summaryrefslogtreecommitdiff
tag name15.6 (d190191fd9016bb1538d57cab3397328b12f9edb)
tag date2022-06-01 14:26:15 -0400
tagged byPeter Jones <pjones@redhat.com>
tagged objectcommit 505cdb678b...
downloadefi-boot-shim-15.6.tar.gz
efi-boot-shim-15.6.zip
shim-15.6
- What's Changed * MokManager: removed Locate graphic output protocol fail error message by @joeyli in https://github.com/rhboot/shim/pull/441 * shim: implement SBAT verification for the shim_lock protocol by @chrisccoulson in https://github.com/rhboot/shim/pull/456 * post-process-pe: Fix a missing return code check by @vathpela in https://github.com/rhboot/shim/pull/462 * Update github actions matrix to be more useful by @frozencemetery in https://github.com/rhboot/shim/pull/469 * Add f36 and centos9 CI builds by @vathpela in https://github.com/rhboot/shim/pull/470 * post-process-pe: Fix format string warnings on 32-bit platforms by @steve-mcintyre in https://github.com/rhboot/shim/pull/464 * tests: also look for system headers in multi-arch directories by @steve-mcintyre in https://github.com/rhboot/shim/pull/466 * tests: fix gcc warnings by @akodanev in https://github.com/rhboot/shim/pull/463 * Allow MokListTrusted to be enabled by default by @esnowberg in https://github.com/rhboot/shim/pull/455 * Add code of conduct by @frozencemetery in https://github.com/rhboot/shim/pull/427 * Re-add ARM AArch64 support by @vathpela in https://github.com/rhboot/shim/pull/468 * Use ASCII as fallback if Unicode Box Drawing characters fail by @vathpela in https://github.com/rhboot/shim/pull/428 * make: don't treat cert.S specially by @vathpela in https://github.com/rhboot/shim/pull/475 * shim: use SHIM_DEVEL_VERBOSE when built in devel mode by @vathpela in https://github.com/rhboot/shim/pull/474 * Break out of the inner sbat loop if we find the entry. by @vathpela in https://github.com/rhboot/shim/pull/476 * Support loading additional certificates by @esnowberg in https://github.com/rhboot/shim/pull/446 * Add support for NX (W^X) mitigations. by @vathpela in https://github.com/rhboot/shim/pull/459 * Misc fixups from scan-build. by @vathpela in https://github.com/rhboot/shim/pull/477 * Fix preserve_sbat_uefi_variable() logic by @jsetje in https://github.com/rhboot/shim/pull/478 * SBAT Policy latest should be a one-shot by @jsetje in https://github.com/rhboot/shim/pull/481 * pe: Fix a buffer overflow when SizeOfRawData > VirtualSize by @chriscoulson * pe: Perform image verification earlier when loading grub by @chriscoulson * Update advertised sbat generation number for shim by @jsetje * Update SBAT generation requirements for 05/24/22 by @jsetje * Also avoid CVE-2022-28737 in verify_image() by @vathpela - New Contributors * @joeyli made their first contribution in https://github.com/rhboot/shim/pull/441 * @akodanev made their first contribution in https://github.com/rhboot/shim/pull/463 * @esnowberg made their first contribution in https://github.com/rhboot/shim/pull/455 - Full Changelog**: https://github.com/rhboot/shim/compare/15.5...15.6 -----BEGIN PGP SIGNATURE----- iQJGBAABCgAwFiEEsAtIvHMaqIQP7Z+w7tJmtw9P7xAFAmKXr3USHHBqb25lc0By ZWRoYXQuY29tAAoJEO7SZrcPT+8Q1soP/1xZkYNq2zV1F8BNk0ZahBBeYMilCMJ3 LNtfWvlZOzMI172JNugcGGzrDC2ASriQgiTUDl4Iju/rrWELGwaMYPRjKHMOMM0K bceYXbx2z2gf8RWyP4PBlIVUhD3f9BjhHNUHZl6vbxE1EgUnTin++EMNyC/6rf6L Bw090Hc/XImMOX/ly02Y5dfv7d9b/V0mdDMx23BeekkrFaDGt+7iJjVX8Ada9Uge QFsQeL4KS8mubzSk/Rn9SjrYWMAmKSZVowT45lk+uunapgcor3yH1yyuMnkBpGHg UBnZRpy9e7So/x1BEKeW048L576RhcQjZGFz+yogRX3RlMPLWRwgAxZRBB038J/3 VNnPDNS+ocLbBVBrgrblq5INeST2aoH/mUNG7kvRFBq1ZW1JtSQnil+qoJp8tU2s oFaTzH3EtbdgcPfab98tTlCF8wt8xNk30d0z9xPx4ZSCgKfNsm12RFfoJyNPIqwt lhAlF6gp63GK9Q7oRgmD3Ocs7i3L7nfbz0go6tO40bAjmB7NEQkHAuCoxsP/3uI1 4caPO4VbxnZFEQd7a7N8N9eztsZih5GyDUBa9fvmTLUVKS8z9H2iR7gYNw/0AkPR fcnuvcN4aVrgfzOH1x80fvtMwT3OGm8e6N1FTybvtCmqpB3J3DEGbcwO11V5qFNw +a4mnGlJcVag =SnKu -----END PGP SIGNATURE-----