Comment by kukrimate
Why does the initrd have to keep the PCRs the same after handing off to the root filesystem anyhow?
Capping off the PCRs with any arbitrary value before execing into root would stop this.
Why does the initrd have to keep the PCRs the same after handing off to the root filesystem anyhow?
Capping off the PCRs with any arbitrary value before execing into root would stop this.