Commit Graph

303 Commits

Author SHA1 Message Date
Miroslav Rezanina
57baaecc48 * Thu Jan 08 2026 Miroslav Rezanina <mrezanin@redhat.com> - 20251114-2
- edk2-ArmPkg-UefiCpuPkg-Fix-boot-failure-on-FEAT_LPA-only-.patch [RHEL-138335]
- Resolves: RHEL-138335
  ([AmpereoneX] ArmConfigureMmu: The MaxAddress 0xFFFFFFFFFFFFF is not supported by this MMU configuration)
2026-01-08 12:17:37 +01:00
Miroslav Rezanina
ae3e8b4a46 * Tue Dec 10 2025 Miroslav Rezanina <mrezanin@redhat.com> - 20251114-1
- Rebase to edk2-stable202511 [RHEL-118386]
- Resolves: RHEL-118386
  ([edk2,rhel-10] rebase to edk2-stable202511)
2025-12-16 10:44:11 +01:00
Miroslav Rezanina
2023732284 * Wed Nov 12 2025 Miroslav Rezanina <mrezanin@redhat.com> - 20250822-4
- edk2-make-dbxupdate.sh-get-version-tag-add-to-commit-mess.patch [RHEL-126085]
- edk2-update-dbx-to-20251016-v1.6.1.patch [RHEL-126085]
- Resolves: RHEL-126085
  ([edk2,rhel-10] dbx update to 20251016 / v1.6.1)
2025-11-12 08:57:57 +01:00
Miroslav Rezanina
9016010093 * Mon Nov 03 2025 Miroslav Rezanina <mrezanin@redhat.com> - 20250822-3
- edk2-Bumped-OpenSSL-to-3.5.1-6.patch [RHEL-115880]
- Resolves: RHEL-115880
  (CVE-2025-9230 edk2: Out-of-bounds read & write in RFC 3211 KEK Unwrap [rhel-10.2])
2025-11-03 08:37:54 +01:00
Miroslav Rezanina
689cacc3e0 * Mon Oct 13 2025 Miroslav Rezanina <mrezanin@redhat.com> - 20250822-2
- edk2-add-DBXUpdate-20250610.aa64.bin.patch [RHEL-109548]
- Resolves: RHEL-109548
  ([aarch64][edk2] missing DBXUpdate-${date}.aa64.bin)
2025-10-13 10:51:02 +02:00
Miroslav Rezanina
058cae8eab * Tue Oct 07 2025 Miroslav Rezanina <mrezanin@redhat.com> - 20250822-1
- Rebase to edk2-stable202508 [RHEL-111718]
- Resolves: RHEL-111718
  ([edk2,rhel-10] rebase to edk2-stable202508)
2025-10-07 13:00:09 +02:00
Miroslav Rezanina
a00275b080 * Mon Jun 30 2025 Miroslav Rezanina <mrezanin@redhat.com> - 20250523-2
- edk2-add-qemu-vars-builds-to-build-config-and-file-lists.patch [RHEL-2908]
- edk2-add-dbx-update-script.patch [RHEL-96866]
- edk2-update-dbx-to-20250610.patch [RHEL-96866]
- Resolves: RHEL-2908
  ([aarch64][EDK2] UEFI writable variable service in QEMU)
- Resolves: RHEL-96866
  ([edk2,rhel-10] dbx update 20250610)
2025-06-30 02:53:09 -04:00
Miroslav Rezanina
97f880305e * Tue Jun 10 2025 Miroslav Rezanina <mrezanin@redhat.com> - 20250523-1
- Rebase to edk2-stable202505 [RHEL-82556]
- Resolves: RHEL-82556
  ([edk2,rhel-10] rebase to edk2-stable202505)
2025-06-10 02:35:19 -04:00
Miroslav Rezanina
9ed01eda53 * Fri May 02 2025 Miroslav Rezanina <mrezanin@redhat.com> - 20250221-3
- edk2-.distro-make-sure-virt-firmware-is-new-enough.patch [RHEL-85759]
- Resolves: RHEL-85759
  (RFE: Add riscv64 build and sub-package)
2025-05-02 03:58:45 -04:00
Miroslav Rezanina
bb41216a44 * Mon Apr 07 2025 Miroslav Rezanina <mrezanin@redhat.com> - 20250221-2
- edk2-.distro-drop-setup-macro-in-specfile-comment.patch [RHEL-85759]
- edk2-.distro-switch-to-rhel-10-build-config.patch [RHEL-85759]
- edk2-.distro-add-riscv64-sub-rpm.patch [RHEL-85759]
- Resolves: RHEL-85759
  (RFE: Add riscv64 build and sub-package)
2025-04-07 02:49:07 -04:00
Miroslav Rezanina
46cef60de6 * Wed Mar 26 2025 Miroslav Rezanina <mrezanin@redhat.com> - 20250221-1
- Rebase to edk2-stable202502 [RHEL-75592]
- Resolves: RHEL-75592
  (rebase to edk2-stable202502)
- Resulves: RHEL-82646
  (fix typo in fwcfg file name)
- Resolves: RHEL-82837
  (The newer revocation file and Server 2025 required to update it)
2025-03-26 05:59:36 -04:00
Miroslav Rezanina
0853f32858 * Mon Jan 20 2025 Miroslav Rezanina <mrezanin@redhat.com> - 20241117-2
- edk2-Fix-amd-sev-firmware-file-for-amd-snp.patch [RHEL-72446]
- Resolves: RHEL-72446
  ( QEMU should creating new json file that will correctly describe firmware for amd-sev-snp [rhel-10])
2025-01-20 02:17:09 -05:00
Miroslav Rezanina
257f0d1456 * Mon Dec 09 2024 Miroslav Rezanina <mrezanin@redhat.com> - 20241117-1
- Rebase to edk2-stable202411
- Resolves: RHEL-58062
  ([edk2,rhel-10] rebase to edk2-stable202411)
2024-12-09 02:43:49 -05:00
Miroslav Rezanina
21405ae9b0 * Tue Nov 26 2024 Miroslav Rezanina <mrezanin@redhat.com> - 20240524-12
- edk2-OvmfPkg-Rerun-dispatcher-after-initializing-virtio-r.patch [RHEL-64642]
- Resolves: RHEL-64642
  ([Regression] HTTP Boot fails to work with edk2-ovmf-20231122-6.el9_4.2 and greater [rhel-10])
2024-11-26 05:13:29 -05:00
Miroslav Rezanina
e944f536f0 * Mon Nov 11 2024 Miroslav Rezanina <mrezanin@redhat.com> - 20240524-11
- edk2-OvmfPkg-Add-a-Fallback-RNG-RH-only.patch [RHEL-66234]
- edk2-OvmfPkg-ArmVirtPkg-Add-a-Fallback-RNG-RH-only.patch [RHEL-66234]
- Resolves: RHEL-66234
  ([Regression] HTTP Boot not working on old vCPU without virtio-rng device present [rhel-10])
2024-11-11 06:13:33 -05:00
Troy Dawson
a8ae2c4e2e Bump release for October 2024 mass rebuild:
Resolves: RHEL-64018
2024-10-29 08:22:22 -07:00
Miroslav Rezanina
0ee4bc0f62 * Tue Oct 08 2024 Miroslav Rezanina <mrezanin@redhat.com> - 20240524-9
- edk2-OvmfPkg-VirtioGpuDxe-ignore-display-resolutions-smal.patch [RHEL-56249]
- edk2-OvmfPkg-QemuVideoDxe-ignore-display-resolutions-smal.patch [RHEL-56249]
- edk2-MdePkg-Fix-overflow-issue-in-BasePeCoffLib.patch [RHEL-60829]
- Resolves: RHEL-56249
  (507x510 display resolution should not crash the firmware [edk2,rhel-10])
- Resolves: RHEL-60829
  (CVE-2024-38796 edk2: Integer overflows in PeCoffLoaderRelocateImage [rhel-10.0])
2024-10-08 03:12:04 -04:00
Miroslav Rezanina
5d71fdbfa7 * Fri Sep 27 2024 Miroslav Rezanina <mrezanin@redhat.com> - 20240524-8
- edk2-Bumped-openssl-submodule-version-to-0205b5898872.patch [RHEL-55302]
- Resolves: RHEL-55302
  (CVE-2024-6119 edk2/openssl: Possible denial of service in X.509 name checks [rhel-10.0 beta])
2024-09-27 00:22:34 -04:00
Miroslav Rezanina
65d726050c * Fri Sep 13 2024 Miroslav Rezanina <mrezanin@redhat.com> - 20240524-7
- edk2-OvmfPkg-CpuHotplugSmm-delay-SMM-exit.patch [RHEL-56154]
- Resolves: RHEL-56154
  (qemu-kvm: warning: Blocked re-entrant IO on MemoryRegion: acpi-cpu-hotplug at addr: 0x0 [rhel-10])

Rebuild
2024-09-18 02:51:11 -04:00
Miroslav Rezanina
e76486871e * Fri Sep 13 2024 Miroslav Rezanina <mrezanin@redhat.com> - 20240524-6
- edk2-OvmfPkg-CpuHotplugSmm-delay-SMM-exit.patch [RHEL-56154]
- Resolves: RHEL-56154
  (qemu-kvm: warning: Blocked re-entrant IO on MemoryRegion: acpi-cpu-hotplug at addr: 0x0 [rhel-10])
2024-09-13 00:55:20 -04:00
Miroslav Rezanina
30087a7a80 * Mon Sep 09 2024 Miroslav Rezanina <mrezanin@redhat.com> - 20240524-5
- edk2-UefiCpuPkg-PiSmmCpuDxeSmm-skip-PatchInstructionX86-c.patch [RHEL-50185]
- Resolves: RHEL-50185
  ([RHEL10] Hit soft lockup when hotplug vcpu)
2024-09-09 03:34:52 -04:00
Miroslav Rezanina
90ed2ec3c7 * Mon Sep 02 2024 Miroslav Rezanina <mrezanin@redhat.com> - 20240524-4
- edk2-AmdSevDxe-Fix-the-shim-fallback-reboot-workaround-fo.patch [RHEL-56082]
- Resolves: RHEL-56082
  ([EDK2] Shim fallback reboot workaround might not work on SNP [rhel-10])
2024-09-02 05:28:39 -04:00
Miroslav Rezanina
6604c0ed42 * Tue Aug 20 2024 Miroslav Rezanina <mrezanin@redhat.com> - 20240524-3
- edk2-NetworkPkg-DxeNetLib-adjust-PseudoRandom-error-loggi.patch [RHEL-45829]
- edk2-NetworkPkg-DxeNetLib-Reword-PseudoRandom-error-loggi.patch [RHEL-45829]
- Resolves: RHEL-45829
  ([RHEL-10.0] edk2 hit Failed to generate random data )
2024-08-20 02:19:08 -04:00
Miroslav Rezanina
1dedcda65a * Wed Jul 24 2024 Miroslav Rezanina <mrezanin@redhat.com> - 20240524-2
- edk2-MdeModulePkg-Warn-if-out-of-flash-space-when-writing.patch [RHEL-45261]
- Resolves: RHEL-45261
  ([RHEL10] edk2 disconnects abnormally before loading the kernel)
2024-07-24 08:04:29 -04:00
Miroslav Rezanina
691ec5109c * Fri Jun 28 2024 Miroslav Rezanina <mrezanin@redhat.com> - 20240524-1
- Rebase to edk2-stable202405
- Resolves: RHEL-32487
2024-06-28 04:26:35 -04:00
Troy Dawson
ed8e8719c6 Bump release for June 2024 mass rebuild 2024-06-24 08:41:10 -07:00
Yanan Fu
c4d260793d Initial gating.yaml for RHEL-10 OSCI gating
Resolves: RHEL-32188

Signed-off-by: Yanan Fu <yfu@redhat.com>
2024-04-09 15:03:54 +08:00
Miroslav Rezanina
8a2fa30d59 * Tue Apr 02 2024 Miroslav Rezanina <mrezanin@redhat.com> - 20240214-1
- Imported edk2-202402 from RHEL 9
- Resolves: RHEL-30180
2024-04-02 04:59:40 -04:00
Fedora Release Engineering
5f8b5dd1fe Rebuilt for https://fedoraproject.org/wiki/Fedora_40_Mass_Rebuild 2024-01-24 10:09:29 +00:00
Fedora Release Engineering
32cca31e6e Rebuilt for https://fedoraproject.org/wiki/Fedora_40_Mass_Rebuild 2024-01-19 17:53:12 +00:00
Gerd Hoffmann
bc6d394be4 set PcdSetNxForStack = TRUE for strict nx builds 2023-12-22 13:33:44 +01:00
Gerd Hoffmann
d8f2fa208c set PcdImageProtectionPolicy = 0x03 for strict nx builds 2023-12-22 11:32:14 +01:00
Gerd Hoffmann
b1b2afe957 switch the strictnx build to qcow2 (like all other 4M builds) 2023-12-13 13:42:35 +01:00
Gerd Hoffmann
c17e4f232c add PcdUninstallMemAttrProtocol configuration 2023-12-12 13:23:09 +01:00
Gerd Hoffmann
5a72362f6c swap MemoryAttributeProtocol patch, again 2023-12-12 12:19:37 +01:00
Gerd Hoffmann
645f17ba67 make hashlength configurable in make-tarball.sh
[skip changelog]
2023-12-12 12:10:30 +01:00
Gerd Hoffmann
afdeae3484 update bundled openssl 2023-12-06 13:30:25 +01:00
Gerd Hoffmann
fc6960f38b swap MemoryAttributeProtocol patch 2023-12-06 13:14:20 +01:00
Gerd Hoffmann
f11bca702b fix intel tdx firmware descriptor
Change the device type to memory,
i.e. '-bios $file' to load it into RAM/ROM.
2023-12-06 11:34:05 +01:00
Gerd Hoffmann
e23d2f953b update build config: 64bit pei, tdx sb
Stop using mixed mode builds, switch to 64-bit PEI phase.
Enable secure boot for the intel tdx builds.

Signed-off-by: Gerd Hoffmann <kraxel@redhat.com>
2023-12-05 16:17:19 +01:00
Gerd Hoffmann
766cf0772e update build script 2023-12-05 16:16:38 +01:00
Gerd Hoffmann
994feb5796 silence '... has a LOAD segment with RWX permissions' warning 2023-11-27 19:00:10 +01:00
Gerd Hoffmann
3cc1097f10 enroll sb keys for tdx image 2023-11-27 18:56:14 +01:00
Gerd Hoffmann
78febee518 rebase to edk2-stable202311 2023-11-27 10:50:04 +01:00
Gerd Hoffmann
e038ec9e8d add unversioned virt machine type for riscv64 2023-11-17 14:01:11 +01:00
Gerd Hoffmann
0441730028 update debug patch, add proper fix for bz2241388 2023-10-11 10:34:03 +02:00
Gerd Hoffmann
cfa1bfa2a7 test patch for bz2241388 2023-10-10 13:07:41 +02:00
Gerd Hoffmann
0e2f6f6608 add dbxupdate to rpms
Signed-off-by: Gerd Hoffmann <kraxel@redhat.com>
2023-09-27 12:04:21 +02:00
Daniel P. Berrangé
37554dee28 Add BSD-3-Clause for arm firmware
This is used by the berkley-softfloat code built on arm 32-bit

Signed-off-by: Daniel P. Berrangé <berrange@redhat.com>
2023-09-25 18:12:20 +01:00
Daniel P. Berrangé
fbd6ccde44 Add BSD-2-Clause OR GPL-2.0-or-later license
This is used by FdtLib code which is linked into most of the
arm/riscv/x86 firmware targets.

Signed-off-by: Daniel P. Berrangé <berrange@redhat.com>
2023-09-25 18:11:48 +01:00