[ubuntu/mantic-proposed] grub2 2.12~rc1-10ubuntu2 (Accepted)
Julian Andres Klode
juliank at ubuntu.com
Mon Sep 25 21:55:31 UTC 2023
grub2 (2.12~rc1-10ubuntu2) mantic; urgency=medium
* Merge from Debian unstable to pick up fixes (LP: #2028947); remaining changes:
- Add Ubuntu sbat data
- build-efi-images: do not produce -installer.efi.signed. LP: 1863994
- grub-common: Install canonical-uefi-ca.crt
- Check signatures
- Support installing to multiple ESP (LP: 1871821)
- Disable various bits on i386
- Split out unsigned artefacts into grub2-unsigned
- Vcs-Git: Point to ubuntu packaging branch
- Relax dependencies on grub-common and grub2-common
- grub-pc: Avoid the possibility of breaking grub on SRU update due
to ABI change
- UBUNTU: Default timeout changes
- Revert "Add jfs module to signed UEFI images. Closes: #950959"
- Revert "Add f2fs module to signed UEFI images"
- Install grub-initrd-fallback.service again
- Build using -O1 on s390x to avoid misoptimization
- grub-check-signatures: Support gzip compressed kernels (LP: #1954683)
- grub-multi-install: Reset partition type between partitions (LP: #1997795)
- Drop i386 from grub-efi-amd64* (LP: #2020907)
- Turn depends on grub-efi-amd64/arm64 unversioned
- forward port fix for LP: #1926748
- Make the grub2/no_efi_extra_removable setting work correctly
- Forward port the fix for LP: #1930742 and make it conditional (xenial/bionic only)
- Build grub2-unsigned packages with xz compression
- Replaced patches:
- installe-signed.patched
- grub-install-extra-removable.patch
- grub-install-removable-shim.patch
- Added patches:
+ rhboot-f34-dont-use-int-for-efi-status.patch
+ rhboot-f34-make-exit-take-a-return-code.patch
+ suse-grub.texi-add-net_bootp6-document.patch
+ ubuntu-add-devicetree-command-support.patch
+ ubuntu-add-initrd-less-boot-fallback.patch
+ ubuntu-add-initrd-less-boot-messages.patch
+ ubuntu-boot-from-multipath-dependent-symlink.patch
+ ubuntu-dont-verify-loopback-images.patch
+ ubuntu-fix-lzma-decompressor-objcopy.patch
+ ubuntu-grub-install-extra-removable.patch
+ ubuntu-install-signed.patch
+ ubuntu-mkconfig-leave-breadcrumbs.patch
+ ubuntu-os-prober-auto.patch
+ ubuntu-recovery-dis_ucode_ldr.patch
+ ubuntu-resilient-boot-boot-order.patch
+ ubuntu-resilient-boot-ignore-alternative-esps.patch
+ ubuntu-shorter-version-info.patch
+ ubuntu-speed-zsys-history.patch
+ ubuntu-support-initrd-less-boot.patch
+ ubuntu-verifiers-last.patch
+ ubuntu-zfs-enhance-support.patch
+ ubuntu-zfs-gfxpayload-dynamic.patch
+ ubuntu-zfs-gfxpayload-keep-default.patch
+ ubuntu-zfs-insmod-xzio-and-lzopio-on-xen.patch
+ ubuntu-zfs-mkconfig-recovery-title.patch
+ ubuntu-zfs-mkconfig-signed-kernel.patch
+ ubuntu-zfs-mkconfig-ubuntu-distributor.patch
+ ubuntu-zfs-mkconfig-ubuntu-recovery.patch
+ ubuntu-zfs-vt-handoff.patch
* Dropped Ubuntu changes:
- Temporarily rmmod peimage for os-prober chainloader entries (LP: #2030810)
* Revert: "Have -bin packages Break pre-2.12 -signed packages.", this is not
compatible with our versioning schemes.
* Install a /usr/lib/grub/grub-sort-version and use that to sort versions as
it respects GRUB_FLAVOUR_ORDER. Depend on python3 to do so.
* rules: Add DPKG_BUILDPACKAGE_OPTIONS to generate-grub2-unsigned
grub2 (2.12~rc1-10) unstable; urgency=medium
[ Julian Andres Klode ]
* Cherry pick fix for unmerged usr shebang (Closes: #1051251)
* grub-common.dirs: Install empty /etc/default/grub.d (Closes: #1051412)
[ Mate Kukri ]
* efi: Eliminate globals from the `peimage.c` chainloader
grub2 (2.12~rc1-9) unstable; urgency=medium
* Correct the Breaks to include the ~rc1 bit of the version
grub2 (2.12~rc1-8) unstable; urgency=medium
* Have -bin packages Break pre-2.12 -signed packages.
On insecurely booted systems, upgrading the -bin packages with
the modules before the -signed packages caused the signed binaries
to crash when loading additional modules. (Closes: #1051271)
* Revert "In the signed packages, change the version dependency"
This reverts commit 680bb22c3308b7ccd0a7eb7923c7d68067b626f9. The
signed package needs the modules to be at the same version during
boot on insecure systems or it may crash trying to load further
modules.
* Set Protected: yes for -signed packages so they cannot easily be removed.
This ensures that the = depends in grub-efi-amd64-signed does not
cause it to be removed when it is out of sync with src:grub2
grub2 (2.12~rc1-7) unstable; urgency=medium
* Upload to unstable
grub2 (2.12~rc1-6) experimental; urgency=medium
* Use rm_conffile instead of remove-on-upgrade.
This works with ftp-master's old lintian version and allows
easy backports
grub2 (2.12~rc1-5) experimental; urgency=medium
[ Felix Zielcke ]
* Add salsa-ci.yml and disable blhc and reprotest pipelines.
* remove on upgrades /etc/default/grub.d/init-select.cfg. (Closes: #1042707)
[ Julian Andres Klode ]
* peimage: Set file_path for loaded image (LP: #2030810, #2032294)
* Hack up the lintian overrides for stable lintian on ftp-master
Date: Mon, 25 Sep 2023 17:31:09 +0200
Changed-By: Julian Andres Klode <juliank at ubuntu.com>
Maintainer: Ubuntu Developers <ubuntu-devel-discuss at lists.ubuntu.com>
https://launchpad.net/ubuntu/+source/grub2/2.12~rc1-10ubuntu2
-------------- next part --------------
Format: 1.8
Date: Mon, 25 Sep 2023 17:31:09 +0200
Source: grub2
Built-For-Profiles: noudeb
Architecture: source
Version: 2.12~rc1-10ubuntu2
Distribution: mantic
Urgency: medium
Maintainer: Ubuntu Developers <ubuntu-devel-discuss at lists.ubuntu.com>
Changed-By: Julian Andres Klode <juliank at ubuntu.com>
Closes: 950959 1042707 1051251 1051271 1051412
Launchpad-Bugs-Fixed: 1926748 1930742 1954683 1997795 2020907 2028947 2030810 2032294
Changes:
grub2 (2.12~rc1-10ubuntu2) mantic; urgency=medium
.
* Merge from Debian unstable to pick up fixes (LP: #2028947); remaining changes:
- Add Ubuntu sbat data
- build-efi-images: do not produce -installer.efi.signed. LP: 1863994
- grub-common: Install canonical-uefi-ca.crt
- Check signatures
- Support installing to multiple ESP (LP: 1871821)
- Disable various bits on i386
- Split out unsigned artefacts into grub2-unsigned
- Vcs-Git: Point to ubuntu packaging branch
- Relax dependencies on grub-common and grub2-common
- grub-pc: Avoid the possibility of breaking grub on SRU update due
to ABI change
- UBUNTU: Default timeout changes
- Revert "Add jfs module to signed UEFI images. Closes: #950959"
- Revert "Add f2fs module to signed UEFI images"
- Install grub-initrd-fallback.service again
- Build using -O1 on s390x to avoid misoptimization
- grub-check-signatures: Support gzip compressed kernels (LP: #1954683)
- grub-multi-install: Reset partition type between partitions (LP: #1997795)
- Drop i386 from grub-efi-amd64* (LP: #2020907)
- Turn depends on grub-efi-amd64/arm64 unversioned
- forward port fix for LP: #1926748
- Make the grub2/no_efi_extra_removable setting work correctly
- Forward port the fix for LP: #1930742 and make it conditional (xenial/bionic only)
- Build grub2-unsigned packages with xz compression
- Replaced patches:
- installe-signed.patched
- grub-install-extra-removable.patch
- grub-install-removable-shim.patch
- Added patches:
+ rhboot-f34-dont-use-int-for-efi-status.patch
+ rhboot-f34-make-exit-take-a-return-code.patch
+ suse-grub.texi-add-net_bootp6-document.patch
+ ubuntu-add-devicetree-command-support.patch
+ ubuntu-add-initrd-less-boot-fallback.patch
+ ubuntu-add-initrd-less-boot-messages.patch
+ ubuntu-boot-from-multipath-dependent-symlink.patch
+ ubuntu-dont-verify-loopback-images.patch
+ ubuntu-fix-lzma-decompressor-objcopy.patch
+ ubuntu-grub-install-extra-removable.patch
+ ubuntu-install-signed.patch
+ ubuntu-mkconfig-leave-breadcrumbs.patch
+ ubuntu-os-prober-auto.patch
+ ubuntu-recovery-dis_ucode_ldr.patch
+ ubuntu-resilient-boot-boot-order.patch
+ ubuntu-resilient-boot-ignore-alternative-esps.patch
+ ubuntu-shorter-version-info.patch
+ ubuntu-speed-zsys-history.patch
+ ubuntu-support-initrd-less-boot.patch
+ ubuntu-verifiers-last.patch
+ ubuntu-zfs-enhance-support.patch
+ ubuntu-zfs-gfxpayload-dynamic.patch
+ ubuntu-zfs-gfxpayload-keep-default.patch
+ ubuntu-zfs-insmod-xzio-and-lzopio-on-xen.patch
+ ubuntu-zfs-mkconfig-recovery-title.patch
+ ubuntu-zfs-mkconfig-signed-kernel.patch
+ ubuntu-zfs-mkconfig-ubuntu-distributor.patch
+ ubuntu-zfs-mkconfig-ubuntu-recovery.patch
+ ubuntu-zfs-vt-handoff.patch
* Dropped Ubuntu changes:
- Temporarily rmmod peimage for os-prober chainloader entries (LP: #2030810)
* Revert: "Have -bin packages Break pre-2.12 -signed packages.", this is not
compatible with our versioning schemes.
* Install a /usr/lib/grub/grub-sort-version and use that to sort versions as
it respects GRUB_FLAVOUR_ORDER. Depend on python3 to do so.
* rules: Add DPKG_BUILDPACKAGE_OPTIONS to generate-grub2-unsigned
.
grub2 (2.12~rc1-10) unstable; urgency=medium
.
[ Julian Andres Klode ]
* Cherry pick fix for unmerged usr shebang (Closes: #1051251)
* grub-common.dirs: Install empty /etc/default/grub.d (Closes: #1051412)
.
[ Mate Kukri ]
* efi: Eliminate globals from the `peimage.c` chainloader
.
grub2 (2.12~rc1-9) unstable; urgency=medium
.
* Correct the Breaks to include the ~rc1 bit of the version
.
grub2 (2.12~rc1-8) unstable; urgency=medium
.
* Have -bin packages Break pre-2.12 -signed packages.
On insecurely booted systems, upgrading the -bin packages with
the modules before the -signed packages caused the signed binaries
to crash when loading additional modules. (Closes: #1051271)
* Revert "In the signed packages, change the version dependency"
This reverts commit 680bb22c3308b7ccd0a7eb7923c7d68067b626f9. The
signed package needs the modules to be at the same version during
boot on insecure systems or it may crash trying to load further
modules.
* Set Protected: yes for -signed packages so they cannot easily be removed.
This ensures that the = depends in grub-efi-amd64-signed does not
cause it to be removed when it is out of sync with src:grub2
.
grub2 (2.12~rc1-7) unstable; urgency=medium
.
* Upload to unstable
.
grub2 (2.12~rc1-6) experimental; urgency=medium
.
* Use rm_conffile instead of remove-on-upgrade.
This works with ftp-master's old lintian version and allows
easy backports
.
grub2 (2.12~rc1-5) experimental; urgency=medium
.
[ Felix Zielcke ]
* Add salsa-ci.yml and disable blhc and reprotest pipelines.
* remove on upgrades /etc/default/grub.d/init-select.cfg. (Closes: #1042707)
.
[ Julian Andres Klode ]
* peimage: Set file_path for loaded image (LP: #2030810, #2032294)
* Hack up the lintian overrides for stable lintian on ftp-master
Checksums-Sha1:
8f09aa2b663ca0253fc1f0239fc5089a9927fab1 7287 grub2_2.12~rc1-10ubuntu2.dsc
2799be82f3238c2a2b5f37adc86197ede938cb73 1113012 grub2_2.12~rc1-10ubuntu2.debian.tar.xz
860e155100e2fd3c589d12ecb1a96a3cbcfb0c98 11793 grub2_2.12~rc1-10ubuntu2_source.buildinfo
Checksums-Sha256:
1e7b72ae816efb625dd8f4feda3fe044ff34c797bbd1d85dfed031543bf34a08 7287 grub2_2.12~rc1-10ubuntu2.dsc
83f6eaae44d1181742f543521d17ab8489212731bb44cb5236539d7820a4ebba 1113012 grub2_2.12~rc1-10ubuntu2.debian.tar.xz
41dac6190bfff3bb719ea03d09e34b485edda93ffb012b51bbb24e0e157063cd 11793 grub2_2.12~rc1-10ubuntu2_source.buildinfo
Files:
1b201999491676d606509e0c5ef3802e 7287 admin optional grub2_2.12~rc1-10ubuntu2.dsc
f02c568f92b4ad665e5256dc59b14074 1113012 admin optional grub2_2.12~rc1-10ubuntu2.debian.tar.xz
9836925995bade01594e3faaf060e81d 11793 admin optional grub2_2.12~rc1-10ubuntu2_source.buildinfo
Original-Maintainer: GRUB Maintainers <pkg-grub-devel at alioth-lists.debian.net>
More information about the mantic-changes
mailing list