fwupd / firmware-dell

Missing firmware for Dell hardware
27 stars 4 forks source link

Dell XPS 15 7590, System Firmware "TPM PCR0 differs from reconstruction" #24

Closed tyilo closed 3 years ago

tyilo commented 4 years ago

Describe the bug I recently updated the system firmware from 1.6.0 to 1.7.0 on my Dell XPS 15 7590 running Arch Linux. I'm not sure if this error was shown before upgrading to 1.7.0.

fwupd version information Please provide the version of the daemon and client.

$ fwupdmgr --version
client version: 1.4.2
compile-time dependency versions
    gusb:   0.3.4
    efivar: 37
daemon version: 1.4.2

Please note how you installed it (apt, dnf, pacman, source, etc): I installed it using pacman -Syu fwupd.

fwupd device information Please provide the output of the fwupd devices recognized in your system.

$ fwupdmgr get-devices --show-all-devices
XPS 15 7590
│
├─Thunderbolt Controller:
│     Device ID:           d6311a736bc791be78bf4efb8c57d07c2e786a58
│     Summary:             Unmatched performance for high-speed I/O
│     Current version:     44.00
│     Vendor:              Dell (TBT:0x00D4)
│     GUIDs:               dc6ebd31-1fe5-5230-8090-dd0b06da4f87
│                          dd244205-fa73-594e-b5ce-3aab372825e0
│     Device Flags:        • Internal device
│                          • Updatable
│                          • Requires AC power
│                          • Device stages updates
│   
├─Dell WD15:
│ │   Device ID:           ed9027c86c336ba5d3312f83c06f78b2ea6ef915
│ │   Summary:             A USB type-C docking station
│ │   Current version:     0.0.0
│ │   Vendor:              Dell Inc. (PCI:0x1028)
│ │   GUID:                e7ca1f36-bf73-4574-afe6-a4ccacabf479
│ │   Device Flags:        • Updatable
│ │                        • Requires AC power
│ │                        • Needs a reboot after installation
│ │ 
│ ├─Dell WD15 Passive Cable:
│ │     Device ID:         29bca9f02e33e23330ae801ae7d6c22eb2b758e0
│ │     Summary:           A USB type-C docking station
│ │     Current version:   0.3.18
│ │     Vendor:            Dell Inc. (PCI:0x1028)
│ │     GUID:              fece1537-d683-4ea8-b968-154530bb6f73
│ │     Device Flags:      • Updatable
│ │                        • Requires AC power
│ │                        • Needs a reboot after installation
│ │   
│ └─Dell WD15 Port Controller 1:
│       Device ID:         27c32815e5fed8f507c0210195bca394b635780f
│       Summary:           A USB type-C docking station
│       Current version:   1.1.8
│       Vendor:            Dell Inc. (PCI:0x1028)
│       GUID:              8ba2b709-6f97-47fc-b7e7-6a87b578fe25
│       Device Flags:      • Updatable
│                          • Requires AC power
│                          • Needs a reboot after installation
│     
├─Intel AMT [unprovisioned]:
│     Device ID:           e2623122c99d58220498aacbfcfdb1baebbae3c5
│     Summary:             Hardware and firmware technology for remote out-of-band management
│     Current version:     12.0.49.1556
│     Bootloader Version:  12.0.49.1556
│     Vendor:              Intel Corporation
│     GUID:                2800f812-b7b4-2d4b-aca8-46e0ff65814c
│     Device Flags:        • Internal device
│   
├─Intel(R) Core™ i7-9750H CPU @ 2.60GHz:
│     Device ID:           4bde70ba4e39b28f9eab1628f9dd6e6244c03027
│     Current version:     0xca
│     Vendor:              GenuineIntel
│     GUID:                b9a2dd81-159e-5537-a7db-e7101d164d3f
│     Device Flags:        • Internal device
│   
├─KXG60ZNV512G NVMe KIOXIA 512GB:
│     Device ID:           f2759da7fe8e0388c5f3601cb072f837b1070b03
│     Summary:             NVM Express Solid State Drive
│     Current version:     10604106
│     Vendor:              Toshiba Corporation (NVME:0x1179)
│     GUIDs:               8a412b95-5c07-5ce4-b63a-f9cbf254dd5d
│                          344c2804-4948-e811-842f-0ed5f89f718b
│     Device Flags:        • Internal device
│                          • Updatable
│                          • Requires AC power
│                          • Supported on remote server
│                          • Needs a reboot after installation
│                          • Device is usable for the duration of the update
│   
├─System Firmware:
│     Device ID:           90dce4a3c3eb770c96eaa7fa7f45e984fc66206d
│     Current version:     1.7.0
│     Minimum Version:     1.7.0
│     Vendor:              Dell Inc. (DMI:Dell Inc.)
│     Update Message:      TPM PCR0 differs from reconstruction, please see https://github.com/fwupd/fwupd/wiki/TPM-PCR0-differs-from-reconstruction
│     GUID:                417d4c2a-87d1-4d7c-bcea-322041f2d5a3
│     Device Flags:        • Internal device
│                          • Updatable
│                          • Requires AC power
│                          • Supported on remote server
│                          • Needs a reboot after installation
│                          • Cryptographic hash verification is available
│                          • Device is usable for the duration of the update
│   
├─TPM 2.0:
│ │   Device ID:           c6a80ac3a22083423992a3cb15018989f37834d6
│ │   Summary:             Platform TPM device
│ │   Current version:     7.2.0.2
│ │   Vendor:              Dell Inc. (PCI:0x1028)
│ │   GUIDs:               937e8ece-6ff1-56eb-83c3-7f8711cad63f
│ │                        ff71992e-52f7-5eea-94ef-883e56e034c6
│ │                        7d65b10b-bb24-552d-ade5-590b3b278188
│ │                        6f5ddd3a-8339-5b2a-b9a6-cf3b92f6c86d
│ │                        fe462d4a-e48f-5069-9172-47330fc5e838
│ │   Device Flags:        • Internal device
│ │                        • Updatable
│ │                        • Requires AC power
│ │                        • Needs a reboot after installation
│ │ 
│ └─Event Log:
│       Device ID:         58bd405f31c48e6eca290b425f530a94c91e955c
│       GUID:              a25657fe-b5dc-5be0-8b78-8b9dfec678ff
│       Device Flags:      • Internal device
│     
├─TU117M [GeForce GTX 1650 Mobile / Max-Q]:
│     Device ID:           71b677ca0f1bc2c5b804fa1d59e52064ce589293
│     Current version:     a1
│     Vendor:              NVIDIA Corporation (PCI:0x10DE)
│     GUIDs:               69fe24b1-eeaa-5630-9c40-f96ea0367207
│                          8fcb7059-409f-5c00-bb78-9b218489d58f
│     Device Flags:        • Internal device
│                          • Cryptographic hash verification is available
│   
├─Touchpad:
│     Device ID:           881d0bf9902910255d18c15a368c4106b26fee62
│     Current version:     1.7.2378871
│     Bootloader Version:  54.0.0
│     Vendor:              Synaptics (HIDRAW:0x06CB)
│     GUIDs:               1d6705d0-3fa6-58d2-bd0e-806ed6792c18
│                          2aa17264-7ef0-5cc5-9368-8595974a5e31
│                          741692a4-ae19-5ecc-9e48-e644604c2345
│                          a90f8ef5-de8d-5810-a6c2-d0b88b1e0be8
│     Device Flags:        • Internal device
│                          • Updatable
│   
├─UHD Graphics 630 (Mobile):
│     Device ID:           bbbf1ce3d1cf15550c3760b354592040292415bb
│     Vendor:              Intel Corporation (PCI:0x8086)
│     GUIDs:               12c60b98-52cd-500a-b99e-087aa6b47f0b
│                          db677673-1102-5481-a11e-6f397e123ced
│     Device Flags:        • Internal device
│                          • Cryptographic hash verification is available
│   
└─USB3.0 Hub:
      Device ID:           fd94f61d160f9d39fba0f07711ec5006f32fede2
      Summary:             USB 2.x Hub
      Current version:     13.101
      Vendor:              VIA Labs, Inc. (USB:0x2109)
      Install Duration:    10 seconds
      GUIDs:               de3f0846-af25-5b5e-8a03-b48f2c059707
                           7aaf809e-a3f1-5beb-8a28-09e44471534b
                           f1175e69-cf09-55de-b71b-da24d8f331d4
                           7eafc3ff-3eaa-56ec-9ec9-aeeca463e683
                           cd3a7a5a-f5cf-546e-8f18-0a758327aa3e
                           d812d765-cb6d-5486-8a25-c61bf4c8dfb0
      Device Flags:        • Updatable
                           • Cryptographic hash verification is available

fwupd event log

$ sudo fwupdtpmevlog
PCR:                     BIOS (0)
Type:                    0x7
Description:             EV_S_CRTM_CONTENTS
ChecksumSha1:            c131b5fd685fd667c43715ba9112ab9899a75e5cd4d714cba4d22fec3ab043ff
BlobStr:                 Boot Guard Measured S-CRTM.

PCR:                     BIOS (0)
Type:                    0x8
Description:             EV_S_CRTM_VERSION
ChecksumSha1:            d4720b4009438213b803568017f903093f6bea8ab47d283db32b6eabedbbf155
BlobStr:                 ..kT..U@..N....:

PCR:                     BIOS (0)
Type:                    0x1
Description:             EV_POST_CODE
ChecksumSha1:            62f57d2a9ef54c7d003065c88a10274e26be4d3605dc8dc0a9cbc742d3e12e19
BlobStr:                 ..........e.....

PCR:                     BIOS (0)
Type:                    0x4
Description:             EV_SEPARATOR
ChecksumSha1:            df3f619804a92fdb4057192dc43dd748ea778adc52bc498ce80524c014b81119

PCR:                     BIOS Configuration (1)
Type:                    0x80000009
Description:             EV_EFI_HANDOFF_TABLES
ChecksumSha1:            0f57271e82d06cab06e58b458ad63bb406d375525694b1ee692fafb341bd7431
BlobStr:                 ...........? boD.....|.....f....

PCR:                     BIOS Configuration (1)
Type:                    0x80000009
Description:             EV_EFI_HANDOFF_TABLES
ChecksumSha1:            9c844a8fe22e6309ce1b358b0066a1c9cf0608b563b291563c6f388c3a3149ff
BlobStr:                 ...........? boD.....|.....f....

PCR:                     BIOS Configuration (1)
Type:                    0xa
Description:             EV_PLATFORM_CONFIG_FLAGS
ChecksumSha1:            731c316f1f38ef00fed749ad9f49fe259a966b8d4db1cabb928288b2a693bd60
BlobStr:                 ..........0........."....#...................B....J..............a....`...._....D$..................|.........x....7....)...."....$....b..............2.........

PCR:                     BIOS Configuration (1)
Type:                    0x4
Description:             EV_SEPARATOR
ChecksumSha1:            df3f619804a92fdb4057192dc43dd748ea778adc52bc498ce80524c014b81119

PCR:                     BIOS Configuration (1)
Type:                    0x80000002
Description:             EV_EFI_VARIABLE_BOOT
ChecksumSha1:            0fbc4503f36b4b262dca9e66e40a9be89001cbfee80dbafae22b41e8f0bffbb2
BlobStr:                 a.............+.................B.o.o.t.O.r.d.e.r.......

PCR:                     BIOS Configuration (1)
Type:                    0x80000002
Description:             EV_EFI_VARIABLE_BOOT
ChecksumSha1:            8bf000bf4889ece74e6b7fdef6a0b52b5e3bb58d18e54ad08583487555b807e9
BlobStr:                 a.............+.................B.o.o.t.0.0.0.3.....t.L.i.n.u.x. .B.o.o.t. .M.a.n.a.g.e.r.....*.............. ......tE7.).IH.C..8.A.....F.\.E.F.I.\.s.y.s.t.e.m.d.\.s.y.s.t.e.m.d.-.b.o.o.t.x.6.4...e.f.i.......

PCR:                     BIOS Configuration (1)
Type:                    0x80000002
Description:             EV_EFI_VARIABLE_BOOT
ChecksumSha1:            9b0c3cdb0f1d7761089d28dfbf486c112a368ae912829f49a7fc9844c7cb7006
BlobStr:                 a.............+.........,.......B.o.o.t.0.0.0.0.....t.W.i.n.d.o.w.s. .B.o.o.t. .M.a.n.a.g.e.r.....*.....................tE7.).IH.C..8.A.....F.\.E.F.I.\.M.i.c.r.o.s.o.f.t.\.B.o.o.t.\.b.o.o.t.m.g.f.w...e.f.i.......WINDOWS.........x...B.C.D.O.B.J.E.C.T.=.{.9.d.e.a.8.6.2.c.-.5.c.d.d.-.4.e.7.0.-.a.c.c.1.-.f.3.2.b.3.4.4.d.4.7.9.5.}.....................

PCR:                     BIOS Configuration (1)
Type:                    0x80000002
Description:             EV_EFI_VARIABLE_BOOT
ChecksumSha1:            ad92d8b262cb5078ae599829efcd6a037b74c57bbe5ec770835056ea903db8c2
BlobStr:                 a.............+.................B.o.o.t.0.0.0.1.....`.L.i.n.u.x. .F.i.r.m.w.a.r.e. .U.p.d.a.t.e.r.....*.............. ......tE7.).IH.C..8.A.....2.\.E.F.I.\.a.r.c.h.\.f.w.u.p.d.x.6.4...e.f.i.......

PCR:                     BIOS Configuration (1)
Type:                    0x80000001
Description:             EV_EFI_VARIABLE_DRIVER_CONFIG
ChecksumSha1:            082271255dccb5fe8d86908978b9eb67881b49c7eb0e04faf8bf23f377fd0bf2
BlobStr:                 a.............+.................D.e.p.l.o.y.e.d.M.o.d.e..

PCR:                     BIOS Configuration (1)
Type:                    0x80000001
Description:             EV_EFI_VARIABLE_DRIVER_CONFIG
ChecksumSha1:            b70b7c1b92209af66d79d12dec1f14f4b8c71c0c69be22a1a04f5c5804e26ec3
BlobStr:                 a.............+.................A.u.d.i.t.M.o.d.e..

PCR:                     BIOS Configuration (1)
Type:                    0x80000009
Description:             EV_EFI_HANDOFF_TABLES
ChecksumSha1:            188793a92b795b9022fe4d21f02dd8eceb8580bdcf044ae451a63af88de46d75
BlobStr:                 ........1-...-......'?.M........

PCR:                     Option ROMs (2)
Type:                    0x4
Description:             EV_SEPARATOR
ChecksumSha1:            df3f619804a92fdb4057192dc43dd748ea778adc52bc498ce80524c014b81119

PCR:                     Option ROM configuration (3)
Type:                    0x4
Description:             EV_SEPARATOR
ChecksumSha1:            df3f619804a92fdb4057192dc43dd748ea778adc52bc498ce80524c014b81119

PCR:                     Initial program loader code (4)
Type:                    0x4
Description:             EV_SEPARATOR
ChecksumSha1:            df3f619804a92fdb4057192dc43dd748ea778adc52bc498ce80524c014b81119

PCR:                     Initial program loader code (4)
Type:                    0x80000003
Description:             EV_BOOT_SERVICES_APPLICATION
ChecksumSha1:            bab37508f6f54874299edbe378ebbd76ba48abf74da68e816da5bf00434b442f
BlobStr:                 .`.h.....e...........................A...............................4x...*.............. ......tE7.).IH.C..8.A.....F.\.E.F.I.\.s.y.s.t.e.m.d.\.s.y.s.t.e.m.d.-.b.o.o.t.x.6.4...e.f.i.......

PCR:                     Initial program loader code (4)
Type:                    0x80000003
Description:             EV_BOOT_SERVICES_APPLICATION
ChecksumSha1:            3eb9a64c7f860203378b430a1a7c5b83cd0a68859fc477776e5c7600a224bae5
BlobStr:                 .`.d......f.............x............A...............................4x...*.............. ......tE7.).IH.C..8.A.....".\.v.m.l.i.n.u.z.-.l.i.n.u.x.......

PCR:                     Initial program loader code configuration (5)
Type:                    0x4
Description:             EV_SEPARATOR
ChecksumSha1:            df3f619804a92fdb4057192dc43dd748ea778adc52bc498ce80524c014b81119

PCR:                     Initial program loader code configuration (5)
Type:                    0x80000006
Description:             EV_EFI_GPT_EVENT
ChecksumSha1:            b1c2f6b715d098f7ed9199e73e8a3d3cd71969e31a600d92461c5bf03d9a57e7
BlobStr:                 EFI PART....\.....n)...............;...."..........;.........Y.B.. .*=F.................j..R........(s*......K...>.;tE7.).IH.C..8.A..........'..............b.o.o.t..................................................................=....rG.y=i.G}.3....|.K..<. ....(.........;............p.r.i.m.a.r.y...........................................................

PCR:                     State transitions and wake events (6)
Type:                    0xc
Description:             EV_COMPACT_HASH
ChecksumSha1:            13cd0fef5bcb86f6cbb8176a05c4664358df072d0dd5a226a941010f8f9f6f96
BlobStr:                 Dell Configuration Information 1

PCR:                     State transitions and wake events (6)
Type:                    0xc
Description:             EV_COMPACT_HASH
ChecksumSha1:            a55d69c8253f3bee6326d2ea106e908dd86033dd65f2ba60ed28bba634ccd844
BlobStr:                 Dell Configuration Information 1

PCR:                     State transitions and wake events (6)
Type:                    0xc
Description:             EV_COMPACT_HASH
ChecksumSha1:            a80645aaf18085ebc883fff194e5f090b7367e98cd8057ecbaa8d140a148838f
BlobStr:                 Dell Configuration Information 2

PCR:                     State transitions and wake events (6)
Type:                    0x4
Description:             EV_SEPARATOR
ChecksumSha1:            df3f619804a92fdb4057192dc43dd748ea778adc52bc498ce80524c014b81119

PCR:                     Platform manufacturer specific measurements (7)
Type:                    0x80000001
Description:             EV_EFI_VARIABLE_DRIVER_CONFIG
ChecksumSha1:            115aa827dbccfb44d216ad9ecfda56bdea620b860a94bed5b7a27bba1c4d02d8
BlobStr:                 a.............+.................S.e.c.u.r.e.B.o.o.t..

PCR:                     Platform manufacturer specific measurements (7)
Type:                    0x80000001
Description:             EV_EFI_VARIABLE_DRIVER_CONFIG
ChecksumSha1:            2abfe9865a654102acb12f0fefe52dc4d01bce40901410eb3dadaf212700a2b7
BlobStr:                 a.............+.................P.K..Y.....J....\+.r.............MVp...N....I..\0...0..........P.......@-.x..h.0...*.H........0g1.0...U....US1.0...U....Texas1.0...U....Round Rock1.0...U....Dell Inc.1.0...U....Dell Inc. Platform Key0...160601202007Z..310601203006Z0g1.0...U....US1.0...U....Texas1.0...U....Round Rock1.0...U....Dell Inc.1.0...U....Dell Inc. Platform Key0.."0...*.H.............0......... :@..gX#.D. ...D...6..mKX.N,."[.......(}...p.'.8....$.......7......S6@v.vd'.&?.E.........).x7.^.9....V...13..6....9.'.g.c........X.D.....H.i._.TOD4.z.W.,.3J..N.]=......d......J.<...&{.i_C._9..$..q.........Bs..<>Tu.SI....T...dqG.o....p..C7..o...d..^..c.q.C......E0C0...U...........0...U.......0.......0...U......Fo... R.V..9.H.H.u..0...*.H.............R..y..r..Ii%..\j.2..t..)i.....F`.Rz3...h.s.8.....g....g.q..hq..@.n.Y.R....R'.l...4..Y*.5...&....7....0(wS...._@6c.Tc...2...y.....&..*k...(.&.Z..`9..........k.|.......7......R(.;.7....~..1..@.........3..y$.,C[B,l..lH#...8>U.I.9..e>...$E.[.(:.......K..l...!.

PCR:                     Platform manufacturer specific measurements (7)
Type:                    0x80000001
Description:             EV_EFI_VARIABLE_DRIVER_CONFIG
ChecksumSha1:            63a525134bfbc242058c0e6b42794f8b1d142d13029a9aa38a3272c5ca2390c5
BlobStr:                 a.............+.................K.E.K..Y.....J....\+.r.............MVp...N....I..\0...0..........'..R.]..L6wB....0...*.H........0g1.0...U....US1.0...U....Texas1.0...U....Round Rock1.0...U....Dell Inc.1.0...U....Dell Inc. Platform Key0...160601202248Z..230601203247Z0k1.0...U....US1.0...U....Texas1.0...U....Round Rock1.0...U....Dell Inc.1#0!..U....Dell Inc. Key Exchange Key0.."0...*.H.............0...........;.A)LB....f-.3.....I.}c........f0[.....U.....<....i.....@_(..o.J..A@....3S..Hp...6tJYb.....1..d.....x..x ..N...0......3..A...s...u..\HhI...........N.FY.....jy._....Vp...1..r.....k...]^...\.......Z..........z.....53.e<w(....@....6..+9......f..A..^Q...yy.......f0d0...U...........0...U.......0.......0...U.#..0...Fo... R.V..9.H.H.u..0...U.............{...c..<`r..r0...*.H............. . ..\%.C.oU...=Q..........^..}....l...fMme($s....J.OB+...C........@.....)...vGZ..[.|i.....-...BE8Qp....J.s..Q.Gz...r.5..6.My...k....r...wp5...:.....o.I.v.cxy....,..9.P........7P0.c*rYW.e#.....AE.^....zot...N.b.......h...2..@e.gm........K.I.B..WH{...,.T.k6.Y.....J....\+.r...............wY.2M.`(...xK0...0..........a.........0...*.H........0..1.0...U....US1.0...U....Washington1.0...U....Redmond1.0...U....Microsoft Corporation1;09..U...2Microsoft Corporation Third Party Marketplace Root0...110624204129Z..260624205129Z0..1.0...U....US1.0...U....Washington1.0...U....Redmond1.0...U....Microsoft Corporation1*0(..U...!Microsoft Corporation KEK CA 20110.."0...*.H.............0..............W&.&....WzD.]...J.t*....m.....Zc2|..O....8..........,............0..H..P.d.Q...O. .../..........Sjb:.C..%..........#..p...M............./...$........J.C...~.G.l......3....*q....<.%./hvF..O...q*X....y=..e;.)*..rY......5......_..v..c...y@.y...R...{.i..........O0..K0...+.....7.......0...U......b.C..>..g..[.U.{..._0...+.....7.......S.u.b.C.A0...U........0...U.......0....0...U.#..0...EfRC.~X...N.#U.;:"j.0\..U...U0S0Q.O.M.Khttp://crl.microsoft.com/pki/crl/products/MicCorThiParMarRoo_2010-10-05.crl0`..+........T0R0P..+.....0..Dhttp://www.microsoft.com/pki/certs/MicCorThiParMarRoo_2010-10-05.crt0...*.H......................*<.*........Rf....uz...-.vZ.y..7jQ{.d..d..g....x....Xd..W..._.....i.HK2..].0.....x..+...4V.....A%p.k............*..K.().{..|..v...y........o~l.{..E.4Q.9..^V.......B..w....qV...#.....X~.ig..~........<......C..-...j+Z|D.R...-...R.....=.`..3....e.....|....N8./....o....9.......'...B.)..FA;..g..CYe......O.u;..$.PA@y.-O.j'vnR..i{......E..S....0..76a.Ji.4.h....l....l"y......F`....!.....y2`....".K...K.}?W5..Ou..`."S..y...A...Tp...5.|.4r..`;.y....]..........%o8.....y..i.... .............uk4....`.\..WN6.2...

PCR:                     Platform manufacturer specific measurements (7)
Type:                    0x80000001
Description:             EV_EFI_VARIABLE_DRIVER_CONFIG
ChecksumSha1:            ad1850a4885628d86273bad743779c9e665db060236270b5d24dd98f3a22fe86
BlobStr:                 ....:=.E.....geo........5.......d.b..Y.....J....\+.r.............MVp...N....I..\0...0..........4.......M..Q[...0...*.H........0k1.0...U....US1.0...U....Texas1.0...U....Round Rock1.0...U....Dell Inc.1#0!..U....Dell Inc. Key Exchange Key0...160603142606Z..180603143605Z0b1.0...U....US1.0...U....Texas1.0...U....Round Rock1.0...U....Dell Inc.1.0...U....Dell Inc. UEFI DB0.."0...*.H.............0...........u.....vjsa.E1....S+.....ZE...*~C........f....@[He...?....A...A.....8..5...}...M1.-............Xk...Re...]&/.......f.1W..O.......E..q..."..!kJ){-J1:G...x8.A.....,!g.U.O\.......4]..K....1.....U1.=dP..%.gisJ..=K.)..J..p.2;c .e......,....t.N.....H..#..GQ.........g0e0...U...........0...U.%..0...+.......0...U.#..0..........{...c..<`r..r0...U......].w-..f.U...1.k.0.9.0...*.H...............=..&.).9.m..ty.>........^U8e.o1.QR.........7..5.Cg.n............2.`..b...I..\..|...d..8.]C........;........7^..r.e.u.:....CD..E+...=.<.r..n.o3.s.....Q.X......(j.....D.."?...gfo.@...P...,s=......n.rN.g..@.Q..'.......YX<.A/H"4..&.{.#".....v.....v....0......Y.....J....\+.r@.......$......wY.2M.`(...xK0...0..........a.........0...*.H........0..1.0...U....US1.0...U....Washington1.0...U....Redmond1.0...U....Microsoft Corporation1;09..U...2Microsoft Corporation Third Party Marketplace Root0...110627212245Z..260627213245Z0..1.0...U....US1.0...U....Washington1.0...U....Redmond1.0...U....Microsoft Corporation1+0)..U..."Microsoft Corporation UEFI CA 20110.."0...*.H.............0..........lL.E.jK......u.C.Td......}..s....JEa...-...+..MI.A..<.T..........A.\Y.h2..G..q.!O..|.D?..2.&H.u...L.J.~....xwM..........+.Q8]....x...............{@{..('...V^..~.~..D.y9...b.M.8p.h$..3..7.Xi^.|...S..N.*.c.aoc.Y..+y..ag.[.^.....gOqX.".""...Tq..P5Xv...j............v0..r0...+.....7.........0#..+.....7........k..wSJ.%7.N.&{. p.0...U.........C...p...O1n."....0...+.....7.......S.u.b.C.A0...U........0...U.......0....0...U.#..0...EfRC.~X...N.#U.;:"j.0\..U...U0S0Q.O.M.Khttp://crl.microsoft.com/pki/crl/products/MicCorThiParMarRoo_2010-10-05.crl0`..+........T0R0P..+.....0..Dhttp://www.microsoft.com/pki/certs/MicCorThiParMarRoo_2010-10-05.crt0...*.H.............5.B.0...v...hX5)F2v'|..A'B.J.m.8HY.U..X4.....].....A.........]..P...U.B(. ...Q......!.....w..s.....R..P..W..a...m%.@..@...J.M.....T.....+=I+.2.j!iO..~B4.6.... @...%u'.....]..6Tz.P.......t........./..k/.f..#.......3..VK.-.h.....r.......,!L3+..J.h...U2u.j.j<.%.........@Y....Lb.".t..=G.D....45...S.,....q......Df.GT..V........h>.#./^.P....._A.......lu..i.!......M...,wS.%27.lRr....5aj...;.PV.2-....B.'.U...Z..0.T..G.%/.&.A..\.?....[<>?.G.rU.%"..{...*....F........5'b.q....'..Y7`.8...xp..L.......E.e...~i.u......Y.X.Y.....J....\+.r...............wY.2M.`(...xK0...0..........a.vV......0...*.H........0..1.0...U....US1.0...U....Washington1.0...U....Redmond1.0...U....Microsoft Corporation1200..U...)Microsoft Root Certificate Authority 20100...111019184142Z..261019185142Z0..1.0...U....US1.0...U....Washington1.0...U....Redmond1.0...U....Microsoft Corporation1.0,..U...%Microsoft Windows Production PCA 20110.."0...*.H.............0....................i..!.i33....T...... ......8....-|by...J?.5 p...k...6u..1..p..7.tF.([.`#,..G.g.Q'.r......;S5|...'......#.o.F..n.<A...?].jM.i.%(\6..C............['.'x0.[*.k".S`.,.h.S..I..a..h.sD]}.T+.y...5]l.+\...#.on.&.6..O.'..2;A.,...w..TN.\...e.C....m.w.Z$.H.........C0..?0...+.....7.......0...U.......).9....x....O..|U.S0...+.....7.......S.u.b.C.A0...U........0...U.......0....0...U.#..0.....V....\bh.=..[.....0V..U...O0M0K.I.G.Ehttp://crl.microsoft.com/pki/crl/products/MicRooCerAut_2010-06-23.crl0Z..+........N0L0J..+.....0..>http://www.microsoft.com/pki/certs/MicRooCerAut_2010-06-23.crt0...*.H...............|qQ.y.n..9>.<R.n+?..s..h.H.4M...&.1F.ay..8.Ek...(..........L.6fj.............@26v..Z..........h.b..TlP0X..|...N...|.sW.R!s4Z...V...........~........?..r.S...c..=1e.........=....B..._T......G.o.sNA.@._..*...s.!(...s9_>.\`..............Q.fG.....=.*h.w..Lb{.....z.4..Kbz.....J7.-.W|..=...Z.......:...n.i!7....u..g..W^).9..-...Es[...z....FX.^...g.l5...?$.5..u...V..x,..............~,c...#!..xl.X..6+.......-....@..E...\k>...p.*.j._G..c.2...6.*pZ.BY.qKW.~...!<.........E.... .......]b..c. .u.w}=.E.....W.o3...w.b.Y~

PCR:                     Platform manufacturer specific measurements (7)
Type:                    0x80000001
Description:             EV_EFI_VARIABLE_DRIVER_CONFIG
ChecksumSha1:            f0bf49c6a2d3e170077f1f66875d6cb9b2aa382060cac5c0b645660bb95bc058
BlobStr:                 ....:=.E.....geo........'.......d.b.x..Y.....J....\+.r............................0..k0..S.......a.j.......0...*.H........0..1.0...U....US1.0...U....Washington1.0...U....Redmond1.0...U....Microsoft Corporation1200..U...)Microsoft Root Certificate Authority 20100...100706204023Z..250706205023Z0y1.0...U....US1.0...U....Washington1.0...U....Redmond1.0...U....Microsoft Corporation1#0!..U....Microsoft Windows PCA 20100.."0...*.H.............0.........y.:......d*u.s....>..........8|..3U..#f..(HS.....Q.~..&..t.Y......RpZ,.......}.f.o.bnmK./5l..jcZ_...Ma..~1.l..M....8F...sivUi.L...4.....)~.O......rXbVl...dw.Fe)....L....#.._.o,.....r.(.k>...|..yO~.:..p'k............(.sm.T.(L.k]..]3.7.%a4jB.|.:..Y..Bm:P[H..........0...0...+.....7.......0...U.......O......$.......y.7.0...+.....7.......S.u.b.C.A0...U........0...U.......0....0...U.#..0.....V....\bh.=..[.....0V..U...O0M0K.I.G.Ehttp://crl.microsoft.com/pki/crl/products/MicRooCerAut_2010-06-23.crl0Z..+........N0L0J..+.....0..>http://www.microsoft.com/pki/certs/MicRooCerAut_2010-06-23.crt0....U. ...0..0....+.....7..0..0=..+........1http://www.microsoft.com/PKI/docs/CPS/default.htm0@..+.......04.2 ..L.e.g.a.l._.P.o.l.i.c.y._.S.t.a.t.e.m.e.n.t.. .0...*.H..............A....o....;......9..p.d...V.......m.o.S.Z....Fl...TV.<.q.Q.T~....B3...$$...........9V...s...~.P#.V$....../'...........bA.Ht...P...)...+..)y..$......@..._3.T]@...b.MH.nAGR....W:..V....&.`u...b....E.>...[D#c%6wo.[."..#jA..B...%{....7b.......9....5...[...7_S..7..O...kv.......u.,A...........Y.m.N.N....r.V.H..#.......O. .p_.kr. I.w.].....8B......7.P.)......%U.@..d..1..Ty.......3...&maI..%..t..........3.BP..P..b.....|f.....X]...a..../I.>........>.........|..Z......].......r.}.*..8.1.(..L.R..j.}.q...p..?..V....L.&...LP.@..A.6.C(........0......wY.2M.`(...xK...i1.........O..R.m.@..`MA..e.....wY.2M.`(...xK./........r($...E4.[..$k;.}.n..z...wY.2M.`(...xK.......-...*o..s..>d.,N..gyj.......wY.2M.`(...xK63..M...x.bd..Y.W...C.&`H.X....v...wY.2M.`(...xK....Kle.. ..q..R0!.b..<H..k)Z+.....wY.2M.`(...xK..h.AFb..?i..nk.b.0.|o..x.....4....wY.2M.`(...xK...F..d.W.Xm........9y..2t-..S.f...wY.2M.`(...xKX......YC.._%...?.LX.^....)uh..q...wY.2M.`(...xKS.....!.....%.w..]o.....P."..Y.....wY.2M.`(...xK.&.~.jq..$...|.e.,.:{k%}...`.^.....wY.2M.`(...xK.c.(.~.S.d-.}.3..*...`....,2...m...wY.2M.`(...xK)..R.<:..,..n.`|.<.....eu\....JD...wY.2M.`(...xK....i.3@.>..h2.....'%'..=I..r..L...wY.2M.`(...xK.^....T..`.....< ......k......R8...wY.2M.`(...xK....Xdo...y..(....#g....+6...9.....wY.2M.`(...xK.._NQ...x.m...%.......or.xRY.e.&...wY.2M.`(...xK..C...z..0..eu1.{.............ct...wY.2M.`(...xK...9v-.6.=...c.qZ9....F\`.lk.......wY.2M.`(...xK....o)..o3.}r..K....H.:*...?O......wY.2M.`(...xK......!H...62u.>.......[1.R.*.[....wY.2M.`(...xK.o.....N0;t........+.o..t.!...h....wY.2M.`(...xK.N:.[C.....@O.4.=.9bg......#.......wY.2M.`(...xK.34)..b....>.H...-..ImT.....d......wY.2M.`(...xK+..&B...6_.K..'.l..Kzo.D./k..i.9...wY.2M.`(...xK+.,.....'.R..*].I.Z+.R.]fb....U....wY.2M.`(...xK,s.3%.m......<[.UY....P.P...R..}...wY.2M.`(...xK.p.g...sQ.......p.W.2..#....+Q.}...wY.2M.`(...xK0f(.Tw0W(.JF}..8zT.i.v..^u.........wY.2M.`(...xK6......A...wz./.^g.4g^..^i5........wY.2M.`(...xK8A.!6....\...!`9MlN.g`.....b..[....wY.2M.`(...xK?....>..TR..^.....mt:syqU.p.j.>s...wY.2M.`(...xKC......c.|....C.-/....&.z.K..u.....wY.2M.`(...xKG..a'.....:k.,....Zmk.6!h..,.*Z....wY.2M.`(...xKQ.1.s....>..!"...Ty..........0a5...wY.2M.`(...xKZ.I..U...9..[..B.,/.g...g6..A.+\...wY.2M.`(...xKk...x.A....{.^.`..G........r../f...wY.2M.`(...xKl.TG..Y..Q.&.l...+..585.r..........wY.2M.`(...xKo.(.q.......{...d|.e......&..:x^...wY.2M.`(...xKq..o."I~T.Fb.$.... w...h......cu...wY.2M.`(...xKrk>.T.j0..=.....p....p..q.-..,#....wY.2M.`(...xKr...g.].V....;....2.....^/m..(.....wY.2M.`(...xKx'..6,..q}.....C..q.Z..H.[...K.....wY.2M.`(...xK...e....k.).T...S.........;.3......wY.2M.`(...xK..;....C........YA.=...Xo+.V7W_g...wY.2M.`(...xK.Z......~.O..G.q.."8b....:....=....wY.2M.`(...xK..HY.........jag..z.n.F.d.r!.YE....wY.2M.`(...xK..4...........e...;=.<5.P_.{.c.!...wY.2M.`(...xK..........se.(.Q..<.Pm........H....wY.2M.`(...xK...c.....t...M.....so..C.fd..1ZB...wY.2M.`(...xK.Ji.1ah.U....`..........f......4...wY.2M.`(...xK....6U....G'Yyk.. .T...iuLHH.t.....wY.2M.`(...xK../P.N.....~.N....]...o..+...]E....wY.2M.`(...xK.h&..m&...h\..}..;M.=......`.<W ...wY.2M.`(...xK...1Q'.s....g.9.1..g0:3"..7...Z....wY.2M.`(...xK.....},....3:..OgQ.......D..L@.....wY.2M.`(...xK.O..6c..h..;.7........*9..h....U...wY.2M.`(...xK..x...J.3!c..5...,3....p.L.5.'W6...wY.2M.`(...xK.z....._..Km.;..vfh..U$|..(7..L....wY.2M.`(...xK...h..fH.....Q...j.$..y..b.........wY.2M.`(...xK....Gu.....".......F,.....].3......wY.2M.`(...xK......*..(...L....[.'(.a...........wY.2M.`(...xK..3f......T.....s.&.........g......wY.2M.`(...xK.k..@...vX....QJI`O........n.x.....wY.2M.`(...xK.;..Y.|....J...>..$Q?.eYW.5.).@....wY.2M.`(...xK....5.g+6~O...Iia]..J.lrMB.........wY.2M.`(...xK.,".;VB.\....G.YG8......D.oY.......wY.2M.`(...xK..n=)...t=.J..........2@...........wY.2M.`(...xK.c.Ox,..........7`..X.b...f..nm....wY.2M.`(...xK...2...KmH],qgr..RY..\..u."....6...wY.2M.`(...xK...aJ.~.......U.......n.E.AR'..[...wY.2M.`(...xKU....=..HZ..7.?...=.....|....c.....wY.2M.`(...xKw.......^;.....b.x...S^.......k/...wY.2M.`(...xK.<.9"...`tFu.7....Z...G/.4.q.9.....wY.2M.`(...xK;..S>......#...A..r.y....-...6.....wY.2M.`(...xK......Q.3@....H..rRj..R.......`I...wY.2M.`(...xKdW[..x....V.4.R.k...D.xYu..N-d.E...wY.2M.`(...xKE...u...H.7R}d..dM...<..$.M.ig..

PCR:                     Platform manufacturer specific measurements (7)
Type:                    0x4
Description:             EV_SEPARATOR
ChecksumSha1:            df3f619804a92fdb4057192dc43dd748ea778adc52bc498ce80524c014b81119

PCR:                     Platform manufacturer specific measurements (7)
Type:                    0x80000007
Description:             EV_EFI_ACTION
ChecksumSha1:            bceb62feef69604bb510dd066dc494813716b7087bf11ee311e88c73ac5ba04e
BlobStr:                 Security Level is Downgraded to 0

PCR:                     Static operating system (8)
Type:                    0xd
ChecksumSha1:            3d59747e31ffcafd70a4d1665fb9926a9a87c3251598110bc0b5c1aea110414c
BlobStr:                 i.n.i.t.r.d.=.\.i.n.t.e.l.-.u.c.o.d.e...i.m.g. .i.n.i.t.r.d.=.\.i.n.i.t.r.a.m.f.s.-.l.i.n.u.x...i.m.g. .c.r.y.p.t.d.e.v.i.c.e.=.U.U.I.D.=.9.d.3.9.a.6.5.6.-.9.8.6.2.-.4.2.3.4.-.8.7.7.6.-.2.7.0.f.0.9.c.0.e.3.9.a.:.c.r.y.p.t.r.o.o.t. .r.o.o.t.=./.d.e.v./.m.a.p.p.e.r./.c.r.y.p.t.r.o.o.t. .r.w. .m.e.m._.s.l.e.e.p._.d.e.f.a.u.l.t.=.d.e.e.p..

PCRs:
  0:                     8922847b65af87f201866ee4b6a56661c76dcae4
  1:                     a461455faf01ff02dd59690744b4af82bb061013
  2:                     3a4285c323c5af121f270900e88ffeefb2a34233
  3:                     3a4285c323c5af121f270900e88ffeefb2a34233
  4:                     b75ec256500fb2cc28d45a6cf437894c49c4e388
  5:                     a638215a7b6ab60edebabf0debf4cbd9913eee57
  6:                     fcc302ec39326e4a490968b004958116079f67aa
  7:                     57b57b810bb3b247876071db14736545036de48a
  8:                     1b1033a006a3803e61157be1c69390672ce31ddd

Additional questions

superm1 commented 4 years ago

A bug with PCR0 reconstruction was identified in fwupd code. This bug has been fixed in the stable branches for all applicable releases: 1_3_X, 1_4_X and master.

Can you please upgrade to a version with the fix, and confirm if this behavior still happens?

superm1 commented 4 years ago

A new tool bug was recently identified and fixed in master, 1_4_x, and 1_3_X branches. It's not in any released version yet, but will be in 1.5.0 from master, 1.4.7 from 1_4_X and 1.3.12 from 1_3_X in the future. https://github.com/fwupd/fwupd/pull/2394

Please upgrade to a new version with the patch integrated to confirm if this bug still exists.

tyilo commented 3 years ago

This seems to have been fixed.