Article 56CXC Red Hat and CentOS systems aren’t booting due to BootHole patches

Red Hat and CentOS systems aren’t booting due to BootHole patches

by
Jim Salter
from Ars Technica - All content on (#56CXC)
grub2-boot-worm-update-800x450.jpg

Enlarge / Security updates intended to patch the BootHole UEFI vulnerability are rendering some Linux systems unable to boot at all. (credit: Aurich Lawson)

Early this morning, an urgent bug showed up at Red Hat's bugzilla bug tracker-a user discovered that the RHSA_2020:3216 grub2 security update and RHSA-2020:3218 kernel security update rendered an RHEL 8.2 system unbootable. The bug was reported as reproducible on any clean minimal install of Red Hat Enterprise Linux 8.2.

The patches were intended to close a newly discovered vulnerability in the GRUB2 boot manager called BootHole. The vulnerability itself left a method for system attackers to potentially install "bootkit" malware on a Linux system despite that system being protected with UEFI Secure Boot.

RHEL and CentOS

Unfortunately, Red Hat's patch to GRUB2 and the kernel, once applied, are leaving patched systems unbootable. The issue is confirmed to affect RHEL 7.8 and RHEL 8.2, and it may affect RHEL 8.1 and 7.9 as well. RHEL-derivative distribution CentOS is also affected.

Read 6 remaining paragraphs | Comments

index?i=VWbseNuXvBM:-MMOtUIi1zs:V_sGLiPB index?i=VWbseNuXvBM:-MMOtUIi1zs:F7zBnMyn index?d=qj6IDK7rITs index?d=yIl2AUoC8zA
External Content
Source RSS or Atom Feed
Feed Location http://feeds.arstechnica.com/arstechnica/index
Feed Title Ars Technica - All content
Feed Link https://arstechnica.com/
Reply 0 comments