diff options
| author | Jan Setje-Eilers <jan.setjeeilers@oracle.com> | 2025-02-17 15:05:03 -0800 |
|---|---|---|
| committer | Peter Jones <pjones@redhat.com> | 2025-03-18 18:10:37 -0400 |
| commit | 893252718ebd8e3777a5209e84f2819e1ae59108 (patch) | |
| tree | 95b462ef58087acf4ff091e553cecc1f7e461e55 /generate_sbat_var_defs.c | |
| parent | 28d8871bdd17f3c52be9b370ec45238ef6816130 (diff) | |
| download | efi-boot-shim-893252718ebd8e3777a5209e84f2819e1ae59108.tar.gz efi-boot-shim-893252718ebd8e3777a5209e84f2819e1ae59108.zip | |
SBAT Level update for February 2025 GRUB CVEs
Moves the minimum GRUB SBAT Level to 5 in order to require fixes
for the following GRUB CVEs:
CVE-2024-45774
CVE-2024-45775
CVE-2024-45776
CVE-2024-45777
CVE-2024-45778
CVE-2024-45779
CVE-2024-45780
CVE-2024-45781
CVE-2024-45782
CVE-2024-45783
CVE-2025-0622
CVE-2025-0624
CVE-2025-0677
CVE-2025-0678
CVE-2025-0684
CVE-2025-0685
CVE-2025-0686
CVE-2025-0689
CVE-2025-0690
CVE-2025-1118
CVE-2025-1125
This also bumps the default SBAT_AUTOMATIC_DATE to 2024040900.
Signed-off-by: Jan Setje-Eilers <Jan.SetjeEilers@oracle.com>
Diffstat (limited to 'generate_sbat_var_defs.c')
| -rw-r--r-- | generate_sbat_var_defs.c | 2 |
1 files changed, 1 insertions, 1 deletions
diff --git a/generate_sbat_var_defs.c b/generate_sbat_var_defs.c index 94540bb0..1258e1b2 100644 --- a/generate_sbat_var_defs.c +++ b/generate_sbat_var_defs.c @@ -111,7 +111,7 @@ writefile() "#define GEN_SBAT_VAR_DEFS_H_\n" "#ifndef ENABLE_SHIM_DEVEL\n\n" "#ifndef SBAT_AUTOMATIC_DATE\n" - "#define SBAT_AUTOMATIC_DATE 2023012900\n" + "#define SBAT_AUTOMATIC_DATE 2024040900\n" "#endif /* SBAT_AUTOMATIC_DATE */\n" "#if SBAT_AUTOMATIC_DATE == %d\n" "#define SBAT_VAR_AUTOMATIC_REVOCATIONS\n", |
