[Bug 1948748] Re: [MIR] swtpm

Christian Ehrhardt  1948748 at bugs.launchpad.net
Fri Apr 1 06:07:16 UTC 2022


Thank you Seth, so this seems all ready once the fixed version of
libtpms landed in jammy.

As mentioned before I have already prepared this in
  https://code.launchpad.net/~paelzer/ubuntu/+source/libtpms/+git/libtpms/+merge/417854
It has acks there for the changes so far and should be good.
I'll now check the recent issues you opened to pull in their fixes as well.

https://github.com/stefanberger/libtpms/issues/304
  fixed in stable banch 
  https://github.com/stefanberger/libtpms/commit/897c8f869754d01639741cecf9fee8f0a7b5d740
  not yet in a 0.9.4 (not tagged yet)
  I have added it on top of the planned upload for jammy

https://github.com/stefanberger/libtpms/issues/310
  fixed in master branch 
  https://github.com/stefanberger/libtpms/commit/ec873cf8a2b594a4bb504429c390b880050e4aaf
  agreed to be false positive, not needed in jammy

https://github.com/stefanberger/libtpms/issues/311
  fixed in master branch
  https://github.com/stefanberger/libtpms/commit/fbf413ec862fa93879502207d279b00fddc0ef98
  agreed to be false positive, not needed in jammy

https://github.com/stefanberger/libtpms/issues/313
  No fix/discussion yet, we can pull this in later as/if needed.

Updated both
MP: https://code.launchpad.net/~paelzer/ubuntu/+source/libtpms/+git/libtpms/+merge/417854
PPA: https://launchpad.net/~paelzer/+archive/ubuntu/libtpms-jammy-0.9.3/+packages

If there are no late issues I'll upload to jammy later.
That should then complete the requirements to promote all of this in Jammy.

-- 
You received this bug notification because you are a member of Ubuntu
Foundations Bugs, which is subscribed to gnutls28 in Ubuntu.
https://bugs.launchpad.net/bugs/1948748

Title:
  [MIR] swtpm

Status in autogen package in Ubuntu:
  Won't Fix
Status in gnutls28 package in Ubuntu:
  Won't Fix
Status in libtpms package in Ubuntu:
  New
Status in swtpm package in Ubuntu:
  In Progress

Bug description:
  [Availability]
  Available in universe in jammy.

  [Rationale]
  Needed in order to provide TPM functionality to VMs through kvm/libvirt; should be a Recommends: of qemu-system-x86

  [Security]
  Several security bugs found and fixed in libtpms this year http://cve.mitre.org/cgi-bin/cvekey.cgi?keyword=libtpms

  http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2021-3746 currently
  remains unfixed in the version present in jammy (DoS bug).

  [Quality assurance]
  Limited history: package not present in Debian, and only in Ubuntu since jammy.

  [UI standards]
  N/A

  [Dependencies]
  swtpm and libtpms; no further dependencies outside of main.

  [Standards compliance]
  OK

  [Maintenance]
  To be maintained by the Foundations Team.

  [Background information]
  N/A

To manage notifications about this bug go to:
https://bugs.launchpad.net/ubuntu/+source/autogen/+bug/1948748/+subscriptions




More information about the foundations-bugs mailing list