August Windows security update breaks dual boot on Linux systems

Share:

According to user reports following this month’s Patch Tuesday, the August 2024 Windows security updates are breaking dual boot on some Linux systems with Secure Boot enabled.

This issue is caused by Microsoft’s decision to apply a Secure Boot Advanced Targeting (SBAT) update to block Linux boot loaders unpatched against the CVE-2022-2601 GRUB2 Secure Boot bypass vulnerability, which could “have an impact on Windows security.”

“The vulnerability assigned to this CVE is in the Linux GRUB2 boot loader, a boot loader designed to support Secure Boot on systems that are running Linux,” Microsoft says in an advisory published last week to address this issue.

“It is being documented in the Security Update Guide to announce that the latest builds of Windows are no longer vulnerable to this security feature bypass using the Linux GRUB2 boot loader.

“The SBAT value is not applied to dual-boot systems that boot both Windows and Linux and should not affect these systems. You might find that older Linux distribution ISOs will not boot. If this occurs, work with your Linux vendor to get an update.”

However, while Redmond says that the SBAT update that blocks vulnerable UEFI shim bootloaders should not impact dual-boot systems in any way, many Linux users say that their systems (running Ubuntu, Linux Mint, Zorin OS, Puppy Linux, and other distros) no longer boot after installing the August 2024 Windows updates on the Windows OS.

Those affected see “Verifying shim SBAT data failed: Security Policy Violation. Something has gone seriously wrong: SBAT self-check failed: Security Policy Violation” errors, and, for some, the devices will also immediately shut down.

Currently, there is no definitive list of Linux distributions and versions affected by this known issue and Linux users who tried working around the issue say that deleting the SBAT policy or wiping the Windows installation and restoring Secure Boot to factory settings will not work.

The only apparent way to revive the device is to disable Secure Boot, install the latest version of their favorite Linux distro, and re-enable Secure Boot.

Microsoft has yet to acknowledge that installing this month’s Patch Tuesday update may render dual-boot systems unable to boot.

Leave a Comment

Your email address will not be published. Required fields are marked *

loader-image
London, GB
3:54 am, Jan 23, 2025
weather icon 3°C
L: 2° | H: 3°
overcast clouds
Humidity: 91 %
Pressure: 1005 mb
Wind: 9 mph SW
Wind Gust: 0 mph
UV Index: 0
Precipitation: 0 mm
Clouds: 100%
Rain Chance: 0%
Visibility: 8 km
Sunrise: 7:51 am
Sunset: 4:33 pm
DailyHourly
Daily ForecastHourly Forecast
Today 9:00 pm
weather icon
2° | 3°°C 1 mm 100% 19 mph 89 % 1005 mb 0 mm/h
Tomorrow 9:00 pm
weather icon
5° | 11°°C 1 mm 100% 24 mph 91 % 1003 mb 0 mm/h
Sat Jan 25 9:00 pm
weather icon
2° | 5°°C 0.25 mm 25% 6 mph 93 % 1011 mb 0.26 mm/h
Sun Jan 26 9:00 pm
weather icon
1° | 7°°C 1 mm 100% 15 mph 95 % 1010 mb 0 mm/h
Mon Jan 27 9:00 pm
weather icon
6° | 9°°C 1 mm 100% 27 mph 89 % 993 mb 0 mm/h
Today 6:00 am
weather icon
3° | 3°°C 0 mm 0% 7 mph 89 % 1005 mb 0 mm/h
Today 9:00 am
weather icon
4° | 4°°C 0 mm 0% 8 mph 87 % 1004 mb 0 mm/h
Today 12:00 pm
weather icon
8° | 8°°C 1 mm 100% 18 mph 83 % 1000 mb 0 mm/h
Today 3:00 pm
weather icon
7° | 7°°C 1 mm 100% 19 mph 71 % 999 mb 0 mm/h
Today 6:00 pm
weather icon
6° | 6°°C 0.8 mm 80% 15 mph 72 % 1003 mb 0 mm/h
Today 9:00 pm
weather icon
5° | 5°°C 0 mm 0% 10 mph 77 % 1004 mb 0 mm/h
Tomorrow 12:00 am
weather icon
6° | 6°°C 0 mm 0% 12 mph 79 % 1002 mb 0 mm/h
Tomorrow 3:00 am
weather icon
9° | 9°°C 1 mm 100% 22 mph 89 % 996 mb 0 mm/h
Name Price24H (%)
Bitcoin(BTC)
€98,635.67
-2.84%
Ethereum(ETH)
€3,101.49
-3.21%
XRP(XRP)
€3.03
-0.60%
Tether(USDT)
€0.96
-0.07%
Solana(SOL)
€240.04
-1.96%
Dogecoin(DOGE)
€0.340157
-4.67%
USDC(USDC)
€0.96
-0.01%
Shiba Inu(SHIB)
€0.000019
-3.27%
Pepe(PEPE)
€0.000014
-6.95%
Peanut the Squirrel(PNUT)
€0.341407
-5.52%
Scroll to Top