[ubuntu/hirsute-proposed] shim_15.4-0ubuntu1_amd64.tar.gz - (Accepted)

Dimitri John Ledkov xnox at ubuntu.com
Tue Apr 13 10:35:46 UTC 2021


shim (15.4-0ubuntu1) hirsute; urgency=medium

  [ Dimitri John Ledkov ]
  * New upstream release 15.4 LP: #1921134
    - Update the commit hash in debian/rules
  * debian/rules: add request to sign EFI binaries with archive signing key.
  * debian/rules: stop using ENABLE_SHIM_CERT=1.
  * debian/rules: add canonical 2021 DBX.
  * deiban/rules: start using DISABLE_EBS_PROTECTION=1 to allow
    chainloading shim to shim, and shim to kernel.efi.
  * Add shim-dbg package, skip stripping files.
  * Update watch file, now uscan can generate new upstream tarballs.
  * Upgrade to debhelper 12.
  * Drop gnu-efi build-dep, now vendored upstream.
  * Add debian/rules target to generate gnu-efi components.
  * Do not clean gnu-efi Makefile.orig
  * Remove fallback 5s delay with TPM. LP: #1922581
  * Add xxd build-dep to run unittests.

  [ Chris Coulson ]
  * Drop patches that are fixed upstream:
    - debian/patches/Fix-OBJ_create-to-tolerate-a-NULL-sn-and-ln.patch
    - debian/patches/MokManager-avoid-unaligned.patch
    - debian/patches/tpm-correctness-1.patch
    - debian/patches/tpm-correctness-2.patch
    - debian/patches/tpm-correctness-3.patch
    - debian/patches/MokManager-hidpi-support.patch
    - debian/patches/fix-path-checks.patch
  * Drop the ENABLE_HTTPBOOT option - this is always built now.
    - update debian/rules
  * Add vendor SBAT metadata to shim.
    - add debian/sbat.ubuntu.csv.in
    - update debian/rules
  * Add vendor dbx esl to include-binaries
  * Build-depend on dos2unix
    - update debian/control

Date: Wed, 24 Mar 2021 11:32:25 +0000
Changed-By: Dimitri John Ledkov <xnox at ubuntu.com>
Maintainer: Launchpad Build Daemon <buildd at lgw01-amd64-018.buildd>

-------------- next part --------------
Format: 1.8
Date: Wed, 24 Mar 2021 11:32:25 +0000
Source: shim
Binary: shim shim-dbg
Built-For-Profiles: noudeb
Architecture: amd64
Version: 15.4-0ubuntu1
Distribution: hirsute
Urgency: medium
Maintainer: Launchpad Build Daemon <buildd at lgw01-amd64-018.buildd>
Changed-By: Dimitri John Ledkov <xnox at ubuntu.com>
Description:
 shim       - boot loader to chain-load signed boot loaders under Secure Boot
 shim-dbg   - boot loader to chain-load signed boot loaders under Secure Boot (
Launchpad-Bugs-Fixed: 1921134 1922581
Changes:
 shim (15.4-0ubuntu1) hirsute; urgency=medium
 .
   [ Dimitri John Ledkov ]
   * New upstream release 15.4 LP: #1921134
     - Update the commit hash in debian/rules
   * debian/rules: add request to sign EFI binaries with archive signing key.
   * debian/rules: stop using ENABLE_SHIM_CERT=1.
   * debian/rules: add canonical 2021 DBX.
   * deiban/rules: start using DISABLE_EBS_PROTECTION=1 to allow
     chainloading shim to shim, and shim to kernel.efi.
   * Add shim-dbg package, skip stripping files.
   * Update watch file, now uscan can generate new upstream tarballs.
   * Upgrade to debhelper 12.
   * Drop gnu-efi build-dep, now vendored upstream.
   * Add debian/rules target to generate gnu-efi components.
   * Do not clean gnu-efi Makefile.orig
   * Remove fallback 5s delay with TPM. LP: #1922581
   * Add xxd build-dep to run unittests.
 .
   [ Chris Coulson ]
   * Drop patches that are fixed upstream:
     - debian/patches/Fix-OBJ_create-to-tolerate-a-NULL-sn-and-ln.patch
     - debian/patches/MokManager-avoid-unaligned.patch
     - debian/patches/tpm-correctness-1.patch
     - debian/patches/tpm-correctness-2.patch
     - debian/patches/tpm-correctness-3.patch
     - debian/patches/MokManager-hidpi-support.patch
     - debian/patches/fix-path-checks.patch
   * Drop the ENABLE_HTTPBOOT option - this is always built now.
     - update debian/rules
   * Add vendor SBAT metadata to shim.
     - add debian/sbat.ubuntu.csv.in
     - update debian/rules
   * Add vendor dbx esl to include-binaries
   * Build-depend on dos2unix
     - update debian/control
Checksums-Sha1:
 2320cce411046fb5b9e807ed5883e316c1780c68 1329804 shim-dbg_15.4-0ubuntu1_amd64.deb
 225034e9321490d84213c4b9d731004209f97f02 6232 shim_15.4-0ubuntu1_amd64.buildinfo
 21c20fbe1e808ae681db2b97b0365e451f598de4 11868 shim_15.4-0ubuntu1_amd64.deb
 715ebe3d646a336b5a31c2a46099fb264cfa82f4 767327 shim_15.4-0ubuntu1_amd64.tar.gz
Checksums-Sha256:
 5d608f4d3b089b4e68b781e16ddeb7f2907a76f7db3bbbfaed35da6f3f762c03 1329804 shim-dbg_15.4-0ubuntu1_amd64.deb
 99c4b7333285c4d88f38926b473aec441b88353524bafe532669f189dc6a3933 6232 shim_15.4-0ubuntu1_amd64.buildinfo
 a239c4149824af9fce2c66045c3ff76675f649eacb95e30684d150b565a51b13 11868 shim_15.4-0ubuntu1_amd64.deb
 3eaa12bd8f4428736a5a6728ea727e045f5e9860b74c00aafcc9a5667e53f2de 767327 shim_15.4-0ubuntu1_amd64.tar.gz
Files:
 b6d7754cf721722ed8646d30fa306dea 1329804 debug optional shim-dbg_15.4-0ubuntu1_amd64.deb
 7a47d6579c09aecf6b67ed5b82b26b80 6232 admin optional shim_15.4-0ubuntu1_amd64.buildinfo
 775d211454ccc7afa8bc2469ba9d13a3 11868 admin optional shim_15.4-0ubuntu1_amd64.deb
 1b23fb0ff5715c67bf79963e899a3096 767327 raw-signing - shim_15.4-0ubuntu1_amd64.tar.gz
Original-Maintainer: Steve Langasek <vorlon at debian.org>


More information about the Hirsute-changes mailing list