MC714379 – Reminder: Changes coming to Windows Boot Manager revocations for Secure Boot, April 9, 2024 (archived)

cloudscout.one Icon

check before: 2024-02-23

Product:

Office 365 general

Platform:

World tenant, Windows Desktop, Online

Status:

Change type:

Admin impact

Links:

Details:

Administrators should observe mitigations and security enforcement requirements coming into effect with Windows updates released on and after April 9, 2024. Devices running Windows updates released July 11, 2023 or later include security measures designed to protect vulnerable boot managers against a Secure Boot bypass vulnerability disclosed in CVE-2023-24932. Secure Boot is a Windows security feature designed to protect devices from bootkit malware.


Windows security updates include options to manually enable protections against Secure Boot bypass beginning July 11, 2023. Additional protections and deployment phases for these protections are coming with updates being released on April 9, 2024, and throughout 2024. For detailed information, see KB5025885: How to manage the Windows Boot Manager revocations for Secure Boot changes associated with CVE-2023-24932.


When will this happen:


April 9, 2024 or later - Third Deployment Phase
Windows updates released on and after this date will provide new mitigations to block additional vulnerable boot managers.


October 8, 2024 or later - Mandatory Enforcement Phase
Windows updates released on and after this date that are installed to affected systems will enforce the Code Integrity Boot policy and Secure Boot disallow list revocations related to this hardening. There will be no option to disable this enforcement after this update.


The Mandatory Enforcement Phase described above is the final phase of these security hardening measures.

Change Category:
XXXXXXX ... free basic plan only

Scope:
XXXXXXX ... free basic plan only

Release Phase:

Created:
2024-02-10

updated:
2024-02-10

Task Type

XXXXXXX ... free basic plan only

Docu to Check

XXXXXXX ... free basic plan only

MS Preperations

XXXXXXX ... free basic plan only

MS Urgency

XXXXXXX ... free basic plan only

MS workload name

XXXXXXX ... free basic plan only

** AI generated content. This information must be reviewed before use.

a free basic plan is required to see more details. Sign up here


Last updated 1 week ago

Share to MS Teams

Login to your account

Welcome Back, We Missed You!