[ubuntu/bionic-proposed] shim-signed 1.37~18.04.9 (Accepted)

Julian Andres Klode juliank at ubuntu.com
Mon Jul 19 12:25:53 UTC 2021


shim-signed (1.37~18.04.9) bionic; urgency=medium

  * New upstream release 15.4.  LP: #1921134
  * Synchronize packaging with 1.50, summary
    - Update packaging to pull fb and mm from shim-signed package as in
      later releases, dropping the runtime dependency on shim.
    - Add download-signed script from linux-signed package
    - Include reworked Makefile from devel to better assert the integrity of
      the executables.
    - Dual-signed shim
    - Set XB-Important: yes on shim-signed package so that it cannot be
      removed by accident (LP: #1898729)
    - download-signed: Fetch signed artefacts from versioned URL instead
      of current/ symlink to work around caching (LP: #1936640)
  * Update to shim 15.4-0ubuntu5:
    - Stop addending vendor dbx to MokListXRT during MokListX mirroring. This
      is causing systems to run out of EFI storage space, or just hang up
      when trying to write it (LP: #1924605) (LP: #1928434)
    - Further relax the check for variable mirroring on non-secureboot systems
      avoiding boot failures on out of space conditons (pull request #372)
    - Don't unhook ExitBootServices() when EBS protection is disabled
      (LP: #1931136) (pull request #378)
  * Update to shim 15.4-0ubuntu7:
    - Fix load option parsing, and thus fwupd execution (LP: #1929471) (PR #379)
    - Fix occasional crashes in _relocate() on arm64 (LP: #1928010) (PR #383)
    - Fix accidental deletion of RT variables (LP: #1934506) (PR #387)
    - mok: relax the maximum variable size check (LP: #1934780) (PR #369)

Date: Fri, 16 Jul 2021 14:04:10 +0200
Changed-By: Julian Andres Klode <juliank at ubuntu.com>
Maintainer: Steve Langasek <steve.langasek at ubuntu.com>
https://launchpad.net/ubuntu/+source/shim-signed/1.37~18.04.9
-------------- next part --------------
Format: 1.8
Date: Fri, 16 Jul 2021 14:04:10 +0200
Source: shim-signed
Built-For-Profiles: noudeb
Architecture: source
Version: 1.37~18.04.9
Distribution: bionic
Urgency: medium
Maintainer: Steve Langasek <steve.langasek at ubuntu.com>
Changed-By: Julian Andres Klode <juliank at ubuntu.com>
Launchpad-Bugs-Fixed: 1898729 1921134 1924605 1928010 1928434 1929471 1931136 1934506 1934780 1936640
Changes:
 shim-signed (1.37~18.04.9) bionic; urgency=medium
 .
   * New upstream release 15.4.  LP: #1921134
   * Synchronize packaging with 1.50, summary
     - Update packaging to pull fb and mm from shim-signed package as in
       later releases, dropping the runtime dependency on shim.
     - Add download-signed script from linux-signed package
     - Include reworked Makefile from devel to better assert the integrity of
       the executables.
     - Dual-signed shim
     - Set XB-Important: yes on shim-signed package so that it cannot be
       removed by accident (LP: #1898729)
     - download-signed: Fetch signed artefacts from versioned URL instead
       of current/ symlink to work around caching (LP: #1936640)
   * Update to shim 15.4-0ubuntu5:
     - Stop addending vendor dbx to MokListXRT during MokListX mirroring. This
       is causing systems to run out of EFI storage space, or just hang up
       when trying to write it (LP: #1924605) (LP: #1928434)
     - Further relax the check for variable mirroring on non-secureboot systems
       avoiding boot failures on out of space conditons (pull request #372)
     - Don't unhook ExitBootServices() when EBS protection is disabled
       (LP: #1931136) (pull request #378)
   * Update to shim 15.4-0ubuntu7:
     - Fix load option parsing, and thus fwupd execution (LP: #1929471) (PR #379)
     - Fix occasional crashes in _relocate() on arm64 (LP: #1928010) (PR #383)
     - Fix accidental deletion of RT variables (LP: #1934506) (PR #387)
     - mok: relax the maximum variable size check (LP: #1934780) (PR #369)
Checksums-Sha1:
 960b638859ce48118e9c85ad35b8abb1d1cd9f32 1737 shim-signed_1.37~18.04.9.dsc
 3599322807f02cd0bf9970de1a0d91f08e08eaa9 551156 shim-signed_1.37~18.04.9.tar.xz
 b5f7d469fde59ebc311e269da48fcfb707766f5c 8527 shim-signed_1.37~18.04.9_source.buildinfo
Checksums-Sha256:
 a66b576e6b551948fa4c5a29471361dc67ea2717d1506c4e2e6b6fe62d0b647e 1737 shim-signed_1.37~18.04.9.dsc
 fd18880a21910ae1888593544b593475602605e4eb5665eb4fd8c994791f27c6 551156 shim-signed_1.37~18.04.9.tar.xz
 7824f76b07ae75297542469fb4916353c529b93603a3a23566acabbc80ccaeba 8527 shim-signed_1.37~18.04.9_source.buildinfo
Files:
 76f903c74503fa4d553ed7b1ef2b2114 1737 utils optional shim-signed_1.37~18.04.9.dsc
 3249d85fc4abf707c261d76463fa9a7d 551156 utils optional shim-signed_1.37~18.04.9.tar.xz
 249117f29be87f40dea1ed6ab8cc839c 8527 utils optional shim-signed_1.37~18.04.9_source.buildinfo


More information about the Bionic-changes mailing list