File _patchinfo of Package patchinfo.19526

<patchinfo incident="19526">
  <issue tracker="bnc" id="1185464">img-proof fails hard-reboot after installing shim on Azure-gen2</issue>
  <issue tracker="bnc" id="1185961">[Build 391.4] 15-SP2 QU3 openQA test fails in grub_test on hyperv-uefi</issue>
  <issue tracker="bnc" id="1187696">Micro Focus Open Enterprise Secure Boot UEFI Cert is failing to load</issue>
  <issue tracker="bnc" id="1185261">UEFI Boot fail after standard update - could not create MoklistXRT, import_mok_state() failed: Out of Resources</issue>
  <issue tracker="bnc" id="1185441">"system is compromised" during boot after grub2+shim update</issue>
  <issue tracker="bnc" id="1187071">L3: SLES 15 SP2 UEFI Secureboot powering off when loading initrd</issue>
  <issue tracker="bnc" id="1185232">something has gone seriously wrong: shim_init() - system does not boot anymore after installing today's updates</issue>
  <issue tracker="bnc" id="1187260">installation openuse 15.3 does not start on macbook</issue>
  <packager>gary_lin</packager>
  <rating>moderate</rating>
  <category>recommended</category>
  <summary>Recommended update for shim</summary>
  <description>This update for shim fixes the following issues:

- shim-install: Always assume "removable" for Azure to avoid the endless reset loop (bsc#1185464)
- Avoid deleting the mirrored RT variables (bsc#1187696)
- Split the keys in vendor-dbx.bin to vendor-dbx-sles and
  vendor-dbx-opensuse for shim-sles and shim-opensuse to reduce
  the size of MokListXRT (bsc#1185261)
  + Also update generate-vendor-dbx.sh in dbx-cert.tar.xz
- Handle ignore_db and user_insecure_mode correctly (bsc#1185441, bsc#1187071)
- Relax the maximum variable size check for u-boot (bsc#1185621)
- Relax the check for import_mok_state() when Secure Boot is off. (bsc#1185261)
- Ignore the odd LoadOptions length (bsc#1185232)
- shim-install: reset def_shim_efi to "shim.efi" if the given file doesn't exist
- Fided the size of rela sections for AArch64
- Disable exporting vendor-dbx to MokListXRT since writing a large RT variable could crash some machines (bsc#1185261)
- Avoid potential crash when calling QueryVariableInfo in EFI 1.10 machines (bsc#1187260)
- Avoid buffer overflow when copying data to the MOK config table (bsc#1185232)
</description>
</patchinfo>
openSUSE Build Service is sponsored by