Will CVE-2023-24932 applied revocations on servers void our backups?

Joshua Kirk 0 Reputation points
2023-05-10T09:11:26.7966667+00:00

After viewing May release for security updates, I had a question regarding applying the patch to servers for the Secure Boot CVE-2023-24932. If we were to apply to update and then the revocations, will this then void the backups of that server(s). The CVE mentions that once the revocations, there can be issues with booting if an image/backup gets applied after the may update and revocations were applied?

Windows Server
Windows Server
A family of Microsoft server operating systems that support enterprise-level management, data storage, applications, and communications.
13,054 questions
Windows Server Backup
Windows Server Backup
Windows Server: A family of Microsoft server operating systems that support enterprise-level management, data storage, applications, and communications.Backup: A duplicate copy of a program, a disk, or data, made either for archiving purposes or for safeguarding valuable files from loss should the active copy be damaged or destroyed.
474 questions
Windows Server Security
Windows Server Security
Windows Server: A family of Microsoft server operating systems that support enterprise-level management, data storage, applications, and communications.Security: The precautions taken to guard against crime, attack, sabotage, espionage, or another threat.
1,834 questions
0 comments No comments
{count} votes

1 answer

Sort by: Most helpful
  1. Arren Conner 0 Reputation points Microsoft Employee
    2023-05-10T20:59:47.88+00:00

    See the 2nd bullet in the Avoiding issues with your Bootable Media section of KB5025885: How to manage the Windows Boot Manager revocations for Secure Boot changes associated with CVE-2023-24932

    • Backups of Windows which were imaged before the installation of updates released on or after May 9, 2023. These will not be directly usable to restore your Windows installation after the revocations have been enabled on your device.

    Backups created on devices with pre May 9 boot manager and revocations will restore on devices with boot managers and revocatons release on and after May 9, 2023 but will trigger a no boot condition listed in the Troubleshooting boot issues section of the same article.

    Best practice is to refresh and separate pre and post-May 9 backups
    Use the recovery steps if you must restore a pre-May 9 backup.

    0 comments No comments

Your answer

Answers can be marked as Accepted Answers by the question author, which helps users to know the answer solved the author's problem.