Take a look at our
ThinkPads.com HOME PAGE
For those who might want to contribute to the blog, start here: Editors Alley Topic
Then contact Bill with a Private Message

T480 - Blocked executable in the ESP - bootx64.efi outdated ?

T430-T490, T530-T590 Series
Post Reply
Message
Author
georgefromb
Posts: 1
Joined: Sat Nov 26, 2022 9:11 pm
Location: Ghent, Bellgium

T480 - Blocked executable in the ESP - bootx64.efi outdated ?

#1 Post by georgefromb » Sat Nov 26, 2022 9:18 pm

Hello,

Fwupdmgr update reports the following error. Apparently, this error is caused by an outdated bootx64.efi file on the rescue partition of my T480.
Does anyone know how I can update the rescue partition please or how I can force the update to complete success.

Thanks.


Devices with no available firmware updates:
• TS512GMTE452T
• Thunderbolt host controller
• UEFI Device Firmware
• UEFI Device Firmware
• UEFI Device Firmware
Devices with the latest available firmware version:
• Embedded Controller
• Intel Management Engine
• MZVLB512HAJQ-000L7
• System Firmware
╔══════════════════════════════════════════════════════════════════════════════╗
║ Upgrade UEFI dbx from 83 to 217? ║
╠══════════════════════════════════════════════════════════════════════════════╣
║ This updates the dbx to the latest release from Microsoft which adds ║
║ insecure versions of grub and shim to the list of forbidden signatures due ║
║ to multiple discovered security updates. ║
║ ║
║ Before installing the update, fwupd will check for any affected executables ║
║ in the ESP and will refuse to update if it finds any boot binaries signed ║
║ with any of the forbidden signatures. If the installation fails, you will ║
║ need to update shim and grub packages before the update can be deployed. ║
║ ║
║ Once you have installed this dbx update, any DVD or USB installer images ║
║ signed with the old signatures may not work correctly. You may have to ║
║ temporarily turn off secure boot when using recovery or installation media, ║
║ if new images have not been made available by your distribution. ║
║ ║
╚══════════════════════════════════════════════════════════════════════════════╝

Perform operation? [Y|n]: y
Downloading… [***************************************]
Decompressing… [***************************************]
Authenticating… [***************************************]
Decompressing… [ ]Blocked executable in the ESP, ensure grub and shim are up to date: /run/media/root/SYSTEM/EFI/Boot/bootx64.efi Authenticode checksum [5b89f1aa2435a03d18d9b203d17fb4fba4f8f5076cf1f9b8d6d9b826222235c1] is present in dbx

ThinkUnplugged
Posts: 2
Joined: Sat Apr 15, 2023 5:44 am

Re: T480 - Blocked executable in the ESP - bootx64.efi outdated ?

#2 Post by ThinkUnplugged » Sat Apr 15, 2023 6:35 am

Update your system first and update-grub?

Post Reply
  • Similar Topics
    Replies
    Views
    Last post

Return to “ThinkPad T430-T490 / T530-T590 Series”

Who is online

Users browsing this forum: No registered users and 46 guests