[Bug 813448] New: find a way to avoid packaging a binary
https://bugzilla.novell.com/show_bug.cgi?id=813448 https://bugzilla.novell.com/show_bug.cgi?id=813448#c0 Summary: find a way to avoid packaging a binary Classification: openSUSE Product: openSUSE Factory Version: 13.1 Milestone 0 Platform: Other OS/Version: Other Status: NEW Severity: Normal Priority: P5 - None Component: Bootloader AssignedTo: glin@suse.com ReportedBy: lnussel@suse.com QAContact: jsrain@suse.com CC: fcrozat@suse.com Found By: --- Blocker: --- the shim package currently contains a binary as source. We should find a way to avoid that or if that's impossible have a way to verify that the packaged binary matches the sources. Precondition would be to make sure subsequent builds produce the same binary. Then the MS signature could be detached from the submitted binary and re-attached to the built binary. Alternatively pesign -h could be used to verify the built binary matches the MS signed binary. -- Configure bugmail: https://bugzilla.novell.com/userprefs.cgi?tab=email ------- You are receiving this mail because: ------- You are on the CC list for the bug.
https://bugzilla.novell.com/show_bug.cgi?id=813448 https://bugzilla.novell.com/show_bug.cgi?id=813448#c Ludwig Nussel <lnussel@suse.com> changed: What |Removed |Added ---------------------------------------------------------------------------- CC| |coolo@suse.com, | |mls@suse.com Summary|find a way to avoid |shim: find a way to avoid |packaging a binary |packaging a binary -- Configure bugmail: https://bugzilla.novell.com/userprefs.cgi?tab=email ------- You are receiving this mail because: ------- You are on the CC list for the bug.
https://bugzilla.novell.com/show_bug.cgi?id=813448 https://bugzilla.novell.com/show_bug.cgi?id=813448#c Jeffrey Cheung <jcheung@suse.com> changed: What |Removed |Added ---------------------------------------------------------------------------- Status|NEW |ASSIGNED CC| |jcheung@suse.com -- Configure bugmail: https://bugzilla.novell.com/userprefs.cgi?tab=email ------- You are receiving this mail because: ------- You are on the CC list for the bug.
https://bugzilla.novell.com/show_bug.cgi?id=813448 https://bugzilla.novell.com/show_bug.cgi?id=813448#c Jeffrey Cheung <jcheung@suse.com> changed: What |Removed |Added ---------------------------------------------------------------------------- Priority|P5 - None |P3 - Medium -- Configure bugmail: https://bugzilla.novell.com/userprefs.cgi?tab=email ------- You are receiving this mail because: ------- You are on the CC list for the bug.
https://bugzilla.novell.com/show_bug.cgi?id=813448 https://bugzilla.novell.com/show_bug.cgi?id=813448#c1 --- Comment #1 from Bernhard Wiedemann <bwiedemann@suse.com> 2013-08-09 12:00:15 CEST --- This is an autogenerated message for OBS integration: This bug (813448) was mentioned in https://build.opensuse.org/request/show/186559 Factory / shim -- Configure bugmail: https://bugzilla.novell.com/userprefs.cgi?tab=email ------- You are receiving this mail because: ------- You are on the CC list for the bug.
https://bugzilla.novell.com/show_bug.cgi?id=813448 https://bugzilla.novell.com/show_bug.cgi?id=813448#c2 --- Comment #2 from Gary Ching-Pang Lin <glin@suse.com> 2013-09-27 02:35:18 UTC --- Hi Ludwig, All your scripts are checked-in, and the MS signature is detached now. I think we can close this bug. -- Configure bugmail: https://bugzilla.novell.com/userprefs.cgi?tab=email ------- You are receiving this mail because: ------- You are on the CC list for the bug.
https://bugzilla.novell.com/show_bug.cgi?id=813448 https://bugzilla.novell.com/show_bug.cgi?id=813448#c3 Ludwig Nussel <lnussel@suse.com> changed: What |Removed |Added ---------------------------------------------------------------------------- Status|ASSIGNED |RESOLVED Resolution| |FIXED --- Comment #3 from Ludwig Nussel <lnussel@suse.com> 2013-09-27 10:20:14 CEST --- indeed, closing. -- Configure bugmail: https://bugzilla.novell.com/userprefs.cgi?tab=email ------- You are receiving this mail because: ------- You are on the CC list for the bug.
http://bugzilla.novell.com/show_bug.cgi?id=813448 Swamp Workflow Management <swamp@suse.de> changed: What |Removed |Added ---------------------------------------------------------------------------- Whiteboard| |obs:running:3096:moderate -- You are receiving this mail because: You are on the CC list for the bug.
http://bugzilla.novell.com/show_bug.cgi?id=813448 Swamp Workflow Management <swamp@suse.de> changed: What |Removed |Added ---------------------------------------------------------------------------- Whiteboard|obs:running:3096:moderate |obs:running:3096:moderate | |maint:running:59352:importa | |nt -- You are receiving this mail because: You are on the CC list for the bug.
http://bugzilla.novell.com/show_bug.cgi?id=813448 Swamp Workflow Management <swamp@suse.de> changed: What |Removed |Added ---------------------------------------------------------------------------- Whiteboard|obs:running:3096:moderate |obs:running:3096:moderate |maint:running:59352:importa |maint:running:59352:importa |nt |nt | |maint:released:sle11-sp3:59 | |756 -- You are receiving this mail because: You are on the CC list for the bug.
http://bugzilla.novell.com/show_bug.cgi?id=813448 --- Comment #4 from Swamp Workflow Management <swamp@suse.de> --- SUSE-SU-2014:1619-1: An update that solves three vulnerabilities and has three fixes is now available. Category: security (important) Bug References: 813448,863205,866690,875385,889332,889765 CVE References: CVE-2014-3675,CVE-2014-3676,CVE-2014-3677 Sources used: SUSE Linux Enterprise Software Development Kit 11 SP3 (src): gnu-efi-3.0u-0.7.2 SUSE Linux Enterprise Server 11 SP3 for VMware (src): gnu-efi-3.0u-0.7.2, shim-0.7.318.81ee561d-0.9.2 SUSE Linux Enterprise Server 11 SP3 (src): gnu-efi-3.0u-0.7.2, shim-0.7.318.81ee561d-0.9.2 SUSE Linux Enterprise Desktop 11 SP3 (src): shim-0.7.318.81ee561d-0.9.2 -- You are receiving this mail because: You are on the CC list for the bug.
http://bugzilla.novell.com/show_bug.cgi?id=813448 Swamp Workflow Management <swamp@suse.de> changed: What |Removed |Added ---------------------------------------------------------------------------- Whiteboard|obs:running:3096:moderate |maint:running:59352:importa |maint:running:59352:importa |nt |nt |maint:released:sle11-sp3:59 |maint:released:sle11-sp3:59 |756 |756 | -- You are receiving this mail because: You are on the CC list for the bug.
participants (1)
-
bugzilla_noreply@novell.com