[ubuntu/bionic-proposed] grub2 2.02-2ubuntu1 (Accepted)

Mathieu Trudel-Lapierre cyphermox at ubuntu.com
Tue Nov 7 14:57:16 UTC 2017


grub2 (2.02-2ubuntu1) bionic; urgency=medium

  * Merge with Debian; remaining changes:
    - debian/patches/support_initrd-less_boot.patch: Added knobs to allow
      non-initrd boot config. (LP: #1640878)
    - Disable os-prober for ppc64el on the PowerNV platform, to reduce the
      number of entries/clutter from other OSes in Petitboot (LP: #1447500)
    - debian/build-efi-images: provide a new grub EFI image which enforces that
      loaded kernels are signed for Secure Boot: build gsb$arch.efi; which is
      the same as grub$arch.efi minus the 'linux' module. Without fallback to
      'linux' for unsigned loading, this makes it effectively enforce having a
      signed kernel. (LP: #1401532)
    - debian/patches/install_signed.patch, grub-install-extra-removable.patch:
      - Make sure if we install shim; it should also be exported as the default
        bootloader to install later to a removable path, if we do.
      - Rework grub-install-extra-removable.patch to reverse its logic: in the
        default case, install the bootloader to /EFI/BOOT, unless we're trying
        to install on a removable device, or explicitly telling grub *not* to
        do it.
      - Move installing fb$arch.efi to --no-extra-removable; as we don't want
        fallback to be installed unless we're also installing to /EFI/BOOT.
        (LP: #1684341)
      - Make sure postinst and templates know about the replacement of
        --force-extra-removable with --no-extra-removable.
  * Sync Secure Boot support patches with the upstream patch set from
    rhboot/grub2:master-sb. Renamed some patches and updated descriptions for
    the whole thing to make more sense, too:
    - dropped debian/patches/linuxefi_require_shim.patch
    - renamed: debian/patches/no_insmod_on_sb.patch ->
      debian/patches/linuxefi_no_insmod_on_sb.patch
    - debian/patches/linuxefi.patch
    - debian/patches/linuxefi_debug.patch
    - debian/patches/linuxefi_non_sb_fallback.patch
    - debian/patches/linuxefi_add_sb_to_efi_chainload.patch
    - debian/patches/linuxefi_cleanup_errors_in_loader.patch
    - debian/patches/linuxefi_fix_efi_validation_race.patch
    - debian/patches/linuxefi_handle_multiarch_boot.patch
    - debian/patches/linuxefi_honor_sb_mode.patch
    - debian/patches/linuxefi_move_fdt_helper.patch
    - debian/patches/linuxefi_load_arm_with_sb.patch
    - debian/patches/linuxefi_minor_cleanups.patch
    - debian/patches/linuxefi_re-enable_linux_cmd.patch
    - debian/patches/linuxefi_rework_linux16_cmd.patch
    - debian/patches/linuxefi_rework_linux_cmd.patch
    - debian/patches/linuxefi_rework_non-sb_efi_chainload.patch
    - debian/patches/linuxefi_rework_pe_loading.patch
    - debian/patches/linuxefi_use_dev_chainloader_target.patch
  * debian/patches/dont-fail-efi-warnings.patch: handle linuxefi patches and
    the casting they do on some architectures: we don't want to fail build
    because of some of the warnings that can show up since we otherwise build
    with -Werror.

grub2 (2.02-3) UNRELEASED; urgency=medium

  * Use current location for upstream signing key
    (debian/upstream/signing-key.asc).
  * Update upstream signing key to a non-expired version.

  [ Debconf translations ]
  * [sq] Albanian (Silva Arapi; closes: #874497).

grub2 (2.02-2) unstable; urgency=medium

  * Comment out debian/watch lines for betas and pre-releases for now.
  * Cherry-pick upstream patch to allow mounting ext2/3/4 file systems that
    have the 'encrypt' feature enabled (closes: #840204).

grub2 (2.02-1) unstable; urgency=medium

  * New upstream release.
    - xen: Fix wrong register in relocator (closes: #799480).
  * Resolve symlinks for supported init paths as well as for /sbin/init
    (thanks, Felipe Sateler; closes: #842315).

  [ Debconf translations ]
  * [sr] Serbian (Karolina Kalic; closes: #691288).
  * [sr at latin] Serbian Latin (Karolina Kalic; closes: #691289).
  * [pt] Portuguese (Rui Branco - DebianPT; closes: #864171).

grub2 (2.02~beta3-5) unstable; urgency=medium

  [ Steve McIntyre ]
  * Make grub-install check for errors from efibootmgr (closes: #853234).
    There are probably still underlying issues in other similar reported
    bugs, but they're more effectively tracked elsewhere (e.g. efibootmgr)
    at this point (closes: #756253, #852513).

  [ Debconf translations ]
  * [ug] Uyghur (Abduqadir Abliz).
  * [es] Spanish (Manuel "Venturi" Porras Peralta; closes: #852977).

Date: Mon, 06 Nov 2017 15:37:12 -0500
Changed-By: Mathieu Trudel-Lapierre <cyphermox at ubuntu.com>
Maintainer: Ubuntu Developers <ubuntu-devel-discuss at lists.ubuntu.com>
https://launchpad.net/ubuntu/+source/grub2/2.02-2ubuntu1
-------------- next part --------------
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA512

Format: 1.8
Date: Mon, 06 Nov 2017 15:37:12 -0500
Source: grub2
Binary: grub2 grub-linuxbios grub-efi grub-common grub2-common grub-emu grub-emu-dbg grub-pc-bin grub-pc-dbg grub-pc grub-rescue-pc grub-coreboot-bin grub-coreboot-dbg grub-coreboot grub-efi-ia32-bin grub-efi-ia32-dbg grub-efi-ia32 grub-efi-amd64-bin grub-efi-amd64-dbg grub-efi-amd64 grub-efi-ia64-bin grub-efi-ia64-dbg grub-efi-ia64 grub-efi-arm-bin grub-efi-arm-dbg grub-efi-arm grub-efi-arm64-bin grub-efi-arm64-dbg grub-efi-arm64 grub-ieee1275-bin grub-ieee1275-dbg grub-ieee1275 grub-firmware-qemu grub-uboot-bin grub-uboot-dbg grub-uboot grub-xen-bin grub-xen-dbg grub-xen grub-xen-host grub-yeeloong-bin grub-yeeloong-dbg grub-yeeloong grub-theme-starfield grub-mount-udeb
Architecture: source
Version: 2.02-2ubuntu1
Distribution: bionic
Urgency: medium
Maintainer: Ubuntu Developers <ubuntu-devel-discuss at lists.ubuntu.com>
Changed-By: Mathieu Trudel-Lapierre <cyphermox at ubuntu.com>
Description:
 grub-common - GRand Unified Bootloader (common files)
 grub-coreboot - GRand Unified Bootloader, version 2 (Coreboot version)
 grub-coreboot-bin - GRand Unified Bootloader, version 2 (Coreboot binaries)
 grub-coreboot-dbg - GRand Unified Bootloader, version 2 (Coreboot debug files)
 grub-efi   - GRand Unified Bootloader, version 2 (dummy package)
 grub-efi-amd64 - GRand Unified Bootloader, version 2 (EFI-AMD64 version)
 grub-efi-amd64-bin - GRand Unified Bootloader, version 2 (EFI-AMD64 binaries)
 grub-efi-amd64-dbg - GRand Unified Bootloader, version 2 (EFI-AMD64 debug files)
 grub-efi-arm - GRand Unified Bootloader, version 2 (ARM UEFI version)
 grub-efi-arm-bin - GRand Unified Bootloader, version 2 (ARM UEFI binaries)
 grub-efi-arm-dbg - GRand Unified Bootloader, version 2 (ARM UEFI debug files)
 grub-efi-arm64 - GRand Unified Bootloader, version 2 (ARM64 UEFI version)
 grub-efi-arm64-bin - GRand Unified Bootloader, version 2 (ARM64 UEFI binaries)
 grub-efi-arm64-dbg - GRand Unified Bootloader, version 2 (ARM64 UEFI debug files)
 grub-efi-ia32 - GRand Unified Bootloader, version 2 (EFI-IA32 version)
 grub-efi-ia32-bin - GRand Unified Bootloader, version 2 (EFI-IA32 binaries)
 grub-efi-ia32-dbg - GRand Unified Bootloader, version 2 (EFI-IA32 debug files)
 grub-efi-ia64 - GRand Unified Bootloader, version 2 (IA64 version)
 grub-efi-ia64-bin - GRand Unified Bootloader, version 2 (IA64 binaries)
 grub-efi-ia64-dbg - GRand Unified Bootloader, version 2 (IA64 debug files)
 grub-emu   - GRand Unified Bootloader, version 2 (emulated version)
 grub-emu-dbg - GRand Unified Bootloader, version 2 (emulated debug files)
 grub-firmware-qemu - GRUB firmware image for QEMU
 grub-ieee1275 - GRand Unified Bootloader, version 2 (Open Firmware version)
 grub-ieee1275-bin - GRand Unified Bootloader, version 2 (Open Firmware binaries)
 grub-ieee1275-dbg - GRand Unified Bootloader, version 2 (Open Firmware debug files)
 grub-linuxbios - GRand Unified Bootloader, version 2 (dummy package)
 grub-mount-udeb - export GRUB filesystems using FUSE (udeb)
 grub-pc    - GRand Unified Bootloader, version 2 (PC/BIOS version)
 grub-pc-bin - GRand Unified Bootloader, version 2 (PC/BIOS binaries)
 grub-pc-dbg - GRand Unified Bootloader, version 2 (PC/BIOS debug files)
 grub-rescue-pc - GRUB bootable rescue images, version 2 (PC/BIOS version)
 grub-theme-starfield - GRand Unified Bootloader, version 2 (starfield theme)
 grub-uboot - GRand Unified Bootloader, version 2 (ARM U-Boot version)
 grub-uboot-bin - GRand Unified Bootloader, version 2 (ARM U-Boot binaries)
 grub-uboot-dbg - GRand Unified Bootloader, version 2 (ARM U-Boot debug files)
 grub-xen   - GRand Unified Bootloader, version 2 (Xen version)
 grub-xen-bin - GRand Unified Bootloader, version 2 (Xen binaries)
 grub-xen-dbg - GRand Unified Bootloader, version 2 (Xen debug files)
 grub-xen-host - GRand Unified Bootloader, version 2 (Xen host version)
 grub-yeeloong - GRand Unified Bootloader, version 2 (Yeeloong version)
 grub-yeeloong-bin - GRand Unified Bootloader, version 2 (Yeeloong binaries)
 grub-yeeloong-dbg - GRand Unified Bootloader, version 2 (Yeeloong debug files)
 grub2      - GRand Unified Bootloader, version 2 (dummy package)
 grub2-common - GRand Unified Bootloader (common files for version 2)
Closes: 691288 691289 756253 799480 840204 842315 852513 852977 853234 864171 874497
Launchpad-Bugs-Fixed: 1401532 1447500 1640878 1684341
Changes:
 grub2 (2.02-2ubuntu1) bionic; urgency=medium
 .
   * Merge with Debian; remaining changes:
     - debian/patches/support_initrd-less_boot.patch: Added knobs to allow
       non-initrd boot config. (LP: #1640878)
     - Disable os-prober for ppc64el on the PowerNV platform, to reduce the
       number of entries/clutter from other OSes in Petitboot (LP: #1447500)
     - debian/build-efi-images: provide a new grub EFI image which enforces that
       loaded kernels are signed for Secure Boot: build gsb$arch.efi; which is
       the same as grub$arch.efi minus the 'linux' module. Without fallback to
       'linux' for unsigned loading, this makes it effectively enforce having a
       signed kernel. (LP: #1401532)
     - debian/patches/install_signed.patch, grub-install-extra-removable.patch:
       - Make sure if we install shim; it should also be exported as the default
         bootloader to install later to a removable path, if we do.
       - Rework grub-install-extra-removable.patch to reverse its logic: in the
         default case, install the bootloader to /EFI/BOOT, unless we're trying
         to install on a removable device, or explicitly telling grub *not* to
         do it.
       - Move installing fb$arch.efi to --no-extra-removable; as we don't want
         fallback to be installed unless we're also installing to /EFI/BOOT.
         (LP: #1684341)
       - Make sure postinst and templates know about the replacement of
         --force-extra-removable with --no-extra-removable.
   * Sync Secure Boot support patches with the upstream patch set from
     rhboot/grub2:master-sb. Renamed some patches and updated descriptions for
     the whole thing to make more sense, too:
     - dropped debian/patches/linuxefi_require_shim.patch
     - renamed: debian/patches/no_insmod_on_sb.patch ->
       debian/patches/linuxefi_no_insmod_on_sb.patch
     - debian/patches/linuxefi.patch
     - debian/patches/linuxefi_debug.patch
     - debian/patches/linuxefi_non_sb_fallback.patch
     - debian/patches/linuxefi_add_sb_to_efi_chainload.patch
     - debian/patches/linuxefi_cleanup_errors_in_loader.patch
     - debian/patches/linuxefi_fix_efi_validation_race.patch
     - debian/patches/linuxefi_handle_multiarch_boot.patch
     - debian/patches/linuxefi_honor_sb_mode.patch
     - debian/patches/linuxefi_move_fdt_helper.patch
     - debian/patches/linuxefi_load_arm_with_sb.patch
     - debian/patches/linuxefi_minor_cleanups.patch
     - debian/patches/linuxefi_re-enable_linux_cmd.patch
     - debian/patches/linuxefi_rework_linux16_cmd.patch
     - debian/patches/linuxefi_rework_linux_cmd.patch
     - debian/patches/linuxefi_rework_non-sb_efi_chainload.patch
     - debian/patches/linuxefi_rework_pe_loading.patch
     - debian/patches/linuxefi_use_dev_chainloader_target.patch
   * debian/patches/dont-fail-efi-warnings.patch: handle linuxefi patches and
     the casting they do on some architectures: we don't want to fail build
     because of some of the warnings that can show up since we otherwise build
     with -Werror.
 .
 grub2 (2.02-3) UNRELEASED; urgency=medium
 .
   * Use current location for upstream signing key
     (debian/upstream/signing-key.asc).
   * Update upstream signing key to a non-expired version.
 .
   [ Debconf translations ]
   * [sq] Albanian (Silva Arapi; closes: #874497).
 .
 grub2 (2.02-2) unstable; urgency=medium
 .
   * Comment out debian/watch lines for betas and pre-releases for now.
   * Cherry-pick upstream patch to allow mounting ext2/3/4 file systems that
     have the 'encrypt' feature enabled (closes: #840204).
 .
 grub2 (2.02-1) unstable; urgency=medium
 .
   * New upstream release.
     - xen: Fix wrong register in relocator (closes: #799480).
   * Resolve symlinks for supported init paths as well as for /sbin/init
     (thanks, Felipe Sateler; closes: #842315).
 .
   [ Debconf translations ]
   * [sr] Serbian (Karolina Kalic; closes: #691288).
   * [sr at latin] Serbian Latin (Karolina Kalic; closes: #691289).
   * [pt] Portuguese (Rui Branco - DebianPT; closes: #864171).
 .
 grub2 (2.02~beta3-5) unstable; urgency=medium
 .
   [ Steve McIntyre ]
   * Make grub-install check for errors from efibootmgr (closes: #853234).
     There are probably still underlying issues in other similar reported
     bugs, but they're more effectively tracked elsewhere (e.g. efibootmgr)
     at this point (closes: #756253, #852513).
 .
   [ Debconf translations ]
   * [ug] Uyghur (Abduqadir Abliz).
   * [es] Spanish (Manuel "Venturi" Porras Peralta; closes: #852977).
Checksums-Sha1:
 ff52aff9a486ccb8d7c50db2af4e28c25a1abb3f 6275 grub2_2.02-2ubuntu1.dsc
 3d7eb6eaab28b88cb969ba9ab24af959f4d1b178 6113260 grub2_2.02.orig.tar.xz
 9b9fb4b3a0ea77671657be774d0e57872287fedf 1054088 grub2_2.02-2ubuntu1.debian.tar.xz
 2e2b17105f85487729d0f72f4ca1992076443b13 7894 grub2_2.02-2ubuntu1_source.buildinfo
Checksums-Sha256:
 f2adb9f3f1afc221d1b06b88517a2b46bb8728be50d7524d3e651143d506ebc2 6275 grub2_2.02-2ubuntu1.dsc
 810b3798d316394f94096ec2797909dbf23c858e48f7b3830826b8daa06b7b0f 6113260 grub2_2.02.orig.tar.xz
 3a452f644c6b24c25a1169bbb62a1054e3c05eb0092865e994b3238f8bc90fcb 1054088 grub2_2.02-2ubuntu1.debian.tar.xz
 604dfe678a7bca4ab3fb8fbcbf48df228e4044f26ca69c5f65693ef16dbb7838 7894 grub2_2.02-2ubuntu1_source.buildinfo
Files:
 a9b5399e94fde8791123f3b2ec87d0ba 6275 admin extra grub2_2.02-2ubuntu1.dsc
 8a4a2a95aac551fb0fba860ceabfa1d3 6113260 admin extra grub2_2.02.orig.tar.xz
 7393dc8faed9c5c125b2e693aec57545 1054088 admin extra grub2_2.02-2ubuntu1.debian.tar.xz
 f8a0d2584988a084b6e8d4fc8ed9fe5d 7894 admin extra grub2_2.02-2ubuntu1_source.buildinfo
Original-Maintainer: GRUB Maintainers <pkg-grub-devel at lists.alioth.debian.org>

-----BEGIN PGP SIGNATURE-----
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=pm7U
-----END PGP SIGNATURE-----


More information about the Bionic-changes mailing list