Firmware security

Hello:

I was browsing through my device information and I happened to notice that under Firmware Security - Info center, Runtimte Suffix -!, Linux Kernel shows tainted.

Does anyone have any information as to why it would show tainted?

No garuda-inxi?

4 Likes
System:
Kernel: 6.1.10-zen1-1-zen arch: x86_64 bits: 64 compiler: gcc v: 12.2.1
parameters: BOOT_IMAGE=/@/boot/vmlinuz-linux-zen
root=UUID=67aa51fa-b43d-4853-9719-27ab7e11d7d5 rw rootflags=subvol=@
quiet
cryptdevice=UUID=b8883085-70cf-4bd8-94b3-897da600175f:luks-b8883085-70cf-4bd8-94b3-897da600175f
root=/dev/mapper/luks-b8883085-70cf-4bd8-94b3-897da600175f quiet splash
rd.udev.log_priority=3 vt.global_cursor_default=0
resume=/dev/mapper/luks-baad57bc-815f-42a1-9b08-7b7975c4484c loglevel=3
ibt=off
Desktop: KDE Plasma v: 5.26.5 tk: Qt v: 5.15.8 info: latte-dock
wm: kwin_x11 vt: 1 dm: SDDM Distro: Garuda Linux base: Arch Linux
Machine:
Type: Laptop System: Micro-Star product: Please change product name
v: REV:1.0 serial: <superuser required> Chassis: type: 10
serial: <superuser required>
Mobo: Micro-Star model: MS-17G1 v: REV:1.0 serial: <superuser required>
UEFI: American Megatrends v: E17G1IMS.111 date: 05/18/2020
Battery:
ID-1: BAT1 charge: 54.2 Wh (100.0%) condition: 54.2/80.3 Wh (67.5%)
volts: 16.1 min: 15.2 model: MSI BIF0_9 type: Li-ion serial: N/A
status: full
CPU:
Info: model: Intel Core i7-9750H bits: 64 type: MT MCP arch: Coffee Lake
gen: core 9 level: v3 note: check built: 2018 process: Intel 14nm family: 6
model-id: 0x9E (158) stepping: 0xA (10) microcode: 0xF0
Topology: cpus: 1x cores: 6 tpc: 2 threads: 12 smt: enabled cache:
L1: 384 KiB desc: d-6x32 KiB; i-6x32 KiB L2: 1.5 MiB desc: 6x256 KiB
L3: 12 MiB desc: 1x12 MiB
Speed (MHz): avg: 2600 min/max: 800/4500 scaling: driver: intel_pstate
governor: performance cores: 1: 2600 2: 2600 3: 2600 4: 2600 5: 2600 6: 2600
7: 2600 8: 2600 9: 2600 10: 2600 11: 2600 12: 2600 bogomips: 62399
Flags: avx avx2 ht lm nx pae sse sse2 sse3 sse4_1 sse4_2 ssse3 vmx
Vulnerabilities: <filter>
Graphics:
Device-1: Intel CoffeeLake-H GT2 [UHD Graphics 630] vendor: Micro-Star MSI
driver: i915 v: kernel arch: Gen-9.5 process: Intel 14nm built: 2016-20
ports: active: eDP-1 empty: none bus-ID: 0000:00:02.0 chip-ID: 8086:3e9b
class-ID: 0300
Device-2: NVIDIA TU106M [GeForce RTX 2070 Mobile] vendor: Micro-Star MSI
driver: nvidia v: 525.89.02 alternate: nouveau,nvidia_drm non-free: 525.xx+
status: current (as of 2023-02) arch: Turing code: TUxxx
process: TSMC 12nm FF built: 2018-22 bus-ID: 0000:01:00.0
chip-ID: 10de:1f10 class-ID: 0300
Device-3: Acer HD Webcam type: USB driver: uvcvideo bus-ID: 1-11:3
chip-ID: 5986:211c class-ID: 0e02
Display: x11 server: X.Org v: 21.1.7 with: Xwayland v: 22.1.7
compositor: kwin_x11 driver: X: loaded: modesetting,nvidia unloaded: nouveau
alternate: fbdev,intel,nv,vesa dri: iris gpu: i915 display-ID: :0
screens: 1
Screen-1: 0 s-res: 1920x1080 s-dpi: 96 s-size: 508x285mm (20.00x11.22")
s-diag: 582mm (22.93")
Monitor-1: eDP-1 model: ChiMei InnoLux 0x175c built: 2018 res: 1920x1080
hz: 144 dpi: 128 gamma: 1.2 size: 381x214mm (15x8.43") diag: 437mm (17.2")
ratio: 16:9 modes: 1920x1080
API: OpenGL v: 4.6 Mesa 22.3.4 renderer: Mesa Intel UHD Graphics 630 (CFL
GT2) direct-render: Yes
Audio:
Device-1: Intel Cannon Lake PCH cAVS vendor: Micro-Star MSI
driver: snd_hda_intel v: kernel alternate: snd_soc_skl,snd_sof_pci_intel_cnl
bus-ID: 0000:00:1f.3 chip-ID: 8086:a348 class-ID: 0403
Device-2: NVIDIA TU106 High Definition Audio vendor: Micro-Star MSI
driver: snd_hda_intel v: kernel bus-ID: 0000:01:00.1 chip-ID: 10de:10f9
class-ID: 0403
Sound API: ALSA v: k6.1.10-zen1-1-zen running: yes
Sound Server-1: PulseAudio v: 16.1 running: no
Sound Server-2: PipeWire v: 0.3.65 running: yes
Network:
Device-1: Intel Cannon Lake PCH CNVi WiFi driver: iwlwifi v: kernel
bus-ID: 0000:00:14.3 chip-ID: 8086:a370 class-ID: 0280
IF: wlo1 state: up mac: <filter>
Device-2: Qualcomm Atheros Killer E2500 Gigabit Ethernet
vendor: Micro-Star MSI driver: alx v: kernel port: 3000 bus-ID: 0000:03:00.0
chip-ID: 1969:e0b1 class-ID: 0200
IF: enp3s0 state: down mac: <filter>
Bluetooth:
Device-1: Intel Bluetooth 9460/9560 Jefferson Peak (JfP) type: USB
driver: btusb v: 0.8 bus-ID: 1-14:4 chip-ID: 8087:0aaa class-ID: e001
Report: bt-adapter ID: hci0 rfk-id: 1 state: up address: <filter>
RAID:
Hardware-1: Intel 82801 Mobile SATA Controller [RAID mode]
driver: intel_nvme_remap v: N/A port: 5060 bus-ID: 0000:00:17.0
chip-ID: 8086:282a rev: N/A class-ID: 0104
Drives:
Local Storage: total: 2.91 TiB used: 30.16 GiB (1.0%)
SMART Message: Unable to run smartctl. Root privileges required.
ID-1: /dev/nvme0n1 maj-min: 259:0 vendor: Apacer model: APS-SE20G-2T
size: 1.86 TiB block-size: physical: 512 B logical: 512 B type: SSD
serial: <filter> rev: ECFM12.3 temp: 24.9 C scheme: GPT
ID-2: /dev/nvme1n1 maj-min: 259:4 vendor: Western Digital
model: PC SN720 SDAPNTW-1T00 size: 953.87 GiB block-size: physical: 512 B
logical: 512 B type: SSD serial: <filter> rev: 10126000 temp: 31.9 C
scheme: GPT
ID-3: /dev/sda maj-min: 8:0 vendor: SanDisk model: X600 M.2 2280 SATA
128GB size: 119.24 GiB block-size: physical: 512 B logical: 512 B
speed: 6.0 Gb/s type: SSD serial: <filter> rev: 3012 scheme: GPT
Partition:
ID-1: / raw-size: 84.7 GiB size: 84.7 GiB (100.00%) used: 30.16 GiB (35.6%)
fs: btrfs dev: /dev/dm-0 maj-min: 254:0
mapped: luks-b8883085-70cf-4bd8-94b3-897da600175f
ID-2: /boot/efi raw-size: 300 MiB size: 299.4 MiB (99.80%)
used: 756 KiB (0.2%) fs: vfat dev: /dev/sda1 maj-min: 8:1
ID-3: /home raw-size: 84.7 GiB size: 84.7 GiB (100.00%)
used: 30.16 GiB (35.6%) fs: btrfs dev: /dev/dm-0 maj-min: 254:0
mapped: luks-b8883085-70cf-4bd8-94b3-897da600175f
ID-4: /var/log raw-size: 84.7 GiB size: 84.7 GiB (100.00%)
used: 30.16 GiB (35.6%) fs: btrfs dev: /dev/dm-0 maj-min: 254:0
mapped: luks-b8883085-70cf-4bd8-94b3-897da600175f
ID-5: /var/tmp raw-size: 84.7 GiB size: 84.7 GiB (100.00%)
used: 30.16 GiB (35.6%) fs: btrfs dev: /dev/dm-0 maj-min: 254:0
mapped: luks-b8883085-70cf-4bd8-94b3-897da600175f
Swap:
Kernel: swappiness: 133 (default 60) cache-pressure: 100 (default)
ID-1: swap-1 type: zram size: 31.2 GiB used: 0 KiB (0.0%) priority: 100
dev: /dev/zram0
ID-2: swap-2 type: partition size: 34.25 GiB used: 0 KiB (0.0%)
priority: -2 dev: /dev/dm-1 maj-min: 254:1
mapped: luks-baad57bc-815f-42a1-9b08-7b7975c4484c
Sensors:
System Temperatures: cpu: 50.0 C pch: 46.0 C mobo: N/A
Fan Speeds (RPM): N/A
Info:
Processes: 329 Uptime: 1m wakeups: 2 Memory: 31.2 GiB used: 2.67 GiB (8.6%)
Init: systemd v: 252 default: graphical tool: systemctl Compilers:
gcc: 12.2.1 Packages: pm: pacman pkgs: 2012 libs: 559 tools: octopi,paru
Shell: fish v: 3.6.0 default: Bash v: 5.1.16 running-in: konsole
inxi: 3.3.25
Garuda (2.6.14-1):
System install date:     2023-02-09
Last full system update: 2023-02-09
Is partially upgraded:   No
Relevant software:       snapper NetworkManager mkinitcpio nvidia-dkms
Windows dual boot:       Probably (Run as root to verify)
Failed units:

@garuda-team

Sorry about the garuda-inxi. I posted it.

I am going to reinstall Garuda. I feel that it may be due to a BIOS update. I originally bricked my BIOS, then re-flashed my BIOS chip, then restarted both Windows and Garuda.

The reason why I I tried to upgrade my BIOS is because I was trying to fix my WiFi NIC not visible issue that comes up after I put my laptop to sleep.

I will check back in to see if tainted kernel issue gets resolved after a fresh install.

After reinstalling Garuda Linux, I still see linux kernel tainted.

Kernel: 6.0.2-zen1-1-zen arch: x86_64 bits: 64 compiler: gcc v: 12.2.0
parameters: BOOT_IMAGE=/@/boot/vmlinuz-linux-zen
root=UUID=66167e93-fb50-4f9e-9453-79c6b74c8f5c rw rootflags=subvol=@
quiet
cryptdevice=UUID=147de0aa-3a42-40f0-b555-5ff045190f5e:luks-147de0aa-3a42-40f0-b555-5ff045190f5e
root=/dev/mapper/luks-147de0aa-3a42-40f0-b555-5ff045190f5e quiet splash
rd.udev.log_priority=3 vt.global_cursor_default=0
resume=/dev/mapper/luks-06d0d64e-bfb6-485c-855c-cebcc2115ee8 loglevel=3
Desktop: KDE Plasma v: 5.26.1 tk: Qt v: 5.15.6 info: latte-dock
wm: kwin_x11 vt: 1 dm: SDDM Distro: Garuda Linux base: Arch Linux
Machine:
Type: Laptop System: Micro-Star product: Please change product name
v: REV:1.0 serial: <superuser required> Chassis: type: 10
serial: <superuser required>
Mobo: Micro-Star model: MS-17G1 v: REV:1.0 serial: <superuser required>
UEFI: American Megatrends v: E17G1IMS.111 date: 05/18/2020
Battery:
ID-1: BAT1 charge: 54.2 Wh (100.0%) condition: 54.2/80.3 Wh (67.5%)
volts: 16.1 min: 15.2 model: MSI BIF0_9 type: Li-ion serial: N/A
status: full
CPU:
Info: model: Intel Core i7-9750H bits: 64 type: MT MCP arch: Coffee Lake
gen: core 9 level: v3 note: check built: 2018 process: Intel 14nm family: 6
model-id: 0x9E (158) stepping: 0xA (10) microcode: 0xF0
Topology: cpus: 1x cores: 6 tpc: 2 threads: 12 smt: enabled cache:
L1: 384 KiB desc: d-6x32 KiB; i-6x32 KiB L2: 1.5 MiB desc: 6x256 KiB
L3: 12 MiB desc: 1x12 MiB
Speed (MHz): avg: 3847 high: 4103 min/max: 800/4500 scaling:
driver: intel_pstate governor: performance cores: 1: 4103 2: 4101 3: 4087
4: 4099 5: 2600 6: 2600 7: 4100 8: 4100 9: 4091 10: 4098 11: 4100
12: 4094 bogomips: 62399
Flags: avx avx2 ht lm nx pae sse sse2 sse3 sse4_1 sse4_2 ssse3 vmx
Vulnerabilities:
Type: itlb_multihit status: KVM: VMX disabled
Type: l1tf mitigation: PTE Inversion; VMX: conditional cache flushes, SMT
vulnerable
Type: mds mitigation: Clear CPU buffers; SMT vulnerable
Type: meltdown mitigation: PTI
Type: mmio_stale_data mitigation: Clear CPU buffers; SMT vulnerable
Type: retbleed mitigation: IBRS
Type: spec_store_bypass mitigation: Speculative Store Bypass disabled via
prctl
Type: spectre_v1 mitigation: usercopy/swapgs barriers and __user pointer
sanitization
Type: spectre_v2 mitigation: IBRS, IBPB: conditional, RSB filling,
PBRSB-eIBRS: Not affected
Type: srbds mitigation: Microcode
Type: tsx_async_abort status: Not affected
Graphics:
Device-1: Intel CoffeeLake-H GT2 [UHD Graphics 630] vendor: Micro-Star MSI
driver: i915 v: kernel arch: Gen-9.5 process: Intel 14nm built: 2016-20
ports: active: eDP-1 empty: none bus-ID: 0000:00:02.0 chip-ID: 8086:3e9b
class-ID: 0300
Device-2: NVIDIA TU106M [GeForce RTX 2070 Mobile] vendor: Micro-Star MSI
driver: nvidia v: 520.56.06 alternate: nouveau,nvidia_drm non-free: 515.xx+
status: current (as of 2022-10) arch: Turing code: TUxxx
process: TSMC 12nm built: 2018-22 bus-ID: 0000:01:00.0 chip-ID: 10de:1f10
class-ID: 0300
Device-3: Acer HD Webcam type: USB driver: uvcvideo bus-ID: 1-11:3
chip-ID: 5986:211c class-ID: 0e02
Display: x11 server: X.Org v: 21.1.4 with: Xwayland v: 22.1.3
compositor: kwin_x11 driver: X: loaded: modesetting,nvidia
unloaded: nouveau alternate: fbdev,intel,nv,vesa dri: iris gpu: i915
display-ID: :0 screens: 1
Screen-1: 0 s-res: 1920x1080 s-dpi: 96 s-size: 508x285mm (20.00x11.22")
s-diag: 582mm (22.93")
Monitor-1: eDP-1 model: ChiMei InnoLux 0x175c built: 2018 res: 1920x1080
hz: 144 dpi: 128 gamma: 1.2 size: 381x214mm (15x8.43") diag: 437mm (17.2")
ratio: 16:9 modes: 1920x1080
OpenGL: renderer: Mesa Intel UHD Graphics 630 (CFL GT2) v: 4.6 Mesa
22.2.1 direct render: Yes
Audio:
Device-1: Intel Cannon Lake PCH cAVS vendor: Micro-Star MSI
driver: snd_hda_intel v: kernel
alternate: snd_soc_skl,snd_sof_pci_intel_cnl bus-ID: 0000:00:1f.3
chip-ID: 8086:a348 class-ID: 0403
Device-2: NVIDIA TU106 High Definition Audio vendor: Micro-Star MSI
driver: snd_hda_intel v: kernel bus-ID: 0000:01:00.1 chip-ID: 10de:10f9
class-ID: 0403
Sound API: ALSA v: k6.0.2-zen1-1-zen running: yes
Sound Server-1: PulseAudio v: 16.1 running: no
Sound Server-2: PipeWire v: 0.3.59 running: yes
Network:
Device-1: Intel Cannon Lake PCH CNVi WiFi driver: iwlwifi v: kernel
bus-ID: 0000:00:14.3 chip-ID: 8086:a370 class-ID: 0280
IF: wlo1 state: up mac: <filter>
Device-2: Qualcomm Atheros Killer E2500 Gigabit Ethernet
vendor: Micro-Star MSI driver: alx v: kernel port: 3000
bus-ID: 0000:03:00.0 chip-ID: 1969:e0b1 class-ID: 0200
IF: enp3s0 state: down mac: <filter>
Bluetooth:
Device-1: Intel Bluetooth 9460/9560 Jefferson Peak (JfP) type: USB
driver: btusb v: 0.8 bus-ID: 1-14:4 chip-ID: 8087:0aaa class-ID: e001
Report: bt-adapter ID: hci0 rfk-id: 0 state: up address: <filter>
RAID:
Hardware-1: Intel 82801 Mobile SATA Controller [RAID mode]
driver: intel_nvme_remap v: N/A port: 5060 bus-ID: 0000:00:17.0
chip-ID: 8086:282a rev: N/A class-ID: 0104
Drives:
Local Storage: total: 2.91 TiB used: 14.58 GiB (0.5%)
SMART Message: Unable to run smartctl. Root privileges required.
ID-1: /dev/nvme0n1 maj-min: 259:0 vendor: Apacer model: APS-SE20G-2T
size: 1.86 TiB block-size: physical: 512 B logical: 512 B type: SSD
serial: <filter> rev: ECFM12.3 temp: 27.9 C scheme: GPT
ID-2: /dev/nvme1n1 maj-min: 259:4 vendor: Western Digital model: PC SN720
SDAPNTW-1T00 size: 953.87 GiB block-size: physical: 512 B logical: 512 B
type: SSD serial: <filter> rev: 10126000 temp: 42.9 C scheme: GPT
ID-3: /dev/sda maj-min: 8:0 vendor: SanDisk model: X600 M.2 2280 SATA
128GB size: 119.24 GiB block-size: physical: 512 B logical: 512 B
speed: 6.0 Gb/s type: SSD serial: <filter> rev: 3012 scheme: GPT
Partition:
ID-1: / raw-size: 84.63 GiB size: 84.63 GiB (100.00%) used: 14.58 GiB
(17.2%) fs: btrfs dev: /dev/dm-0 maj-min: 254:0
mapped: luks-147de0aa-3a42-40f0-b555-5ff045190f5e
ID-2: /boot/efi raw-size: 300 MiB size: 299.4 MiB (99.80%) used: 752 KiB
(0.2%) fs: vfat dev: /dev/sda1 maj-min: 8:1
ID-3: /home raw-size: 84.63 GiB size: 84.63 GiB (100.00%) used: 14.58 GiB
(17.2%) fs: btrfs dev: /dev/dm-0 maj-min: 254:0
mapped: luks-147de0aa-3a42-40f0-b555-5ff045190f5e
ID-4: /var/log raw-size: 84.63 GiB size: 84.63 GiB (100.00%) used: 14.58
GiB (17.2%) fs: btrfs dev: /dev/dm-0 maj-min: 254:0
mapped: luks-147de0aa-3a42-40f0-b555-5ff045190f5e
ID-5: /var/tmp raw-size: 84.63 GiB size: 84.63 GiB (100.00%) used: 14.58
GiB (17.2%) fs: btrfs dev: /dev/dm-0 maj-min: 254:0
mapped: luks-147de0aa-3a42-40f0-b555-5ff045190f5e
Swap:
Kernel: swappiness: 133 (default 60) cache-pressure: 100 (default)
ID-1: swap-1 type: zram size: 31.2 GiB used: 0 KiB (0.0%) priority: 100
dev: /dev/zram0
ID-2: swap-2 type: partition size: 34.31 GiB used: 0 KiB (0.0%)
priority: -2 dev: /dev/dm-1 maj-min: 254:1
mapped: luks-06d0d64e-bfb6-485c-855c-cebcc2115ee8
Sensors:
System Temperatures: cpu: 93.0 C pch: 55.0 C mobo: N/A
Fan Speeds (RPM): N/A
Info:
Processes: 345 Uptime: 4m wakeups: 2 Memory: 31.2 GiB used: 3.37 GiB
(10.8%) Init: systemd v: 251 default: graphical tool: systemctl
Compilers: gcc: 12.2.0 Packages: pm: pacman pkgs: 1830 libs: 514
tools: octopi,paru Shell: fish v: 3.5.1 default: Bash v: 5.1.16
running-in: konsole inxi: 3.3.22
Garuda (2.6.8-1):
System install date:     2023-02-13
Last full system update: 2023-02-13
Is partially upgraded:   No
Relevant software:       NetworkManager
Windows dual boot:       Probably (Run as root to verify)
Snapshots:               Snapper
Failed units:

You see it where? Paste the full input and output of what you are seeing into the thread to provide some context.

The taint is from the nVidia driver. Nothing to worry about.

6 Likes

This topic was automatically closed 2 days after the last reply. New replies are no longer allowed.