@mjg59 Honestly, that's not really a good excuse. It's basically never okay to break someone's systems for any reason. And at least from the Linux side, I know for a fact that several distributions struggled to get updated shims from Microsoft since that CVE, so the damage is considerably worse. For example, Fedora and CentOS Stream both didn't get an updated shim until Fedora 40, after well over a year of needing an updated shim to deal with revocations.