[Date Prev][Date Next] [Thread Prev][Thread Next] [Date Index] [Thread Index]

Bug#1032849: marked as done (unblock: shim/15.7-1 (etc.))



Your message dated Mon, 13 Mar 2023 19:34:16 +0100
with message-id <2f62415e-b175-1e17-5d84-2bfa259440ed@debian.org>
and subject line Re: Bug#1032849: unblock: shim/15.7-1 (etc.)
has caused the Debian Bug report #1032849,
regarding unblock: shim/15.7-1 (etc.)
to be marked as done.

This means that you claim that the problem has been dealt with.
If this is not the case it is now your responsibility to reopen the
Bug report if necessary, and/or fix the problem forthwith.

(NB: If you are a system administrator and have no idea what this
message is talking about, this may indicate a serious mail system
misconfiguration somewhere. Please contact owner@bugs.debian.org
immediately.)


-- 
1032849: https://bugs.debian.org/cgi-bin/bugreport.cgi?bug=1032849
Debian Bug Tracking System
Contact owner@bugs.debian.org with problems
--- Begin Message ---
Package: release.debian.org
Severity: normal
User: release.debian.org@packages.debian.org
Usertags: unblock
X-Debbugs-Cc: debian-efi@lists.debian.org

Hi!

Please unblock our stack of shim and shim-signed packages. We finally
have new signed shim binaries and there's a lot of major bugfixes
included which cascade down:

shim (15.7-1) unstable; urgency=medium

  * New upstream release fixing more bugs
  * Add further patches from upstream:
    + Make sbat_var.S parse right with buggy gcc/binutils
    + Enable NX support at build time, as required by policy for signing
      new shim binaries.
  * Switch to using gcc-12. Closes: #1022180
  * Update to Standards-Version 4.6.2 (no changes needed)
  * Block Debian grub binaries with sbat < 4 (see #1024617)

shim-signed (1.39) unstable; urgency=medium

  * Build against new signed binaries corresponding to 15.7-1
    + This syncs up build-deps again. Closes: #1016280
    + We now have arm64 signed shims again \o/
      Undo the hacky unsigned arm64 build
      Closes: #1008942, #992073, #991478
    Pulls multiple other bugfixes in for the signed version:
    + Make sbat_var.S parse right with buggy gcc/binutils
    + Enable NX support at build time, as required by policy for signing
      new shim binaries.
    + Fixes argument handling bug with some firmware implementations.
      Closes: #995940
  * Update build-dep on shim-unsigned to use 15.7-1
  * Block Debian grub binaries with sbat < 4 (see #1024617)
    + Update Depends on grub2-common to match.
  * postinst/postrm: make config_item() more robust
  * Add pt_BR translation, thanks to Paulo Henrique de Lima
    Santana. Closes: #1026415
  * Tweak dependencies

unblock shim/15.7-1
unblock shim-signed/1.39
unblock shim-helpers-amd64-signed/1+15.7+1
unblock shim-helpers-arm64-signed/1+15.7+1
unblock shim-helpers-i386-signed/1+15.7+1

--- End Message ---
--- Begin Message ---
Hi Steve,

On 12-03-2023 20:06, Paul Gevers wrote:
As mentioned on IRC, I like to age it one or two days more, but the hints are already in my hints file (commented out), so I'll do that tomorrow or on Tuesday.

Done now.

Paul

Attachment: OpenPGP_signature
Description: OpenPGP digital signature


--- End Message ---

Reply to: