unpushed

shim-fedora-20210331

FEDORA-2021-f5540ef3d6 created by pjones 3 years ago for Fedora 32
  • Update to shim 15.4
  • Support for revocations via the ".sbat" section and SBAT EFI variable
  • A new unit test framework and a bunch of unit tests
  • No external gnu-efi dependency
  • Better CI Resolves: CVE-2020-14372 Resolves: CVE-2020-25632 Resolves: CVE-2020-25647 Resolves: CVE-2020-27749 Resolves: CVE-2020-27779 Resolves: CVE-2021-20225 Resolves: CVE-2021-20233
  • Mark signed shim packages as protected in dnf. Resolves: #1874541
  • Conflict with older fwupd, but don't require it. Resolves: #1877751

Reboot Required
After installing this update it is required that you reboot your system to ensure the changes supplied by this update are applied properly.

This update has been submitted for testing by pjones.

3 years ago

This update's test gating status has been changed to 'ignored'.

3 years ago

This update's test gating status has been changed to 'waiting'.

3 years ago

Please login to add feedback.

Metadata
Type
security
Severity
medium
Karma
0
Signed
Test Gating
Builds
0
Settings
Unstable by Karma
-3
Stable by Karma
3
Stable by Time
7 days
Dates
submitted
3 years ago
BZ#1874541 Please mark shim packages as protected packages with DNF
0
0
BZ#1877751 fwupd replacing dbxtool.x86_64 8-13.fc33
0
0
BZ#1938630 include new bootloaders on Fedora 34 install media so UEFI Secure Boot enabled systems can boot from them
0
0

Automated Test Results