48654de6e4
- Update to libvirt 7.5.0 - security: Fix insecure sVirt label generation - CVE-2021-3631 bsc#1187871 - apparmor: Permit new capabilities required by libvirtd boo#1186888 - Many incremental improvements and bug fixes, see https://libvirt.org/news.html - Dropped patches: suse-apparmor-libnl-paths.patch - supportconfig plugin improvements OBS-URL: https://build.opensuse.org/request/show/903563 OBS-URL: https://build.opensuse.org/package/show/Virtualization/libvirt?expand=0&rev=895
71 lines
3.6 KiB
Diff
71 lines
3.6 KiB
Diff
Adjust paths of OVMF firmwares on SUSE distros
|
|
|
|
Index: libvirt-7.5.0/src/qemu/qemu.conf
|
|
===================================================================
|
|
--- libvirt-7.5.0.orig/src/qemu/qemu.conf
|
|
+++ libvirt-7.5.0/src/qemu/qemu.conf
|
|
@@ -858,10 +858,9 @@
|
|
# for x86_64 and i686, but it's AAVMF for aarch64. The libvirt default
|
|
# follows this scheme.
|
|
#nvram = [
|
|
-# "/usr/share/OVMF/OVMF_CODE.fd:/usr/share/OVMF/OVMF_VARS.fd",
|
|
-# "/usr/share/OVMF/OVMF_CODE.secboot.fd:/usr/share/OVMF/OVMF_VARS.fd",
|
|
-# "/usr/share/AAVMF/AAVMF_CODE.fd:/usr/share/AAVMF/AAVMF_VARS.fd",
|
|
-# "/usr/share/AAVMF/AAVMF32_CODE.fd:/usr/share/AAVMF/AAVMF32_VARS.fd"
|
|
+# "/usr/share/qemu/ovmf-x86_64-ms-4m-code.bin:/usr/share/qemu/ovmf-x86_64-ms-4m-vars.bin",
|
|
+# "/usr/share/qemu/ovmf-x86_64-ms-code.bin:/usr/share/qemu/ovmf-x86_64-ms-vars.bin",
|
|
+# "/usr/share/qemu/aavmf-aarch64-code.bin:/usr/share/qemu/aavmf-aarch64-vars.bin"
|
|
#]
|
|
|
|
# The backend to use for handling stdout/stderr output from
|
|
Index: libvirt-7.5.0/src/qemu/qemu_conf.c
|
|
===================================================================
|
|
--- libvirt-7.5.0.orig/src/qemu/qemu_conf.c
|
|
+++ libvirt-7.5.0/src/qemu/qemu_conf.c
|
|
@@ -98,10 +98,9 @@ qemuDriverUnlock(virQEMUDriver *driver)
|
|
|
|
#ifndef DEFAULT_LOADER_NVRAM
|
|
# define DEFAULT_LOADER_NVRAM \
|
|
- "/usr/share/OVMF/OVMF_CODE.fd:/usr/share/OVMF/OVMF_VARS.fd:" \
|
|
- "/usr/share/OVMF/OVMF_CODE.secboot.fd:/usr/share/OVMF/OVMF_VARS.fd:" \
|
|
- "/usr/share/AAVMF/AAVMF_CODE.fd:/usr/share/AAVMF/AAVMF_VARS.fd:" \
|
|
- "/usr/share/AAVMF/AAVMF32_CODE.fd:/usr/share/AAVMF/AAVMF32_VARS.fd"
|
|
+ "/usr/share/qemu/ovmf-x86_64-ms-4m-code.bin:/usr/share/qemu/ovmf-x86_64-ms-4m-vars.bin:" \
|
|
+ "/usr/share/qemu/ovmf-x86_64-ms-code.bin:/usr/share/qemu/ovmf-x86_64-ms-vars.bin:" \
|
|
+ "/usr/share/qemu/aavmf-aarch64-code.bin:/usr/share/qemu/aavmf-aarch64-vars.bin"
|
|
#endif
|
|
|
|
|
|
Index: libvirt-7.5.0/src/security/virt-aa-helper.c
|
|
===================================================================
|
|
--- libvirt-7.5.0.orig/src/security/virt-aa-helper.c
|
|
+++ libvirt-7.5.0/src/security/virt-aa-helper.c
|
|
@@ -480,7 +480,8 @@ valid_path(const char *path, const bool
|
|
"/usr/share/ovmf/", /* for OVMF images */
|
|
"/usr/share/AAVMF/", /* for AAVMF images */
|
|
"/usr/share/qemu-efi/", /* for AAVMF images */
|
|
- "/usr/share/qemu-efi-aarch64/" /* for AAVMF images */
|
|
+ "/usr/share/qemu-efi-aarch64/", /* for AAVMF images */
|
|
+ "/usr/share/qemu/" /* SUSE path for OVMF and AAVMF images */
|
|
};
|
|
/* override the above with these */
|
|
const char * const override[] = {
|
|
Index: libvirt-7.5.0/src/qemu/test_libvirtd_qemu.aug.in
|
|
===================================================================
|
|
--- libvirt-7.5.0.orig/src/qemu/test_libvirtd_qemu.aug.in
|
|
+++ libvirt-7.5.0/src/qemu/test_libvirtd_qemu.aug.in
|
|
@@ -96,10 +96,9 @@ module Test_libvirtd_qemu =
|
|
{ "migration_port_max" = "49215" }
|
|
{ "log_timestamp" = "0" }
|
|
{ "nvram"
|
|
- { "1" = "/usr/share/OVMF/OVMF_CODE.fd:/usr/share/OVMF/OVMF_VARS.fd" }
|
|
- { "2" = "/usr/share/OVMF/OVMF_CODE.secboot.fd:/usr/share/OVMF/OVMF_VARS.fd" }
|
|
- { "3" = "/usr/share/AAVMF/AAVMF_CODE.fd:/usr/share/AAVMF/AAVMF_VARS.fd" }
|
|
- { "4" = "/usr/share/AAVMF/AAVMF32_CODE.fd:/usr/share/AAVMF/AAVMF32_VARS.fd" }
|
|
+ { "1" = "/usr/share/qemu/ovmf-x86_64-ms-4m-code.bin:/usr/share/qemu/ovmf-x86_64-ms-4m-vars.bin" }
|
|
+ { "2" = "/usr/share/qemu/ovmf-x86_64-ms-code.bin:/usr/share/qemu/ovmf-x86_64-ms-vars.bin" }
|
|
+ { "3" = "/usr/share/qemu/aavmf-aarch64-code.bin:/usr/share/qemu/aavmf-aarch64-vars.bin" }
|
|
}
|
|
{ "stdio_handler" = "logd" }
|
|
{ "gluster_debug_level" = "9" }
|