Mailinglist Archive: opensuse (794 mails)

< Previous Next >
Re: [opensuse] Installing IME firmware updates in openSuSE
  • From: Peter Suetterlin <P.Suetterlin@xxxxxxxxxxxx>
  • Date: Tue, 28 Nov 2017 20:27:08 +0000
  • Message-id: <20171128202708.gz3tapjdztyku6h3@woodstock.pitnet>
Christopher Myers wrote:
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA512

I ran Intel's IME firmware bug detection tool on my Lenovo T570 today,
and it said that my laptop is vulnerable and to contact my vendor.

yes, same issue on my T460p :(

So I went to Lenovo's website and found patches...for Windows only. I'm
going to bet that Lenovo won't release Linux patches, or bootable CDs with
firmware patches, etc.

I'm not sure how/if the IME is 'part of the BIOS'. One possible thing would
be that the current IME fix is really a hotfix, and that a more general BIOS
update (that also brings this IME update) will show up at a later point.
BIOS updates do work as they supply CD images that you can use to create a USB
boot stick (done that twice so far in 15 months).

Out of curiosity, how are others addressing things like this? Do I
really have to swap out my hard drive with a Windows version to install
the patch, and then revert back to my nice safe Linux home afterwards?

Well, I don't even have any windows around that I could use. For now I'll
wait for the next BIOS update and see what happens then...

--
To unsubscribe, e-mail: opensuse+unsubscribe@xxxxxxxxxxxx
To contact the owner, e-mail: opensuse+owner@xxxxxxxxxxxx

< Previous Next >
Follow Ups
References