The package will build now and be available at https:/ /launchpad. Otherwise, this change should only increase the set of machines on which it's possible for us to boot the point release media.Īccepted debian-installer into focal-proposed. If something happens that prevents these from being released, then we would need to respin. We are pulling grub2-signed and shim2-signed from focal-proposed. Confirm that the boot is blocked with a security error. * sudo sbkeysync -no-default- keystores -keystore. bin https:/ // sites/default/ files/resources /DBXUpdate. * To download the current UEFI revocation list for amd64 and apply it to dbx, run: This will cause SBAT to be updated and the system to refuse to boot older shims. * On a system with SecureBoot enabled, boot the 22.04.2 install media. * Build a daily PROPOSED=1 focal image that pulls in the new d-i boot bits. That should include the current version of shim and grub2. Since the 20.04.5 point release inadvertently went out without a current UEFI bootloader and was thus already revoked before release, we have agreed to do an exceptional 20.04.6 point release. There is another round of security updates for secureboot that result in SBAT revocations of all the previous shims/grubs.
0 Comments
Leave a Reply. |
AuthorWrite something about yourself. No need to be fancy, just an overview. ArchivesCategories |