[Bug 1938774] Re: Update to 15.4 results in shim being marked for autoremoval

Julian Andres Klode 1938774 at bugs.launchpad.net
Tue Aug 3 10:31:21 UTC 2021


To add more detail, sorry for the brevity, the shim-signed package took
over the remaining files in the shim package, and the shim package
itself is hence no longer needed. The reason for that is that those
files (mm*.efi and fb*.efi) were previously signed by an ephemeral key
at build time, but are now signed by the signing service like a linux
kernel, for example, and hence can't be in the shim package itself.

shim-signed is now marked to prevent it from being removed where
installed, which should ensure people don't end up with an unbootable
system :)

-- 
You received this bug notification because you are a member of Ubuntu
Foundations Bugs, which is subscribed to shim in Ubuntu.
https://bugs.launchpad.net/bugs/1938774

Title:
  Update to 15.4 results in shim being marked for autoremoval

Status in shim package in Ubuntu:
  Invalid
Status in shim-signed package in Ubuntu:
  Invalid

Bug description:
  (on 20.04)

  The update to fix #1898729 can result in "shim" being marked to be
  autoremoved.

  From /var/apt/history.log

  Start-Date: 2021-08-03  09:32:20
  Commandline: apt dist-upgrade
  Requested-By: uccaoke (1000)
  Upgrade: shim-signed:amd64 (1.40.4+15+1552672080.a4a1fbe-0ubuntu2, 1.40.6+15.4-0ubuntu7), shim:amd64 (15+1552672080.a4a1fbe-0ubuntu2, 15.4-0ubuntu7)
  End-Date: 2021-08-03  09:32:23

  Start-Date: 2021-08-03  09:32:37
  Commandline: apt autoremove
  Requested-By: uccaoke (1000)
  Remove: shim:amd64 (15.4-0ubuntu7)
  End-Date: 2021-08-03  09:32:37

  I'm unclear on whether this will result in an non-bootable system so I
  re-installed shim to be doubly sure (I need this machine for work!)

To manage notifications about this bug go to:
https://bugs.launchpad.net/ubuntu/+source/shim/+bug/1938774/+subscriptions




More information about the foundations-bugs mailing list