Package: shim-signed-common Version: 1.33+15+1533136590.3beb971-7 Severity: normal
Dear Maintainer, on systems using U-Boot as firmware the UEFI runtime service SetVariable() is not available. Variable Boot0000 has to be set manually from the U-Boot console. The installation of shim-signed-common fails with: The following NEW packages will be installed: shim-signed-common 0 upgraded, 1 newly installed, 0 to remove and 0 not upgraded. Need to get 0 B/13.3 kB of archives. After this operation, 50.2 kB of additional disk space will be used. Preconfiguring packages ... Can't exec "/tmp/shim-signed-common.config.PoZZwF": Permission denied at /usr/lib/aarch64-linux-gnu/perl-base/IPC/Open3.pm line 178. open2: exec of /tmp/shim-signed-common.config.PoZZwF configure failed: Permission denied at /usr/share/perl5/Debconf/ConfModule.pm line 59. Selecting previously unselected package shim-signed-common. (Reading database ... 149437 files and directories currently installed.) Preparing to unpack .../shim-signed-common_1.33+15+1533136590.3beb971-7_all.deb ... Unpacking shim-signed-common (1.33+15+1533136590.3beb971-7) ... Setting up shim-signed-common (1.33+15+1533136590.3beb971-7) ... Installing for arm64-efi platform. grub-install: warning: Cannot set EFI variable Boot0000. grub-install: warning: efivarfs_set_variable: failed to create /sys/firmware/efi/efivars/Boot0000-8be4df61-93ca-11d2-aa0d-00e098032b8c for writing: Read-only file system. grub-install: warning: _efi_set_variable_mode: ops->set_variable() failed: Read-only file system. grub-install: error: failed to register the EFI boot entry: Read-only file system. dpkg: error processing package shim-signed-common (--configure): installed shim-signed-common package post-installation script subprocess returned error exit status 1 Errors were encountered while processing: shim-signed-common To make the package usable with U-Boot the installation should not fail but complete with a warning. Best regards Heinrich Schuchardt -- System Information: Debian Release: bullseye/sid APT prefers testing APT policy: (500, 'testing') Architecture: arm64 (aarch64) Kernel: Linux 5.10.0-3-arm64 (SMP w/4 CPU threads) Locale: LANG=en_US.UTF-8, LC_CTYPE=en_US.UTF-8 (charmap=UTF-8) (ignored: LC_ALL set to en_US.UTF-8), LANGUAGE not set Shell: /bin/sh linked to /bin/dash Init: systemd (via /run/systemd/system) LSM: AppArmor: enabled Versions of packages shim-signed-common depends on: ii debconf [debconf-2.0] 1.5.74 ii mokutil 0.3.0+1538710437.fb6250f-1+b1 shim-signed-common recommends no packages. shim-signed-common suggests no packages. -- debconf information: shim/enable_secureboot: false shim/title/secureboot: shim/disable_secureboot: true shim/error/secureboot_key_mismatch: shim/error/bad_secureboot_key: shim/secureboot_explanation: