[ubuntu/impish-proposed] shim-signed 1.48 (Accepted)

Julian Andres Klode juliank at ubuntu.com
Tue Jun 22 10:25:12 UTC 2021


shim-signed (1.48) impish; urgency=medium

  [ Dimitri John Ledkov ]
  * Ship externally signed shims in the source package, instead of
    detached signatures.

  [ Steve Langasek ]
  * Restore build-time 'cmp' check to assert that the output of sbattach
    matches the binary received from Microsoft.
  * Include external-$arch.p7c in the clean target.

  [ Julian Andres Klode ]
  * download-signed: Work around non-HTTP apt sources
  * Update to shim 15.4-0ubuntu5:
    - Stop addending vendor dbx to MokListXRT during MokListX mirroring. This
      is causing systems to run out of EFI storage space, or just hang up
      when trying to write it (LP: #1924605) (LP: #1928434)
    - Further relax the check for variable mirroring on non-secureboot systems
      avoiding boot failures on out of space conditons (pull request #372)
    - Don't unhook ExitBootServices() when EBS protection is disabled
      (LP: #1931136) (pull request #378)

Date: Tue, 22 Jun 2021 12:19:31 +0200
Changed-By: Julian Andres Klode <juliank at ubuntu.com>
Maintainer: Steve Langasek <steve.langasek at ubuntu.com>
https://launchpad.net/ubuntu/+source/shim-signed/1.48
-------------- next part --------------
Format: 1.8
Date: Tue, 22 Jun 2021 12:19:31 +0200
Source: shim-signed
Built-For-Profiles: noudeb
Architecture: source
Version: 1.48
Distribution: impish
Urgency: medium
Maintainer: Steve Langasek <steve.langasek at ubuntu.com>
Changed-By: Julian Andres Klode <juliank at ubuntu.com>
Launchpad-Bugs-Fixed: 1924605 1928434 1931136
Changes:
 shim-signed (1.48) impish; urgency=medium
 .
   [ Dimitri John Ledkov ]
   * Ship externally signed shims in the source package, instead of
     detached signatures.
 .
   [ Steve Langasek ]
   * Restore build-time 'cmp' check to assert that the output of sbattach
     matches the binary received from Microsoft.
   * Include external-$arch.p7c in the clean target.
 .
   [ Julian Andres Klode ]
   * download-signed: Work around non-HTTP apt sources
   * Update to shim 15.4-0ubuntu5:
     - Stop addending vendor dbx to MokListXRT during MokListX mirroring. This
       is causing systems to run out of EFI storage space, or just hang up
       when trying to write it (LP: #1924605) (LP: #1928434)
     - Further relax the check for variable mirroring on non-secureboot systems
       avoiding boot failures on out of space conditons (pull request #372)
     - Don't unhook ExitBootServices() when EBS protection is disabled
       (LP: #1931136) (pull request #378)
Checksums-Sha1:
 56bcb0c8242002e5573689e3045e653f750aa7c6 1719 shim-signed_1.48.dsc
 85f0c0ebea463bfcc20af33a18c9aaa3e828c1ec 554912 shim-signed_1.48.tar.xz
 2d3360de766c8cf73a6a6a8b7c508587e8fe941e 8575 shim-signed_1.48_source.buildinfo
Checksums-Sha256:
 9b9e389d90a4f8cf9999202a8f007c41bf12757bf99764262f07bb6b9ce80d7b 1719 shim-signed_1.48.dsc
 9d1408794dfc47c6e130c623657ffba0e63905d057256f7b12636eef5db88b1b 554912 shim-signed_1.48.tar.xz
 60c7a87752bcd6c17b9f7e2daa4edfdde414f0fa34fe1dc88ae6256d525f1aa0 8575 shim-signed_1.48_source.buildinfo
Files:
 dcfb2219fce64efbf171ab9380c0344f 1719 utils optional shim-signed_1.48.dsc
 db4dfa5cf72ee516fd1b0481937e542c 554912 utils optional shim-signed_1.48.tar.xz
 69bb976ca5cce9ebba5eb259b276db25 8575 utils optional shim-signed_1.48_source.buildinfo


More information about the impish-changes mailing list