2019-05-23 14:59:53 |
bugproxy |
bug |
|
|
added bug |
2019-05-23 14:59:56 |
bugproxy |
tags |
|
architecture-s39064 bugnameltc-177823 severity-high targetmilestone-inin1910 |
|
2019-05-23 15:00:07 |
bugproxy |
ubuntu: assignee |
|
Skipper Bug Screeners (skipper-screen-team) |
|
2019-05-23 15:00:09 |
bugproxy |
affects |
ubuntu |
qemu (Ubuntu) |
|
2019-05-23 15:00:10 |
bugproxy |
bug |
|
|
added subscriber CDE Administration |
2019-05-23 15:00:13 |
bugproxy |
bug |
|
|
added subscriber Heinz-Werner Seeck |
2019-05-23 15:00:15 |
bugproxy |
bug |
|
|
added subscriber Frank Heimes |
2019-05-23 15:00:24 |
bugproxy |
bug |
|
|
added subscriber Lou Peers |
2019-05-23 15:27:09 |
Frank Heimes |
summary |
[19.04 FEAT] KVM: Secure Linux Boot Toleration - qemu |
[19.10 FEAT] KVM: Secure Linux Boot Toleration - qemu |
|
2019-05-23 15:27:49 |
Frank Heimes |
bug task added |
|
ubuntu-z-systems |
|
2019-05-23 15:27:55 |
Frank Heimes |
ubuntu-z-systems: status |
New |
Incomplete |
|
2019-05-23 15:27:58 |
Frank Heimes |
ubuntu-z-systems: importance |
Undecided |
High |
|
2019-05-23 15:28:14 |
Frank Heimes |
ubuntu-z-systems: assignee |
|
Canonical Server Team (canonical-server) |
|
2019-05-23 15:28:23 |
Frank Heimes |
bug |
|
|
added subscriber Christian Ehrhardt |
2019-05-23 15:52:07 |
Frank Heimes |
tags |
architecture-s39064 bugnameltc-177823 severity-high targetmilestone-inin1910 |
architecture-s39064 bugnameltc-177823 qemu-19.10 severity-high targetmilestone-inin1910 |
|
2019-05-24 10:42:55 |
Frank Heimes |
ubuntu-z-systems: status |
Incomplete |
Triaged |
|
2019-06-06 12:23:02 |
Dimitri John Ledkov |
nominated for series |
|
Ubuntu Bionic |
|
2019-06-06 12:23:02 |
Dimitri John Ledkov |
bug task added |
|
qemu (Ubuntu Bionic) |
|
2019-06-06 12:23:02 |
Dimitri John Ledkov |
nominated for series |
|
Ubuntu Eoan |
|
2019-06-06 12:23:02 |
Dimitri John Ledkov |
bug task added |
|
qemu (Ubuntu Eoan) |
|
2019-06-06 12:23:02 |
Dimitri John Ledkov |
nominated for series |
|
Ubuntu Xenial |
|
2019-06-06 12:23:02 |
Dimitri John Ledkov |
bug task added |
|
qemu (Ubuntu Xenial) |
|
2019-06-06 12:23:02 |
Dimitri John Ledkov |
nominated for series |
|
Ubuntu Disco |
|
2019-06-06 12:23:02 |
Dimitri John Ledkov |
bug task added |
|
qemu (Ubuntu Disco) |
|
2019-06-06 12:23:02 |
Dimitri John Ledkov |
nominated for series |
|
Ubuntu Cosmic |
|
2019-06-06 12:23:02 |
Dimitri John Ledkov |
bug task added |
|
qemu (Ubuntu Cosmic) |
|
2019-07-01 08:58:24 |
Frank Heimes |
information type |
Private |
Public |
|
2019-07-03 14:51:27 |
Launchpad Janitor |
qemu (Ubuntu Eoan): status |
New |
Fix Released |
|
2019-07-03 14:51:27 |
Launchpad Janitor |
cve linked |
|
2018-16872 |
|
2019-07-03 14:51:27 |
Launchpad Janitor |
cve linked |
|
2018-19665 |
|
2019-07-03 14:51:27 |
Launchpad Janitor |
cve linked |
|
2018-20815 |
|
2019-07-03 14:51:27 |
Launchpad Janitor |
cve linked |
|
2019-3812 |
|
2019-07-03 14:51:27 |
Launchpad Janitor |
cve linked |
|
2019-5008 |
|
2019-07-03 14:51:27 |
Launchpad Janitor |
cve linked |
|
2019-6501 |
|
2019-07-03 14:51:27 |
Launchpad Janitor |
cve linked |
|
2019-6778 |
|
2019-07-03 14:51:27 |
Launchpad Janitor |
cve linked |
|
2019-9824 |
|
2019-07-03 15:03:16 |
Frank Heimes |
ubuntu-z-systems: status |
Triaged |
In Progress |
|
2019-07-04 13:07:38 |
Launchpad Janitor |
merge proposal linked |
|
https://code.launchpad.net/~paelzer/ubuntu/+source/qemu/+git/qemu/+merge/369709 |
|
2019-07-04 13:08:02 |
Launchpad Janitor |
merge proposal linked |
|
https://code.launchpad.net/~paelzer/ubuntu/+source/qemu/+git/qemu/+merge/369710 |
|
2019-07-04 13:08:24 |
Launchpad Janitor |
merge proposal linked |
|
https://code.launchpad.net/~paelzer/ubuntu/+source/qemu/+git/qemu/+merge/369711 |
|
2019-07-04 13:10:03 |
Christian Ehrhardt |
qemu (Ubuntu Disco): status |
New |
Incomplete |
|
2019-07-04 13:10:04 |
Christian Ehrhardt |
qemu (Ubuntu Cosmic): status |
New |
Incomplete |
|
2019-07-04 13:10:09 |
Christian Ehrhardt |
qemu (Ubuntu Cosmic): status |
Incomplete |
Won't Fix |
|
2019-07-04 13:10:11 |
Christian Ehrhardt |
qemu (Ubuntu Bionic): status |
New |
Incomplete |
|
2019-07-04 13:10:12 |
Christian Ehrhardt |
qemu (Ubuntu Xenial): status |
New |
Incomplete |
|
2019-07-05 10:24:46 |
Christian Ehrhardt |
qemu (Ubuntu Disco): status |
Incomplete |
In Progress |
|
2019-07-05 10:24:48 |
Christian Ehrhardt |
qemu (Ubuntu Bionic): status |
Incomplete |
In Progress |
|
2019-07-05 10:24:51 |
Christian Ehrhardt |
qemu (Ubuntu Xenial): status |
Incomplete |
In Progress |
|
2019-07-11 05:02:38 |
Christian Ehrhardt |
description |
Secure boot enablement KVM.
Will be made available with qemu 4.1 |
[Impact]
* s390x is about to add secure boot features which are implemented by a
new IPL section
* Older qemu bootloaders for s390x will stumble over that IPL section and
be unable to boot.
* Backport the changes from upstream that make qemu tolerate those
sections (not the new feature of secure boot, just the avoidance of the
guest crash on boot)
[Test Case]
* Take a signed kernel on s390x (either the one from xnox in comment #19
or use signtool to create one)
* Install that kernel in a guest of the qemu that is to be tested
* Run zipl with --secure 1 to write a secure boot section for sure
* With an unpatched qemu this would now fail to boot again
* Install the update to qemu and boot the guest, by skipping the
"tolerated, but not supported" new section it works again.
[Regression Potential]
* If any of the checks goes wrong we might affect booting of guests in a
negative way. For example it might no more start or load a wrong
kernel. But since the IPL records written by `zipl` are clearly
specified that should hopefully not be the case here. The code added
clearly only skips an additional section that didn't exist before.
[Other Info]
* n/a
---
Secure boot enablement KVM.
Will be made available with qemu 4.1 |
|
2019-07-16 17:08:39 |
Brian Murray |
qemu (Ubuntu Disco): status |
In Progress |
Fix Committed |
|
2019-07-16 17:08:43 |
Brian Murray |
bug |
|
|
added subscriber Ubuntu Stable Release Updates Team |
2019-07-16 17:08:45 |
Brian Murray |
bug |
|
|
added subscriber SRU Verification |
2019-07-16 17:08:54 |
Brian Murray |
tags |
architecture-s39064 bugnameltc-177823 qemu-19.10 severity-high targetmilestone-inin1910 |
architecture-s39064 bugnameltc-177823 qemu-19.10 severity-high targetmilestone-inin1910 verification-needed verification-needed-disco |
|
2019-07-16 17:18:03 |
Brian Murray |
qemu (Ubuntu Bionic): status |
In Progress |
Fix Committed |
|
2019-07-16 17:18:15 |
Brian Murray |
tags |
architecture-s39064 bugnameltc-177823 qemu-19.10 severity-high targetmilestone-inin1910 verification-needed verification-needed-disco |
architecture-s39064 bugnameltc-177823 qemu-19.10 severity-high targetmilestone-inin1910 verification-needed verification-needed-bionic verification-needed-disco |
|
2019-07-16 17:19:36 |
Brian Murray |
qemu (Ubuntu Xenial): status |
In Progress |
Fix Committed |
|
2019-07-16 17:19:47 |
Brian Murray |
tags |
architecture-s39064 bugnameltc-177823 qemu-19.10 severity-high targetmilestone-inin1910 verification-needed verification-needed-bionic verification-needed-disco |
architecture-s39064 bugnameltc-177823 qemu-19.10 severity-high targetmilestone-inin1910 verification-needed verification-needed-bionic verification-needed-disco verification-needed-xenial |
|
2019-07-16 17:25:46 |
Frank Heimes |
ubuntu-z-systems: status |
In Progress |
Fix Committed |
|
2019-07-16 20:31:39 |
Rafael David Tinoco |
bug |
|
|
added subscriber Rafael David Tinoco |
2019-07-17 08:38:47 |
Christian Ehrhardt |
tags |
architecture-s39064 bugnameltc-177823 qemu-19.10 severity-high targetmilestone-inin1910 verification-needed verification-needed-bionic verification-needed-disco verification-needed-xenial |
architecture-s39064 bugnameltc-177823 qemu-19.10 severity-high targetmilestone-inin1910 verification-done verification-done-bionic verification-done-disco verification-done-xenial |
|
2019-07-30 15:45:01 |
Brian Murray |
removed subscriber Ubuntu Stable Release Updates Team |
|
|
|
2019-07-30 15:55:07 |
Launchpad Janitor |
qemu (Ubuntu Xenial): status |
Fix Committed |
Fix Released |
|
2019-08-06 08:32:11 |
Robie Basak |
bug |
|
|
added subscriber Ubuntu Stable Release Updates Team |
2019-08-06 08:32:22 |
Robie Basak |
tags |
architecture-s39064 bugnameltc-177823 qemu-19.10 severity-high targetmilestone-inin1910 verification-done verification-done-bionic verification-done-disco verification-done-xenial |
architecture-s39064 bugnameltc-177823 qemu-19.10 severity-high targetmilestone-inin1910 verification-done-disco verification-done-xenial verification-needed verification-needed-bionic |
|
2019-08-06 10:30:27 |
Christian Ehrhardt |
tags |
architecture-s39064 bugnameltc-177823 qemu-19.10 severity-high targetmilestone-inin1910 verification-done-disco verification-done-xenial verification-needed verification-needed-bionic |
architecture-s39064 bugnameltc-177823 qemu-19.10 severity-high targetmilestone-inin1910 verification-done verification-done-bionic verification-done-disco verification-done-xenial |
|
2019-08-08 08:57:43 |
Launchpad Janitor |
qemu (Ubuntu Disco): status |
Fix Committed |
Fix Released |
|
2019-08-13 15:50:02 |
Launchpad Janitor |
qemu (Ubuntu Bionic): status |
Fix Committed |
Fix Released |
|
2019-08-13 16:08:22 |
Frank Heimes |
ubuntu-z-systems: status |
Fix Committed |
Fix Released |
|