Created:          2023-12-08 00:00:00
=E2=94=82       Urgency:          High
=E2=94=82       Vendor:           Lenovo
=E2=94=82       Release Flags:    =E2=80=A2 Trusted metadata
=E2=94=82                         =E2=80=A2 Is upgrade
=E2=94=82       Description:     =20
=E2=94=82       ThinkPad L14L15 Gen3 AMD System Firmware
=E2=94=82      =20
=E2=94=82       =E2=80=A2 1CP20231028_0001 CS22 Synaptic FPR reader preboo=
t manager in BIOS.
=E2=94=82       =E2=80=A2 [SCT 4.3.1.159]Revision: 102112 - [ID 002-026] U=
pdate OpenSSL to 1.1.1s (115633)
=E2=94=82       =E2=80=A2 [SCT#4.3.1.170]Revision: 105195 - [ID 002-026] U=
pdate EDK2 CryptoPkg for OpenSSL 1.1.1t
=E2=94=82       =E2=80=A2 [SCT#4.3.1.170]Revision: 104714 - [ID 002-027] U=
pdate OpenSSL to 1.1.1t
=E2=94=82       =E2=80=A2 [SCT#4.3.1.170]Revision: 106452 - [ID 006-013] H=
eap buffer overflow issues in Tcg2MeasurePeImage() and Tcg2MeasureGptTable=
() (115697)
=E2=94=82       =E2=80=A2 [SCT#4.3.1.170]Revision: 106453 - [ ID 011-007] =
Integer Overflow in various edk2 CreateHob() instances (115697)
=E2=94=82       =E2=80=A2 [SCT#4.3.1.169]Revision: 107460 - [ ID 004-033] =
[EDK2] PiSmmCore: SmmEntryPoint underflow (123534)
=E2=94=82       =E2=80=A2 [SCT#4.3.1.169]Revision: 108587 - [ ID 010-012] =
[EDK2] IScsiDxe: remotely exploitable buffer overflows(123535)
=E2=94=82       =E2=80=A2 [SCT#4.3.1.170]Revision: 108064 - [ ID 006-015] =
[EDK2] PCR bank selection and HashLib capability are not synchronized (123=
536)
=E2=94=82       =E2=80=A2 [SCT#4.3.1.170]Revision: 108238 - [ ID 009-091][=
 ID 006-015][Component Cezanne] CezannePI-FP6_1.0.0.F.(123536)
=E2=94=82       Checksum:         63dcae80b25012a9d454bf02dea4e9b9244b11bb=
b9a27d6b14f23aedaac77f78
=E2=94=82    =20
=E2=94=94=E2=94=80UEFI dbx:
  =E2=94=82   Device ID:          362301da643102b9f38477387e2193e57abaa590
  =E2=94=82   Summary:            UEFI revocation database
  =E2=94=82   Current version:    20220801
  =E2=94=82   Minimum Version:    20220801
  =E2=94=82   Vendor:             Microsoft (UEFI:Microsoft)
  =E2=94=82   Install Duration:   1 second
  =E2=94=82   GUIDs:              5971a208-da00-5fce-b5f5-1234342f9cf7 =E2=
=86=90 UEFI\CRT_A9087D1044AD18F7A94916D284CBC01827CF23CD8F60B79072C9CAA1FE=
F4D649&amp;ARCH_X64
  =E2=94=82                       f8ba2887-9411-5c36-9cee-88995bb39731 =E2=
=86=90 UEFI\CRT_A1117F516A32CEFCBA3F2D1ACE10A87972FD6BBE8FE0D0B996E09E65D8=
02A503&amp;ARCH_X64
  =E2=94=82   Device Flags:       =E2=80=A2 Internal device
  =E2=94=82                       =E2=80=A2 Updatable
  =E2=94=82                       =E2=80=A2 Supported on remote server
  =E2=94=82                       =E2=80=A2 Needs a reboot after installat=
ion
  =E2=94=82                       =E2=80=A2 Device is usable for the durat=
ion of the update
  =E2=94=82                       =E2=80=A2 Only version upgrades are allo=
wed
  =E2=94=82                       =E2=80=A2 Signed Payload
  =E2=94=82                       =E2=80=A2 Can tag for emulation
  =E2=94=82=20
  =E2=94=9C=E2=94=80Secure Boot dbx Configuration Update:
  =E2=94=82     New version:      20260402
  =E2=94=82     Remote ID:        lvfs
  =E2=94=82     Release ID:       143971
  =E2=94=82     Summary:          UEFI Secure Boot Forbidden Signature Dat=
abase
  =E2=94=82     Variant:          x64
  =E2=94=82     License:          Proprietary
  =E2=94=82     Size:             24.6=C2=A0kB
  =E2=94=82     Created:          2025-09-02 00:00:00
  =E2=94=82     Urgency:          High
  =E2=94=82       Tested:         2026-07-20 00:00:00
  =E2=94=82       Distribution:   rhel 10.0
  =E2=94=82       Old version:    20160809
  =E2=94=82       Version[fwupd]: 2.0.19
  =E2=94=82     Vendor:           Linux Foundation
  =E2=94=82     Duration:         1 second
  =E2=94=82     Release Flags:    =E2=80=A2 Trusted metadata
  =E2=94=82                       =E2=80=A2 Is upgrade
  =E2=94=82     Description:     =20
  =E2=94=82     This updates the list of forbidden signatures (the "dbx") =
to the latest release from Microsoft.
  =E2=94=82    =20
  =E2=94=82     Some insecure bootloaders were added, due to security vuln=
erabilities that allowed an attacker to bypass UEFI Secure Boot. The addit=
ional entries were from:
  =E2=94=82    =20
  =E2=94=82     =E2=80=A2 Baramanudi Management Suite
  =E2=94=82     =E2=80=A2 EAZ EasyFix
  =E2=94=82     =E2=80=A2 Finland Matriculation Examination Board
  =E2=94=82     =E2=80=A2 NTC IT ROSA Linux
  =E2=94=82     =E2=80=A2 PC-Doctor
  =E2=94=82     =E2=80=A2 Spyrus WTGCreator
  =E2=94=82     =E2=80=A2 WhiteCanyon blancco
  =E2=94=82     =E2=80=A2 Some ancient shim releases for OpenSUSE, Oracle =
and Red Hat
  =E2=94=82     Issues:           616257
  =E2=94=82                       CVE-2026-8863
  =E2=94=82     Checksum:         9edea8bc287bf9bf4659856b28cf421f330eb2f6=
58c163eab0a03512a98c0e78
  =E2=94=82  =20
  =E2=94=9C=E2=94=80Secure Boot dbx Configuration Update:
  =E2=94=82     New version:      20250902
  =E2=94=82     Remote ID:        lvfs
  =E2=94=82     Release ID:       130035
  =E2=94=82     Summary:          UEFI Secure Boot Forbidden Signature Dat=
abase
  =E2=94=82     Variant:          x64
  =E2=94=82     License:          Proprietary
  =E2=94=82     Size:             24.1=C2=A0kB
  =E2=94=82     Created:          2025-09-02 00:00:00
  =E2=94=82     Urgency:          High
  =E2=94=82       Tested:         2026-06-08 00:00:00
  =E2=94=82       Distribution:   ubuntu 26.04
  =E2=94=82       Old version:    20230501
  =E2=94=82       Version[fwupd]: 2.1.1
  =E2=94=82       Tested:         2026-04-20 00:00:00
  =E2=94=82       Distribution:   ubuntu 25.10
  =E2=94=82       Old version:    20230501
  =E2=94=82       Version[fwupd]: 2.0.16
  =E2=94=82       Tested:         2026-02-25 00:00:00
  =E2=94=82       Distribution:   ubuntu 25.10
  =E2=94=82       Old version:    20230501
  =E2=94=82       Version[fwupd]: 2.0.18
  =E2=94=82       Tested:         2026-02-13 00:00:00
  =E2=94=82       Distribution:   ubuntu 25.10
  =E2=94=82       Old version:    20230501
  =E2=94=82       Version[fwupd]: 2.0.17
  =E2=94=82       Tested:         2025-12-05 00:00:00
  =E2=94=82       Distribution:   fedora 42 (workstation)
  =E2=94=82       Old version:    20250507
  =E2=94=82       Version[fwupd]: 2.0.17
  =E2=94=82       Tested:         2025-11-10 00:00:00
  =E2=94=82       Distribution:   fedora 43 (kde)
  =E2=94=82       Old version:    20230501
  =E2=94=82       Version[fwupd]: 2.0.16
  =E2=94=82     Vendor:           Linux Foundation
  =E2=94=82     Duration:         1 second
  =E2=94=82     Release Flags:    =E2=80=A2 Trusted metadata
  =E2=94=82                       =E2=80=A2 Is upgrade
  =E2=94=82                       =E2=80=A2 Tested by trusted vendor
  =E2=94=82     Description:     =20
  =E2=94=82     This updates the list of forbidden signatures (the "dbx") =
to the latest release from Microsoft.
  =E2=94=82    =20
  =E2=94=82     Some insecure versions of the IGEL bootloader were added, =
due to a security vulnerability that allowed an attacker to bypass UEFI Se=
cure Boot.
  =E2=94=82     Issue:            CVE-2025-47827
  =E2=94=82     Checksum:         7178302fa23fcb875e7540900e299fb30a767586=
63efb7e1c56edc25cd3f316a
  =E2=94=82  =20
  =E2=94=9C=E2=94=80Secure Boot dbx Configuration Update:
  =E2=94=82     New version:      20250507
  =E2=94=82     Remote ID:        lvfs
  =E2=94=82     Release ID:       115586
  =E2=94=82     Summary:          UEFI Secure Boot Forbidden Signature Dat=
abase
  =E2=94=82     Variant:          x64
  =E2=94=82     License:          Proprietary
  =E2=94=82     Size:             24.0=C2=A0kB
  =E2=94=82     Created:          2025-01-17 00:00:00
  =E2=94=82     Urgency:          High
  =E2=94=82       Tested:         2025-10-17 00:00:00
  =E2=94=82       Distribution:   fedora 42 (workstation)
  =E2=94=82       Old version:    20230501
  =E2=94=82       Version[fwupd]: 2.0.16
  =E2=94=82       Tested:         2025-06-11 00:00:00
  =E2=94=82       Distribution:   fedora 42 (workstation)
  =E2=94=82       Old version:    20241101
  =E2=94=82       Version[fwupd]: 2.0.11
  =E2=94=82     Vendor:           Linux Foundation
  =E2=94=82     Duration:         1 second
  =E2=94=82     Release Flags:    =E2=80=A2 Trusted metadata
  =E2=94=82                       =E2=80=A2 Is upgrade
  =E2=94=82                       =E2=80=A2 Tested by trusted vendor
  =E2=94=82     Description:     =20
  =E2=94=82     This updates the list of forbidden signatures (the "dbx") =
to the latest release from Microsoft.
  =E2=94=82    =20
  =E2=94=82     Some insecure versions of BiosFlashShell and Dtbios by DT =
Research Inc were added, due to a security vulnerability that allowed an a=
ttacker to bypass UEFI Secure Boot.
  =E2=94=82     Issues:           806555
  =E2=94=82                       CVE-2025-3052
  =E2=94=82     Checksum:         40d3a4630619b83026f66bc64d97a582bbd9223a=
d53aa3f519ff5e2121d11ca6
  =E2=94=82  =20
  =E2=94=94=E2=94=80Secure Boot dbx Configuration Update:
        New version:      20241101
        Remote ID:        lvfs
        Release ID:       105821
        Summary:          UEFI Secure Boot Forbidden Signature Database
        Variant:          x64
        License:          Proprietary
        Size:             15.1=C2=A0kB
        Created:          2025-01-17 00:00:00
        Urgency:          High
          Tested:         2026-02-25 00:00:00
          Distribution:   ubuntu 24.04
          Old version:    20230501
          Version[fwupd]: 1.9.28
        Vendor:           Linux Foundation
        Duration:         1 second
        Release Flags:    =E2=80=A2 Trusted metadata
                          =E2=80=A2 Is upgrade
        Description:     =20
        This updates the list of forbidden signatures (the "dbx") to the l=
atest release from Microsoft.
       =20
        An insecure version of Howyar's SysReturn software was added, due =
to a security vulnerability that allowed an attacker to bypass UEFI Secure=
 Boot.
        Issues:           529659
                          CVE-2024-7344
        Checksum:         093e6913dfecefbdaa9374a2e1caee7bf7e74c7eda847624=
e456e344884ba5f6
     =20
<font color=3D"#FF5555"><b>Laicolasse:~ #</b></font>=20
</pre>
    </blockquote>
    <p><br>
    </p>
    <p>What next?=C2=A0 Is the UEFI ESP Partition a problem?</p>
    <pre><font color=3D"#FF5555"><b>Laicolasse:~ #</b></font> lsblk --outp=
ut NAME,KNAME,RA,RM,RO,PARTFLAGS,SIZE,TYPE,FSTYPE,LABEL,PARTLABEL,PTTYPE,M=
OUNTPOINT,UUID,PARTUUID,WWN,MODEL,SERIAL,ALIGNMENT=20
NAME KNAME       RA RM RO PARTFLAGS   SIZE TYPE  FSTYPE LABEL     PARTLABE=
L PTTYPE MOUNTPOINT UUID                                 PARTUUID         =
                    WWN                  MODEL SERIAL ALIGNMENT
nvme0n1
=E2=94=82    nvme0n1   1024  0  0           953.9G disk                   =
          gpt                                                             =
                            eui.8ce38e1000956753 KBG5A 52QC72         0
=E2=94=9C=E2=94=80nvme0n1p1
=E2=94=82    nvme0n1p1 1024  0  0             512M part  vfat   ESP       =
ESP       gpt    /boot/efi  3EBE-58A3                            5a916363-=
34cb-4729-b825-8be7a4da7527 eui.8ce38e1000956753                      0
=E2=94=9C=E2=94=80nvme0n1p2
</pre>
    <p><br>
    </p>
    <p><br>
    </p>
    <pre class=3D"moz-signature" cols=3D"72">--=20
Cheers / Saludos,
              =20
		Carlos E. R.

  (from openSUSE 16.0 (Laicolasse))
</pre>
  </body>
</html>

--------------rn3AhtM06jnoyf1FG1ZJYJOX--