[Bug 1939306] Re: latest shim-signed fails on Lenovo T480 with Secure boot
Not clear if it's the same issue, but on a Thinkpad T14s, new shim fails to boot anything except the Canonical-signed grub. Both hash and key MOKs seem to be ignored (blue screeen with Security Violation 0x1A for signed executables). Downgrading to the version of shim-signed specified in the initial report makes hash and key MOKs work again. shim verbose reporting was not checked. -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.launchpad.net/bugs/1939306 Title: latest shim-signed fails on Lenovo T480 with Secure boot To manage notifications about this bug go to: https://bugs.launchpad.net/ubuntu/+source/shim-signed/+bug/1939306/+subscriptions -- ubuntu-bugs mailing list ubuntu-bugs@lists.ubuntu.com https://lists.ubuntu.com/mailman/listinfo/ubuntu-bugs
[Bug 1939306] Re: latest shim-signed fails on Lenovo T480 with Secure boot
Same issue on a Lenovo X130e laptop after Ubuntu updates on 08/08/21. Early EFI system that doesn't support secure boot. Downgrading shim- signed to 1.40.3+15+1533136590.3beb971-0ubuntu1 and shim to 15+1533136590.3beb971-0ubuntu1 allows the laptop to boot. Cmon guys, making a system unbootable is critical sheesh! thanks adrianf0 and hannes-erven for reporting. -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.launchpad.net/bugs/1939306 Title: latest shim-signed fails on Lenovo T480 with Secure boot To manage notifications about this bug go to: https://bugs.launchpad.net/ubuntu/+source/shim-signed/+bug/1939306/+subscriptions -- ubuntu-bugs mailing list ubuntu-bugs@lists.ubuntu.com https://lists.ubuntu.com/mailman/listinfo/ubuntu-bugs
[Bug 1939306] Re: latest shim-signed fails on Lenovo T480 with Secure boot
Experienced the same issue on a Thinkpad X1 Gen7, it stops at a blank screen. While experimenting even disabling SecureBoot was not a reliable workaround. With "mokutil --set-verbosity true", the stack ends at the same line as demonstrated by the OP in https://bugs.launchpad.net/ubuntu/+source/shim- signed/+bug/1939306/+attachment/5516850/+files/20210809_132455.jpg . Problem appeared after upgrade vom shim-signed:amd64 1.47+15.4-0ubuntu2 to 1.50+15.4-0ubuntu7 and was solved by downgrading to 1.46+15.4-0ubuntu1 (the 1.47 version is currently not available, Launchpad lists only 1.50 and 1.46). -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.launchpad.net/bugs/1939306 Title: latest shim-signed fails on Lenovo T480 with Secure boot To manage notifications about this bug go to: https://bugs.launchpad.net/ubuntu/+source/shim-signed/+bug/1939306/+subscriptions -- ubuntu-bugs mailing list ubuntu-bugs@lists.ubuntu.com https://lists.ubuntu.com/mailman/listinfo/ubuntu-bugs
[Bug 1939306] Re: latest shim-signed fails on Lenovo T480 with Secure boot
Status changed to 'Confirmed' because the bug affects multiple users. ** Changed in: shim-signed (Ubuntu) Status: New => Confirmed -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.launchpad.net/bugs/1939306 Title: latest shim-signed fails on Lenovo T480 with Secure boot To manage notifications about this bug go to: https://bugs.launchpad.net/ubuntu/+source/shim-signed/+bug/1939306/+subscriptions -- ubuntu-bugs mailing list ubuntu-bugs@lists.ubuntu.com https://lists.ubuntu.com/mailman/listinfo/ubuntu-bugs