Actually I think I know what is going on. I think the "unpatched" kernel might miss commit d9018976cdb6 ("mfd: lpc_ich: Do not touch SPI-NOR write protection bit on Haswell/Broadwell") and in that case the BIOS resets to defaults each boot.
Actually I think I know what is going on. I think the "unpatched" kernel might miss commit d9018976cdb6 ("mfd: lpc_ich: Do not touch SPI-NOR write protection bit on Haswell/Broadwell") and in that case the BIOS resets to defaults each boot.