Solution:
Root Cause: EFI System Partition (ESP) File Locking & Capsule Staging Stall
When a UEFI update is launched from within Windows, the operating system stages a firmware binary (
.cap or
.bin) to the EFI System Partition (ESP) under
\EFI\UpdateCapsule\ and sets an NVRAM boot variable (
FlashUpdateRequired). If real-time antivirus software, BitLocker encryption hooks, or a corrupted ESP file system locks the target partition, the system kernel fails to write the payload header to NVRAM. Upon reboot, the UEFI Capsule driver detects the pending execution flag but cannot verify the image signature or read the payload, locking the progress bar at 0% indefinitely before execution begins.
# Diagnostic Verification:
1. Open PowerShell as Administrator and inspect pending EFI update capsules:
powershell
Get-ChildItem -Path "C:\Windows\System32\Firmware" -ErrorAction SilentlyContinue
2. Query the EFI System Partition for staged firmware binaries using
mountvol:
cmd
mountvol S: /S
dir S:\EFI\UpdateCapsule\
3. Check Event Viewer logs under
System for Event ID 15 or 105 originating from source
Kernel-Wheel or
Firmware.
# Step-by-Step Fix:
1. Clear Staged Capsule Payloads in Windows:
Open Command Prompt as Administrator: cmd
mountvol S: /S
del /F /Q S:\EFI\UpdateCapsule\*.*
mountvol S: /D
2. Clear Pending NVRAM Update Flags via PowerShell:
Run the following command to reset firmware update staging state: powershell
bcdedit /deletevalue {fwbootmgr} displayorder
3. Perform Clean Flash Outside Operating System:
Download the raw BIOS binary directly from the motherboard manufacturer.Format a USB drive to FAT32 (MBR partition scheme).Copy the extracted BIOS file to the root of the USB drive.Reboot into UEFI Setup > Navigate to Tool > EZ Flash / M-Flash / Q-Flash and execute the update directly from the flash drive.# Prevention & Long-Term Monitoring:
Never use Windows desktop utilities to flash motherboard BIOS binaries; always execute updates natively within the UEFI environment or via out-of-band FlashBack mechanisms.