Thanks for reporting this regression. I have uploaded updated edk2
packages for jammy and noble to the security team PPA here:

https://launchpad.net/~ubuntu-security-proposed/+archive/ubuntu/ppa/

These packages back out the fixes for CVE-2023-45236 and CVE-2023-45237
as they are the most likely candidates to have caused the regression.

Please test the packages in the PPA to see if they solve the issue in
your environment and comment in this bug. Once I have confirmation that
reverting those two fixes restores the network boot functionality, I
will quickly publish them as security regression fixes.

We will then investigate the issue in more detail and will reapply
corrected version of those two security fixes in a future update.

Thanks!

** CVE added: https://cve.org/CVERecord?id=CVE-2023-45236

** CVE added: https://cve.org/CVERecord?id=CVE-2023-45237

-- 
You received this bug notification because you are a member of Ubuntu
Bugs, which is subscribed to Ubuntu.
https://bugs.launchpad.net/bugs/2133157

Title:
  ovmf 2024.02-2ubuntu0.6 broke UEFI network boot for VMs

To manage notifications about this bug go to:
https://bugs.launchpad.net/ubuntu/+source/edk2/+bug/2133157/+subscriptions


-- 
ubuntu-bugs mailing list
[email protected]
https://lists.ubuntu.com/mailman/listinfo/ubuntu-bugs

Reply via email to