KB5012170: Take a closer look at this cumulative update
As you may already know, Microsoft rolled out its monthly Patch Tuesday updates just a few days ago, and you can find the full coverage here.
All operating systems are patched this month, including Windows 11, Windows 10, Windows 7, and Windows 8.1.
However, one of the most important releases this month is an extremely important fix related to Secure Boot DBX and its KB5012170 update.
Microsoft finally fixes critical Secure Boot GRUB vulnerability
In case you haven’t realized yet, Secure Boot disables signature database or DBX is actually a blacklist for UEFI executables Blocklist these executable files that are found to be bad.
The KB5012170 update mentioned above adds signatures for known vulnerable UEFI modules to DBX, meaning they will no longer be able to run after this update.
This time, the signatures are related to the GRand Unified Boot Loader (GRUB) vulnerability, also known as BootHole.

As we said, and as confirmed by Microsoft, this security update provides improvements to Secure Boot DBX for the supported Windows versions listed in the section.
The Redmond tech giant mentioned that these key changes include the following:
- Windows devices with Unified Extensible Firmware Interface (UEFI)-based firmware can Run with Secure Boot enabled. The Secure Boot Disable Signature Database (DBX) prevents UEFI modules from loading. This update adds modules to DBX.
You should also be aware that a security feature bypass vulnerability exists in Secure Boot. As a result, an attacker who successfully exploited this vulnerability could bypass Secure Boot and load untrusted software.
That being said, KB5012170 successfully addresses the vulnerability by adding signatures of known vulnerable UEFI modules to DBX.
What Windows versions does this update apply to?
The tech company also included in the official release notes that this update will resolve the issue for all versions.
So without further ado, we will say that KB5012170 addresses the following issues:
- Windows Server 2012
- Windows 8.1 and Windows Server 2012 R2
- Windows 10 Version 1507
- Windows 10 Version 1607 and Windows Server 2016
- Windows 10 Version 1809 and Windows Server 2019
- Windows 10, Version 20H2
- Windows 10, Version 21H1
- Windows 10, Version 21H2
- Windows Server 2022
- Windows 11, Version 21H2 (original version)
- Azure Stack HCI , Version 1809
- Azure Stack Data Frame, Version 1809 (ASDB)
Of course, this cumulative update can be downloaded as part of the Patch Tuesday package through Windows Update, but you can also download it from Get standalone updates from the Microsoft Update Catalog website.
What should I do if the installation of KB5012170 fails?
- Press Win I to access Settings.
- Select the System category and click Troubleshoot.
- Press the Other Troubleshooting button.
- Press the Run button next to Windows Update.
The above is the detailed content of KB5012170: Take a closer look at this cumulative update. For more information, please follow other related articles on the PHP Chinese website!

Hot AI Tools

Undresser.AI Undress
AI-powered app for creating realistic nude photos

AI Clothes Remover
Online AI tool for removing clothes from photos.

Undress AI Tool
Undress images for free

Clothoff.io
AI clothes remover

Video Face Swap
Swap faces in any video effortlessly with our completely free AI face swap tool!

Hot Article

Hot Tools

Notepad++7.3.1
Easy-to-use and free code editor

SublimeText3 Chinese version
Chinese version, very easy to use

Zend Studio 13.0.1
Powerful PHP integrated development environment

Dreamweaver CS6
Visual web development tools

SublimeText3 Mac version
God-level code editing software (SublimeText3)

Hot Topics

Many Windows 11 users have encountered the error message “The driver could not be loaded on this device (ene.sys)” which prevents the driver from loading on the system and is marked as vulnerable. However, this issue is mainly reported by users who have upgraded their PC to Windows 11. This error is closely related to drivers and files that get corrupted due to system operating system update issues. If you are encountering this “ene.sys” error every time you turn on your Windows 11 computer after an update, continue reading this article. Here you will find some troubleshooting methods that you can use if you see this error on your PC. Fix 1 – Install Optional Update Step 1. Use Windows+R group

Several Windows users have complained that when they try to access some websites on Google Chrome browser on their systems, they are unable to access the web pages. It also displays a message on the browser saying "The site cannot be reached" with error code ERR_ADDRESS_UNREACHABLE. There could be many potential reasons behind this issue, it could be due to website server issues, proxy server settings, unstable internet connection, etc. If you encounter similar problems, don't panic. After deeply analyzing the problem in this article, we got a bunch of solutions. Before proceeding, try the following workarounds: Try checking if the user is trying to access the site from other devices and there are no issues, then this

No matter how many instant messaging apps have come and gone, email always has a completely different feel to it. Mailing is truly synonymous with Gmail. Not to mention a professional front desk, Gmail is unavoidable, just unavoidable! Since Gmail is used so frequently, no matter what, you have to know how to make your Gmail experience the smoothest and most efficient. You will most likely need to add a lot of web links in the body of your email, and it will definitely look unwieldy if you have so many links. But links are definitely necessary, even if long links will definitely make your email look ugly. So is there a way out? What about hyperlinks? How do you hide a link in text or an image? Sound cool? Oh yes, Gmail is

If you have Discord Do Not Disturb enabled, you will not see any notifications on your app. This includes servers, group chats, and direct messages. Discord is a chat application that allows users to communicate through text, pictures, and video calls in games. It is designed to be a communication channel for gamers to chat and coordinate with each other in real time. DND settings allow you to disable all incoming messages you don't want to see. This is useful if you don't want to be disturbed by any messages while you are working. Additionally, you can also try the best Discord bots that can help you manage your guild while you are away. If you're wondering what Discord Do Not Disturb means and how to use it, this tutorial should help. D

As Windows 11 is released to the public, most users are excited to upgrade to the latest version. But some people are facing a very unique problem - Windows 11 cFosSpeed driver error. When users try to upgrade to Windows 11 through Setup, they receive an error message that says Your PC has a service that is not ready for this version of Windows 11. A new version is available. When others try to install the driver and receive the message that cfosspeed driver installation failed. For most people, the cFosSpeed driver itself is a new thing and they have never heard of it before. Therefore, before we proceed

What does graphics device error code 22 mean and what causes it? When you encounter error code 22, you will always see the error message This device is disabled. (Code 22). You can view more details about this graphics device driver error code 22 by going to the Device Status area in the device properties. We also discussed Error code 11 in Windows 43. You can also check out our guide on how to fix graphics device error code 31 on your PC. Device is actually disabled: The device in question may throw you this error code 22 and is actually disabled. There are driver issues: Incompatible or corrupted driver files can also cause multiple issues with the device program. Drivers are not the most

There are many different ways you can play video games on your Windows 11 computer. A classic mouse and keyboard, Xbox controller or PlayStation 4 controller; all run on Microsoft's latest operating system. But there are reports that the PS4 controller may not be recognized on your Windows 11 PC. This may be due to outdated Bluetooth drivers not working properly or DS4Windows not working properly. What are the fixes for PS4 controller not recognized? Your PS4 can connect to your PC via Bluetooth, but many games don't support the controller and prefer Xbox devices. This is how you download and install DS4Windo

While trying to change the permissions of a file or folder, you may often encounter the error - Unable to enumerate objects in container Access is denied. Although as an administrator you can change the access rights, sometimes even an administrator may encounter the same error message. This is a common mistake that is usually made by users on different forums. In this case, even the administrator cannot change the permissions of a specific user or other user groups when access is denied on Windows 10/11. Additionally, many users also face an issue of not being able to enumerate objects during Azure file sharing, which can apparently be solved by assigning the appropriate RBAC role (the elevated participant role for SMB shares that store file data). In this article we