Bug 985567

Summary: update-bootloader should respect Secure Boot Support setting
Product: [openSUSE] openSUSE Tumbleweed Reporter: Andrei Borzenkov <arvidjaar>
Component: BootloaderAssignee: Steffen Winterfeldt <snwint>
Status: RESOLVED FIXED QA Contact: Jiri Srain <jsrain>
Severity: Normal    
Priority: P5 - None CC: jreidinger
Version: Current   
Target Milestone: ---   
Hardware: Other   
OS: Other   
Whiteboard:
Found By: --- Services Priority:
Business Priority: Blocker: ---
Marketing QA Status: --- IT Deployment: ---

Description Andrei Borzenkov 2016-06-19 16:17:50 UTC
Current /usr/lib/bootloader/grub2-efi/install unconditionally calls shim-install if binary is present. This completely ignores Secure Boot Support setting. It should check current setting and skip shim-install if secure boot is disabled.

This is behavior change comparing with old perl-Bootloader where update-bootloader --reinit was guaranteed to have the same effect as YaST.
Comment 1 Josef Reidinger 2016-10-18 13:29:32 UTC
fix is in review https://github.com/openSUSE/perl-bootloader/pull/106
Comment 2 Josef Reidinger 2016-10-18 13:37:21 UTC
merged, so lets close
Comment 3 Bernhard Wiedemann 2016-11-07 17:00:30 UTC
This is an autogenerated message for OBS integration:
This bug (985567) was mentioned in
https://build.opensuse.org/request/show/439060 42.2 / perl-Bootloader
Comment 5 Bernhard Wiedemann 2017-06-19 10:01:25 UTC
This is an autogenerated message for OBS integration:
This bug (985567) was mentioned in
https://build.opensuse.org/request/show/504592 42.2 / perl-Bootloader
Comment 6 Swamp Workflow Management 2017-07-24 16:12:37 UTC
SUSE-RU-2017:1935-1: An update that has two recommended fixes can now be installed.

Category: recommended (low)
Bug References: 1007335,985567
CVE References: 
Sources used:
SUSE Linux Enterprise Server for Raspberry Pi 12-SP2 (src):    perl-Bootloader-0.917-9.3.5
SUSE Linux Enterprise Server 12-SP2 (src):    perl-Bootloader-0.917-9.3.5
SUSE Linux Enterprise Desktop 12-SP2 (src):    perl-Bootloader-0.917-9.3.5
OpenStack Cloud Magnum Orchestration 7 (src):    perl-Bootloader-0.917-9.3.5
Comment 7 Swamp Workflow Management 2017-07-29 13:12:17 UTC
openSUSE-RU-2017:2013-1: An update that has two recommended fixes can now be installed.

Category: recommended (low)
Bug References: 1007335,985567
CVE References: 
Sources used:
openSUSE Leap 42.2 (src):    perl-Bootloader-0.917-2.3.1