Skip to content

PCR 15 check fails on reboot - system shuts down #15

@stepkun

Description

@stepkun

This morning I started my Lenovo ThinkPad T490 running Aeon and it only shows the message PCR15 mismatch - shutting down.
No chance to interact, no reset to last known working state, no chance to revive the machine.
Last used on Sunday 5th October.

Reproducible: Always

Steps to Reproduce:

  1. Press the power on button of my laptop

Actual Results:
machine is dead again

Expected Results:
a working machine

This is the fourth and fifth time Aeon "kills" my machines within 8 month unexpectedly with no chance to revive.
An experience worse than with MS Windows.

The error screen is:

ERROR: the validation of PCR 15 failed

********************************************************************
ERROR: PCR 15 mismatch. Encrypted devices compromised
Use 'measure-pcr-validator.ignore=yes' in cmdline to bypass the check
********************************************************************

*** The system will be halted. Press any key ...

Just tried to start my backup machine, an AMD 5700G desktop - same result, also PCR 15 error and no chance to do anything.
This machine has been off for a couple of days.

The only machine that still works is the one where I disabled the TPM chip.

For re-installation, I disabled the TPM on the Lenovo laptop.
Now, the current installation image from 2025-10-06 runs into error:
Command /usr/bin/chroot /var/lib/tkit/encrypt/mnt/sdbootutil -vv --esp-path /boot/efi --no-variables add-all-kernels FAILED

ryzen.tik.log

Metadata

Metadata

Assignees

No one assigned

    Labels

    bugSomething isn't working

    Type

    No type

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions