File _patchinfo of Package patchinfo.6743
<patchinfo incident="6743">
<issue id="1103182" tracker="bnc">Unable to boot SLES12SP3 by tboot with Intel TXT.</issue>
<issue id="1108184" tracker="bnc">[Dell BUG][SLES 12 SP3] Fails to boot into tboot kernel for TPM 2.0 with Intel TXT.</issue>
<issue id="1078262" tracker="bnc">updating/installing tboot does not update bootloader</issue>
<category>recommended</category>
<rating>moderate</rating>
<packager>mgerstner</packager>
<description>This update for tboot to version 1.9.7 provides the following fixes:
- Fix issues with tboot in conjunction with tpm 2.0 devices (bsc#1103182, bsc#1108184).
- Mitigations for tpm interposer attacks
- Add an option in tboot to force SINIT to use the legacy TPM2 log format.
- Add support for appending to a TPM2 TCG style event log.
- Ensure tboot log is available even when measured launch is skipped.
- Fix TPM 1.2 locality selection issue.
- Fix a null pointer dereference bug when Intel TXT is disabled.
- The size field of the MB2 tag is the size of the tag header + the size
- Make policy element stm_elt use unique type name
- Reset debug PCR16 to zero.
- Fix a logical error in function bool evtlog_append(...).
- Don't add GNU/Linux to grub menu entries. SUSE's grub2 itself doesn't do it either.
(bsc#1078262)
- Perform update of bootloader configuration after installation via %posttrans. Perform
cleanup of bootloader configuration upon package removal via %postun. (bsc#1078262)
</description>
<summary>Recommended update for tboot</summary>
</patchinfo>