oss-sec mailing list archives

Re: Xen Security Notice 2 (CVE-2024-35347) AMD CPU Microcode Signature Verification Vulnerability


From: nightmare.yeah27 () aceecat org
Date: Fri, 31 Oct 2025 10:20:45 -0700

On Thu, Oct 30, 2025 at 04:25:29PM +0000, Eddie Chapman wrote:

Even just for 1 AMD machine, a BIOS updates is harder than it should
be, since almost none of the major motherboard manufacturers have
managed to implement the ability to somehow save a set of BIOS
settings that can then be reloaded after updating (or at least one
that works reliably). Meaning each machine's BIOS needs to be
completely reconfigured each time, very time consuming and
problematic for some deployments.

This is ancient, pre EFI and etc etc ... but it may be a start for someone.

https://savannah.nongnu.org/projects/biosconfig/

-- 
Ian


Current thread: