Change logs for shim-signed source package in Impish

  • shim-signed (1.51) impish; urgency=medium
    
      * Update to shim 15.4-0ubuntu9
        - Fix booting installer media on some machines (LP: #1937115)
          + Always fallback to the default loader (PR #393)
          + Dump load options parsed (PR #393)
          + Disable load option parsing on removable media path (PR #399)
        - trivial: Fix a minor overflow in the mok importing code (PR #365)
        - Fix fall back loader to find the correct boot entry, avoiding potential
          corruption of firmware (PR #396).
    
     -- Julian Andres Klode <email address hidden>  Fri, 13 Aug 2021 18:00:15 +0200
  • shim-signed (1.50) impish; urgency=medium
    
      * download-signed: Fetch signed artefacts from versioned URL instead
        of current/ symlink to work around caching (LP: #1936640)
    
     -- Julian Andres Klode <email address hidden>  Fri, 16 Jul 2021 13:18:10 +0200
  • shim-signed (1.49) impish; urgency=medium
    
      * Update to shim 15.4-0ubuntu7:
        - Fix load option parsing, and thus fwupd execution (LP: #1929471) (PR #379)
        - Fix occasional crashes in _relocate() on arm64 (LP: #1928010) (PR #383)
        - Fix accidental deletion of RT variables (LP: #1934506) (PR #387)
        - mok: relax the maximum variable size check (LP: #1934780) (PR #369)
    
     -- Julian Andres Klode <email address hidden>  Thu, 15 Jul 2021 11:00:51 +0200
  • shim-signed (1.48) impish; urgency=medium
    
      [ Dimitri John Ledkov ]
      * Ship externally signed shims in the source package, instead of
        detached signatures.
    
      [ Steve Langasek ]
      * Restore build-time 'cmp' check to assert that the output of sbattach
        matches the binary received from Microsoft.
      * Include external-$arch.p7c in the clean target.
    
      [ Julian Andres Klode ]
      * download-signed: Work around non-HTTP apt sources
      * Update to shim 15.4-0ubuntu5:
        - Stop addending vendor dbx to MokListXRT during MokListX mirroring. This
          is causing systems to run out of EFI storage space, or just hang up
          when trying to write it (LP: #1924605) (LP: #1928434)
        - Further relax the check for variable mirroring on non-secureboot systems
          avoiding boot failures on out of space conditons (pull request #372)
        - Don't unhook ExitBootServices() when EBS protection is disabled
          (LP: #1931136) (pull request #378)
    
     -- Julian Andres Klode <email address hidden>  Tue, 22 Jun 2021 12:19:31 +0200
  • shim-signed (1.47) impish; urgency=medium
    
      [ Balint Reczey ]
      * Fix boot on EFI 1.10 machines, for example on some MacBooks (LP: #1925010)
    
      [ Dimitri John Ledkov ]
      * Fix kernel warning when allocating MOK table (LP: #1925139)
      * Fix booting with shim SBState disabled (LP: #1925140)
      * Use -Zxz compression, for compatibility with dpkg in older releases.
        LP: #1925673
    
    shim-signed (1.46) hirsute; urgency=medium
    
      * New upstream release 15.4 LP: #1921134
      * Ship fb & mm from shim-signed package.
      * Remove shim-canonical-unsigned dependency, now provided by shim
        itself.
      * Generalize attaching externally supplied signatures, to aid building
        with embargoed or MS external signatures.
    
     -- Dimitri John Ledkov <email address hidden>  Fri, 30 Apr 2021 10:46:25 +0100
  • shim-signed (1.46) hirsute; urgency=medium
    
      * New upstream release 15.4 LP: #1921134
      * Ship fb & mm from shim-signed package.
      * Remove shim-canonical-unsigned dependency, now provided by shim
        itself.
      * Generalize attaching externally supplied signatures, to aid building
        with embargoed or MS external signatures.
    
     -- Dimitri John Ledkov <email address hidden>  Wed, 24 Mar 2021 12:40:28 +0000