260 Commits

Author SHA256 Message Date
Gary Ching-Pang Lin
0bf24d30d2 Accepting request 343340 from home:gary_lin:branches:devel:openSUSE:Factory
- Add shim-bsc950569-fix-cryptlib-va-functions.patch to fix the
  definition of va functions to avoid the potential crash
  (bsc#950569)
- Update shim-opensuse-cert-prompt.patch to avoid setting NULL to
  MokListRT (bsc#950801)
- Drop shim-fix-mokmanager-sections.patch as we are using the
  newer binutils now
- Refresh shim-change-debug-file-path.patch

OBS-URL: https://build.opensuse.org/request/show/343340
OBS-URL: https://build.opensuse.org/package/show/devel:openSUSE:Factory/shim?expand=0&rev=106
2015-11-10 09:59:11 +00:00
Stephan Kulow
6b996d617b Accepting request 337116 from devel:openSUSE:Factory
1

OBS-URL: https://build.opensuse.org/request/show/337116
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/shim?expand=0&rev=45
2015-10-08 11:44:03 +00:00
Stephan Kulow
395a47885d Accepting request 337107 from home:jsegitz:branches:devel:openSUSE:Factory
- acquired updated signature from Microsoft

OBS-URL: https://build.opensuse.org/request/show/337107
OBS-URL: https://build.opensuse.org/package/show/devel:openSUSE:Factory/shim?expand=0&rev=104
2015-10-08 08:02:11 +00:00
2968e3dd0e Accepting request 331057 from devel:openSUSE:Factory
1

OBS-URL: https://build.opensuse.org/request/show/331057
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/shim?expand=0&rev=44
2015-10-02 07:22:40 +00:00
Gary Ching-Pang Lin
a181a27e27 Accepting request 330987 from home:michael-chang:branches:devel:openSUSE:Factory
- shim-install : set default GRUB_DISTRIBUTOR from /etc/os-release
  if it is empty or not set by user (bsc#942519)

OBS-URL: https://build.opensuse.org/request/show/330987
OBS-URL: https://build.opensuse.org/package/show/devel:openSUSE:Factory/shim?expand=0&rev=102
2015-09-15 14:00:13 +00:00
982606942b Accepting request 318947 from devel:openSUSE:Factory
Automatic submission by obs-autosubmit

OBS-URL: https://build.opensuse.org/request/show/318947
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/shim?expand=0&rev=43
2015-08-21 05:38:54 +00:00
Gary Ching-Pang Lin
b326961adf Accepting request 317610 from home:gary_lin:branches:devel:openSUSE:Factory
Update openssl and package the debug symbols

OBS-URL: https://build.opensuse.org/request/show/317610
OBS-URL: https://build.opensuse.org/package/show/devel:openSUSE:Factory/shim?expand=0&rev=100
2015-07-20 10:27:18 +00:00
Gary Ching-Pang Lin
fc4b3ef345 Accepting request 315550 from home:gary_lin:branches:devel:openSUSE:Factory
- Update to 0.9
- Refresh patches
  + shim-fix-gnu-efi-30w.patch
  + shim-fix-mokmanager-sections.patch
  + shim-opensuse-cert-prompt.patch
- Drop upstreamed patches
  + shim-bsc920515-fix-fallback-buffer-length.patch
  + shim-mokx-support.patch
  + shim-update-cryptlib.patch
- Drop shim-bsc919675-uninstall-shim-protocols.patch since
  upstream fixed the bug in another way.
- Drop shim-gcc5.patch which was fixed in another way

OBS-URL: https://build.opensuse.org/request/show/315550
OBS-URL: https://build.opensuse.org/package/show/devel:openSUSE:Factory/shim?expand=0&rev=99
2015-07-08 08:54:24 +00:00
5de3a90249 Accepting request 296736 from devel:openSUSE:Factory
Automatic submission by obs-autosubmit

OBS-URL: https://build.opensuse.org/request/show/296736
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/shim?expand=0&rev=42
2015-04-21 23:10:25 +00:00
Gary Ching-Pang Lin
7df78e3843 Accepting request 294911 from home:gary_lin:branches:devel:openSUSE:Factory
- Fix tags in the spec file

OBS-URL: https://build.opensuse.org/request/show/294911
OBS-URL: https://build.opensuse.org/package/show/devel:openSUSE:Factory/shim?expand=0&rev=97
2015-04-08 07:42:49 +00:00
Gary Ching-Pang Lin
610f2a3193 Accepting request 294902 from home:gary_lin:branches:devel:openSUSE:Factory
- Add shim-update-cryptlib.patch to update Cryptlib to r16559 and
  openssl to 0.9.8zf
- Add shim-bsc919675-uninstall-shim-protocols.patch to uninstall
  the shim protocols at Exit (bsc#919675)
- Add shim-bsc920515-fix-fallback-buffer-length.patch to adjust
  the buffer size for the boot options (bsc#920515) 
- Refresh shim-opensuse-cert-prompt.patch

OBS-URL: https://build.opensuse.org/request/show/294902
OBS-URL: https://build.opensuse.org/package/show/devel:openSUSE:Factory/shim?expand=0&rev=96
2015-04-08 06:34:44 +00:00
Gary Ching-Pang Lin
2b0cb62f0a Accepting request 294215 from home:elvigia:branches:devel:openSUSE:Factory
- shim-gcc5.patch: shim needs -std=gnu89 to build with GCC5

OBS-URL: https://build.opensuse.org/request/show/294215
OBS-URL: https://build.opensuse.org/package/show/devel:openSUSE:Factory/shim?expand=0&rev=95
2015-04-07 07:39:55 +00:00
57ab82ec79 Accepting request 287646 from devel:openSUSE:Factory
1

OBS-URL: https://build.opensuse.org/request/show/287646
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/shim?expand=0&rev=41
2015-03-03 10:11:00 +00:00
Gary Ching-Pang Lin
7744cfd81f Accepting request 287615 from home:michael-chang:boo917427
- shim-install : fix cryptodisk installation (boo#917427)

OBS-URL: https://build.opensuse.org/request/show/287615
OBS-URL: https://build.opensuse.org/package/show/devel:openSUSE:Factory/shim?expand=0&rev=93
2015-02-25 07:41:52 +00:00
a58eb13148 Accepting request 260796 from devel:openSUSE:Factory
1

OBS-URL: https://build.opensuse.org/request/show/260796
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/shim?expand=0&rev=40
2014-11-11 23:21:06 +00:00
Gary Ching-Pang Lin
72ba00856f Accepting request 260795 from home:gary_lin:branches:devel:openSUSE:Factory
- fix the objcopy parameters for the EFI files

OBS-URL: https://build.opensuse.org/request/show/260795
OBS-URL: https://build.opensuse.org/package/show/devel:openSUSE:Factory/shim?expand=0&rev=91
2014-11-11 06:35:59 +00:00
Gary Ching-Pang Lin
7b2b297a5c Accepting request 258747 from home:gary_lin:branches:devel:openSUSE:Factory
- Update to 0.8
- adapt the change in gnu-efi-3.0w
- Enable aarch64

OBS-URL: https://build.opensuse.org/request/show/258747
OBS-URL: https://build.opensuse.org/package/show/devel:openSUSE:Factory/shim?expand=0&rev=90
2014-10-29 08:02:58 +00:00
Stephan Kulow
e6bacccff6 Accepting request 255761 from devel:openSUSE:Factory
1

OBS-URL: https://build.opensuse.org/request/show/255761
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/shim?expand=0&rev=39
2014-10-14 05:10:08 +00:00
Stephan Kulow
0876ada789 Accepting request 255752 from home:jsegitz:branches:devel:openSUSE:Factory
- Fixed buffer overflow and OOB access in shim trusted code path
  (bnc#889332, CVE-2014-3675, CVE-2014-3676, CVE-2014-3677)
  * added bug-889332_shim-mok-oob.patch, bug-889332_shim-overflow.patch
- Added new certificate by Microsoft

OBS-URL: https://build.opensuse.org/request/show/255752
OBS-URL: https://build.opensuse.org/package/show/devel:openSUSE:Factory/shim?expand=0&rev=88
2014-10-13 13:58:14 +00:00
Stephan Kulow
05cbd2e1d4 osc copypac from project:openSUSE:Factory package:shim revision:36
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/shim?expand=0&rev=38
2014-09-05 09:49:12 +00:00
Stephan Kulow
455cffcf61 osc copypac from project:openSUSE:Factory package:shim revision:35
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/shim?expand=0&rev=37
2014-09-05 09:17:41 +00:00
Stephan Kulow
921c828929 Accepting request 247419 from devel:openSUSE:Factory
1

OBS-URL: https://build.opensuse.org/request/show/247419
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/shim?expand=0&rev=36
2014-09-05 07:34:06 +00:00
Stephan Kulow
2176e5a32f Accepting request 247405 from home:lnussel:branches:devel:openSUSE:Factory
- re-introduce build failure if shim_enforce_ms_signature is defined. That way
  a project like openSUSE:Factory can decide whether or not shim needs a valid
  MS signature.

OBS-URL: https://build.opensuse.org/request/show/247405
OBS-URL: https://build.opensuse.org/package/show/devel:openSUSE:Factory/shim?expand=0&rev=86
2014-09-03 13:40:07 +00:00
Stephan Kulow
e830756ce4 osc copypac from project:openSUSE:Factory package:shim revision:32
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/shim?expand=0&rev=35
2014-09-03 09:55:32 +00:00
Stephan Kulow
518512a29f Accepting request 245147 from devel:openSUSE:Factory
1

OBS-URL: https://build.opensuse.org/request/show/245147
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/shim?expand=0&rev=33
2014-08-27 05:45:39 +00:00
Gary Ching-Pang Lin
1f6a3cacb1 Accepting request 245146 from home:gary_lin:branches:devel:openSUSE:Factory
- update openssl to 0.9.8zb

OBS-URL: https://build.opensuse.org/request/show/245146
OBS-URL: https://build.opensuse.org/package/show/devel:openSUSE:Factory/shim?expand=0&rev=83
2014-08-19 06:06:07 +00:00
d153b635dc Accepting request 244537 from devel:openSUSE:Factory
1

OBS-URL: https://build.opensuse.org/request/show/244537
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/shim?expand=0&rev=32
2014-08-18 09:23:47 +00:00
Gary Ching-Pang Lin
b8cbae7e99 Accepting request 244530 from home:jsegitz:UEFI:openSUSE:Factory
- updated shim to new version (OpenSSL 0.9.8za) and requested a new
  certificate from Microsoft. Removed
  * shim-allow-fallback-use-system-loadimage.patch
  * shim-bnc872503-check-key-encoding.patch
  * shim-bnc877003-fetch-from-the-same-device.patch
  * shim-correct-user_insecure-usage.patch
  * shim-fallback-avoid-duplicate-bootorder.patch
  * shim-fallback-improve-entries-creation.patch
  * shim-fix-dhcpv4-path-generation.patch
  * shim-fix-uninitialized-variable.patch
  * shim-fix-verify-mok.patch
  * shim-get-variable-check.patch
  * shim-improve-error-messages.patch
  * shim-mokmanager-delete-bs-var-right.patch
  * shim-mokmanager-handle-keystroke-error.patch
  * shim-remove-unused-variables.patch
  since they're included in upstream and rebased the remaining onces.
  Added shim-signed-unsigned-compares.patch to fix some compiler
  warnings

OBS-URL: https://build.opensuse.org/request/show/244530
OBS-URL: https://build.opensuse.org/package/show/devel:openSUSE:Factory/shim?expand=0&rev=81
2014-08-13 10:07:21 +00:00
Gary Ching-Pang Lin
23e59eef11 Accepting request 244297 from home:gary_lin:branches:devel:openSUSE:Factory
Keep shim-devel.efi for the devel project

OBS-URL: https://build.opensuse.org/request/show/244297
OBS-URL: https://build.opensuse.org/package/show/devel:openSUSE:Factory/shim?expand=0&rev=80
2014-08-12 09:40:50 +00:00
Stephan Kulow
08b33c6edf Accepting request 243992 from home:lnussel:branches:devel:openSUSE:Factory
fix typo in changes file that prevents the Factory submission

OBS-URL: https://build.opensuse.org/request/show/243992
OBS-URL: https://build.opensuse.org/package/show/devel:openSUSE:Factory/shim?expand=0&rev=79
2014-08-08 15:48:02 +00:00
Stephan Kulow
3bd935ea7f Accepting request 243951 from home:lnussel:branches:devel:openSUSE:Factory
- don't fail the build if the UEFI signing service signature can't
  be attached anymore. This way shim can still pass through staging
  projects. We will verify the correct signature for release builds
  using openQA instead.

OBS-URL: https://build.opensuse.org/request/show/243951
OBS-URL: https://build.opensuse.org/package/show/devel:openSUSE:Factory/shim?expand=0&rev=78
2014-08-08 13:19:04 +00:00
Gary Ching-Pang Lin
12d0642c1a Accepting request 243573 from home:michael-chang:branches:devel:openSUSE:Factory
- shim-install: fix GRUB shows broken letters at boot by calling
  grub2-install to initialize /boot/grub2 directory with files 
  needed by grub.cfg (bnc#889765)

OBS-URL: https://build.opensuse.org/request/show/243573
OBS-URL: https://build.opensuse.org/package/show/devel:openSUSE:Factory/shim?expand=0&rev=77
2014-08-04 09:46:50 +00:00
Gary Ching-Pang Lin
d6b79f1fb6 Accepting request 236110 from home:gary_lin:branches:devel:openSUSE:Factory
- remove the unused variables
- check the encoding of the keys (bnc#872503)
- fetch the netboot image from the same device (bnc#877003)
- Refresh shim-opensuse-cert-prompt.patch

OBS-URL: https://build.opensuse.org/request/show/236110
OBS-URL: https://build.opensuse.org/package/show/devel:openSUSE:Factory/shim?expand=0&rev=76
2014-06-03 02:49:47 +00:00
Gary Ching-Pang Lin
e0970dfd6a Accepting request 233853 from home:gary_lin:branches:devel:openSUSE:Factory
Use --reinit instead of --refresh in %post to update the files in /boot

OBS-URL: https://build.opensuse.org/request/show/233853
OBS-URL: https://build.opensuse.org/package/show/devel:openSUSE:Factory/shim?expand=0&rev=75
2014-05-14 10:01:52 +00:00
Gary Ching-Pang Lin
2562b2ffce Accepting request 231974 from home:michael-chang:branches:devel:openSUSE:Factory
- shim-install: fix boot partition and rollback support kluge
  (bnc#875385)

OBS-URL: https://build.opensuse.org/request/show/231974
OBS-URL: https://build.opensuse.org/package/show/devel:openSUSE:Factory/shim?expand=0&rev=74
2014-04-29 07:55:23 +00:00
Stephan Kulow
fa8f2b475d osc copypac from project:devel:openSUSE:Factory package:shim revision:71
OBS-URL: https://build.opensuse.org/package/show/devel:openSUSE:Factory/shim?expand=0&rev=73
2014-04-29 07:15:01 +00:00
Stephan Kulow
73e81b4748 osc copypac from project:openSUSE:Factory package:shim revision:29
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/shim?expand=0&rev=31
2014-04-21 09:05:08 +00:00
OBS User buildservice-autocommit
b518987796 Updating link to change in openSUSE:Factory/shim revision 31.0
OBS-URL: https://build.opensuse.org/package/show/devel:openSUSE:Factory/shim?expand=0&rev=7a81e86df566f93dbe199635b458d416
2014-04-21 09:05:08 +00:00
Tomáš Chvátal
7e334a0f0f Accepting request 230429 from devel:openSUSE:Factory
Automatic submission by obs-autosubmit

OBS-URL: https://build.opensuse.org/request/show/230429
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/shim?expand=0&rev=30
2014-04-20 09:35:05 +00:00
Gary Ching-Pang Lin
e876d9efc6 Accepting request 229569 from home:gary_lin:branches:devel:openSUSE:Factory
Replace shim-mokmanager-support-sha1.patch with shim-mokmanager-support-sha-family.patch to support the SHA family

OBS-URL: https://build.opensuse.org/request/show/229569
OBS-URL: https://build.opensuse.org/package/show/devel:openSUSE:Factory/shim?expand=0&rev=71
2014-04-10 08:31:41 +00:00
Gary Ching-Pang Lin
e0fd4dbc38 Accepting request 229264 from home:gary_lin:branches:devel:openSUSE:Factory
Support SHA1 hashes in MOK

OBS-URL: https://build.opensuse.org/request/show/229264
OBS-URL: https://build.opensuse.org/package/show/devel:openSUSE:Factory/shim?expand=0&rev=70
2014-04-07 10:06:19 +00:00
Gary Ching-Pang Lin
062d82ccf6 Accepting request 228324 from home:michael-chang:branches:devel:openSUSE:Factory
- snapper rollback support (fate#317062)
  - refresh shim-install

OBS-URL: https://build.opensuse.org/request/show/228324
OBS-URL: https://build.opensuse.org/package/show/devel:openSUSE:Factory/shim?expand=0&rev=69
2014-03-31 13:30:21 +00:00
Gary Ching-Pang Lin
58137361ad Accepting request 225772 from home:gary_lin:branches:devel:openSUSE:Factory
Insert the right signature (bnc#867974)

OBS-URL: https://build.opensuse.org/request/show/225772
OBS-URL: https://build.opensuse.org/package/show/devel:openSUSE:Factory/shim?expand=0&rev=68
2014-03-13 03:25:28 +00:00
Gary Ching-Pang Lin
99fdefd1f8 Accepting request 225406 from home:gary_lin:branches:devel:openSUSE:Factory
Add shim-fix-uninitialized-variable.patch to fix the use of uninitialzed variables in lib

OBS-URL: https://build.opensuse.org/request/show/225406
OBS-URL: https://build.opensuse.org/package/show/devel:openSUSE:Factory/shim?expand=0&rev=67
2014-03-10 09:28:44 +00:00
Gary Ching-Pang Lin
cb72e488f1 Accepting request 224988 from home:gary_lin:branches:devel:openSUSE:Factory
- Add shim-mokmanager-delete-bs-var-right.patch to delete the BS+NV
  variables the right way
- Update shim-opensuse-cert-prompt.patch to delete openSUSE_Verify
  correctly

OBS-URL: https://build.opensuse.org/request/show/224988
OBS-URL: https://build.opensuse.org/package/show/devel:openSUSE:Factory/shim?expand=0&rev=66
2014-03-07 09:40:50 +00:00
Gary Ching-Pang Lin
2d5468ae12 Accepting request 224833 from home:gary_lin:branches:devel:openSUSE:Factory
- Add shim-fallback-avoid-duplicate-bootorder.patch to fix the
  duplicate entries in BootOrder
- Add shim-allow-fallback-use-system-loadimage.patch to handle the
  shim protocol properly to keep only one protocol entity
- Refresh shim-opensuse-cert-prompt.patch

OBS-URL: https://build.opensuse.org/request/show/224833
OBS-URL: https://build.opensuse.org/package/show/devel:openSUSE:Factory/shim?expand=0&rev=65
2014-03-06 07:55:56 +00:00
Gary Ching-Pang Lin
466149ebe7 Accepting request 224828 from home:michael-chang:branches:devel:openSUSE:Factory
- shim-install: fix the $prefix to use grub2-mkrelpath for paths
  on btrfs subvolume (bnc#866690).

OBS-URL: https://build.opensuse.org/request/show/224828
OBS-URL: https://build.opensuse.org/package/show/devel:openSUSE:Factory/shim?expand=0&rev=64
2014-03-06 04:08:12 +00:00
Gary Ching-Pang Lin
898a347233 Accepting request 224565 from home:gary_lin:branches:devel:openSUSE:Factory
- Update signature-sles.asc: shim signed by UEFI signing service,
  based on code from "Thu Feb 20 11:57:01 UTC 2014"

OBS-URL: https://build.opensuse.org/request/show/224565
OBS-URL: https://build.opensuse.org/package/show/devel:openSUSE:Factory/shim?expand=0&rev=63
2014-03-04 06:40:16 +00:00
Gary Ching-Pang Lin
ac40989026 Accepting request 224563 from home:gary_lin:branches:devel:openSUSE:Factory
FATE#315002: Update shim-install to install shim.efi as the EFI default bootloader when none exists in \EFI\boot.

OBS-URL: https://build.opensuse.org/request/show/224563
OBS-URL: https://build.opensuse.org/package/show/devel:openSUSE:Factory/shim?expand=0&rev=62
2014-03-04 04:32:46 +00:00
Tomáš Chvátal
48acea1e89 Accepting request 223346 from home:gary_lin:branches:devel:openSUSE:Factory
Show the prompt to ask whether the user trusts the openSUSE certificate or not

OBS-URL: https://build.opensuse.org/request/show/223346
OBS-URL: https://build.opensuse.org/package/show/devel:openSUSE:Factory/shim?expand=0&rev=61
2014-02-28 10:04:44 +00:00