ubuntu server 20.04.5 cannot be installed after enable secure boot
Bug #1990326 reported by
shangsong
This bug affects 2 people
Affects | Status | Importance | Assigned to | Milestone | |
---|---|---|---|---|---|
debian-installer (Ubuntu) |
Invalid
|
Undecided
|
Unassigned | ||
Focal |
Fix Released
|
Critical
|
Unassigned | ||
shim (Ubuntu) |
Invalid
|
Undecided
|
Unassigned | ||
Focal |
Invalid
|
Undecided
|
Unassigned |
Bug Description
Reproduce steps
1. Enable secure boot in the UEFI.
2. Fresh install ubuntu server 20.04.5 lts and latest daily build, but it fail with "An unauthorized EFI image is detected, please enroll this EFI image or disable secure boot ...."
Others:
1. Both ubuntu server 18.04.6 and 22.04 can be normal installed.
It seem the key of 20.04.x has been added into the latest UEFI Revocation List File(Release Date: August 12, 2022.https:/
Related branches
Changed in debian-installer (Ubuntu): | |
status: | New → Invalid |
Changed in shim (Ubuntu): | |
status: | New → Invalid |
Changed in debian-installer (Ubuntu Focal): | |
importance: | Undecided → Critical |
Changed in shim (Ubuntu Focal): | |
status: | New → Invalid |
tags: | added: rls-kk-incoming |
information type: | Public → Public Security |
information type: | Public Security → Public |
tags: |
added: verification-done-focal removed: verification-needed verification-needed-focal |
To post a comment you must log in.
Thanks for taking the time to report this bug and helping to make Ubuntu better. We appreciate the difficulties you are facing, but this appears to be a "regular" (non-security) bug. I have unmarked it as a security issue since this bug does not show evidence of allowing attackers to cross privilege boundaries nor directly cause loss of data/privacy. Please feel free to report any other bugs you may find.