this post was submitted on 21 Aug 2024
641 points (99.4% liked)

Linux

53385 readers
608 users here now

From Wikipedia, the free encyclopedia

Linux is a family of open source Unix-like operating systems based on the Linux kernel, an operating system kernel first released on September 17, 1991 by Linus Torvalds. Linux is typically packaged in a Linux distribution (or distro for short).

Distributions include the Linux kernel and supporting system software and libraries, many of which are provided by the GNU Project. Many Linux distributions use the word "Linux" in their name, but the Free Software Foundation uses the name GNU/Linux to emphasize the importance of GNU software, causing some controversy.

Rules

Related Communities

Community icon by Alpár-Etele Méder, licensed under CC BY 3.0

founded 5 years ago
MODERATORS
 

Last Tuesday, loads of Linux users—many running packages released as early as this year—started reporting their devices were failing to boot. Instead, they received a cryptic error message that included the phrase: “Something has gone seriously wrong.”

The cause: an update Microsoft issued as part of its monthly patch release. It was intended to close a 2-year-old vulnerability in GRUB, an open source boot loader used to start up many Linux devices. The vulnerability, with a severity rating of 8.6 out of 10, made it possible for hackers to bypass secure boot, the industry standard for ensuring that devices running Windows or other operating systems don’t load malicious firmware or software during the bootup process. CVE-2022-2601 was discovered in 2022, but for unclear reasons, Microsoft patched it only last Tuesday.

...

The reports indicate that multiple distributions, including Debian, Ubuntu, Linux Mint, Zorin OS, Puppy Linux, are all affected. Microsoft has yet to acknowledge the error publicly, explain how it wasn’t detected during testing, or provide technical guidance to those affected. Company representatives didn’t respond to an email seeking answers.

(page 2) 50 comments
sorted by: hot top controversial new old
[–] [email protected] 14 points 8 months ago

It ain't done til GRUB don't run?

[–] [email protected] 54 points 8 months ago (1 children)

This sort of ridiculousness is why I got two seperate drives (needed the extra space anyways) and choose which one to boot from the mobo EFI menu.

load more comments (1 replies)
[–] [email protected] 44 points 8 months ago (3 children)

windows update can and will always find your dual boot eventually and break it

load more comments (3 replies)
[–] [email protected] 118 points 8 months ago (1 children)

"secure" boot, the industry standard for ensuring that devices don't run software other than Windows during the bootup process

FTFY

load more comments (1 replies)
[–] [email protected] 12 points 8 months ago

I'm sure it was a terrible misunderstanding.

Anyway they are only hurting themselves.

[–] [email protected] 11 points 8 months ago

Jokes on Microsoft. I downgraded to Windows 10 and disabled secure boot for my dual boot so I could be one step closer to being done with them completely.

[–] [email protected] 83 points 8 months ago (1 children)

Secure Boot is bullshit anyway

[–] [email protected] 30 points 8 months ago (2 children)

It is fine if you only accept signatures from yourself. However, that's a lot of work as you need to sign everything.

[–] [email protected] 4 points 8 months ago (1 children)

How is it a lot of work? There's generally one sig you have to add on installing a new OS. Sometimes, rarely, one for a new kernel module. It's not like you sign every single package you boot.

[–] [email protected] 2 points 8 months ago (3 children)

Still takes work. You also need to disable all other keys if you want it to matter in terms of security.

load more comments (3 replies)
[–] [email protected] 17 points 8 months ago

Good luck replacing the PKI on your system's Secure Boot firmware. Most platforms probably don't support it and have no documentation

[–] [email protected] 13 points 8 months ago (1 children)

😈😈 Finally an advantage to using rEFInd 😈😈

[–] [email protected] 4 points 8 months ago (1 children)

I was gonna say, I don’t like to victim blame but why would people be grubbing around these days to begin with?

load more comments (1 replies)
[–] [email protected] 17 points 8 months ago (1 children)

I use Debian and I also was affected by this Windows update. I was able to boot by disabling secure boot. I also found this option that apparently fixes the problem by changing the sbat policy using mokutil. But I haven't tried it out yet. Has anyone got any luck with something else besides disabling secure boot?

[–] [email protected] 9 points 8 months ago (1 children)
load more comments (1 replies)
load more comments
view more: ‹ prev next ›