shim 15.8-1~deb12u1 source package in Debian

Changelog

shim (15.8-1~deb12u1) bookworm; urgency=medium

  [ Steve McIntyre ]
  * Cope with changes in pesign packaging.
  * New upstream release fixing more bugs
  * Remove all our previous patches, no longer needed:
    + Make-sbat_var.S-parse-right-with-buggy-gcc-binutils.patch (now
      upstream)
    + Enable-NX.patch (we don't want NX just yet until the whole boot
      stack is NX-capable)
    + block-grub-sbat3-debian.patch (not needed now upstream grub SBAT
      is 4)
  * Cherry-pick 2 new patches from upstream for grub revocations:
    + 0001-sbat-Add-grub.peimage-2-to-latest-CVE-2024-2312.patch
    + 0002-sbat-Also-bump-latest-for-grub-4-and-to-todays-date.patch
  * Log if the build is nx-compatible or not
  * Force shim to use the latest revocations by default to block some
    older grub / peimage issues. This is:
    "shim,4\ngrub,4\ngrub.peimage,2\n"
  * Install a copy of the Debian CA certificate into /usr/share/shim.
    Closes: #1069054
  * Clean up better after build. Closes: #1046268

  [ Bastien Roucariès ]
  * Port autopkgtest from ubuntu
  * Import MR-12: "shim-unsigned:amd64 cannot be installed alongside
    shim-unsigned:i386", thanks to adrian15 adrian15 (Closes: #936009).
  * Fix debian/watch and check signature

 -- Steve McIntyre <email address hidden>  Sat, 04 May 2024 21:28:21 +0100

Upload details

Uploaded by:
Debian UEFI Maintainers
Uploaded to:
Bookworm
Original maintainer:
Debian UEFI Maintainers
Architectures:
amd64 arm64 i386
Section:
misc
Urgency:
Medium Urgency

See full publishing history Publishing

Series Pocket Published Component Section
Bookworm release main misc

Builds

Downloads

File Size SHA-256 Checksum
shim_15.8-1~deb12u1.dsc 2.6 KiB c202fbfb5de17bd6587b23bd171ea6f7f11dbce1c1b063f34a1469dbc517056e
shim_15.8.orig.tar.bz2 2.2 MiB a79f0a9b89f3681ab384865b1a46ab3f79d88b11b4ca59aa040ab03fffae80a9
shim_15.8-1~deb12u1.debian.tar.xz 57.7 KiB 6c15c6111e7e40683f6aec2e8302a3ae830caa4144aba7e448553e574de30647

No changes file available.

Binary packages built by this source