[Bug 2076929] Re: [SRU] Rebuild cd-boot-images-{amd64, arm64} against new shim

Christian Ehrhardt  2076929 at bugs.launchpad.net
Fri Aug 30 12:18:55 UTC 2024


As outlined in the discussion above, I removed grub2-unsigned
grub2-signed from jammy-proposed to unblock you.

Removing packages from jammy-proposed:
	grub2-unsigned 2.06-2ubuntu14.5 in jammy
		grub-efi-amd64 2.06-2ubuntu14.5 in jammy amd64
		grub-efi-amd64 2.06-2ubuntu14.5 in jammy i386
		grub-efi-amd64-bin 2.06-2ubuntu14.5 in jammy amd64
		grub-efi-amd64-bin 2.06-2ubuntu14.5 in jammy i386
		grub-efi-amd64-dbg 2.06-2ubuntu14.5 in jammy amd64
		grub-efi-amd64-dbg 2.06-2ubuntu14.5 in jammy i386
		grub-efi-arm64 2.06-2ubuntu14.5 in jammy arm64
		grub-efi-arm64-bin 2.06-2ubuntu14.5 in jammy arm64
		grub-efi-arm64-dbg 2.06-2ubuntu14.5 in jammy arm64
	grub2-signed 1.187.8 in jammy
		grub-efi-amd64-signed 1.187.8+2.06-2ubuntu14.5 in jammy amd64
		grub-efi-arm64-signed 1.187.8+2.06-2ubuntu14.5 in jammy arm64
Comment: Low urgency, but blocking urgent images rebuild against shim 15.8 (LP: #2076929, #2043084)
Remove [y|N]? y
2 packages successfully removed.

Please bring back the content of bug 2043084 once it is ready.

-- 
You received this bug notification because you are a member of Ubuntu
Foundations Bugs, which is subscribed to cd-boot-images-arm64 in Ubuntu.
https://bugs.launchpad.net/bugs/2076929

Title:
  [SRU] Rebuild cd-boot-images-{amd64,arm64} against new shim

Status in cd-boot-images-amd64 package in Ubuntu:
  Confirmed
Status in cd-boot-images-arm64 package in Ubuntu:
  Confirmed
Status in cd-boot-images-amd64 source package in Jammy:
  Fix Committed
Status in cd-boot-images-arm64 source package in Jammy:
  Fix Committed

Bug description:
  [ Impact ]

   * Microsoft is rolling out SBAT revocations via Windows update such that
     single-boot machines with Windows won't be able to boot shim executables
     with SBAT level less than shim,4.

   * For the 22.04.5 media we would like to include the 15.8 shim so that
     it is bootable on such machines.

  [ Test Plan ]

   * Ensure that the resulting cd-boot images contain our 15.8-0ubuntu1 MS UEFI
     CA signed shim executable.

  [ Where problems could occur ]

   * Impact is limited to media built using the new cd-boot images which will go
     through the usual rigorous QA process.

   * The shim and grub that will be used as part of this process will be in the Jammy
     archive before being part of media.

To manage notifications about this bug go to:
https://bugs.launchpad.net/ubuntu/+source/cd-boot-images-amd64/+bug/2076929/+subscriptions




More information about the foundations-bugs mailing list