[Bug 1917509] Re: Call for testing: grub2 security updates

Steve Beattie 1917509 at bugs.launchpad.net
Sat Mar 6 09:21:00 UTC 2021


I have successfully tested these grub2 updates on groovy, focal, bionic,
and xenial bare metal machines with efi + secure boot, as well as a
bionic efi system with secure boot disabled. All worked and things like
grub menus continued to work.

On trusty/esm with the grub packages from esm-infra-security-staging
installed, the grub menu no longer displays on boot, but keypresses are
registered by the menu system and the system will continue to boot if
the grub timeout is allowed to occur. See bug 1917529.

Thanks.

-- 
You received this bug notification because you are a member of Ubuntu
Foundations Bugs, which is subscribed to grub2 in Ubuntu.
https://bugs.launchpad.net/bugs/1917509

Title:
  Call for testing: grub2 security updates

Status in grub2 package in Ubuntu:
  Confirmed
Status in grub2-signed package in Ubuntu:
  Confirmed
Status in grub2-unsigned package in Ubuntu:
  Confirmed

Bug description:
  Several security issues were announced on 2021-03-02, see
  https://wiki.ubuntu.com/SecurityTeam/KnowledgeBase/GRUB2SecureBootBypass2021
  for details.

  As part of this update, a large number of changes were incorporated,
  both in grub2 and how it is packaged. Updates will initially be
  published to the -proposed pockets of each release. Testing is greatly
  appreciated and feedback can be collected on this bug report.

  [XXX Fill in information on how to enable proposed and install grub
  updates here]

To manage notifications about this bug go to:
https://bugs.launchpad.net/ubuntu/+source/grub2/+bug/1917509/+subscriptions



More information about the foundations-bugs mailing list