grub2-unsigned 2.06-2ubuntu14 source package in Ubuntu
Changelog
grub2-unsigned (2.06-2ubuntu14) kinetic; urgency=medium * SECURITY UPDATE: Fix out of bounds writes due specially crafted fonts. - add debian/patches/font-Fix-several-integer-overflows-in-grub_font_construct.patch - add debian/patches/font-Fix-an-integer-underflow-in-blit_comb.patch - CVE-2022-2601, CVE-2022-3775 - LP: #1996950 * Fix various issues as a result of fuzzing, static analysis and code review: - add debian/patches/font-Reject-glyphs-exceeds-font-max_glyph_width-or-font-m.patch - add debian/patches/font-Fix-size-overflow-in-grub_font_get_glyph_internal.patch - add debian/patchces/font-Remove-grub_font_dup_glyph.patch - add debian/patches/font-Fix-integer-overflow-in-ensure_comb_space.patch - add debian/patches/font-Fix-integer-overflow-in-BMP-index.patch - add debian/patches/font-Fix-integer-underflow-in-binary-search-of-char-index.patch - add debian/patches/fbutil-Fix-integer-overflow.patch - add debian/patches/font-Harden-grub_font_blit_glyph-and-grub_font_blit_glyph.patch - add debian/patches/font-Assign-null_font-to-glyphs-in-ascii_font_glyph.patch - add debian/patches/normal-charset-Fix-an-integer-overflow-in-grub_unicode_ag.patch * Enforce verification of fonts when secure boot is enabled: - add debian/patches/kern-efi-sb-Enforce-verification-of-font-files.patch * Bundle unicode.pf2 in a squashfs memdisk attached to the signed EFI binary - update debian/control - update debian/build-efi-image - add debian/patches/font-Try-opening-fonts-from-the-bundled-memdisk.patch * Fix LP: #1997006 - add support for performing measurements to RTMRs - add debian/patches/commands-efi-tpm-Refine-the-status-of-log-event.patch - add debian/patches/commands-efi-tpm-Use-grub_strcpy-instead-of-grub_memcpy.patch - add debian/patches/efi-tpm-Add-EFI_CC_MEASUREMENT_PROTOCOL-support.patch * Fix the squashfs tests during the build - remove debian/patches/ubuntu-fix-reproducible-squashfs-test.patch - add debian/patches/tests-Explicitly-unset-SOURCE_DATE_EPOCH-before-running-f.patch * Bump SBAT generation: - update debian/sbat.ubuntu.csv.in * Source package generated from src:grub2 using make -f ./debian/rules generate-grub2-unsigned -- Chris Coulson <email address hidden> Wed, 16 Nov 2022 14:40:42 +0000
Upload details
- Uploaded by:
- Chris Coulson
- Uploaded to:
- Kinetic
- Original maintainer:
- Ubuntu Developers
- Architectures:
- any-amd64 any-arm64 i386 kopensolaris-i386
- Section:
- admin
- Urgency:
- Medium Urgency
See full publishing history Publishing
Series | Published | Component | Section |
---|
Downloads
File | Size | SHA-256 Checksum |
---|---|---|
grub2-unsigned_2.06.orig.tar.xz | 6.3 MiB | b79ea44af91b93d17cd3fe80bdae6ed43770678a9a5ae192ccea803ebb657ee1 |
grub2-unsigned_2.06-2ubuntu14.debian.tar.xz | 1.1 MiB | 302cb946dc13d8d41dee0da5e02ca4189059c526f276991914aa7a46f46ccd8d |
grub2-unsigned_2.06-2ubuntu14.dsc | 3.2 KiB | ff3238c6dac82d947f39a05bcf00a031ac3b3b46b84f0c1b80bceba0653e7319 |
Available diffs
- diff from 2.04-1ubuntu44.2 (in Ubuntu) to 2.06-2ubuntu14 (2.4 MiB)
- diff from 2.04-1ubuntu47.4 to 2.06-2ubuntu14 (2.4 MiB)
- diff from 2.04-1ubuntu47.5 to 2.06-2ubuntu14 (2.4 MiB)
- diff from 2.06-2ubuntu13 (in Ubuntu) to 2.06-2ubuntu14 (16.1 KiB)
- diff from 2.06-2ubuntu5~uefi16 (in ~ubuntu-uefi-team/ubuntu/ppa) to 2.06-2ubuntu14 (pending)
- diff from 2.06-2ubuntu10 to 2.06-2ubuntu14 (27.5 KiB)
- diff from 2.06-2ubuntu14~ppa4 to 2.06-2ubuntu14 (741 bytes)
Binary packages built by this source
- grub-efi-amd64: GRand Unified Bootloader, version 2 (EFI-AMD64 version)
GRUB is a portable, powerful bootloader. This version of GRUB is based on a
cleaner design than its predecessors, and provides the following new features:
.
- Scripting in grub.cfg using BASH-like syntax.
- Support for modern partition maps such as GPT.
- Modular generation of grub.cfg via update-grub. Packages providing GRUB
add-ons can plug in their own script rules and trigger updates by invoking
update-grub.
.
This is a dependency package for a version of GRUB that has been built for
use with the EFI-AMD64 architecture, as used by Intel Macs (unless a BIOS
interface has been activated). Installing this package indicates that this
version of GRUB should be the active boot loader.
- grub-efi-amd64-bin: No summary available for grub-efi-amd64-bin in ubuntu kinetic.
No description available for grub-efi-amd64-bin in ubuntu kinetic.
- grub-efi-amd64-dbg: GRand Unified Bootloader, version 2 (EFI-AMD64 debug files)
This package contains debugging files for grub-efi-amd64-bin. You only
need these if you are trying to debug GRUB using its GDB stub.
- grub-efi-arm64: GRand Unified Bootloader, version 2 (ARM64 UEFI version)
GRUB is a portable, powerful bootloader. This version of GRUB is based on a
cleaner design than its predecessors, and provides the following new features:
.
- Scripting in grub.cfg using BASH-like syntax.
- Support for modern partition maps such as GPT.
- Modular generation of grub.cfg via update-grub. Packages providing GRUB
add-ons can plug in their own script rules and trigger updates by invoking
update-grub.
.
This is a dependency package for a version of GRUB that has been built for
use on ARM64 systems with UEFI. Installing this package indicates that
this version of GRUB should be the active boot loader.
- grub-efi-arm64-bin: No summary available for grub-efi-arm64-bin in ubuntu kinetic.
No description available for grub-efi-arm64-bin in ubuntu kinetic.
- grub-efi-arm64-dbg: GRand Unified Bootloader, version 2 (ARM64 UEFI debug files)
This package contains debugging files for grub-efi-arm64-bin. You only
need these if you are trying to debug GRUB using its GDB stub.