arm64 kernels are gzip'd by default, which currently breaks is-not-revoked:
ubuntu@ubuntu:~$ sudo file /boot/vmlinuz-5.15.0-57-generic
/boot/vmlinuz-5.15.0-57-generic: gzip compressed data, was "vmlinuz-5.15.0-57-generic.efi.signed", last modified: Tue Nov 29 10:47:41 2022, max compression, from Unix, original size modulo 2^32 46283136
ubuntu@ubuntu:~$ sudo /usr/lib/shim/is-not-revoked /boot/vmlinuz-5.15.0-57-generic ~
Invalid DOS header magic
Can't open image /boot/vmlinuz-5.15.0-57-generic
E: /boot/vmlinuz-5.15.0-57-generic: Could not finder signing subject, sbverify output follows:
Invalid DOS header magic
Can't open image /boot/vmlinuz-5.15.0-57-generic
If I decompress the vmlinuz file in place, it works:
ubuntu@ubuntu:~$ sudo /usr/lib/shim/is-not-revoked /boot/vmlinuz-5.15.0-57-generic ~
Invalid DOS header magic
Can't open image /boot/vmlinuz-5.15.0-57-generic
E: /boot/vmlinuz-5.15.0-57-generic: Could not finder signing subject, sbverify output follows:
Invalid DOS header magic
Can't open image /boot/vmlinuz-5.15.0-57-generic
ubuntu@ubuntu:~$ echo $?
1
arm64 kernels are gzip'd by default, which currently breaks is-not-revoked:
ubuntu@ubuntu:~$ sudo file /boot/vmlinuz- 5.15.0- 57-generic 5.15.0- 57-generic: gzip compressed data, was "vmlinuz- 5.15.0- 57-generic. efi.signed" , last modified: Tue Nov 29 10:47:41 2022, max compression, from Unix, original size modulo 2^32 46283136
/boot/vmlinuz-
ubuntu@ubuntu:~$ sudo /usr/lib/ shim/is- not-revoked /boot/vmlinuz- 5.15.0- 57-generic ~ 5.15.0- 57-generic 5.15.0- 57-generic: Could not finder signing subject, sbverify output follows: 5.15.0- 57-generic
Invalid DOS header magic
Can't open image /boot/vmlinuz-
E: /boot/vmlinuz-
Invalid DOS header magic
Can't open image /boot/vmlinuz-
If I decompress the vmlinuz file in place, it works: shim/is- not-revoked /boot/vmlinuz- 5.15.0- 57-generic ~ 5.15.0- 57-generic 5.15.0- 57-generic: Could not finder signing subject, sbverify output follows: 5.15.0- 57-generic
ubuntu@ubuntu:~$ sudo /usr/lib/
Invalid DOS header magic
Can't open image /boot/vmlinuz-
E: /boot/vmlinuz-
Invalid DOS header magic
Can't open image /boot/vmlinuz-
ubuntu@ubuntu:~$ echo $?
1