[Bug 1940723] Re: shim-signed fails to install if grub disk config is incorrect

Anders Bälter 1940723 at bugs.launchpad.net
Thu Aug 26 07:44:51 UTC 2021


We are only seeing it on Azure, but other cloud providers Ubuntu images
don't come with shim-signed so that's why I though we could remove it.

lsblk
NAME    MAJ:MIN RM   SIZE RO TYPE MOUNTPOINT
loop0     7:0    0  55.5M  1 loop /snap/core18/2074
loop2     7:2    0  32.3M  1 loop /snap/snapd/12398
sda       8:0    0     4G  0 disk /var/lib/rabbitmq
sdb       8:16   0    30G  0 disk 
├─sdb1    8:17   0  29.9G  0 part /
├─sdb14   8:30   0     4M  0 part 
└─sdb15   8:31   0   106M  0 part /boot/efi
sdc       8:32   0     4G  0 disk 
└─sdc1    8:33   0     4G  0 part /mnt
sr0      11:0    1   638K  0 rom  
zram0   252:0    0 229.2M  0 disk [SWAP]

/etc/fstab 
# CLOUD_IMG: This file was created/modified by the Cloud Image build process
UUID=7339cdbb-1045-46fc-99df-ed81a4d0b313	/	 ext4	defaults,discard	0 1
UUID=BD61-C33D	/boot/efi	vfat	umask=0077	0 1
/dev/disk/cloud/azure_resource-part1	/mnt	auto	defaults,nofail,x-systemd.requires=cloud-init.service,comment=cloudconfig	0	2
UUID=face62a9-e9d1-40a2-b94b-d18497d7423d /var/lib/rabbitmq xfs defaults,noatime 0 0

/etc/default/grub
# If you change this file, run 'update-grub' afterwards to update
# /boot/grub/grub.cfg.
# For full documentation of the options in this file, see:
#   info -f grub -n 'Simple configuration'

GRUB_DEFAULT=0
GRUB_TIMEOUT_STYLE=hidden
GRUB_TIMEOUT=0
GRUB_DISTRIBUTOR=`lsb_release -i -s 2> /dev/null || echo Debian`
GRUB_CMDLINE_LINUX_DEFAULT="quiet splash"
GRUB_CMDLINE_LINUX=""

# Uncomment to enable BadRAM filtering, modify to suit your needs
# This works with Linux (no patch required) and with any kernel that obtains
# the memory map information from GRUB (GNU Mach, kernel of FreeBSD ...)
#GRUB_BADRAM="0x01234567,0xfefefefe,0x89abcdef,0xefefefef"

# Uncomment to disable graphical terminal (grub-pc only)
#GRUB_TERMINAL=console

# The resolution used on graphical terminal
# note that you can use only modes which your graphic card supports via VBE
# you can see them in real GRUB with the command `vbeinfo'
#GRUB_GFXMODE=640x480

# Uncomment if you don't want GRUB to pass "root=UUID=xxx" parameter to Linux
#GRUB_DISABLE_LINUX_UUID=true

# Uncomment to disable generation of recovery mode menu entries
#GRUB_DISABLE_RECOVERY="true"

# Uncomment to get a beep at grub start
#GRUB_INIT_TUNE="480 440 1"

-- 
You received this bug notification because you are a member of Ubuntu
Foundations Bugs, which is subscribed to grub2 in Ubuntu.
https://bugs.launchpad.net/bugs/1940723

Title:
  shim-signed fails to install if grub disk config is incorrect

Status in grub2 package in Ubuntu:
  Confirmed
Status in shim-signed package in Ubuntu:
  Confirmed

Bug description:
  package shim-signed 1.40.6+15.4-0ubuntu7 failed to install/upgrade:
  installed shim-signed package post-installation script subprocess
  returned error exit status 32

  ProblemType: Package
  DistroRelease: Ubuntu 20.04
  Package: shim-signed 1.40.6+15.4-0ubuntu7
  ProcVersionSignature: Ubuntu 5.11.0-27.29~20.04.1-generic 5.11.22
  Uname: Linux 5.11.0-27-generic x86_64
  .proc.sys.kernel.moksbstate_disabled: Error: [Errno 2] Aucun fichier ou dossier de ce type: '/proc/sys/kernel/moksbstate_disabled'
  ApportVersion: 2.20.11-0ubuntu27.18
  Architecture: amd64
  BootEFIContents:
   BOOTX64.CSV
   grub.cfg
   grubx64.efi
   mmx64.efi
   shimx64.efi
  CasperMD5CheckResult: skip
  Date: Sat Aug 21 00:04:46 2021
  DuplicateSignature:
   package:shim-signed:1.40.6+15.4-0ubuntu7
   Setting up shim-signed (1.40.6+15.4-0ubuntu7) ...
   mount: /var/lib/grub/esp: le périphérique spécial /dev/disk/by-id/ata-WDC_WD5000AAKX-001CA0_WD-WMAYU5896427-part1 n'existe pas.
   dpkg: error processing package shim-signed (--configure):
    installed shim-signed package post-installation script subprocess returned error exit status 32
  EFITables:
   août 20 23:52:39 benazzi-HP-EliteDesk-800-G1-SFF kernel: efi: EFI v2.31 by American Megatrends
   août 20 23:52:39 benazzi-HP-EliteDesk-800-G1-SFF kernel: efi: ACPI=0xd9900000 ACPI 2.0=0xd9900000 SMBIOS=0xd9f7e498 
   août 20 23:52:39 benazzi-HP-EliteDesk-800-G1-SFF kernel: secureboot: Secure boot disabled
   août 20 23:52:39 benazzi-HP-EliteDesk-800-G1-SFF kernel: secureboot: Secure boot disabled
  ErrorMessage: installed shim-signed package post-installation script subprocess returned error exit status 32
  InstallationDate: Installed on 2021-03-08 (165 days ago)
  InstallationMedia: Ubuntu 20.04.1 LTS "Focal Fossa" - Release amd64 (20200731)
  Python3Details: /usr/bin/python3.8, Python 3.8.10, python3-minimal, 3.8.2-0ubuntu2
  PythonDetails: /usr/bin/python2.7, Python 2.7.18, python-is-python2, 2.7.17-4
  RelatedPackageVersions:
   dpkg 1.19.7ubuntu3
   apt  2.0.6
  SecureBoot: 6   0   0   0   0
  ShimDiff: Les fichiers binaires /boot/efi/EFI/ubuntu/shimx64.efi et /usr/lib/shim/shimx64.efi.signed sont différents
  SourcePackage: shim-signed
  Title: package shim-signed 1.40.6+15.4-0ubuntu7 failed to install/upgrade: installed shim-signed package post-installation script subprocess returned error exit status 32
  UpgradeStatus: No upgrade log present (probably fresh install)

To manage notifications about this bug go to:
https://bugs.launchpad.net/ubuntu/+source/grub2/+bug/1940723/+subscriptions




More information about the foundations-bugs mailing list