

Now I stumbled across it at the colleagues of that some users of Windows 11 22H2 have received the Secure Boot DBX update KB5012170 as of December 6/7, 2022. When the update KB5012170 was released in August 2022, Windows 11 22H2 was not yet generally released. In addition, Microsoft lists a number of known issues in the KB5012170 support post. I had reported about this in the blog post Update KB5012170 for Secure Boot DBX causes Bitlocker issues. Others have installation errors, and for some users the screen remains dark. The security update for the Secure Boot Module, which is supposed to prevent exploitation of vulnerabilities, causes some users to request the Bitlocker key at boot time. Shortly after the security update was released, however, there was increased evidence of real problems here on the blog. The update affects all versions of Windows that are still in support. An attacker who successfully exploited this vulnerability could bypass the secure boot process and load untrusted software. It is intended to fix a vulnerability that allows security features to be bypassed during secure boot.

It is a security update for the Secure Boot module, which can be used by Windows on UEFI machines. I had reported on Patchday, August 9, 2022, in the blog post Windows Security Update KB5012170 for Secure Boot DBX (August 9, 2022) about update KB5012170.
