Microsoft delivers patch to fix Windows and Linux dual boot problem, 9 months after issue



It has been discovered that a problem that prevented dual booting of Windows and Linux due to a Windows security update in August 2024 has been resolved by a patch distributed in May 2025.

May 13, 2025—KB5058385 (OS Build 20348.3692) - Microsoft Support

https://support.microsoft.com/en-us/topic/may-13-2025-kb5058385-os-build-20348-3692-45f3b455-92fa-4297-9dde-1428b36e53ad



9 Months Later, Microsoft Finally Fixes Linux Dual-Booting Bug

https://news.itsfoss.com/microsoft-fixes-linux-dual-boot/

Linux Windows 11 dual boot to finally play well as Microsoft fixes nine-month old bug - Neowin
https://www.neowin.net/news/linux-windows-11-dual-boot-to-finally-play-well-as-microsoft-fixes-nine-month-old-bug/

On August 14, 2024, Microsoft released a Windows Update that includes a patch for CVE-2022-2601, a vulnerability that could allow the Secure Boot mechanism to be circumvented.

Microsoft explained that this patch 'locks the vulnerable Linux boot loader that affects the Windows security system, but does not affect dual-boot systems.' However, users have reported that they are experiencing issues that make it impossible to dual-boot Windows and Linux.

Reports that Windows updates make dual booting with Linux impossible - GIGAZINE



Nine months after this issue occurred, Microsoft distributed a security update called 'KB5058385' in the May 2025 Windows Update that addressed the issue.

The release notes state very succinctly that 'improvements have been applied to Secure Boot Advanced Targeting (SBAT) to detect Linux systems.' However, news site IT'S FOSS NEWS reports that the logic used to identify legitimate Linux boot loaders has been improved so that they will no longer be blocked as a violation of security policies.

Affected operating systems include Windows 11 23H2, 22H2, 21H2, Windows 10 21H2, Windows Enterprise 2015 LTSB, and Windows Server 2022, 2019, 2016, 2012, and 2012 R2.

No special action is required as security update files are distributed and applied via normal Windows Update.

Although Windows 11 24H2 is not included in the list of affected versions, IT's FOSS NEWS states that a fix may already have been implemented.

in Software, Posted by logc_nt