fwupdmgr security gives “TPM PCR0 reconstruction: Invalid”. systemd-pcrlock shows similar messages about the hash value of PCR0 (and 12 other PCRs) not matching the event log. tpm2_eventlog /sys/kernel/security/tpm0/binary_bios_measurements shows only 1 event.
I searched this forum and found others with this problem but no solution. Has anyone been able to fix this issue?
Thanks!
Which Linux distro are you using? Debian
Which release version? Unstable, last updated 2026-08-10
Which kernel are you using? Debian’s linux-image-7.1.7+deb14-amd64
Which BIOS version are you using? 3.20
Which Framework Laptop 13 model are you using? AMD Ryzen 7040 Series
Hi! I actually just made an account here specifically to reply to this.
I don’t actually own a Framework laptop yet (though it’s definitely going to be my next one), but I was pretty surprised to see this “TPM PCR0 reconstruction invalid” error pop up on a Framework too, since I ran into the exact same thing on my HP laptop a few weeks ago.
I ended up opening an issue for it on the fwupd GitHub repo here
It would be awesome if you could run the same verbose commands I used over there and share the output in that issue. Since this could turn out to be a firmware issue, it’d be really helpful to see if it’s happening on Framework too and get some more traction on it!
1 Like