Get the latest tech news
UEFI SBAT Support Coming Together Ahead Of Linux 6.17
Support for UEFI Secure Boot Advanced Targeting 'SBAT' looks like it could be buttoned up in the mainline kernel for the upcoming Linux 6.17 cycle.
Support for UEFI Secure Boot Advanced Targeting "SBAT" looks like it could be buttoned up in the mainline kernel for the upcoming Linux 6.17 cycle. Compromised or vulnerable UEFI binaries can be prevented from booting by bumping the minimal required generation for the specific component in the bootloader. That merge adds the Linux kernel EFI_SBAT Kconfig build option and then EFI_SBAT_FILE for specifying an embedded SBAT section file path.
Or read this on Phoronix