{"id":58144,"date":"2020-08-01T11:15:00","date_gmt":"2020-08-01T11:15:00","guid":{"rendered":"https:\/\/icrowdnewswire.com\/?p=2684605"},"modified":"2020-08-01T11:15:00","modified_gmt":"2020-08-01T11:15:00","slug":"red-hat-and-centos-systems-arent-booting-due-to-boothole-patches","status":"publish","type":"post","link":"https:\/\/ipsnews.net\/business\/2020\/08\/01\/red-hat-and-centos-systems-arent-booting-due-to-boothole-patches\/","title":{"rendered":"Red Hat and CentOS systems aren\u2019t booting due to BootHole patches"},"content":{"rendered":"<p><img loading=\"lazy\" decoding=\"async\" width=\"233\" height=\"24\" src=\"https:\/\/icrowdnewswire.com\/wp-content\/uploads\/2020\/06\/4001-logo.png\" class=\"webfeedsFeaturedVisual wp-post-image\" alt=\"\" style=\"display: block; margin-bottom: 5px; clear:both;max-width: 100%;\" link_thumbnail=\"\" \/><\/p>\n<h2>Well, you can&#8217;t be vulnerable to BootHole if you can&#8217;t boot your system.<\/h2>\n<section class=\"post-meta\"><img loading=\"lazy\" decoding=\"async\" src=\"https:\/\/cdn.arstechnica.net\/wp-content\/uploads\/2020\/07\/grub2-boot-worm-update-800x450.jpg\" alt=\"A cartoon worm erupts from a computer chip.\" width=\"699\" height=\"393\" \/><\/section>\n<section class=\"post-meta\">\n<p>Early this morning, an urgent&nbsp;<a href=\"https:\/\/bugzilla.redhat.com\/show_bug.cgi?id=1861977\">bug<\/a>&nbsp;showed up at Red Hat&#8217;s bugzilla bug tracker&mdash;a user discovered that the RHSA_2020:3216 grub2 security update and RHSA-2020:3218 kernel security update rendered an RHEL 8.2 system unbootable. The bug was reported as reproducible on any clean minimal install of Red Hat Enterprise Linux 8.2.<\/p>\n<p>The patches were intended to close a newly discovered vulnerability in the GRUB2 boot manager called&nbsp;<a href=\"https:\/\/arstechnica.com\/information-technology\/2020\/07\/new-flaw-neuters-secure-boot-but-theres-no-reason-to-panic-heres-why\/\">BootHole<\/a>. The vulnerability itself left a method for system attackers to potentially install &#8220;bootkit&#8221; malware on a Linux system despite that system being protected with UEFI Secure Boot.<\/p>\n<p>&nbsp;<\/p>\n<h2>RHEL and CentOS<\/h2>\n<p>Unfortunately, Red Hat&#8217;s patch to GRUB2 and the kernel, once applied, are leaving patched systems unbootable. The issue is confirmed to affect RHEL 7.8 and RHEL 8.2, and it may affect RHEL 8.1 and 7.9 as well. RHEL-derivative distribution CentOS is also affected.<\/p>\n<p>Red Hat is currently&nbsp;<a href=\"https:\/\/access.redhat.com\/solutions\/5272311\">advising<\/a>&nbsp;users not to apply the GRUB2 security patches (<a href=\"https:\/\/access.redhat.com\/errata\/RHSA-2020:3216\">RHSA-2020:3216<\/a>&nbsp;or&nbsp;<a href=\"https:\/\/access.redhat.com\/errata\/RHSA-2020:3217\">RHSA-2020:3217<\/a>) until these issues have been resolved. If you administer a RHEL or CentOS system and believe you may have installed these patches,&nbsp;<em>do not reboot your system<\/em>. Downgrade the affected packages using&nbsp;<code>sudo yum downgrade shim\\* grub2\\* mokutil<\/code>&nbsp;and configure&nbsp;<code>yum<\/code>&nbsp;not to upgrade those packages by temporarily adding&nbsp;<code>exclude=grub2* shim* mokutil<\/code>&nbsp;to&nbsp;<code>\/etc\/yum.conf<\/code>.<\/p>\n<p>If you&#8217;ve already applied the patches and attempted (and failed) to reboot, boot from an RHEL or CentOS DVD in Troubleshooting mode,&nbsp;<a href=\"https:\/\/access.redhat.com\/solutions\/2626631\">set up the network<\/a>, then perform the same steps outlined above in order to restore functionality to your system.<\/p>\n<h2>Other distributions<\/h2>\n<p>Although the bug was first reported in Red Hat Enterprise Linux, apparently related bug reports are rolling in from other distributions from different families as well. Ubuntu and Debian users are&nbsp;<a href=\"https:\/\/bugs.launchpad.net\/ubuntu\/+source\/grub2\/+bug\/1889509\">reporting<\/a>&nbsp;systems which cannot boot after installing GRUB2 updates, and Canonical has issued an advisory including&nbsp;<a href=\"https:\/\/wiki.ubuntu.com\/SecurityTeam\/KnowledgeBase\/GRUB2SecureBootBypass?WUwbDVmRWk5RCtJZ2IyNUU2SyJ9#Recovery\">instructions<\/a>&nbsp;for recovery on affected systems.<\/p>\n<p>Although the impact of the GRUB2 bug is similar, the scope may be different from distribution to distribution; so far it appears the Debian\/Ubuntu GRUB2 bug is only&nbsp;<a href=\"https:\/\/bugs.launchpad.net\/ubuntu\/+source\/grub2\/+bug\/1889556\">affecting<\/a>&nbsp;systems which boot in BIOS (not UEFI) mode. A fix has already been committed to Ubuntu&#8217;s&nbsp;<code>proposed<\/code>&nbsp;repository, tested, and released to its&nbsp;<code>updates<\/code>&nbsp;repository. The updated and released packages,&nbsp;<code>grub2 (2.02~beta2-36ubuntu3.27) xenial<\/code>&nbsp;and&nbsp;<code>grub2 (2.04-1ubuntu26.2) focal<\/code>, should resolve the problem for Ubuntu users.<\/p>\n<p>For Debian users, the&nbsp;<a href=\"https:\/\/bugs.debian.org\/cgi-bin\/bugreport.cgi?bug=966554\">fix<\/a>&nbsp;is available in newly committed package&nbsp;<code>grub2 (2.02+dfsg1-20+deb10u2)<\/code>.<\/p>\n<p>We do not have any word at this time about flaws in or impact of GRUB2 BootHole patches on other distributions such as Arch, Gentoo, or Clear Linux.<\/p>\n<\/section>\n<p class=\"tags\">\n<div><strong>See Campaign: <\/strong><a href=\"https:\/\/arstechnica.com\/information-technology\/2020\/07\/new-flaw-neuters-secure-boot-but-theres-no-reason-to-panic-heres-why\/\" target=\"_blank\">https:\/\/arstechnica.com\/information-technology\/2020\/07\/new-flaw-neuters-secure-boot-but-theres-no-reason-to-panic-heres-why\/<\/a><br \/><b>Contact Information:<\/b><br \/>JIM SALTER <\/p>\n<p><b>Tags:<\/b><br \/><a href=\"\"><\/a>, <a href=\"https:\/\/icrowdnewswire.com\/category\/news-category\/wire\/\" rel=\"category tag\">Wire<\/a>, <a href=\"https:\/\/icrowdnewswire.com\/category\/global-regions\/united-states\/\" rel=\"category tag\">United States<\/a>, <a href=\"https:\/\/icrowdnewswire.com\/category\/language\/english\/\" rel=\"category tag\">English<\/a><\/p>\n<p><img loading=\"lazy\" decoding=\"async\" src=\"\" alt=\"image\" width=\"400\" height=\"300\" class=\"cwdfimg\" \/><\/div>\n<div>\n<h3>Contact Information:<\/h3>\n<p>JIM SALTER <\/p>\n<\/p><\/div>\n","protected":false},"excerpt":{"rendered":"<p><img loading=\"lazy\" decoding=\"async\" width=\"233\" height=\"24\" src=\"https:\/\/icrowdnewswire.com\/wp-content\/uploads\/2020\/06\/4001-logo.png\" alt=\"\">Well, you can&rsquo;t be vulnerable to BootHole if you can&rsquo;t boot your system. Early this morning, an urgent&nbsp;bug&nbsp;showed up at Red Hat&rsquo;s bugzilla bug tracker&mdash;a user discovered that the RHSA_2020:3216 grub2 security update and RHSA-2020:3218 kernel security update rendered an RHEL 8.2 system unbootable. The bug was reported as reproducible on any clean minimal install &hellip; <a href=\"https:\/\/icrowdnewswire.com\/2020\/08\/01\/red-hat-and-centos-systems-arent-booting-due-to-boothole-patches\/\">Continue reading <span>Red Hat and CentOS systems aren&rsquo;t booting due to BootHole patches<\/span><\/a> <a href=\"https:\/\/ipsnews.net\/business\/2020\/08\/01\/red-hat-and-centos-systems-arent-booting-due-to-boothole-patches\/\" class=\"more-link\">Continue Reading <span class=\"meta-nav\">&rarr;<\/span><\/a><\/p>\n","protected":false},"author":47,"featured_media":0,"comment_status":"closed","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[3,22,54],"tags":[],"class_list":["post-58144","post","type-post","status-publish","format-standard","hentry","category-english","category-united-states","category-wire"],"yoast_head":"<!-- This site is optimized with the Yoast SEO plugin v24.9 - https:\/\/yoast.com\/wordpress\/plugins\/seo\/ -->\n<title>Red Hat and CentOS systems aren\u2019t booting due to BootHole patches - Business<\/title>\n<meta name=\"robots\" content=\"index, follow, max-snippet:-1, max-image-preview:large, max-video-preview:-1\" \/>\n<link rel=\"canonical\" href=\"https:\/\/ipsnews.net\/business\/2020\/08\/01\/red-hat-and-centos-systems-arent-booting-due-to-boothole-patches\/\" \/>\n<meta property=\"og:locale\" content=\"en_US\" \/>\n<meta property=\"og:type\" content=\"article\" \/>\n<meta property=\"og:title\" content=\"Red Hat and CentOS systems aren\u2019t booting due to BootHole patches - Business\" \/>\n<meta property=\"og:description\" content=\"Well, you can&rsquo;t be vulnerable to BootHole if you can&rsquo;t boot your system. Early this morning, an urgent&nbsp;bug&nbsp;showed up at Red Hat&rsquo;s bugzilla bug tracker&mdash;a user discovered that the RHSA_2020:3216 grub2 security update and RHSA-2020:3218 kernel security update rendered an RHEL 8.2 system unbootable. The bug was reported as reproducible on any clean minimal install &hellip; Continue reading Red Hat and CentOS systems aren&rsquo;t booting due to BootHole patches Continue Reading &rarr;\" \/>\n<meta property=\"og:url\" content=\"https:\/\/ipsnews.net\/business\/2020\/08\/01\/red-hat-and-centos-systems-arent-booting-due-to-boothole-patches\/\" \/>\n<meta property=\"og:site_name\" content=\"Business\" \/>\n<meta property=\"article:published_time\" content=\"2020-08-01T11:15:00+00:00\" \/>\n<meta property=\"og:image\" content=\"https:\/\/icrowdnewswire.com\/wp-content\/uploads\/2020\/06\/4001-logo.png\" \/>\n<meta name=\"author\" content=\"Bilal\" \/>\n<meta name=\"twitter:card\" content=\"summary_large_image\" \/>\n<meta name=\"twitter:label1\" content=\"Written by\" \/>\n\t<meta name=\"twitter:data1\" content=\"Bilal\" \/>\n\t<meta name=\"twitter:label2\" content=\"Est. reading time\" \/>\n\t<meta name=\"twitter:data2\" content=\"2 minutes\" \/>\n<script type=\"application\/ld+json\" class=\"yoast-schema-graph\">{\"@context\":\"https:\/\/schema.org\",\"@graph\":[{\"@type\":\"WebPage\",\"@id\":\"https:\/\/ipsnews.net\/business\/2020\/08\/01\/red-hat-and-centos-systems-arent-booting-due-to-boothole-patches\/\",\"url\":\"https:\/\/ipsnews.net\/business\/2020\/08\/01\/red-hat-and-centos-systems-arent-booting-due-to-boothole-patches\/\",\"name\":\"Red Hat and CentOS systems aren\u2019t booting due to BootHole patches - Business\",\"isPartOf\":{\"@id\":\"https:\/\/ipsnews.net\/business\/#website\"},\"primaryImageOfPage\":{\"@id\":\"https:\/\/ipsnews.net\/business\/2020\/08\/01\/red-hat-and-centos-systems-arent-booting-due-to-boothole-patches\/#primaryimage\"},\"image\":{\"@id\":\"https:\/\/ipsnews.net\/business\/2020\/08\/01\/red-hat-and-centos-systems-arent-booting-due-to-boothole-patches\/#primaryimage\"},\"thumbnailUrl\":\"https:\/\/icrowdnewswire.com\/wp-content\/uploads\/2020\/06\/4001-logo.png\",\"datePublished\":\"2020-08-01T11:15:00+00:00\",\"author\":{\"@id\":\"https:\/\/ipsnews.net\/business\/#\/schema\/person\/70b05bacee6cf8a877350412fae25e20\"},\"breadcrumb\":{\"@id\":\"https:\/\/ipsnews.net\/business\/2020\/08\/01\/red-hat-and-centos-systems-arent-booting-due-to-boothole-patches\/#breadcrumb\"},\"inLanguage\":\"en-US\",\"potentialAction\":[{\"@type\":\"ReadAction\",\"target\":[\"https:\/\/ipsnews.net\/business\/2020\/08\/01\/red-hat-and-centos-systems-arent-booting-due-to-boothole-patches\/\"]}]},{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\/\/ipsnews.net\/business\/2020\/08\/01\/red-hat-and-centos-systems-arent-booting-due-to-boothole-patches\/#primaryimage\",\"url\":\"https:\/\/icrowdnewswire.com\/wp-content\/uploads\/2020\/06\/4001-logo.png\",\"contentUrl\":\"https:\/\/icrowdnewswire.com\/wp-content\/uploads\/2020\/06\/4001-logo.png\"},{\"@type\":\"BreadcrumbList\",\"@id\":\"https:\/\/ipsnews.net\/business\/2020\/08\/01\/red-hat-and-centos-systems-arent-booting-due-to-boothole-patches\/#breadcrumb\",\"itemListElement\":[{\"@type\":\"ListItem\",\"position\":1,\"name\":\"Home\",\"item\":\"https:\/\/ipsnews.net\/business\/\"},{\"@type\":\"ListItem\",\"position\":2,\"name\":\"Red Hat and CentOS systems aren\u2019t booting due to BootHole patches\"}]},{\"@type\":\"WebSite\",\"@id\":\"https:\/\/ipsnews.net\/business\/#website\",\"url\":\"https:\/\/ipsnews.net\/business\/\",\"name\":\"Business\",\"description\":\"\",\"potentialAction\":[{\"@type\":\"SearchAction\",\"target\":{\"@type\":\"EntryPoint\",\"urlTemplate\":\"https:\/\/ipsnews.net\/business\/?s={search_term_string}\"},\"query-input\":{\"@type\":\"PropertyValueSpecification\",\"valueRequired\":true,\"valueName\":\"search_term_string\"}}],\"inLanguage\":\"en-US\"},{\"@type\":\"Person\",\"@id\":\"https:\/\/ipsnews.net\/business\/#\/schema\/person\/70b05bacee6cf8a877350412fae25e20\",\"name\":\"Bilal\",\"image\":{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\/\/ipsnews.net\/business\/#\/schema\/person\/image\/\",\"url\":\"https:\/\/secure.gravatar.com\/avatar\/01d05f3f41cc0f9ca88d2011a983bb3f2e83e3e92e3532188bf201df38d2aea8?s=96&d=mm&r=g\",\"contentUrl\":\"https:\/\/secure.gravatar.com\/avatar\/01d05f3f41cc0f9ca88d2011a983bb3f2e83e3e92e3532188bf201df38d2aea8?s=96&d=mm&r=g\",\"caption\":\"Bilal\"},\"sameAs\":[\"https:\/\/icrowdnewswire.com\/fc\"],\"url\":\"https:\/\/ipsnews.net\/business\/author\/bilal\/\"}]}<\/script>\n<!-- \/ Yoast SEO plugin. -->","yoast_head_json":{"title":"Red Hat and CentOS systems aren\u2019t booting due to BootHole patches - Business","robots":{"index":"index","follow":"follow","max-snippet":"max-snippet:-1","max-image-preview":"max-image-preview:large","max-video-preview":"max-video-preview:-1"},"canonical":"https:\/\/ipsnews.net\/business\/2020\/08\/01\/red-hat-and-centos-systems-arent-booting-due-to-boothole-patches\/","og_locale":"en_US","og_type":"article","og_title":"Red Hat and CentOS systems aren\u2019t booting due to BootHole patches - Business","og_description":"Well, you can&rsquo;t be vulnerable to BootHole if you can&rsquo;t boot your system. Early this morning, an urgent&nbsp;bug&nbsp;showed up at Red Hat&rsquo;s bugzilla bug tracker&mdash;a user discovered that the RHSA_2020:3216 grub2 security update and RHSA-2020:3218 kernel security update rendered an RHEL 8.2 system unbootable. The bug was reported as reproducible on any clean minimal install &hellip; Continue reading Red Hat and CentOS systems aren&rsquo;t booting due to BootHole patches Continue Reading &rarr;","og_url":"https:\/\/ipsnews.net\/business\/2020\/08\/01\/red-hat-and-centos-systems-arent-booting-due-to-boothole-patches\/","og_site_name":"Business","article_published_time":"2020-08-01T11:15:00+00:00","og_image":[{"url":"https:\/\/icrowdnewswire.com\/wp-content\/uploads\/2020\/06\/4001-logo.png","type":"","width":"","height":""}],"author":"Bilal","twitter_card":"summary_large_image","twitter_misc":{"Written by":"Bilal","Est. reading time":"2 minutes"},"schema":{"@context":"https:\/\/schema.org","@graph":[{"@type":"WebPage","@id":"https:\/\/ipsnews.net\/business\/2020\/08\/01\/red-hat-and-centos-systems-arent-booting-due-to-boothole-patches\/","url":"https:\/\/ipsnews.net\/business\/2020\/08\/01\/red-hat-and-centos-systems-arent-booting-due-to-boothole-patches\/","name":"Red Hat and CentOS systems aren\u2019t booting due to BootHole patches - Business","isPartOf":{"@id":"https:\/\/ipsnews.net\/business\/#website"},"primaryImageOfPage":{"@id":"https:\/\/ipsnews.net\/business\/2020\/08\/01\/red-hat-and-centos-systems-arent-booting-due-to-boothole-patches\/#primaryimage"},"image":{"@id":"https:\/\/ipsnews.net\/business\/2020\/08\/01\/red-hat-and-centos-systems-arent-booting-due-to-boothole-patches\/#primaryimage"},"thumbnailUrl":"https:\/\/icrowdnewswire.com\/wp-content\/uploads\/2020\/06\/4001-logo.png","datePublished":"2020-08-01T11:15:00+00:00","author":{"@id":"https:\/\/ipsnews.net\/business\/#\/schema\/person\/70b05bacee6cf8a877350412fae25e20"},"breadcrumb":{"@id":"https:\/\/ipsnews.net\/business\/2020\/08\/01\/red-hat-and-centos-systems-arent-booting-due-to-boothole-patches\/#breadcrumb"},"inLanguage":"en-US","potentialAction":[{"@type":"ReadAction","target":["https:\/\/ipsnews.net\/business\/2020\/08\/01\/red-hat-and-centos-systems-arent-booting-due-to-boothole-patches\/"]}]},{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/ipsnews.net\/business\/2020\/08\/01\/red-hat-and-centos-systems-arent-booting-due-to-boothole-patches\/#primaryimage","url":"https:\/\/icrowdnewswire.com\/wp-content\/uploads\/2020\/06\/4001-logo.png","contentUrl":"https:\/\/icrowdnewswire.com\/wp-content\/uploads\/2020\/06\/4001-logo.png"},{"@type":"BreadcrumbList","@id":"https:\/\/ipsnews.net\/business\/2020\/08\/01\/red-hat-and-centos-systems-arent-booting-due-to-boothole-patches\/#breadcrumb","itemListElement":[{"@type":"ListItem","position":1,"name":"Home","item":"https:\/\/ipsnews.net\/business\/"},{"@type":"ListItem","position":2,"name":"Red Hat and CentOS systems aren\u2019t booting due to BootHole patches"}]},{"@type":"WebSite","@id":"https:\/\/ipsnews.net\/business\/#website","url":"https:\/\/ipsnews.net\/business\/","name":"Business","description":"","potentialAction":[{"@type":"SearchAction","target":{"@type":"EntryPoint","urlTemplate":"https:\/\/ipsnews.net\/business\/?s={search_term_string}"},"query-input":{"@type":"PropertyValueSpecification","valueRequired":true,"valueName":"search_term_string"}}],"inLanguage":"en-US"},{"@type":"Person","@id":"https:\/\/ipsnews.net\/business\/#\/schema\/person\/70b05bacee6cf8a877350412fae25e20","name":"Bilal","image":{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/ipsnews.net\/business\/#\/schema\/person\/image\/","url":"https:\/\/secure.gravatar.com\/avatar\/01d05f3f41cc0f9ca88d2011a983bb3f2e83e3e92e3532188bf201df38d2aea8?s=96&d=mm&r=g","contentUrl":"https:\/\/secure.gravatar.com\/avatar\/01d05f3f41cc0f9ca88d2011a983bb3f2e83e3e92e3532188bf201df38d2aea8?s=96&d=mm&r=g","caption":"Bilal"},"sameAs":["https:\/\/icrowdnewswire.com\/fc"],"url":"https:\/\/ipsnews.net\/business\/author\/bilal\/"}]}},"amp_enabled":true,"_links":{"self":[{"href":"https:\/\/ipsnews.net\/business\/wp-json\/wp\/v2\/posts\/58144","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/ipsnews.net\/business\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/ipsnews.net\/business\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/ipsnews.net\/business\/wp-json\/wp\/v2\/users\/47"}],"replies":[{"embeddable":true,"href":"https:\/\/ipsnews.net\/business\/wp-json\/wp\/v2\/comments?post=58144"}],"version-history":[{"count":1,"href":"https:\/\/ipsnews.net\/business\/wp-json\/wp\/v2\/posts\/58144\/revisions"}],"predecessor-version":[{"id":58145,"href":"https:\/\/ipsnews.net\/business\/wp-json\/wp\/v2\/posts\/58144\/revisions\/58145"}],"wp:attachment":[{"href":"https:\/\/ipsnews.net\/business\/wp-json\/wp\/v2\/media?parent=58144"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/ipsnews.net\/business\/wp-json\/wp\/v2\/categories?post=58144"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/ipsnews.net\/business\/wp-json\/wp\/v2\/tags?post=58144"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}