Skip to content

Add 7 additional Microsoft Surface KEK update packages:#437

Open
jorticus-msft wants to merge 2 commits into
microsoft:mainfrom
jorticus-msft:jasanson/kek-renewal-microsoft-surface
Open

Add 7 additional Microsoft Surface KEK update packages:#437
jorticus-msft wants to merge 2 commits into
microsoft:mainfrom
jorticus-msft:jasanson/kek-renewal-microsoft-surface

Conversation

@jorticus-msft

Copy link
Copy Markdown

Description

Add KEK update binaries for the following Surface PK thumbprints:

  • PK19: 4484F86E (SH2 2022 UEFI PK Signer)

  • PK20: 999B48E3 (AFF UEFI PK CA 2015)

  • PK21: CB8F3251 (LFF 3 Firmware CA 2016)

  • PK22: 5EAE312B (LFF 3 UEFI PK Signer)

  • PK23: C35BFE0D (NFF UEFI PK Signer)

  • PK24: E8DFD45C (LFF 2 UEFI PK CA 2014)

  • PK25: F4BC8D56 (XLFF UEFI PK CA 2014)

  • Impacts functionality?

  • Impacts security?

  • Breaking change?

  • Includes tests?

  • Includes documentation?

How This Was Tested

Tested on Surface devices associated with each thumbprint. No adverse effects to SecureBoot, Secured Core, or Bitlocker.

Integration Instructions

N/A

- PK19: 4484F86E (SH2 2022 UEFI PK Signer)
- PK20: 999B48E3 (AFF UEFI PK CA 2015)
- PK21: CB8F3251 (LFF 3 Firmware CA 2016)
- PK22: 5EAE312B (LFF 3 UEFI PK Signer)
- PK23: C35BFE0D (NFF UEFI PK Signer)
- PK24: E8DFD45C (LFF 2 UEFI PK CA 2014)
- PK25: F4BC8D56 (XLFF UEFI PK CA 2014)
@SochiOgbuanya SochiOgbuanya requested a review from Flickdm June 16, 2026 17:36
- PK26: F7CE1657 (LFF UEFI PK CA 2014)
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant