[25.04 FEAT] [VS2305] KVM: Support extended attestation for Secure Execution (s390-tools)

Bug #2097535 reported by bugproxy
12
This bug affects 1 person
Affects Status Importance Assigned to Milestone
Ubuntu on IBM z Systems
Fix Released
High
Skipper Bug Screeners
s390-tools (Ubuntu)
Fix Released
High
Skipper Bug Screeners
s390-tools-signed (Ubuntu)
Fix Released
High
Skipper Bug Screeners

Bug Description

Feature Description:

This feature adds firmware measurements of the Secure Execution host to the attestation record. This gives the image owners more granular control over the accepted runtime environments, as they can now enforce certain firmware levels for their workload (either for functional or security reasons).

Revision history for this message
bugproxy (bugproxy) wrote : Comment bridged from LTC Bugzilla

------- Comment From <email address hidden> 2025-02-06 07:27 EDT-------
This feature is included in s390-tools 2.36.0,
see
https://github.com/ibm-s390-linux/s390-tools/releases/tag/v2.36.0

tags: added: architecture-s39064 bugnameltc-211472 severity-high targetmilestone-inin2504
Changed in ubuntu:
assignee: nobody → Skipper Bug Screeners (skipper-screen-team)
affects: ubuntu → linux (Ubuntu)
Revision history for this message
Frank Heimes (fheimes) wrote :

Thanks for the info.
Since s390-tools v2.36.0-0ubuntu1 is included in plucky,
I'm updating this ticket to Fix Released (closing).

affects: linux (Ubuntu) → s390-tools (Ubuntu)
Changed in s390-tools-signed (Ubuntu):
assignee: nobody → Skipper Bug Screeners (skipper-screen-team)
Changed in ubuntu-z-systems:
assignee: nobody → Skipper Bug Screeners (skipper-screen-team)
Changed in s390-tools-signed (Ubuntu):
importance: Undecided → High
Changed in s390-tools (Ubuntu):
importance: Undecided → High
Changed in ubuntu-z-systems:
importance: Undecided → High
Changed in s390-tools-signed (Ubuntu):
status: New → Fix Released
Changed in s390-tools (Ubuntu):
status: New → Fix Released
Changed in ubuntu-z-systems:
status: New → Fix Released
Frank Heimes (fheimes)
information type: Private → Public
To post a comment you must log in.
This report contains Public information  
Everyone can see this information.

Other bug subscribers

Remote bug watches

Bug watches keep track of this bug in other bug trackers.