shim-signed (1.33.1~16.04.9) xenial; urgency=medium
* Do not build a dual-signed shim (fixing regression from ~16.04.7), and
disable verifying fbx64.efi and mmx64.efi certificates as xenial's
sbverify is unable to (impish works fine)
* Clean up debhelper log file accidentally imported into git during 16.04.7
import.
shim-signed (1.33.1~16.04.8) xenial; urgency=medium
* debian/*.postinst: Unconditionally call grub-install with
--force-extra-removable, so that the \EFI\BOOT removable path as used in
cloud images receives the updates. LP: #1930742.
* Update to shim 15.4-0ubuntu5:
- Stop addending vendor dbx to MokListXRT during MokListX mirroring. This
is causing systems to run out of EFI storage space, or just hang up
when trying to write it (LP: #1924605) (LP: #1928434)
- Further relax the check for variable mirroring on non-secureboot systems
avoiding boot failures on out of space conditons (pull request #372)
- Don't unhook ExitBootServices() when EBS protection is disabled
(LP: #1931136) (pull request #378)
shim-signed (1.33.1~16.04.7) xenial; urgency=medium
* New upstream release 15.4. LP: #1921134
* Update packaging to pull fb and mm from shim-signed package as in
later releases, dropping the runtime dependency on shim.
* Add download-signed script from linux-signed package
* Add a versioned dependency on the mokutil that introduces --timeout, and
call mokutil --timeout -1 so that users don't end up with broken systems
by missing MokManager on reboot after install. LP: #1856422.
* Add versioned dependencies on grub-efi-amd64-signed and grub2-common,
to ensure we have SBAT-compatible grub.efi and grub 2.04-compatible
grub-install present when we are installing new shim to the ESP.
* Include reworked Makefile from devel to better assert the integrity of
the executables.
Date: Wed, 23 Jun 2021 18:20:36 +0200
Changed-By: Julian Andres Klode <[email protected]>
Maintainer: Steve Langasek <[email protected]>
https://launchpad.net/ubuntu/+source/shim-signed/1.33.1~16.04.9
Format: 1.8
Date: Wed, 23 Jun 2021 18:20:36 +0200
Source: shim-signed
Built-For-Profiles: noudeb
Architecture: source
Version: 1.33.1~16.04.9
Distribution: xenial
Urgency: medium
Maintainer: Steve Langasek <[email protected]>
Changed-By: Julian Andres Klode <[email protected]>
Launchpad-Bugs-Fixed: 1856422 1921134 1924605 1928434 1930742 1931136
Changes:
shim-signed (1.33.1~16.04.9) xenial; urgency=medium
.
* Do not build a dual-signed shim (fixing regression from ~16.04.7), and
disable verifying fbx64.efi and mmx64.efi certificates as xenial's
sbverify is unable to (impish works fine)
* Clean up debhelper log file accidentally imported into git during 16.04.7
import.
.
shim-signed (1.33.1~16.04.8) xenial; urgency=medium
.
* debian/*.postinst: Unconditionally call grub-install with
--force-extra-removable, so that the \EFI\BOOT removable path as used in
cloud images receives the updates. LP: #1930742.
* Update to shim 15.4-0ubuntu5:
- Stop addending vendor dbx to MokListXRT during MokListX mirroring. This
is causing systems to run out of EFI storage space, or just hang up
when trying to write it (LP: #1924605) (LP: #1928434)
- Further relax the check for variable mirroring on non-secureboot systems
avoiding boot failures on out of space conditons (pull request #372)
- Don't unhook ExitBootServices() when EBS protection is disabled
(LP: #1931136) (pull request #378)
.
shim-signed (1.33.1~16.04.7) xenial; urgency=medium
.
* New upstream release 15.4. LP: #1921134
* Update packaging to pull fb and mm from shim-signed package as in
later releases, dropping the runtime dependency on shim.
* Add download-signed script from linux-signed package
* Add a versioned dependency on the mokutil that introduces --timeout, and
call mokutil --timeout -1 so that users don't end up with broken systems
by missing MokManager on reboot after install. LP: #1856422.
* Add versioned dependencies on grub-efi-amd64-signed and grub2-common,
to ensure we have SBAT-compatible grub.efi and grub 2.04-compatible
grub-install present when we are installing new shim to the ESP.
* Include reworked Makefile from devel to better assert the integrity of
the executables.
Checksums-Sha1:
c037f20a0d74b10fbb3c194f53950f2487a5c294 1723 shim-signed_1.33.1~16.04.9.dsc
c8cadc7bfd1d13aefa877931db88496f01d9a0b2 338076
shim-signed_1.33.1~16.04.9.tar.xz
dce751da05bbbbb2829e66b28cb30b98eecde7d1 8585
shim-signed_1.33.1~16.04.9_source.buildinfo
Checksums-Sha256:
e0eebcd131405423f3855372041aad46ea25575cdf5fa2483eff9a5c6ab5da9e 1723
shim-signed_1.33.1~16.04.9.dsc
505fe4305378d4aa7fd4d5d92b69ef89441f8d408e4f6167380645b13e3b7259 338076
shim-signed_1.33.1~16.04.9.tar.xz
7fd760daeaebcb8e1efcbb5cfed99fdd9b6dca2502970f9f60668cc097c5552b 8585
shim-signed_1.33.1~16.04.9_source.buildinfo
Files:
4ff07a6c4cdbded34eb31a0b5a9dd8d8 1723 utils optional
shim-signed_1.33.1~16.04.9.dsc
17d01ecb511cd5a35a4a482b99162f90 338076 utils optional
shim-signed_1.33.1~16.04.9.tar.xz
67d9723e75a6ac8d92026542bc817635 8585 utils optional
shim-signed_1.33.1~16.04.9_source.buildinfo
--
Xenial-changes mailing list
[email protected]
Modify settings or unsubscribe at:
https://lists.ubuntu.com/mailman/listinfo/xenial-changes