[ubuntu/bionic-proposed] shim-signed 1.37~18.04.10 (Accepted)

Julian Andres Klode juliank at ubuntu.com
Tue Jul 20 14:41:00 UTC 2021


shim-signed (1.37~18.04.10) bionic; urgency=medium

  * Remove unnecessary efitools dependency that prevented build on arm64

shim-signed (1.37~18.04.9) bionic; urgency=medium

  * New upstream release 15.4.  LP: #1921134
  * Synchronize packaging with 1.50, summary
    - Update packaging to pull fb and mm from shim-signed package as in
      later releases, dropping the runtime dependency on shim.
    - Add download-signed script from linux-signed package
    - Include reworked Makefile from devel to better assert the integrity of
      the executables.
    - Dual-signed shim
    - Set XB-Important: yes on shim-signed package so that it cannot be
      removed by accident (LP: #1898729)
    - download-signed: Fetch signed artefacts from versioned URL instead
      of current/ symlink to work around caching (LP: #1936640)
  * Update to shim 15.4-0ubuntu5:
    - Stop addending vendor dbx to MokListXRT during MokListX mirroring. This
      is causing systems to run out of EFI storage space, or just hang up
      when trying to write it (LP: #1924605) (LP: #1928434)
    - Further relax the check for variable mirroring on non-secureboot systems
      avoiding boot failures on out of space conditons (pull request #372)
    - Don't unhook ExitBootServices() when EBS protection is disabled
      (LP: #1931136) (pull request #378)
  * Update to shim 15.4-0ubuntu7:
    - Fix load option parsing, and thus fwupd execution (LP: #1929471) (PR #379)
    - Fix occasional crashes in _relocate() on arm64 (LP: #1928010) (PR #383)
    - Fix accidental deletion of RT variables (LP: #1934506) (PR #387)
    - mok: relax the maximum variable size check (LP: #1934780) (PR #369)

Date: Mon, 19 Jul 2021 17:01:19 +0200
Changed-By: Julian Andres Klode <juliank at ubuntu.com>
Maintainer: Steve Langasek <steve.langasek at ubuntu.com>
https://launchpad.net/ubuntu/+source/shim-signed/1.37~18.04.10
-------------- next part --------------
Format: 1.8
Date: Mon, 19 Jul 2021 17:01:19 +0200
Source: shim-signed
Built-For-Profiles: noudeb
Architecture: source
Version: 1.37~18.04.10
Distribution: bionic
Urgency: medium
Maintainer: Steve Langasek <steve.langasek at ubuntu.com>
Changed-By: Julian Andres Klode <juliank at ubuntu.com>
Launchpad-Bugs-Fixed: 1898729 1921134 1924605 1928010 1928434 1929471 1931136 1934506 1934780 1936640
Changes:
 shim-signed (1.37~18.04.10) bionic; urgency=medium
 .
   * Remove unnecessary efitools dependency that prevented build on arm64
 .
 shim-signed (1.37~18.04.9) bionic; urgency=medium
 .
   * New upstream release 15.4.  LP: #1921134
   * Synchronize packaging with 1.50, summary
     - Update packaging to pull fb and mm from shim-signed package as in
       later releases, dropping the runtime dependency on shim.
     - Add download-signed script from linux-signed package
     - Include reworked Makefile from devel to better assert the integrity of
       the executables.
     - Dual-signed shim
     - Set XB-Important: yes on shim-signed package so that it cannot be
       removed by accident (LP: #1898729)
     - download-signed: Fetch signed artefacts from versioned URL instead
       of current/ symlink to work around caching (LP: #1936640)
   * Update to shim 15.4-0ubuntu5:
     - Stop addending vendor dbx to MokListXRT during MokListX mirroring. This
       is causing systems to run out of EFI storage space, or just hang up
       when trying to write it (LP: #1924605) (LP: #1928434)
     - Further relax the check for variable mirroring on non-secureboot systems
       avoiding boot failures on out of space conditons (pull request #372)
     - Don't unhook ExitBootServices() when EBS protection is disabled
       (LP: #1931136) (pull request #378)
   * Update to shim 15.4-0ubuntu7:
     - Fix load option parsing, and thus fwupd execution (LP: #1929471) (PR #379)
     - Fix occasional crashes in _relocate() on arm64 (LP: #1928010) (PR #383)
     - Fix accidental deletion of RT variables (LP: #1934506) (PR #387)
     - mok: relax the maximum variable size check (LP: #1934780) (PR #369)
Checksums-Sha1:
 09ebd0290f5b69ba14b8dc16b0f4b8849f8ac1e1 1731 shim-signed_1.37~18.04.10.dsc
 f6a5cd7ea3308b78cf9c6ca02abbfa2c2073e5e4 550032 shim-signed_1.37~18.04.10.tar.xz
 4a665448d9ff7d8dafb3c67b8684976def9fa095 7318 shim-signed_1.37~18.04.10_source.buildinfo
Checksums-Sha256:
 69780f4e7566ecb5700120b404307bc2a6943121ed3499b586c1c96d083f666d 1731 shim-signed_1.37~18.04.10.dsc
 398b0bf8958fa0e3146827948eedcfab3ff00464a1ff2ab013a0813b4eb99d60 550032 shim-signed_1.37~18.04.10.tar.xz
 9e402b8105e1c99c85c34ca120350182a815558e6e92ad84bcba913d25d9da46 7318 shim-signed_1.37~18.04.10_source.buildinfo
Files:
 17bc2d227b3a4a232fbe0c4443854943 1731 utils optional shim-signed_1.37~18.04.10.dsc
 d852e77c3eee7dc56333ec5bd3c1b802 550032 utils optional shim-signed_1.37~18.04.10.tar.xz
 1d2d50a934365b55d63da3266745dc11 7318 utils optional shim-signed_1.37~18.04.10_source.buildinfo


More information about the Bionic-changes mailing list