[Bug 1921539] Re: Add support for SBAT
Yuan-Chen Cheng
1921539 at bugs.launchpad.net
Tue Sep 7 04:21:41 UTC 2021
fwupd 1.2.14-0~18.04.2 from the bionic-proposed channel
+ fwupd-signed + shim from the bionic-proposed channel.
+ secure boot on.
test nvme firmware re-install
wd19sc docking firmware upgrade (ref: lp:1921544)
wd19tb docking firmware reinstall
(fwupdmgr install --allow-reinstall 4e3f12fc1901c05790ab17ff2223a79631477aa87979498874c4c262cfafc144-WD19FirmwareUpdateLinux_01.00.21.cab)
all passed.
---
log:
$ fwupdmgr install --allow-reinstall 4e3f12fc1901c05790ab17ff2223a79631477aa87979498874c4c262cfafc144-WD19FirmwareUpdateLinux_01.00.21.cab
Decompressing… [***************************************]
Authenticating… [***************************************]
Installing on Package level of Dell dock… ]
Restarting device… [***************************************]
Installing on RTS5413 in Dell dock… ]
Restarting device… [***************************************] Less than one minute remaining…
Installing on RTS5487 in Dell dock…******************************]
Restarting device… [***************************************] Less than one minute remaining…
Installing on Thunderbolt controller in Dell dock…***************]
Restarting device… [***************************************] Less than one minute remaining…
Installing on WD19TB…
Idle… [***************************************]
Installing on VMM5331 in Dell dock…
Idle… [***************************************]
Restarting device… [***************************************] Less than one minute remaining…
Installing on WD19TB… [************************************** ]
Restarting device… [***************************************] Less than one minute remaining…
Tool version updates to address security vulnerabilities.
** Tags removed: verification-needed verification-needed-bionic
** Tags added: verification-done verification-done-bionic
--
You received this bug notification because you are a member of Ubuntu
Foundations Bugs, which is subscribed to fwupd-signed in Ubuntu.
https://bugs.launchpad.net/bugs/1921539
Title:
Add support for SBAT
Status in OEM Priority Project:
In Progress
Status in fwupd package in Ubuntu:
Fix Released
Status in fwupd-signed package in Ubuntu:
Fix Released
Status in fwupd source package in Bionic:
Fix Committed
Status in fwupd-signed source package in Bionic:
Fix Committed
Status in fwupd source package in Focal:
Fix Released
Status in fwupd-signed source package in Focal:
Fix Released
Status in fwupd source package in Groovy:
Fix Released
Status in fwupd-signed source package in Groovy:
Fix Released
Status in fwupd source package in Hirsute:
Fix Released
Status in fwupd-signed source package in Hirsute:
Fix Released
Bug description:
[Impact]
Future releases of shim will require that EFI binaries that are chainloaded include an SBAT region. fwupd in bionic does not currently contain this region.
[Test Case]
Verify that a shim that checks for sbat region can boot the fwupd with sbat region.
[Regression Potential]
This is moving to a new stable release in each of the series which is in bug fix only mode. The sbat region is the only "feature" that has been backported to this series in over a year.
To manage notifications about this bug go to:
https://bugs.launchpad.net/oem-priority/+bug/1921539/+subscriptions
More information about the foundations-bugs
mailing list