I've a message starting popping up after the upgrade to 23.10 from 23.04, that I've got some updates. Turned out that this is that in the sub. Tried to update and it fails. This is what I've got running fwupdmgr manually:
~$ sudo fwupdmgr update
Devices with no available firmware updates:
• ELAN1200:00 04F3:306F
• SD8SN8U512G1002
• System Firmware
╔══════════════════════════════════════════════════════════════════════════════╗
║ Upgrade UEFI dbx from 77 to 371? ║
╠══════════════════════════════════════════════════════════════════════════════╣
║ Insecure versions of the Microsoft Windows boot manager affected by Black ║
║ Lotus were added to the list of forbidden signatures due to a discovered ║
║ security problem.This updates the dbx to the latest release from Microsoft. ║
║ ║
║ Before installing the update, fwupd will check for any affected executables ║
║ in the ESP and will refuse to update if it finds any boot binaries signed ║
║ with any of the forbidden signatures.Applying this update may also cause ║
║ some Windows install media to not start correctly. ║
║ ║
╚══════════════════════════════════════════════════════════════════════════════╝
Perform operation? [Y|n]: Y
Decompressing… [ ]
Blocked executable in the ESP, ensure grub and shim are up to date: /boot/efi/EFI/Boot/bkpbootx64.efi Authenticode checksum [5b89f1aa2435a03d18d9b203d17fb4fba4f8f5076cf1f9b8d6d9b826222235c1] is present in dbx
I am not sure if I really need this update but the pop-up every time I boot is annoying. Any way to fix it?