Windows 10: Windows Boothole vulnerability - how to verify if it is fixed

Discus and support Windows Boothole vulnerability - how to verify if it is fixed in Windows 10 Support to solve the problem; Boothole vulnerability BootHole vulnerability in Secure Boot affecting Linux and Windows Windows has recently released a patch for the boothole... Discussion in 'Windows 10 Support' started by z080236, Feb 19, 2021.

  1. z080236 Win User

    Windows Boothole vulnerability - how to verify if it is fixed


    Boothole vulnerability

    BootHole vulnerability in Secure Boot affecting Linux and Windows


    Windows has recently released a patch for the boothole vulnerability

    https://support.microsoft.com/en-us/...7-d0c32ead81e2


    Based on the https://msrc.microsoft.com/update-gu.../CVE-2020-0689

    For Windows server 2016
    I installed the update based on this:
    1. Servicing Stack Update KB4576750
    2. Standalone Secure Boot Update Listed in this CVE KB4535680
    3. Jan 2021 Security Update KB4598243


    Based on https://msrc.microsoft.com/update-gu...lity/ADV200011
    I just run this command to verify?

    [System.Text.Encoding]::ASCII.GetString((Get-SecureBootUEFI db).bytes) -match 'Microsoft Corporation UEFI CA 2011'

    :)
     
    z080236, Feb 19, 2021
    #1
  2. Brink Win User

    BootHole vulnerability in Secure Boot affecting Linux and Windows

    Read more: https://eclypsium.com/2020/07/29/the...e-in-the-boot/
     
    Brink, Feb 19, 2021
    #2
  3. Yukikaze Win User
    WPA2 Vulnerability Found

    A small update with regards to the Microsoft fix. The fix itself is sufficient to solve the issue on Windows, even if your WiFi device has no driver update, with one caveat:

    Does this security update fully address these vulnerabilities on Microsoft Platforms, or do I need to perform any additional steps to be fully protected?
    The provided security updates address the reported vulnerabilities; however, when affected Windows based systems enter a connected standby mode in low power situations, the vulnerable functionality may be offloaded to installed Wi-Fi hardware. To fully address potential vulnerabilities, you are also encouraged to contact your Wi-Fi hardware vendor to obtain updated device drivers. For a listing of affected vendors with links to their documentation, review the ICASI Multi-Vendor Vulnerability Disclosure statement here: http://www.icasi.org/wi-fi-protected-access-wpa-vulnerabilities

    Source: Security Update Guide - Microsoft Security Response Center
     
    Yukikaze, Feb 19, 2021
    #3
  4. Windows Boothole vulnerability - how to verify if it is fixed

    vulnerability fix

    What "below vulnerability" would that be?

    Hint: review your posting after being submitted to verify that all of the information that you wish to relate when asking a question is present and relevant to your query at hand.

    We'll be waiting for your next reply.

    -Richard
     
    RichardEiler, Feb 19, 2021
    #4
Thema:

Windows Boothole vulnerability - how to verify if it is fixed

Loading...
  1. Windows Boothole vulnerability - how to verify if it is fixed - Similar Threads - Boothole vulnerability verify

  2. WinVerifyTrust vulnerability fix

    in Windows 10 Gaming
    WinVerifyTrust vulnerability fix: As per the solution, we have updated "EnableCertPaddingCheck" registry data value as 1 with Data type as "string" but system is reverting it back to "DWORD".Machines those have already configured with data type as string are not showing this WinVerifyTrust vulnerability.How...
  3. WinVerifyTrust vulnerability fix

    in Windows 10 Software and Apps
    WinVerifyTrust vulnerability fix: As per the solution, we have updated "EnableCertPaddingCheck" registry data value as 1 with Data type as "string" but system is reverting it back to "DWORD".Machines those have already configured with data type as string are not showing this WinVerifyTrust vulnerability.How...
  4. How to fix driver verifier dma volation

    in Windows 10 Gaming
    How to fix driver verifier dma volation: The laptop with this error is a MECER. When I turn on the laptop it says preparing automatic repair, then says could not repair and says the above-mentioned error. Then goes into Aptios Setup Utility. I can't boot into Windows it just does the same process, over and over...
  5. How to fix driver verifier dma volation

    in Windows 10 Software and Apps
    How to fix driver verifier dma volation: The laptop with this error is a MECER. When I turn on the laptop it says preparing automatic repair, then says could not repair and says the above-mentioned error. Then goes into Aptios Setup Utility. I can't boot into Windows it just does the same process, over and over...
  6. How to fix Driver Verifier DMA Violation?

    in Windows 10 Software and Apps
    How to fix Driver Verifier DMA Violation?: I have an Alienware X15 R1 that I recently bought used. The guy I bought it from claimed that the keyboard stopped working some months after he purchased it. I brought it into a shop to get fixed -- UBreakIFix by Asurion. I had tried everything on my part to fix it my self...
  7. Failed to register and start service for the vulnerable driver - How to fix?

    in Windows 10 Software and Apps
    Failed to register and start service for the vulnerable driver - How to fix?: I'm getting an error in a pkg I'm trying to run that is coming up with:[-] Failed to register and start service for the vulnerable driver [-] Driver Unload Failed!!Any idea why this would happen?...
  8. KB5012170 Secure Boothole is already installed.

    in Windows 10 Installation and Upgrade
    KB5012170 Secure Boothole is already installed.: A few months back, KB5012170 was released to fix a vulnerability in Windows Security Feature Bypass in Secure Boot BootHole. We've installed this fix KB via SCCM and Powershell and confirmed that it is actually installed. However, Tenable is still detecting that the device is...
  9. KB5012170 Secure Boothole is already installed.

    in Windows 10 Software and Apps
    KB5012170 Secure Boothole is already installed.: A few months back, KB5012170 was released to fix a vulnerability in Windows Security Feature Bypass in Secure Boot BootHole. We've installed this fix KB via SCCM and Powershell and confirmed that it is actually installed. However, Tenable is still detecting that the device is...
  10. BootHole vulnerability in Secure Boot affecting Linux and Windows

    in Windows 10 News
    BootHole vulnerability in Secure Boot affecting Linux and Windows: [ATTACH] “BootHole” vulnerability in the GRUB2 bootloader opens up Windows and Linux devices using Secure Boot to attack. All operating systems using GRUB2 with Secure Boot must release new installers and bootloaders. Join Eclypsium for a webinar...