File _patchinfo of Package patchinfo.19526
<patchinfo incident="19526">
<issue tracker="bnc" id="1185464">img-proof fails hard-reboot after installing shim on Azure-gen2</issue>
<issue tracker="bnc" id="1185961">[Build 391.4] 15-SP2 QU3 openQA test fails in grub_test on hyperv-uefi</issue>
<issue tracker="bnc" id="1187696">Micro Focus Open Enterprise Secure Boot UEFI Cert is failing to load</issue>
<issue tracker="bnc" id="1185261">UEFI Boot fail after standard update - could not create MoklistXRT, import_mok_state() failed: Out of Resources</issue>
<issue tracker="bnc" id="1185441">"system is compromised" during boot after grub2+shim update</issue>
<issue tracker="bnc" id="1187071">L3: SLES 15 SP2 UEFI Secureboot powering off when loading initrd</issue>
<issue tracker="bnc" id="1185232">something has gone seriously wrong: shim_init() - system does not boot anymore after installing today's updates</issue>
<issue tracker="bnc" id="1187260">installation openuse 15.3 does not start on macbook</issue>
<packager>gary_lin</packager>
<rating>moderate</rating>
<category>recommended</category>
<summary>Recommended update for shim</summary>
<description>This update for shim fixes the following issues:
- shim-install: Always assume "removable" for Azure to avoid the endless reset loop (bsc#1185464)
- Avoid deleting the mirrored RT variables (bsc#1187696)
- Split the keys in vendor-dbx.bin to vendor-dbx-sles and
vendor-dbx-opensuse for shim-sles and shim-opensuse to reduce
the size of MokListXRT (bsc#1185261)
+ Also update generate-vendor-dbx.sh in dbx-cert.tar.xz
- Handle ignore_db and user_insecure_mode correctly (bsc#1185441, bsc#1187071)
- Relax the maximum variable size check for u-boot (bsc#1185621)
- Relax the check for import_mok_state() when Secure Boot is off. (bsc#1185261)
- Ignore the odd LoadOptions length (bsc#1185232)
- shim-install: reset def_shim_efi to "shim.efi" if the given file doesn't exist
- Fided the size of rela sections for AArch64
- Disable exporting vendor-dbx to MokListXRT since writing a large RT variable could crash some machines (bsc#1185261)
- Avoid potential crash when calling QueryVariableInfo in EFI 1.10 machines (bsc#1187260)
- Avoid buffer overflow when copying data to the MOK config table (bsc#1185232)
</description>
</patchinfo>