[Bug 1941888] Re: FFe: sbsigntools 0.9.4

Thomas Ward 1941888 at bugs.launchpad.net
Fri Aug 27 15:58:44 UTC 2021


Build was successful against Impish Proposed, uploading with the changes
I mentioned - the correct version string and the full path to the
sbkeysync patch in the changelog.  Also adjusted the bug number to point
to this FFe bug, which as stated in the dupe I've defined as the
'master' tracker for this.

In future, only *one* bug is needed, and an FFe request can be done
within the original bug.  No need to make new bugs for the FFe request
and the 'new version to build in riscv' bug, they're the same bug
basically.

-- 
You received this bug notification because you are a member of Ubuntu
Sponsors Team, which is subscribed to the bug report.
https://bugs.launchpad.net/bugs/1941888

Title:
  FFe: sbsigntools 0.9.4

Status in sbsigntool package in Ubuntu:
  Triaged

Bug description:
  FFe: sbsigntools 0.9.4

  The current sbsigntool-0.9.2-2ubuntu4 package lacks support for the riscv64
  architecture.

  For developing UEFI booting on RISC-V we need these tools.

  Since release 0.9.2 several bugs have been resolved. A major one leads
  to incorrect signatures for EFI binaries.

  0.9.4 brought one additional feature:

  The command sbsign received an additional optional parameter --addcert for
  specifying intermediate certificates.

  I have prepared an upload in my PPA, which builds on all EFI enabled
  architectures including riscv64 and I have tested the package locally
  on riscv64 and amd64 and it works for me. There are no autopackage tests
  available and device certification should test on all relevant
  architectures.

  Please consider a feature freeze exception for sbsigntools 0.9.4.

  sbsigntool 0.9.4-2ubuntu2 is availabe in ppa:xypron/gnu-efi

  Changelog:

  Version 0.9.4

  * sbsign: allow for adding intermediate certificates
  * sbverify: fix verification with intermediate certificates
  * Tests: Add intermediate certificate tests to the sign-verify cases
  * Fix some openssl 1.1.0 deprecated functions
  * sbvarsign: remove unused global variable
  * sbverify: refer to unused function
  * Fix errors on 32 bit
  * Enable -Werror for builds
  * docs: add man page for sbkeysync

  Version 0.9.3

  * README: update git location and add mailing list information
  * sbvarsign: fix "EFI_VARIABLE_AUTHENTICATION_2.TimeStamp.Year" assignment
  * Fix PE/COFF checksum calculation

To manage notifications about this bug go to:
https://bugs.launchpad.net/ubuntu/+source/sbsigntool/+bug/1941888/+subscriptions




More information about the Ubuntu-sponsors mailing list