I am on a dual boot Debian 12 / Win11 and I get a firmware upgrade in debian with this text:
_Some of the platform secrets may be invalidated when updating this firmware. Please ensure you have the volume recovery key before continuing.
This updates the list of forbidden signatures (the “dbx”) to the latest release from Microsoft.
Some insecure bootloaders were added, due to security vulnerabilities that allowed an attacker to bypass UEFI Secure Boot. The additional entries were from: • Baramanudi Management Suite • EAZ EasyFix • Finland Matriculation Examination Board • NTC IT ROSA Linux • PC-Doctor • Spyrus WTGCreator • WhiteCanyon blancco • Some ancient shim releases for OpenSUSE, Oracle and Red Hat_
My questions are:
- Does dual boot have extra riscs?
- The volume recovery key: is that the luks encryption key?
- Any tips how to get it?
Any help much appreciated.
It should be fine, as long as you’re not using one of these ancient bootloaders.
Ah ok, GRUB shipped with Debian 12 means low risc then …