-
shim-signed (1.51) impish; urgency=medium
* Update to shim 15.4-0ubuntu9
- Fix booting installer media on some machines (LP: #1937115)
+ Always fallback to the default loader (PR #393)
+ Dump load options parsed (PR #393)
+ Disable load option parsing on removable media path (PR #399)
- trivial: Fix a minor overflow in the mok importing code (PR #365)
- Fix fall back loader to find the correct boot entry, avoiding potential
corruption of firmware (PR #396).
-- Julian Andres Klode <email address hidden> Fri, 13 Aug 2021 18:00:15 +0200
-
shim-signed (1.50) impish; urgency=medium
* download-signed: Fetch signed artefacts from versioned URL instead
of current/ symlink to work around caching (LP: #1936640)
-- Julian Andres Klode <email address hidden> Fri, 16 Jul 2021 13:18:10 +0200
-
shim-signed (1.48) impish; urgency=medium
[ Dimitri John Ledkov ]
* Ship externally signed shims in the source package, instead of
detached signatures.
[ Steve Langasek ]
* Restore build-time 'cmp' check to assert that the output of sbattach
matches the binary received from Microsoft.
* Include external-$arch.p7c in the clean target.
[ Julian Andres Klode ]
* download-signed: Work around non-HTTP apt sources
* Update to shim 15.4-0ubuntu5:
- Stop addending vendor dbx to MokListXRT during MokListX mirroring. This
is causing systems to run out of EFI storage space, or just hang up
when trying to write it (LP: #1924605) (LP: #1928434)
- Further relax the check for variable mirroring on non-secureboot systems
avoiding boot failures on out of space conditons (pull request #372)
- Don't unhook ExitBootServices() when EBS protection is disabled
(LP: #1931136) (pull request #378)
-- Julian Andres Klode <email address hidden> Tue, 22 Jun 2021 12:19:31 +0200
-
shim-signed (1.47) impish; urgency=medium
[ Balint Reczey ]
* Fix boot on EFI 1.10 machines, for example on some MacBooks (LP: #1925010)
[ Dimitri John Ledkov ]
* Fix kernel warning when allocating MOK table (LP: #1925139)
* Fix booting with shim SBState disabled (LP: #1925140)
* Use -Zxz compression, for compatibility with dpkg in older releases.
LP: #1925673
shim-signed (1.46) hirsute; urgency=medium
* New upstream release 15.4 LP: #1921134
* Ship fb & mm from shim-signed package.
* Remove shim-canonical-unsigned dependency, now provided by shim
itself.
* Generalize attaching externally supplied signatures, to aid building
with embargoed or MS external signatures.
-- Dimitri John Ledkov <email address hidden> Fri, 30 Apr 2021 10:46:25 +0100
-
shim-signed (1.46) hirsute; urgency=medium
* New upstream release 15.4 LP: #1921134
* Ship fb & mm from shim-signed package.
* Remove shim-canonical-unsigned dependency, now provided by shim
itself.
* Generalize attaching externally supplied signatures, to aid building
with embargoed or MS external signatures.
-- Dimitri John Ledkov <email address hidden> Wed, 24 Mar 2021 12:40:28 +0000
-
shim-signed (1.45) groovy; urgency=medium
* Merge back changes from focal that got lost in the shim revert, as
groovy carried on from the reverted 1.41 upload and did not merge
back 1.40.{1,2,3}:
- Depend on the correct version of grub-signed (LP: #1871895)
- Install grub to multiple ESPs (LP: #1871821)
- Pass --timeout -1 to mokutil in a separate mokutil run (LP: #1869187),
thanks to Aleksander Miera for the patch.
-- Julian Andres Klode <email address hidden> Wed, 21 Oct 2020 11:02:12 +0200