SecureBoot support for arm64
Bug #1804481 reported by
dann frazier
This bug affects 1 person
Affects | Status | Importance | Assigned to | Milestone | |
---|---|---|---|---|---|
linux (Ubuntu) |
Fix Released
|
Undecided
|
dann frazier | ||
Bionic |
Triaged
|
Undecided
|
dann frazier | ||
Cosmic |
Triaged
|
Undecided
|
dann frazier | ||
Disco |
Fix Released
|
Undecided
|
dann frazier | ||
linux-meta (Ubuntu) |
In Progress
|
Undecided
|
dann frazier | ||
Bionic |
Triaged
|
Undecided
|
dann frazier | ||
Cosmic |
Triaged
|
Undecided
|
dann frazier | ||
Disco |
Won't Fix
|
Undecided
|
dann frazier | ||
linux-signed (Ubuntu) |
Fix Released
|
Undecided
|
dann frazier | ||
Bionic |
Triaged
|
Undecided
|
dann frazier | ||
Cosmic |
Triaged
|
Undecided
|
dann frazier | ||
Disco |
Fix Released
|
Undecided
|
dann frazier | ||
linux-signed-hwe (Ubuntu) |
Invalid
|
Undecided
|
Unassigned | ||
Bionic |
Fix Released
|
Critical
|
Unassigned | ||
Cosmic |
Invalid
|
Undecided
|
Unassigned | ||
Disco |
Invalid
|
Undecided
|
Unassigned | ||
linux-signed-hwe-edge (Ubuntu) |
New
|
Undecided
|
Unassigned | ||
Bionic |
Fix Released
|
Critical
|
dann frazier | ||
Cosmic |
Invalid
|
Undecided
|
Unassigned | ||
Disco |
Invalid
|
Undecided
|
Unassigned | ||
shim (Ubuntu) |
Fix Released
|
Undecided
|
dann frazier | ||
Bionic |
Fix Released
|
Undecided
|
dann frazier | ||
Cosmic |
Fix Released
|
Undecided
|
dann frazier | ||
Disco |
Fix Released
|
Undecided
|
dann frazier | ||
shim-signed (Ubuntu) |
Fix Released
|
Undecided
|
dann frazier | ||
Bionic |
Triaged
|
Undecided
|
dann frazier | ||
Cosmic |
Triaged
|
Undecided
|
dann frazier | ||
Disco |
Fix Released
|
Undecided
|
dann frazier |
Bug Description
[Impact]
Ubuntu does not currently support SecureBoot for UEFI systems on arm64 platforms.
[Test Case]
See: https:/
[Fix]
- Introduce shim-signed for arm64
- Introduce grub-signed for arm64
- Produce signed linux kernels
[Regression Risk]
We're enabling new signed packages - regressions would most likely fall into packaging issues.
CVE References
Changed in shim (Ubuntu Disco): | |
status: | New → Fix Released |
Changed in shim-signed (Ubuntu Disco): | |
status: | New → Fix Released |
Changed in shim (Ubuntu Cosmic): | |
status: | New → Fix Released |
Changed in shim (Ubuntu Bionic): | |
status: | New → Fix Released |
Changed in linux (Ubuntu Disco): | |
status: | Incomplete → In Progress |
assignee: | nobody → dann frazier (dannf) |
Changed in linux (Ubuntu Bionic): | |
assignee: | nobody → dann frazier (dannf) |
status: | New → Triaged |
Changed in linux (Ubuntu Cosmic): | |
assignee: | nobody → dann frazier (dannf) |
status: | New → Triaged |
Changed in linux-meta (Ubuntu Bionic): | |
assignee: | nobody → dann frazier (dannf) |
status: | New → Triaged |
Changed in linux-meta (Ubuntu Cosmic): | |
assignee: | nobody → dann frazier (dannf) |
status: | New → Triaged |
Changed in linux-meta (Ubuntu Disco): | |
assignee: | nobody → dann frazier (dannf) |
status: | New → In Progress |
Changed in linux-signed (Ubuntu Bionic): | |
assignee: | nobody → dann frazier (dannf) |
status: | New → Triaged |
Changed in linux-signed (Ubuntu Cosmic): | |
assignee: | nobody → dann frazier (dannf) |
status: | New → Triaged |
Changed in linux-signed (Ubuntu Disco): | |
assignee: | nobody → dann frazier (dannf) |
status: | New → In Progress |
Changed in shim-signed (Ubuntu Bionic): | |
assignee: | nobody → dann frazier (dannf) |
status: | New → Triaged |
Changed in shim-signed (Ubuntu Cosmic): | |
assignee: | nobody → dann frazier (dannf) |
status: | New → Triaged |
Changed in shim-signed (Ubuntu Disco): | |
assignee: | nobody → dann frazier (dannf) |
Changed in shim (Ubuntu Bionic): | |
assignee: | nobody → dann frazier (dannf) |
Changed in shim (Ubuntu Cosmic): | |
assignee: | nobody → dann frazier (dannf) |
Changed in shim (Ubuntu Disco): | |
assignee: | nobody → dann frazier (dannf) |
Changed in linux (Ubuntu Disco): | |
status: | In Progress → Fix Committed |
Changed in linux-signed (Ubuntu Disco): | |
status: | In Progress → Fix Committed |
Changed in linux-signed-hwe-edge (Ubuntu Cosmic): | |
status: | New → Invalid |
Changed in linux-signed-hwe-edge (Ubuntu Disco): | |
status: | New → Invalid |
Changed in linux-signed-hwe-edge (Ubuntu Bionic): | |
status: | New → In Progress |
Changed in linux-signed-hwe-edge (Ubuntu Bionic): | |
status: | In Progress → Fix Committed |
Changed in linux-signed-hwe (Ubuntu Cosmic): | |
status: | New → Invalid |
Changed in linux-signed-hwe (Ubuntu Disco): | |
status: | New → Invalid |
Changed in linux-signed-hwe (Ubuntu): | |
status: | New → Invalid |
Changed in linux-signed-hwe (Ubuntu Bionic): | |
importance: | Undecided → Critical |
status: | New → Fix Committed |
Changed in linux-meta (Ubuntu Disco): | |
status: | In Progress → Won't Fix |
Changed in linux-signed-hwe (Ubuntu Bionic): | |
assignee: | nobody → Ryan Finnie (fo0bar) |
assignee: | Ryan Finnie (fo0bar) → nobody |
To post a comment you must log in.
This bug is missing log files that will aid in diagnosing the problem. While running an Ubuntu kernel (not a mainline or third-party kernel) please enter the following command in a terminal window:
apport-collect 1804481
and then change the status of the bug to 'Confirmed'.
If, due to the nature of the issue you have encountered, you are unable to run this command, please add a comment stating that fact and change the bug status to 'Confirmed'.
This change has been made by an automated script, maintained by the Ubuntu Kernel Team.