From 1c0a90cc2ed25ee8477040ddbd71fe4c689f9f36 Mon Sep 17 00:00:00 2001 From: Andrew Lukoshko Date: Tue, 23 Aug 2022 13:53:44 +0000 Subject: [PATCH] AlmaLinux changes --- .shim.metadata | 8 ++++---- SOURCES/BOOTAA64.CSV | Bin 184 -> 124 bytes SOURCES/BOOTX64.CSV | Bin 108 -> 122 bytes SOURCES/clsecureboot001.cer | Bin 0 -> 1561 bytes SOURCES/redhatsecureboot501.cer | Bin 964 -> 0 bytes SOURCES/redhatsecurebootca5.cer | Bin 920 -> 0 bytes SOURCES/shim.rpmmacros | 4 ++-- SPECS/shim.spec | 8 +++++--- 8 files changed, 11 insertions(+), 9 deletions(-) create mode 100644 SOURCES/clsecureboot001.cer delete mode 100644 SOURCES/redhatsecureboot501.cer delete mode 100644 SOURCES/redhatsecurebootca5.cer diff --git a/.shim.metadata b/.shim.metadata index bd1dd4b..310e5c3 100644 --- a/.shim.metadata +++ b/.shim.metadata @@ -1,4 +1,4 @@ -9ca9cfa834aedfaf3efe2216bfa1cb7c286ee1c0 SOURCES/fbx64.efi -5eb0ac78eee6aeeaf44a3f11d002b4fe00af6916 SOURCES/mmx64.efi -4312f246b6ba692040383f10358ac9a5927207de SOURCES/shimaa64.efi -783fb77783e9d0c4c400b723dfd0f02f006616ae SOURCES/shimx64.efi +bfee65ae45498fefd64b16edf9993415b625cb3c SOURCES/shimaa64.efi +5957bbccac9f22c1738039679204be0bb57c3812 SOURCES/shimx64.efi +122b21c2da0ca4ee839d4bb6beff7ddffd68f1a0 SOURCES/fbx64.efi +a4f7a273cc9a531a6ef125b91353f479cfa5f79c SOURCES/mmx64.efi diff --git a/SOURCES/BOOTAA64.CSV b/SOURCES/BOOTAA64.CSV index 2dad06e30e5c8f08d7ba2dd1a6bdfe2a05065d4d..3ef9ab912bd5e9e68661f89ee324b147d9282064 100644 GIT binary patch delta 37 ncmdnNSTjL}-H{=OA(tU>qNA$_l*!=3kjaq8P|8rjz{LOnup0;@ delta 97 zcmb=~!8k!iHHaaVA%#JK!Gj@@p#(^~GUNg2RE8pk0wB(0CCMvrc5v7p92dE{F Lp_HM5fr|kE$VC#q diff --git a/SOURCES/BOOTX64.CSV b/SOURCES/BOOTX64.CSV index 77b070b17dca5cebce10cdc0708d2c5bef3e1e59..38a9ef0a67ed2de1e037a1e119941ec1fb374836 100644 GIT binary patch delta 49 pcmd0)V*3AYf`p(WLk>eOLn4C@LncEWLn%YWL}hCc3_%7i1^`(m3&H>Z delta 56 ycmb=*Q7&f4V8~?1WvE~OBh=_zHxtj+9!bnI+p+=zweAJF{O%_-i65K3=V6`P` zg!+Oiw$+NM3{cvRbwp7M9c2G4W9CPDY!P9nY%kz?r;WtSRH=h8 zU|e*l3WsV{DvoP4TGbnDs9{5GAcS5Z!6h(4C{7Uq1bAm>@_|6YFE-;+7(G78M}rNd zop2L0iATV2PECX)*l5Dk>U3O<$HA#wY63bL*TU2^EXQ6+VmX8d(^It7PU5jJhO385 zA`5A%ieN~rfG#CiV@9QqDqzb&l8`jD9Hy((P@^7aCo5+n4C4+6Mny(D>xqpR~zVhEx6umhZ5RVFal3r5M(h>Ej0sf_MTi2%d}hSB1Z;Kcx_Vo?>QeGcGz_P@TPE#k$jU}t{ z=C4WMHPazOp*1PT3fm+ruI6lS_~q`^8L{y-bu+Gf%@__g=3FU^|HN|Z8E=KQmHrw0 zI*CrQY%Us>cb>W=8$P+bYgw+q?~#eYnR*Y9;aJhXnxTwk!v=F7YKwQfz8bV zV01@f!?{5q0>0>7n9VhhK+@rCzjllgEbu48Bs8(uEH~tubc=NhbLDzdL9qcd0ymIeCpOTfNz>=FRp+_ZMjPwTEfKR;4GdG@D`O}rr^ zO(!d6#<-~YhKw(p3S9X|dM{X}bRc;161eWzPCUA!^tNx{O73;zPg)%xE6 literal 0 HcmV?d00001 diff --git a/SOURCES/redhatsecureboot501.cer b/SOURCES/redhatsecureboot501.cer deleted file mode 100644 index dfa7afb4699f9da2610ccf889eac6269b4e368ad..0000000000000000000000000000000000000000 GIT binary patch literal 0 HcmV?d00001 literal 964 zcmXqLVm@Hd#I#}oGZP~d6DPygP|MB7r^(JW;AP{~YV&CO&dbQi&B|a9ZzyIU!p0oR z!o|ZIl$xU8kyxUm;F*`KXQ*f(4-#kQk${RT1g9pK7NsgU<>!|uI6Eqs8Y&qmz)j<1 z6ca8^O-{^7Eh=#+N=?Z~EYVBO&oz(}=QT1gFf*_;ur#$aF^m%DHMTG?G_-(n4bpHr zK*K-{;sAMU4hYUn&&$k9S1<({MvOa}7?qIy&dAEZ+{DPwV9>?_b=fyaz_nMgbCq_4}%h&s@!! ze1+-H$r$aU3#Wbib#?#k&uh{GYUM6Zj@vtn;gxywxjzdyRhQhFw_E3gr&3h2=~R{1 zj&**wnV1`gIDK=C)Q=HpH6<5w#musUBRX5*FRT%+S?q^ zlC!X|$Tr`#TvsL{aXYvlkoIbiCkx z5_D~Q*@8!%rFvVIJk+SN&YvaV#ohSi!kzD4u!L^;lrQW*W7-1#!tQ%Ev()B&_RmzfDxh^SOyp9_ zQ{CMgMRQYpd7N(ray<%vF*_r`|Ig1qJ?keW%w>8X>p8K%ckRW_k5{=r91h)XDEdQO n!11X)D#7e#1b6^&%9(kLq!95kT^4s1XNrhI5oMnC{@8JKfgr5*-^pNP{}|6ZW6NxP$#b?ru1p1aqn$3D)YB{Qqo zjCvjz?|=HkE#3AN-xTZpws*U~)f@DZ{t~uwMZy8<;F%jD%$u6!n#qYzp^Sryh{C;x9qf@!N=T4ui@b#({ zSD&^p3kNZ=9lAQ9%xdfP9doNToV+k2^LHOFD{5oE&78StJa^8n7$i2k94PWc<&xr*# z`sciS&XK#@>h!OC8{=mczNLHbADCJ+pE=-CsaDOF#s}?5Q)1qq&%R~#cz>QmiAiVx zk5XXYstAL9d+iK-w@u$FESybMIPOFY~9lmn~9nUf%vMc88@((p0B(#qL+!COmt7`j5IhPVzo{cRPw} Pd!}BnFF!b8N6JS4>O*3Z diff --git a/SOURCES/shim.rpmmacros b/SOURCES/shim.rpmmacros index d1379ff..d29c4a3 100644 --- a/SOURCES/shim.rpmmacros +++ b/SOURCES/shim.rpmmacros @@ -19,8 +19,8 @@ %global mmefix64 %{expand:%{SOURCE42}} #%%global mmefiarm %%{expand:%%{SOURCE43} -%global shimveraa64 15-6.el9 -%global shimverx64 15.6-1.el9 +%global shimveraa64 15-6.el9.alma +%global shimverx64 15.6-1.el9.alma #%%global shimverarm 15-1.el8 %global shimdiraa64 %{_datadir}/shim/%{shimveraa64}/aa64 diff --git a/SPECS/shim.spec b/SPECS/shim.spec index cae3ba6..b60cdb0 100644 --- a/SPECS/shim.spec +++ b/SPECS/shim.spec @@ -1,6 +1,6 @@ Name: shim Version: 15.6 -Release: 1.el9 +Release: 1.el9.alma Summary: First-stage UEFI bootloader License: BSD URL: https://github.com/rhboot/shim/ @@ -12,8 +12,7 @@ ExclusiveArch: %{efi} ExcludeArch: %{arm} %{ix86} Source0: shim.rpmmacros -Source1: redhatsecureboot501.cer -Source2: redhatsecurebootca5.cer +Source1: clsecureboot001.cer # keep these two lists of sources synched up arch-wise. That is 0 and 10 # match, 1 and 11 match, ... @@ -104,6 +103,9 @@ install -m 0700 %{shimefi} $RPM_BUILD_ROOT%{efi_esp_dir}/shim.efi %endif %changelog +* Tue Aug 23 2022 Andrew Lukoshko - 15.6-1.el9.alma +- AlmaLinux changes + * Mon Jun 06 2022 Peter Jones - 15.6-1.el9 - Update to shim-15.6 Resolves: CVE-2022-28737