[Bug 2051151] Re: Update to shim 15.8
Mate Kukri
2051151 at bugs.launchpad.net
Wed Aug 21 16:45:51 UTC 2024
Similar state for Focal as Jammy (Expected as the shim and GRUB are exactly the same):
- Almost all the local boot and SB tests pass on both arm64/amd64
- mokutil tests dont work on Focal arm64 (they do on Focal amd64), this isn't a regression, same for 15.7 shim too
- Netboot via PXEv4/PXEv6 is fine
- Netboot via HTTP is broken, but this isn't a regression, it doesn't work with the old shim either
I've ported the boot tester on amd64 to Focal. On arm64 I had to test
with a Jammy host + Focal guest to make it work, too many things are
broken in focal arm64.
** Tags removed: verification-needed verification-needed-focal
** Tags added: verification-done verification-done-focal
--
You received this bug notification because you are a member of Ubuntu
Foundations Bugs, which is subscribed to shim-signed in Ubuntu.
https://bugs.launchpad.net/bugs/2051151
Title:
Update to shim 15.8
Status in shim package in Ubuntu:
Fix Released
Status in shim-signed package in Ubuntu:
Fix Released
Status in shim source package in Focal:
Fix Committed
Status in shim-signed source package in Focal:
Fix Committed
Status in shim source package in Jammy:
Fix Committed
Status in shim-signed source package in Jammy:
Fix Committed
Status in shim source package in Mantic:
Won't Fix
Status in shim-signed source package in Mantic:
Won't Fix
Status in shim source package in Noble:
Fix Released
Status in shim-signed source package in Noble:
Fix Released
Status in shim package in Debian:
Fix Released
Bug description:
[Impact]
shim 15.7 is affected by multiple CVEs, including a critical severity
one allowing Secure Boot bypass when netbooting.
[Test Plan]
Make sure the system is bootable both from disk and network with the
new shim on each affected series
[Where problems could occur]
Boot regressions are always possible when updating such a critical
component.
To manage notifications about this bug go to:
https://bugs.launchpad.net/ubuntu/+source/shim/+bug/2051151/+subscriptions
More information about the foundations-bugs
mailing list