[Date Prev][Date Next] [Thread Prev][Thread Next] [Date Index] [Thread Index]

Bug#983475: shim-signed-common: failure to install w/o SetVariable()



Package: shim-signed-common
Version: 1.33+15+1533136590.3beb971-7
Severity: normal

Dear Maintainer,

on systems using U-Boot as firmware the UEFI runtime service
SetVariable() is not available. Variable Boot0000 has to be set manually
from the U-Boot console.

The installation of shim-signed-common fails with:

The following NEW packages will be installed:
  shim-signed-common
0 upgraded, 1 newly installed, 0 to remove and 0 not upgraded.
Need to get 0 B/13.3 kB of archives.
After this operation, 50.2 kB of additional disk space will be used.
Preconfiguring packages ...
Can't exec "/tmp/shim-signed-common.config.PoZZwF": Permission denied at
/usr/lib/aarch64-linux-gnu/perl-base/IPC/Open3.pm line 178.
open2: exec of /tmp/shim-signed-common.config.PoZZwF configure  failed:
Permission denied at /usr/share/perl5/Debconf/ConfModule.pm line 59.
Selecting previously unselected package shim-signed-common.
(Reading database ... 149437 files and directories currently installed.)
Preparing to unpack
.../shim-signed-common_1.33+15+1533136590.3beb971-7_all.deb ...
Unpacking shim-signed-common (1.33+15+1533136590.3beb971-7) ...
Setting up shim-signed-common (1.33+15+1533136590.3beb971-7) ...
Installing for arm64-efi platform.
grub-install: warning: Cannot set EFI variable Boot0000.
grub-install: warning: efivarfs_set_variable: failed to create
/sys/firmware/efi/efivars/Boot0000-8be4df61-93ca-11d2-aa0d-00e098032b8c
for writing: Read-only file system.
grub-install: warning: _efi_set_variable_mode: ops->set_variable()
failed: Read-only file system.
grub-install: error: failed to register the EFI boot entry: Read-only
file system.
dpkg: error processing package shim-signed-common (--configure):
 installed shim-signed-common package post-installation script
subprocess returned error exit status 1
Errors were encountered while processing:
 shim-signed-common

To make the package usable with U-Boot the installation should not fail
but complete with a warning.

Best regards

Heinrich Schuchardt

-- System Information:
Debian Release: bullseye/sid
  APT prefers testing
  APT policy: (500, 'testing')
Architecture: arm64 (aarch64)

Kernel: Linux 5.10.0-3-arm64 (SMP w/4 CPU threads)
Locale: LANG=en_US.UTF-8, LC_CTYPE=en_US.UTF-8 (charmap=UTF-8) (ignored:
LC_ALL set to en_US.UTF-8), LANGUAGE not set
Shell: /bin/sh linked to /bin/dash
Init: systemd (via /run/systemd/system)
LSM: AppArmor: enabled

Versions of packages shim-signed-common depends on:
ii  debconf [debconf-2.0]  1.5.74
ii  mokutil                0.3.0+1538710437.fb6250f-1+b1

shim-signed-common recommends no packages.

shim-signed-common suggests no packages.

-- debconf information:
  shim/enable_secureboot: false
  shim/title/secureboot:
  shim/disable_secureboot: true
  shim/error/secureboot_key_mismatch:
  shim/error/bad_secureboot_key:
  shim/secureboot_explanation:


Reply to: