<feed xmlns='http://www.w3.org/2005/Atom'>
<title>efi-boot-shim.git/debian, branch bookworm/updates</title>
<subtitle> (mirror of https://github.com/vyos/efi-boot-shim.git)
</subtitle>
<id>https://git.amelek.net/vyos/efi-boot-shim.git/atom?h=bookworm%2Fupdates</id>
<link rel='self' href='https://git.amelek.net/vyos/efi-boot-shim.git/atom?h=bookworm%2Fupdates'/>
<link rel='alternate' type='text/html' href='https://git.amelek.net/vyos/efi-boot-shim.git/'/>
<updated>2024-05-04T21:28:42+00:00</updated>
<entry>
<title>*Actually* release 15.8-1~deb12u1 for bookworm</title>
<updated>2024-05-04T21:28:42+00:00</updated>
<author>
<name>Steve McIntyre</name>
<email>steve@einval.com</email>
</author>
<published>2024-05-04T21:28:42+00:00</published>
<link rel='alternate' type='text/html' href='https://git.amelek.net/vyos/efi-boot-shim.git/commit/?id=9047a8e8ec4d769b2cb405d109270639096dbde7'/>
<id>urn:sha1:9047a8e8ec4d769b2cb405d109270639096dbde7</id>
<content type='text'>
</content>
</entry>
<entry>
<title>Clean up better after build. Closes: #1046268</title>
<updated>2024-05-04T21:06:34+00:00</updated>
<author>
<name>Steve McIntyre</name>
<email>steve@einval.com</email>
</author>
<published>2024-05-04T13:54:25+00:00</published>
<link rel='alternate' type='text/html' href='https://git.amelek.net/vyos/efi-boot-shim.git/commit/?id=b6990a9d7d825412185e20e22f61e51484d4d27b'/>
<id>urn:sha1:b6990a9d7d825412185e20e22f61e51484d4d27b</id>
<content type='text'>
</content>
</entry>
<entry>
<title>Install a copy of the Debian CA certificate into /usr/share/shim.</title>
<updated>2024-05-04T21:05:56+00:00</updated>
<author>
<name>Steve McIntyre</name>
<email>steve@einval.com</email>
</author>
<published>2024-05-04T13:36:15+00:00</published>
<link rel='alternate' type='text/html' href='https://git.amelek.net/vyos/efi-boot-shim.git/commit/?id=9b91206a20fa9e842f336647a18afc5d7e67327a'/>
<id>urn:sha1:9b91206a20fa9e842f336647a18afc5d7e67327a</id>
<content type='text'>
Closes: #1069054
</content>
</entry>
<entry>
<title>Release 15.8-1~deb12u1 for bookworm</title>
<updated>2024-05-04T13:21:09+00:00</updated>
<author>
<name>Steve McIntyre</name>
<email>steve@einval.com</email>
</author>
<published>2024-05-04T13:21:09+00:00</published>
<link rel='alternate' type='text/html' href='https://git.amelek.net/vyos/efi-boot-shim.git/commit/?id=91350387a88ed4d3c4f833543602b09d22cda758'/>
<id>urn:sha1:91350387a88ed4d3c4f833543602b09d22cda758</id>
<content type='text'>
</content>
</entry>
<entry>
<title>Update version for bookworm</title>
<updated>2024-05-03T15:18:29+00:00</updated>
<author>
<name>Steve McIntyre</name>
<email>steve@einval.com</email>
</author>
<published>2024-05-03T15:18:29+00:00</published>
<link rel='alternate' type='text/html' href='https://git.amelek.net/vyos/efi-boot-shim.git/commit/?id=00d057c5fd76c9c57d2d6eb0f8646ee46e58cff1'/>
<id>urn:sha1:00d057c5fd76c9c57d2d6eb0f8646ee46e58cff1</id>
<content type='text'>
</content>
</entry>
<entry>
<title>Force usage of newest revocations at build time</title>
<updated>2024-05-03T15:06:30+00:00</updated>
<author>
<name>Steve McIntyre</name>
<email>steve@einval.com</email>
</author>
<published>2024-05-03T13:46:24+00:00</published>
<link rel='alternate' type='text/html' href='https://git.amelek.net/vyos/efi-boot-shim.git/commit/?id=bd9f3bf33105d5a7f8be6a95b881efa4718a4739'/>
<id>urn:sha1:bd9f3bf33105d5a7f8be6a95b881efa4718a4739</id>
<content type='text'>
Force shim to use the latest revocations by default to block some
older grub / peimage issues. This is:

"shim,4\ngrub,4\ngrub.peimage,2\n"

This should work with the current released grub builds in all of
buster, bullseye, bookwork and trixie/unstable. Let's not leave known
security holes in the wild.
</content>
</entry>
<entry>
<title>Cherry-pick latest grub revocation patches from upstream shim</title>
<updated>2024-05-03T15:06:18+00:00</updated>
<author>
<name>Steve McIntyre</name>
<email>steve@einval.com</email>
</author>
<published>2024-04-25T23:58:46+00:00</published>
<link rel='alternate' type='text/html' href='https://git.amelek.net/vyos/efi-boot-shim.git/commit/?id=bb0763da91af882aadd5736016587aa6d460cfb3'/>
<id>urn:sha1:bb0763da91af882aadd5736016587aa6d460cfb3</id>
<content type='text'>
0001-sbat-Add-grub.peimage-2-to-latest-CVE-2024-2312.patch
0002-sbat-Also-bump-latest-for-grub-4-and-to-todays-date.patch
</content>
</entry>
<entry>
<title>Log if the build is nx-compatible or not</title>
<updated>2024-05-03T15:03:35+00:00</updated>
<author>
<name>Steve McIntyre</name>
<email>steve@einval.com</email>
</author>
<published>2024-04-25T21:42:28+00:00</published>
<link rel='alternate' type='text/html' href='https://git.amelek.net/vyos/efi-boot-shim.git/commit/?id=2c85966cf3abe20d129f657802bc2201b63d0122'/>
<id>urn:sha1:2c85966cf3abe20d129f657802bc2201b63d0122</id>
<content type='text'>
Add a new simple script to do this: check_nx
</content>
</entry>
<entry>
<title>Switch to 15.8 upstream and drop patches</title>
<updated>2024-05-03T15:02:10+00:00</updated>
<author>
<name>Steve McIntyre</name>
<email>steve@einval.com</email>
</author>
<published>2024-04-21T17:15:46+00:00</published>
<link rel='alternate' type='text/html' href='https://git.amelek.net/vyos/efi-boot-shim.git/commit/?id=487a9b02c1addbcf5963fbb4ca133f808d976f96'/>
<id>urn:sha1:487a9b02c1addbcf5963fbb4ca133f808d976f96</id>
<content type='text'>
</content>
</entry>
<entry>
<title>Tweak the UUID handling to be clearer</title>
<updated>2024-05-02T21:13:14+00:00</updated>
<author>
<name>Steve McIntyre</name>
<email>steve@einval.com</email>
</author>
<published>2024-02-17T17:19:57+00:00</published>
<link rel='alternate' type='text/html' href='https://git.amelek.net/vyos/efi-boot-shim.git/commit/?id=3cf4042d82ef314f19e9f7bd4f86c4b59efd8233'/>
<id>urn:sha1:3cf4042d82ef314f19e9f7bd4f86c4b59efd8233</id>
<content type='text'>
</content>
</entry>
</feed>
