Closed Swiftb0y closed 1 year ago
hi... are you updating MEFW together with other firmware? if yes... can you please just try updating firmware one at a time
Hi there :) Initially yes, I tried updating the "system firmware" and MEFW at the same time. Then I found an issue where someone fixed their problem by doing the upgrade separately. By doing that, I was able to update the other firmware successfully. Now I'm just updating the single ME firmware, which still fails. Also I just found #306 after filing this one which seems exactly like the issue I have (also same device), I'm sorry for creating a duplicate issue.
hi... will ping the owner for this one... thank you
Hey there, I'm sorry for pinging this again. Has there been any response from the owner? I'd gladly work with them to provide more information if needed. Is there anything else I could help with in order to move this forward?
hi @Swiftb0y sorry for the delay but due to Chinese New Year holidays... I have not received any feedback yet from owner...will follow up again... thank you very much
No stress, thank you for the quick response.
hi... new firmware was reuploaded can you please try? thank you very much. Corporate : https://fwupd.org/lvfs/devices/com.lenovo.ThinkPadR15RM.firmware Consumer : https://fwupd.org/lvfs/devices/com.lenovo.ThinkPadR15RN.firmware
Thank you, I can also confirm that the plain update via fwupdmgr update
is working now.
Describe the bug Updating the Intel management engine fails with
Could not apply capsules: Device Error
. Since this Intel ME update fixes a bunch of security issues, it would be somewhat important to install. I've already tried to gather debug info (see at the bottom). This is a system with LUKS encryption, in case thats important.Steps to Reproduce simply run
fwupdmgr update
and reboot.Expected behavior presumably
fwupd-efi
should run and update the ME.fwupd version information Please provide the version of the daemon and client.
Please note how you installed it (
apt
,dnf
,pacman
, source, etc):presumably via
dnf
, I'm not sure, it may have been pre-installed.**fwupd device information**
Please provide the output of the fwupd devices recognized in your system. ```shell fwupdmgr get-devices --show-all-devices LENOVO 20R6S00800 │ ├─USB3.1 Hub: │ │ Device ID: 54f0d9041b6c5438c7ff825f5139559c5ca1b222 │ │ Summary: USB 3.x hub │ │ Current version: 13.24 │ │ Vendor: VIA Labs, Inc. (USB:0x17EF) │ │ Install Duration: 15 seconds │ │ GUIDs: 227d0f95-a764-598e-85de-3d2bd0a7372f │ │ c6381f16-fe6d-5c45-a4ad-b619af4f0f0e ← USB\VID_17EF&PID_A391 │ │ e0c50668-5c2e-54df-8e17-c7c2472f3eaa ← USB\VID_17EF&PID_A391&REV_0D24 │ │ fc6cfb35-d4e9-5467-a014-8863de104969 ← USB\VID_17EF&PID_A391&HUB_000A │ │ ef65710a-3fa0-5330-9a61-5ced5e976be1 ← USB\VID_17EF&PID_A391&SPI_C220 │ │ 7ae3100f-9b01-571c-9fc2-20cd4544123a ← USB\VID_17EF&PID_A391&SPI_C220&REV_0D24 │ │ Device Flags: • Updatable │ │ • Cryptographic hash verification is available │ │ • Device stages updates │ │ • Device can recover flash failures │ │ • Unsigned Payload │ │ │ ├─USB2.0 Hub: │ │ │ Device ID: 301046452a49d84af6356d23e43a684b8f10660f │ │ │ Summary: USB 3.x hub │ │ │ Current version: 13.24 │ │ │ Vendor: VIA Labs, Inc. (USB:0x17EF) │ │ │ Install Duration: 15 seconds │ │ │ GUIDs: 227d0f95-a764-598e-85de-3d2bd0a7372f ← USB\VID_17EF&PID_A392 │ │ │ 010262bc-c6fa-5843-bffd-42be9aa16e6a ← USB\VID_17EF&PID_A392&REV_0D24 │ │ │ 4ec36768-1858-5e9b-9d35-40e6143c3cd4 ← USB\VID_17EF&PID_A392&HUB_0A │ │ │ 181168b9-f5c8-51c4-a8f2-958daab8af2d ← USB\VID_17EF&PID_A392&SPI_C220 │ │ │ b8ce86b1-5d74-5876-8d02-a9fd61b0a9ee ← USB\VID_17EF&PID_A392&SPI_C220&REV_0D24 │ │ │ Device Flags: • Updatable │ │ │ • Supported on remote server │ │ │ • Cryptographic hash verification is available │ │ │ • Device stages updates │ │ │ • Device can recover flash failures │ │ │ • Unsigned Payload │ │ │ │ │ ├─USB2.0 Hub: │ │ │ │ Device ID: 0b48e60e0f5abf120fa19357ad0f627aec55d218 │ │ │ │ Summary: USB 3.x hub │ │ │ │ Current version:13.23 │ │ │ │ Vendor: VIA Labs, Inc. (USB:0x17EF) │ │ │ │ Install Duration:15 seconds │ │ │ │ GUIDs: 7a216856-8a97-550c-882e-8233751c7cf2 ← USB\VID_17EF&PID_A394 │ │ │ │ 5a743458-4929-5738-a812-84cad6574a37 ← USB\VID_17EF&PID_A394&REV_0D23 │ │ │ │ 36a4a5cc-b78b-5419-a2ba-3a692148e9f5 ← USB\VID_17EF&PID_A394&HUB_08 │ │ │ │ Device Flags: • Updatable │ │ │ │ • Cryptographic hash verification is available │ │ │ │ • Device stages updates │ │ │ │ • Device can recover flash failures │ │ │ │ • Unsigned Payload │ │ │ │ │ │ │ ├─ThinkPad USB-C Dock Gen2 PD Controller: │ │ │ │ Device ID: 3f8cd6fcf8ab3c51ea141a97a66607eb30d09928 │ │ │ │ Summary: CCGx Power Delivery Device │ │ │ │ Current version:0.0.34 │ │ │ │ Vendor: Cypress Semiconductor (USB:0x04B4) │ │ │ │ Install Duration:2 minutes │ │ │ │ GUIDs: f6b5141d-eeb0-5ff1-b8de-ee4f02b222b7 │ │ │ │ ebd96940-fa49-5cb1-b1a1-aa2d4dea1416 ← USB\VID_04B4&PID_521A │ │ │ │ 2c4d586a-a2a6-5957-9427-768add598121 ← USB\VID_04B4&PID_521A&REV_0000 │ │ │ │ 5108e726-44a6-5eca-bd1a-fbbdabbe7bc1 ← USB\VID_04B4&PID_521A&SID_1F00&APP_6D64 │ │ │ │ 31d41b9b-361a-50ad-8bea-8dad3339fa04 ← USB\VID_04B4&PID_521A&SID_1F00&APP_6D64&MODE_FW2 │ │ │ │ Device Flags: • Updatable │ │ │ │ • System requires external power source │ │ │ │ • Device stages updates │ │ │ │ • Device can recover flash failures │ │ │ │ • Unsigned Payload │ │ │ │ │ │ │ └─ThinkPad USB-C Dock Gen2 USB Audio: │ │ │ Device ID: db1d4d0d7d6ed2568d5992533b65f8a554acdf20 │ │ │ Summary: CX21985 USB audio device │ │ │ Current version:49-0E-14 │ │ │ Bootloader Version:03.01.00.00 │ │ │ Vendor: Lenovo (USB:0x17EF) │ │ │ Install Duration:3 seconds │ │ │ Serial Number:0 │ │ │ GUIDs: bc09c857-37b9-59ce-abed-62d8e371bca0 ← SYNAPTICS_CXAUDIO\ID_CX2198X │ │ │ dbb8d54c-42e6-5215-b7ac-1df16872bb06 ← USB\VID_17EF&PID_A396 │ │ │ a46dd995-530f-50ea-949e-81ef05951964 ← USB\VID_17EF&PID_A396&REV_0014 │ │ │ Device Flags: • Updatable │ │ │ • Unsigned Payload │ │ │ │ │ └─NS6 II: │ │ Device ID: 1218eb1c6d074c70cf10feab6154b1f9711320b0 │ │ Current version:1.0 │ │ Vendor: Numark (USB:0x15E4) │ │ GUIDs: b36dc09d-4a59-5870-b8b9-4b333f6218b0 ← USB\VID_15E4&PID_0051 │ │ 6c405de3-6ea1-5ca5-b099-19871ce7eb4a ← USB\VID_15E4&PID_0051&REV_0100 │ │ Device Flags: • Updatable │ │ │ └─USB3.1 Hub: │ Device ID: 5d00620651c7c80da4d93a876b5d3a6138b0da7a │ Summary: USB 3.x hub │ Current version: 13.23 │ Vendor: VIA Labs, Inc. (USB:0x17EF) │ Install Duration: 15 seconds │ GUIDs: 7a216856-8a97-550c-882e-8233751c7cf2 │ 8b2439a7-f319-5583-950a-236eeecfe918 ← USB\VID_17EF&PID_A393 │ c6881bd6-7fc5-59f9-a21c-a1d525f817f4 ← USB\VID_17EF&PID_A393&REV_0D23 │ 41802a3a-da33-52c9-92d0-b3e4c8fc45d8 ← USB\VID_17EF&PID_A393&HUB_0008 │ Device Flags: • Updatable │ • Cryptographic hash verification is available │ • Device stages updates │ • Device can recover flash failures │ • Unsigned Payload │ ├─Unknown Device: │ Device ID: 59a11bc1795b6b83caa7eface68d0ad302cf5f86 │ GUID: 0422c218-5b8a-504d-8fba-43f8a29f4312 ← GPIO\ID_INT34BB:00 │ ├─CometLake-U GT2 [UHD Graphics]: │ Device ID: 5792b48846ce271fab11c4a545f7a3df0d36e00a │ Current version: 02 │ Vendor: Intel Corporation (PCI:0x8086) │ GUIDs: 5589d313-88e5-54d3-8f4c-b2ee3882d4bc ← PCI\VEN_8086&DEV_9B41 │ 9779d679-0f31-5dd5-b3c2-f6ff275a9ca9 ← PCI\VEN_8086&DEV_9B41&REV_02 │ 0b5f306b-5f29-5135-9076-efa58ceaf6f0 ← PCI\VEN_8086&DEV_9B41&SUBSYS_17AA5078 │ f5ec424e-d337-5ac1-97cd-4574a495682a ← PCI\VEN_8086&DEV_9B41&SUBSYS_17AA5078&REV_02 │ 25be981a-c8a2-5d3a-82cc-39c2a795effb ← PCI\VEN_8086&DEV_9B41&REV_00 │ 0d73acce-8697-5288-ad78-232fc382ef9f ← PCI\VEN_8086&DEV_9B41&SUBSYS_17AA5078&REV_00 │ Device Flags: • Internal device │ • Cryptographic hash verification is available │ ├─Core™ i5-10210U CPU @ 1.60GHz: │ Device ID: 4bde70ba4e39b28f9eab1628f9dd6e6244c03027 │ Current version: 0x000000f0 │ Vendor: Intel │ GUIDs: b9a2dd81-159e-5537-a7db-e7101d164d3f ← cpu │ 30249f37-d140-5d3e-9319-186b1bd5cac3 ← CPUID\PRO_0&FAM_06 │ 561403e8-143a-5071-ab09-bf5e4c146983 ← CPUID\PRO_0&FAM_06&MOD_8E │ d5092916-1868-5182-8c70-12f83dab6372 ← CPUID\PRO_0&FAM_06&MOD_8E&STP_C │ Device Flags: • Internal device │ ├─Intel Management Engine: │ Device ID: 349bb341230b1a86e5effe7dfe4337e1590227bd │ Summary: UEFI ESRT device │ Current version: 225.65.1969 │ Minimum Version: 0.0.1 │ Vendor: Lenovo (DMI:LENOVO) │ Update State: Success │ GUID: f53058f8-04a5-48d3-bfa0-314f343aba8b │ Device Flags: • Internal device │ • Updatable │ • System requires external power source │ • Supported on remote server │ • Needs a reboot after installation │ • Device is usable for the duration of the update │ ├─MZVLB512HBJQ-000L7: │ Device ID: 3743975ad7f64f8d6575a9ae49fb3a8856fe186f │ Summary: NVM Express solid state drive │ Current version: 5M2QEXF7 │ Vendor: Samsung (NVME:0x144D) │ Serial Number: S4ENNF2N120372 │ GUIDs: 47335265-a509-51f7-841e-1c94911af66b ← NVME\VEN_144D&DEV_A808 │ 6e54c992-d302-59ab-b454-2d26ddd63e6d ← NVME\VEN_144D&DEV_A808&REV_00 │ c9d531ea-ee7d-5562-8def-c64d0d144813 ← NVME\VEN_144D&DEV_A808&SUBSYS_144DA801 │ 0b4d773a-7ac3-58c1-a541-e22ef1cdfe02 ← NVME\VEN_144D&DEV_A808&SUBSYS_144DA801&REV_00 │ f4ceb2a8-09c4-55c0-af2a-13ccd63925b1 ← SAMSUNG MZVLB512HBJQ-000L7 │ Device Flags: • Internal device │ • Updatable │ • System requires external power source │ • Supported on remote server │ • Needs a reboot after installation │ • Device is usable for the duration of the update │ • Signed Payload │ ├─System Firmware: │ │ Device ID: a45df35ac0e948ee180fe216a5f703f32dda163f │ │ Summary: UEFI ESRT device │ │ Current version: 0.1.36 │ │ Minimum Version: 0.1.28 │ │ Vendor: Lenovo (DMI:LENOVO) │ │ Update State: Success │ │ GUIDs: 7a31ac37-4c2b-4863-851a-d33140b5d365 │ │ 230c8b18-8d9b-53ec-838b-6cfc0383493a ← main-system-firmware │ │ Device Flags: • Internal device │ │ • Updatable │ │ • System requires external power source │ │ • Supported on remote server │ │ • Needs a reboot after installation │ │ • Cryptographic hash verification is available │ │ • Device is usable for the duration of the update │ │ │ ├─BootGuard Configuration: │ │ Device ID: b0d4430dfa6bde9f0c22680df36dbc8c15c80753 │ │ Vendor: Intel Corporation (MEI:0x8086) │ │ GUIDs: dd17041c-09ea-4b17-a271-5b989867ec65 │ │ c6974392-89c9-57a2-94f1-07757f2bc762 ← MEI\VEN_8086&DEV_02E0 │ │ e515760d-3e4f-58ac-9ed4-cd0f0fb5d1e1 ← MEI\VEN_8086&DEV_02E0&REV_00 │ │ 55a36580-7a13-50bb-83a1-e6c2a16db9d5 ← MEI\VEN_8086&DEV_02E0&SUBSYS_17AA5078 │ │ 76935939-014b-5eca-93d4-ef563c5911a1 ← MEI\VEN_8086&DEV_02E0&SUBSYS_17AA5078&REV_00 │ │ Device Flags: • Internal device │ │ │ ├─UEFI Platform Key: │ │ Device ID: 6924110cde4fa051bfdc600a60620dc7aa9d3c6a │ │ Summary: PSD_CDC-KEK │ │ Vendor: Lenovo(Beijing) Ltd. │ │ GUID: fa58a9d2-2119-5a2c-8841-1107a25aee0a ← UEFI\CRT_FD793E7C225DE2042EF91B1F303B845B887B4E96 │ │ │ └─UEFI dbx: │ Device ID: 362301da643102b9f38477387e2193e57abaa590 │ Summary: UEFI revocation database │ Current version: 217 │ Minimum Version: 217 │ Vendor: UEFI:Linux Foundation │ Install Duration: 1 second │ GUIDs: 14503b3d-73ce-5d06-8137-77c68972a341 ← UEFI\CRT_A9087D1044AD18F7A94916D284CBC01827CF23CD8F60B79072C9CAA1FEF4D649 │ 5971a208-da00-5fce-b5f5-1234342f9cf7 ← UEFI\CRT_A9087D1044AD18F7A94916D284CBC01827CF23CD8F60B79072C9CAA1FEF4D649&ARCH_X64 │ 68f274e9-5d56-5c73-863b-badc87d7f0b5 ← UEFI\CRT_89F07B449C6B701EA4A8FDBA083DA7129E1400685E404F68AAD2263A9E918825 │ 46ee0b67-1caa-5679-b1a7-83a3266a1be5 ← UEFI\CRT_89F07B449C6B701EA4A8FDBA083DA7129E1400685E404F68AAD2263A9E918825&ARCH_X64 │ c6682ade-b5ec-57c4-b687-676351208742 ← UEFI\CRT_A1117F516A32CEFCBA3F2D1ACE10A87972FD6BBE8FE0D0B996E09E65D802A503 │ f8ba2887-9411-5c36-9cee-88995bb39731 ← UEFI\CRT_A1117F516A32CEFCBA3F2D1ACE10A87972FD6BBE8FE0D0B996E09E65D802A503&ARCH_X64 │ Device Flags: • Internal device │ • Updatable │ • Supported on remote server │ • Needs a reboot after installation │ • Device is usable for the duration of the update │ • Only version upgrades are allowed │ • Signed Payload │ ├─TPM: │ Device ID: c6a80ac3a22083423992a3cb15018989f37834d6 │ Current version: 73.8.17568.5511 │ Vendor: ST Microelectronics (TPM:STM) │ GUIDs: ff71992e-52f7-5eea-94ef-883e56e034c6 ← system-tpm │ 84df3581-f896-54d2-bd1a-372602f04c32 ← TPM\VEN_STM&DEV_0001 │ bfaed10a-bbc1-525b-a329-35da2f63e918 ← TPM\VEN_STM&MOD_ │ 70b7b833-7e1a-550a-a291-b94a12d0f319 ← TPM\VEN_STM&DEV_0001&VER_2.0 │ 06f005e9-cb62-5d1a-82d9-13c534c53c48 ← TPM\VEN_STM&MOD_&VER_2.0 │ Device Flags: • Internal device │ ├─UEFI Device Firmware: │ Device ID: 2292ae5236790b47884e37cf162dcf23bfcd1c60 │ Summary: UEFI ESRT device │ Current version: 16777217 │ Minimum Version: 1 │ Vendor: DMI:LENOVO │ Update State: Success │ GUID: 0d3236ed-ecae-4d43-a6bf-d92eab9f4936 │ Device Flags: • Internal device │ • Updatable │ • System requires external power source │ • Needs a reboot after installation │ • Device is usable for the duration of the update │ ├─UEFI Device Firmware: │ Device ID: f95c9218acd12697af946874bfe4239587209232 │ Summary: UEFI ESRT device │ Current version: 4784136 │ Minimum Version: 4784136 │ Vendor: DMI:LENOVO │ Update State: Success │ GUID: 572d444a-fd02-4c1a-b6b1-af613fca4e78 │ Device Flags: • Internal device │ • Updatable │ • System requires external power source │ • Needs a reboot after installation │ • Device is usable for the duration of the update │ └─UEFI Device Firmware: Device ID: d96de5c124b60ed6241ebcb6bb2c839cb5580786 Summary: UEFI ESRT device Current version: 26406 Minimum Version: 1 Vendor: DMI:LENOVO Update State: Success GUID: 8f1a5f8f-55cf-4a5b-8a02-0d50eb2dfc59 Device Flags: • Internal device • Updatable • System requires external power source • Needs a reboot after installation • Device is usable for the duration of the update ```System UEFI configuration Please provide the output of the following commands:
Additional questions
uname -sor
:Linux 6.0.18-300.fc37.x86_64 GNU/Linux
While digging for similar issues, I tried gathering some debug output: