Unsolved

This post is more than 5 years old

7 Posts

5528

January 17th, 2018 05:00

Dell AIO Inspiron 22 3263 BIOS (1.0.0) now showing Secure Boot Violation

I have a Secure Boot Violation (red and black screen) showing on my Mum's Inspiron.  The message reads "Invalid Signature Detected. Check Secure Boot Policy in Setup".

The only option available is OK which takes you to the Dell SupportAssist.  It performs a Hardware Scan and the results are "Hardware scan complete with no issues. Noo bootable devices were found! Possible causes could be corrupt OS image or a boot device is not enabled in BIOS setup.

There was an "urgent" BIOS update released on 9th Jan (1.7.0) but this wasn't accepted as my Mum is very risk averse.

Would getting the new BIOS version on the Inspiron fix it and, if so, how can I do it?  I've downloaded it to a USB stick from my laptop. This computer is not yet 1 year old.

Thanks very much for any help received.

7 Posts

January 17th, 2018 03:00

Hi,

My Mum has a Dell Inspiron 22-3263. Her computer also went horribly wrong after Saturday night.

She now gets a black screen with a red section which says "Secure Boot Violation Invald Signature Detected. Check Secure Boot Policy in Set Up".

If you press OK (only option) it goes into the Dell SupportAssist which runs a scan.  Results are "Hardware scan complete with no issues. No bootable devices were found! Possible causes could be a corrupt OS image or a boot device is not enabled in BIOS setup".

Any help greatly received. The computer is less than 1 year old.

Thanks

Joyce

 

Community Manager

 • 

56.9K Posts

 • 

232.1K Points

January 17th, 2018 09:00

Let's backup.

Does the Inspiron 22-3263 currently boot into the operating system?
Turn it off, then on. Press F2. Can you enter the BIOS? If yes;
- Main screen. Does it list a Fixed HDD?
- Boot screen. What is listed?

7 Posts

January 17th, 2018 09:00

It boots to a screen that says "Secure Boot Violation Invalid signature detected. Check secure boot policy in setup". I can get into setup or boot screen. Boot screen lists UEFI options of Windows Boot Manager, Onboard NIC (IPV4), Onboard NIC (IPV6). Other Options are Diagnostics or Enter Setup. Peripheral Device Setting (OPROM Setting) has BIOS Flash Update or Change Boot Mode Setting. Thanks

7 Posts

January 17th, 2018 10:00

It does have a Fixed HDD. It's description starts "WDC WD10JPVX" etc. Thanks

12 Elder

 • 

45.2K Posts

 • 

172.6K Points

January 17th, 2018 12:00

@JoycieB

Is this Win 10?

Did she recently install any new software or get a BIOS update from Dell?

This could be as simple as a authentic driver file not having the right signature or possibly a blocked malware attack.

Do you have a bootable rescue DVD/CD or USB with an antiviral app on it to scan the hard drive, in case she got hit with malware? Check with her anti-malware provider to see if they provide instructions to create one.

There are also some free ones, but I don't know how good they are, but they'd be a place to start if your provider doesn't allow you to create one with their product. You might want to run several of them, since they all may find (or miss) different malware.

Create a separate USB or DVD/CD for each one you want to run and then boot from it by connecting the USB first (or put the disk in the drawer) then power on and immediately press F12 and look for the option to boot from USB (or CD/DVD).

Then try to reboot normally and see if you still get the Secure Boot warning.

EDITED

 

 

Community Manager

 • 

56.9K Posts

 • 

232.1K Points

January 18th, 2018 05:00

So the 1TB Western Digital hard drive is seen by the BIOS which is good. On the Boot screen, which option is currently selected?

12 Elder

 • 

45.2K Posts

 • 

172.6K Points

January 18th, 2018 11:00

You asked this same question and I responded in another thread.

If Mum didn't accept the updates from SupportAssist, it's possible she has malware (or an unsigned driver), and I posted some suggestions to boot from USB and scan for malware. I'd do that before disabling Secure Boot in  BIOS, which could give malware full control of the system.

7 Posts

January 18th, 2018 15:00

The boot screen selection order is:

Windows Boot Manager,

Onboard NIC (IPV4),

Onboard NIC (IPV6)

Thanks

7 Posts

January 19th, 2018 13:00

Hi,

So I followed some guidance as to how to correctly copy the Windows10 file onto a USB to try to boot up the computer via that route. When I tried to add it to the Boot Option Priorities I couldn't get it to find the USB drive.

The only option that was coming up to add was the WDC WD10 etc, so I selected it, and selected through boot etc to a file called "bootx64.efi".  I googled what it was before selecting it then, after reading about it, selected it as an option.

I restarted the computer and it came up with a message saying that the computer hadn't started up propery (or similar) and would I like to troubleshoot. It let me Reset the PC whilst keeping my Mum's files (photos).  Once done it let me into Windows 10 and I've backed up all of the photos onto an external hard drive.

I've restarted it a few times since then and it all seems to be operating properly.  Thank you so much for all of your help on here.  It gave me the confidence to do techy things I wasn't entirely sure about :)

12 Elder

 • 

45.2K Posts

 • 

172.6K Points

January 19th, 2018 16:00

Glad you got it sorted. :Yes:

I'd still run a thorough malware scan, just to be safe...

11 Legend

 • 

47K Posts

June 21st, 2019 05:00

DSA-2019-051: Dell SupportAssist Client Multiple Vulnerabilities

DSA Identifier: DSA-2019-051

CVE Identifier: CVE-2019-3718, CVE-2019-3719

Severity: High

 

Severity Rating: CVSS Base Score: See below for NVD Scores

 

Affected products:

Dell SupportAssist Client versions prior to 3.2.0.90.

 

Summary:

Dell SupportAssist Client has been updated to address multiple vulnerabilities which may be potentially exploited to compromise the system.

 

Details:

 

Improper Origin Validation (CVE-2019-3718)

 

Dell SupportAssist Client versions prior to 3.2.0.90 contain an improper origin validation vulnerability. An unauthenticated remote attacker could potentially exploit this vulnerability to attempt CSRF attacks on users of the impacted systems.

CVSSv3 Base Score: 7.6 (AV:N/AC:L/PR:N/UI:R/S:U/C:L/I:L/A:H)

 

Remote Code Execution Vulnerability (CVE-2019-3719)

 

Dell SupportAssist Client versions prior to 3.2.0.90 contain a remote code execution vulnerability. An unauthenticated attacker, sharing the network access layer with the vulnerable system, can compromise the vulnerable system by tricking a victim user into downloading and executing arbitrary executables via SupportAssist client from attacker hosted sites.

CVSSv3 Base Score: 7.1 (AV:A/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H)

 

Resolution:

The following Dell SupportAssist Client release contains resolutions to these vulnerabilities:

 

  • Dell SupportAssist Client version 3.2.0.90 and later.

 

 

Dell recommends all customers upgrade at the earliest opportunity.

 

 

Link to remedies:

 

Customers can download software from https://downloads.dell.com/serviceability/Catalog/SupportAssistInstaller.exe.

 

 

Credit:

Dell would like to thank John C. Hennessy-ReCar for reporting CVE-2019-3718 and Bill Demirkapi for reporting CVE-2019-3719.

 

 

Dell recommends that all users determine the applicability of this information to their individual situations and take appropriate action. The information set forth herein is provided "as is" without warranty of any kind. Dell disclaims all warranties, either express or implied, including the warranties of merchantability, fitness for a particular purpose, title and non-infringement. In no event, shall Dell or its suppliers, be liable for any damages whatsoever including direct, indirect, incidental, consequential, loss of business profits or special damages, even if Dell or its suppliers have been advised of the possibility of such damages. Some states do not allow the exclusion or limitation of liability for consequential or incidental damages, so the foregoing limitation may not apply.




Article ID: SLN316857

Last Date Modified: 04/23/2019 11:19 AM

No Events found!

Top