This is crucial to backport as an alternative to the OVMF backports
listed at https://bugs.launchpad.net/ubuntu/+source/edk2/+bug/2146560.
I am going to simply allow this through because it has no dependencies
and is crucial to an answer I wrote on Ask Ubuntu and is extremely
useful to *solve* the missing certificates problem necessary for Windows
clients.
I don't normally say I'm going to just let it through, but this is one
of those edge cases where it's crucial to have.
Thomas
-------- Forwarded Message --------
Subject: [Bug 2152114] [NEW] [BPO] virt-firmware 25.12-1 to noble
Date: Sun, 10 May 2026 02:19:48 -0000
From: Launchpad Bug Tracker <[email protected]>
Reply-To: Bug 2152114 <[email protected]>, Backports
Discussion <[email protected]>
To: [email protected]
You have been subscribed to a public bug by Thomas Ward (teward):
[Impact]
* This tool makes it trivially simple to update and adjust OVMF-based
UEFI NVRAM variables data (usually for secure-boot related key stores)
with ease without having to use tooling within a VM itself to modify it.
* With the June 2026 expiration of Microsoft signing keys, it is
imperative to update keys and certificates for VMs' UEFI stores with
newer 2023-signed CA certificates - something that is NOT easy to do in
OVMF firmware environments due to the way Debian and Ubuntu build the
images.
* This tooling is actually recommended by the upstream tianocore / EDK2
teams for updating NVRAM vars and add certificates with ease.
[Scope]
* Source: Resolute
* Target: Noble
[Other Info]
* Pure python 'all' package. No dependencies or rdeps that are missing
in Noble. Builds without issue and runs without issue (tested in a live
24.04 environment - my daily driver).
[Testing]
* Noble:
[YES] Package builds without modification
[YES] python3-virt-firmware installs cleanly and runs
No reverse dependencies
** Affects: virt-firmware (Ubuntu)
Importance: Undecided
Status: New
--
[BPO] virt-firmware 25.12-1 to noble
https://bugs.launchpad.net/bugs/2152114
You received this bug notification because you are a member of Ubuntu
Backporters, which is subscribed to the bug report.
--
ubuntu-backports mailing list
[email protected]
Modify settings or unsubscribe
at:https://lists.ubuntu.com/mailman/listinfo/ubuntu-backports
--
ubuntu-backports mailing list
[email protected]
Modify settings or unsubscribe at:
https://lists.ubuntu.com/mailman/listinfo/ubuntu-backports