There's nothing stopping a signed bootloader from sticking new keys in MOK. We assume that we can trust the signing body. _______________________________________________ kernel mailing list [email protected] https://admin.fedoraproject.org/mailman/listinfo/kernel
- Re: [Fedora 09/19] binfmt_elf: Elf executable signature ve... Matthew Garrett
