Sign Up
Log In
Log In
or
Sign Up
Places
All Projects
Status Monitor
Collapse sidebar
home:gary_lin:branches:Base:System
grub2
grub2.changes
Overview
Repositories
Revisions
Requests
Users
Attributes
Meta
File grub2.changes of Package grub2
------------------------------------------------------------------- Wed Nov 13 01:09:47 UTC 2024 - Michael Chang <mchang@suse.com> - Revert the patches related to BLS support in grub2-mkconfig, as they are not relevant to the current BLS integration and cause issues in older KIWI versions, which actively force it to be enabled by default (bsc#1233196) * 0002-Add-BLS-support-to-grub-mkconfig.patch * 0003-Add-grub2-switch-to-blscfg.patch * 0007-grub-switch-to-blscfg-adapt-to-openSUSE.patch * 0008-blscfg-reading-bls-fragments-if-boot-present.patch * 0009-10_linux-Some-refinement-for-BLS.patch * 0001-10_linux-Do-not-enable-BLSCFG-on-s390-emu.patch ------------------------------------------------------------------- Fri Nov 8 14:42:12 UTC 2024 - Michael Chang <mchang@suse.com> - Fix previous change as the variable has to be set earlier * 0001-10_linux-Do-not-enable-BLSCFG-on-s390-emu.patch ------------------------------------------------------------------- Fri Nov 8 05:21:47 UTC 2024 - Michael Chang <mchang@suse.com> - Do not enable blscfg on s390-emu * 0001-10_linux-Do-not-enable-BLSCFG-on-s390-emu.patch ------------------------------------------------------------------- Wed Nov 6 07:45:21 UTC 2024 - Michael Chang <mchang@suse.com> - Fix xen package contains debug_info files with the .module suffix by moving them to a separate xen-debug subpackage (bsc#1232573) ------------------------------------------------------------------- Fri Nov 1 08:46:36 UTC 2024 - Michael Chang <mchang@suse.com> - Fix grub.cfg is loaded from an unexpected fallback directory instead of the root directory during PXE boot when grub is loaded from the tftp root directory (bsc#1232391) * 0001-kern-main-Fix-cmdpath-in-root-directory.patch * grub2.spec: Refine PPC grub.elf early config to derive root from cmdpath directly, avoiding the unneeded search ------------------------------------------------------------------- Wed Oct 30 08:24:15 UTC 2024 - Michael Chang <mchang@suse.com> - Fix CVE-2024-49504 (bsc#1229163) (bsc#1229164) - Restrict CLI access if the encrypted root device is automatically unlocked by the TPM. LUKS password authentication is required for access to be granted * 0001-cli_lock-Add-build-option-to-block-command-line-inte.patch * 0002-Requiring-authentication-after-tpm-unlock-for-CLI-ac.patch - Obsolete, as CLI access is now locked and granted access no longer requires the previous restrictions * 0002-Restrict-file-access-on-cryptodisk-print.patch * 0003-Restrict-ls-and-auto-file-completion-on-cryptodisk-p.patch - Rediff * 0004-Key-revocation-on-out-of-bound-file-access.patch ------------------------------------------------------------------- Wed Oct 30 00:44:41 UTC 2024 - Michael Chang <mchang@suse.com> - Enable support of Radix, Xive and Radix_gtse on Power (jsc#PED-9881) * 0001-kern-ieee1275-init-Add-IEEE-1275-Radix-support-for-K.patch ------------------------------------------------------------------- Wed Oct 23 06:17:54 UTC 2024 - Michael Chang <mchang@suse.com> - Fix error: /boot/grub2/x86_64-efi/bli.mod not found (bsc#1231591) ------------------------------------------------------------------- Tue Oct 22 07:34:04 UTC 2024 - Michael Chang <mchang@suse.com> - Keep grub packaging and dependencies in the SLE-12 and SLE-15 builds ------------------------------------------------------------------- Fri Oct 18 07:42:27 UTC 2024 - Michael Chang <mchang@suse.com> - Power guest secure boot with key management (jsc#PED-3520) (jsc#PED-9892) * 0001-ieee1275-Platform-Keystore-PKS-Support.patch * 0002-ieee1275-Read-the-DB-and-DBX-secure-boot-variables.patch * 0003-appendedsig-The-creation-of-trusted-and-distrusted-l.patch * 0004-appendedsig-While-verifying-the-kernel-use-trusted-a.patch * 0005-appendedsig-The-grub-command-s-trusted-and-distruste.patch * 0006-appendedsig-documentation.patch * 0007-mkimage-create-new-ELF-Note-for-SBAT.patch * 0008-mkimage-adding-sbat-data-into-sbat-ELF-Note-on-power.patch * grub2.spec : Building signed grub.elf with SBAT metadata - Support for NVMe multipath splitter (jsc#PED-10538) * 0001-ieee1275-support-added-for-multiple-nvme-bootpaths.patch - Deleted path (jsc#PED-10538) * 0001-grub2-Can-t-setup-a-default-boot-device-correctly-on.patch * 0001-grub2-Set-multiple-device-path-for-a-nvmf-boot-devic.patch ------------------------------------------------------------------- Wed Oct 16 13:50:00 UTC 2024 - Michael Chang <mchang@suse.com> - Fix not a directory error from the minix filesystem, as leftover data on disk may contain its magic header so it gets misdetected (bsc#1231604) * grub2-install-fix-not-a-directory-error.patch ------------------------------------------------------------------- Fri Oct 4 06:58:06 UTC 2024 - Michael Chang <mchang@suse.com> - Fix missng menu entry "Start bootloader from a read-only snapshot" by ensuring grub2-snapper-plugin is installed when both snapper and grub2-common are installed (bsc#1231271) ------------------------------------------------------------------- Fri Oct 4 06:49:12 UTC 2024 - Michael Chang <mchang@suse.com> - Fix OOM error in loading loopback file (bsc#1230840) * 0001-tpm-Skip-loopback-image-measurement.patch ------------------------------------------------------------------- Fri Oct 4 06:41:11 UTC 2024 - Michael Chang <mchang@suse.com> - Fix UEFI PXE boot failure on tagged VLAN network (bsc#1230263) * 0001-efinet-Skip-virtual-VLAN-devices-during-card-enumera.patch ------------------------------------------------------------------- Thu Oct 3 08:25:57 UTC 2024 - Michael Chang <mchang@suse.com> - Fix grub screen is filled with artifects from earlier post menu (bsc#1224465) * grub2-SUSE-Add-the-t-hotkey.patch * 0001-fix-grub-screen-filled-with-post-screen-artifects.patch ------------------------------------------------------------------- Wed Aug 21 08:28:17 UTC 2024 - Gary Ching-Pang Lin <glin@suse.com> - Update grub2-s390x-set-hostonly.patch to add the patch header and the description ------------------------------------------------------------------- Tue Aug 13 07:12:58 UTC 2024 - Michael Chang <mchang@suse.com> - Introduces a new package, grub2-x86_64-efi-bls, which includes a straightforward grubbls.efi file. This file can be copied to the EFI System Partition (ESP) along with boot fragments in the Boot Loader Specification (BLS) format * 0001-Streamline-BLS-and-improve-PCR-stability.patch - Fix crash in bli module (bsc#1226497) * 0001-bli-Fix-crash-in-get_part_uuid.patch ------------------------------------------------------------------- Tue Aug 13 02:42:42 UTC 2024 - Michael Chang <mchang@suse.com> - Rework package dependencies: grub2-common now includes common userland utilities and is required by grub2 platform packages. grub2 is now a meta package that pulls in the default platform package. ------------------------------------------------------------------- Fri Aug 2 08:44:40 UTC 2024 - Michael Chang <mchang@suse.com> - Fix btrfs subvolume for platform modules not mounting at runtime when the default subvolume is the topmost root tree (bsc#1228124) * grub2-btrfs-06-subvol-mount.patch - Rediff * 0001-Unify-the-check-to-enable-btrfs-relative-path.patch ------------------------------------------------------------------- Fri Aug 2 02:22:21 UTC 2024 - Gary Ching-Pang Lin <glin@suse.com> - Switch to '--no-hostonly' when creating the ZIPL initrd in the KIWI build environment to avoid some potential issues due to the missing modules * grub2-s390x-set-hostonly.patch ------------------------------------------------------------------- Fri Jul 19 09:59:15 UTC 2024 - Michael Chang <mchang@suse.com> - Fix error in grub-install when root is on tmpfs (bsc#1226100) * 0001-grub-install-bailout-root-device-probing.patch - Fix incorrect Platform tag in rpm header (bsc#1217967) ------------------------------------------------------------------- Fri Jul 5 12:23:06 UTC 2024 - Michael Chang <mchang@suse.com> - Fix error if dash shell script is used (bsc#1226453) * 0007-grub-switch-to-blscfg-adapt-to-openSUSE.patch * 0009-10_linux-Some-refinement-for-BLS.patch - Fix input handling in ppc64le grub2 has high latency (bsc#1223535) * 0001-net-drivers-ieee1275-ofnet-Remove-200-ms-timeout-in-.patch ------------------------------------------------------------------- Fri Jun 7 02:13:08 UTC 2024 - Michael Chang <mchang@suse.com> - Add blscfg support * 0001-blscfg-add-blscfg-module-to-parse-Boot-Loader-Specif.patch * 0002-Add-BLS-support-to-grub-mkconfig.patch * 0003-Add-grub2-switch-to-blscfg.patch * 0004-blscfg-Don-t-root-device-in-emu-builds.patch * 0005-blscfg-check-for-mounted-boot-in-emu.patch * 0006-Follow-the-device-where-blscfg-is-discovered.patch * 0007-grub-switch-to-blscfg-adapt-to-openSUSE.patch * 0008-blscfg-reading-bls-fragments-if-boot-present.patch * 0009-10_linux-Some-refinement-for-BLS.patch ------------------------------------------------------------------- Mon May 20 07:22:09 UTC 2024 - Gary Ching-Pang Lin <glin@suse.com> - Only enable grub-protect for EFI systems * 0001-util-enable-grub-protect-only-for-EFI-systems.patch ------------------------------------------------------------------- Wed May 15 06:19:54 UTC 2024 - Gary Ching-Pang Lin <glin@suse.com> - Update to the latest upstreaming TPM2 patches * 0001-key_protector-Add-key-protectors-framework.patch - Replace 0001-protectors-Add-key-protectors-framework.patch * 0002-tpm2-Add-TPM-Software-Stack-TSS.patch - Merge other TSS patches * 0001-tpm2-Add-TPM2-types-structures-and-command-constants.patch * 0002-tpm2-Add-more-marshal-unmarshal-functions.patch * 0003-tpm2-Implement-more-TPM2-commands.patch * 0003-key_protector-Add-TPM2-Key-Protector.patch - Replace 0003-protectors-Add-TPM2-Key-Protector.patch * 0004-cryptodisk-Support-key-protectors.patch * 0005-util-grub-protect-Add-new-tool.patch * 0001-tpm2-Support-authorized-policy.patch - Replace 0004-tpm2-Support-authorized-policy.patch * 0001-tpm2-Add-extra-RSA-SRK-types.patch * 0001-tpm2-Implement-NV-index.patch - Replace 0001-protectors-Implement-NV-index.patch * 0002-cryptodisk-Fallback-to-passphrase.patch * 0003-cryptodisk-wipe-out-the-cached-keys-from-protectors.patch * 0004-diskfilter-look-up-cryptodisk-devices-first.patch - Refresh affected patches * 0001-Improve-TPM-key-protection-on-boot-interruptions.patch * grub2-bsc1220338-key_protector-implement-the-blocklist.patch - New manpage for grub2-protect ------------------------------------------------------------------- Wed May 15 00:46:14 UTC 2024 - Michael Chang <mchang@suse.com> - Fix error in /etc/grub.d/20_linux_xen: file_is_not_sym not found, renamed to file_is_not_xen_garbage (bsc#1224226) * grub2-fix-menu-in-xen-host-server.patch ------------------------------------------------------------------- Thu May 2 07:48:30 UTC 2024 - Michael Chang <mchang@suse.com> - Fix gcc error with CFLAGS=-Og * grub2-grubenv-in-btrfs-header.patch ------------------------------------------------------------------- Fri Apr 19 21:50:53 UTC 2024 - Giacomo Comes <gcomes.obs@gmail.com> - remove deprecated file 20_memtest86+ * a similar file is provided by the package memtest86+ ------------------------------------------------------------------- Thu Apr 11 02:55:05 UTC 2024 - Gary Ching-Pang Lin <glin@suse.com> - Fix the compatibility issue with bash-completion 2.12 (bsc#1221849) * 0001-util-bash-completion-Fix-for-bash-completion-2.12.patch ------------------------------------------------------------------- Fri Mar 29 01:58:00 UTC 2024 - Michael Chang <mchang@suse.com> - Fix os name is used for root file system mount (bsc#1220949) * 0001-10_linux-Ensure-persistence-of-root-file-system-moun.patch ------------------------------------------------------------------- Wed Mar 27 04:51:33 UTC 2024 - Michael Chang <mchang@suse.com> - Fix LPAR falls into grub shell after installation with lvm (bsc#1221866) * 0001-ofdisk-Enhance-canonical-path-handling-for-bootpath.patch ------------------------------------------------------------------- Mon Mar 25 02:20:38 UTC 2024 - Michael Chang <mchang@suse.com> - Correct the erroneous sequence in determining GRUB_FS and GRUB_DEVICE (bsc#1221904) * grub2-pass-corret-root-for-nfsroot.patch ------------------------------------------------------------------- Fri Mar 22 06:01:13 UTC 2024 - Michael Chang <mchang@suse.com> - Fix memdisk becomes the default boot entry, resolving no graphic display device error in guest vnc console (bsc#1221779) * grub2-xen-pv-firmware.cfg ------------------------------------------------------------------- Wed Mar 20 06:16:45 UTC 2024 - Michael Chang <mchang@suse.com> - Cleanup spec file to adhere to update-bootloader-rpm-macros definition entirely (bsc#1218241) ------------------------------------------------------------------- Tue Mar 19 07:08:02 UTC 2024 - Gary Ching-Pang Lin <glin@suse.com> - Add grub2-bsc1220338-key_protector-implement-the-blocklist.patch to implement a blocklist in the key protector and check the unwanted UEFI variables (bsc#1220338) ------------------------------------------------------------------- Mon Mar 4 08:57:36 UTC 2024 - Gary Ching-Pang Lin <glin@suse.com> - Update grub2-change-bash-completion-dir.patch to support bash completion correctly (bsc#1218875) - Drop grub2-bash-completion-2.12.patch since the have() function is not used in those scripts anymore ------------------------------------------------------------------- Fri Mar 1 12:44:37 UTC 2024 - Giacomo Comes <gcomes.obs@gmail.com> - disable the file 20_memtest86+ * added a deprecation note in the header ------------------------------------------------------------------- Thu Feb 29 10:12:12 UTC 2024 - Dr. Werner Fink <werner@suse.de> - Add patch grub2-bash-completion-2.12.patch The shell function have() had become deprecated with 2.11 and had been removed from 2.12 which is now providing the shell function _comp_have_command() (boo#1220626) ------------------------------------------------------------------- Thu Feb 22 04:19:21 UTC 2024 - Michael Chang <mchang@suse.com> - Fix grub.xen memdisk script doesn't look for /boot/grub/grub.cfg (bsc#1219248) (bsc#1181762) * grub2-xen-pv-firmware.cfg * 0001-disk-Optimize-disk-iteration-by-moving-memdisk-to-th.patch ------------------------------------------------------------------- Sat Feb 17 06:59:55 UTC 2024 - Michael Chang <mchang@suse.com> - Fix PowerPC grub loads 5 to 10 minutes slower on SLE-15-SP5 compared to SLE-15-SP2 (bsc#1217102) * add 0001-ofdisk-enhance-boot-time-by-focusing-on-boot-disk-re.patch * add 0002-ofdisk-add-early_log-support.patch ------------------------------------------------------------------- Wed Feb 7 18:33:58 UTC 2024 - Bernhard Wiedemann <bwiedemann@suse.com> - Sort tar file order for reproducible builds ------------------------------------------------------------------- Tue Feb 6 07:19:27 UTC 2024 - Michael Chang <mchang@suse.com> - Fix build error on gcc-14 (bsc#1218949) * 0001-squash-ieee1275-ofpath-enable-NVMeoF-logical-device-.patch ------------------------------------------------------------------- Mon Jan 29 06:24:11 UTC 2024 - Michael Chang <mchang@suse.com> - Remove magic number header field check on arm64 (bsc#1218783) * 0001-loader-arm64-efi-linux-Remove-magic-number-header-fi.patch ------------------------------------------------------------------- Tue Jan 23 04:56:58 UTC 2024 - Michael Chang <mchang@suse.com> - Reinstate the verification for a non-zero total entry count to skip unmapped data blocks (bsc#1218864) * 0001-fs-xfs-always-verify-the-total-number-of-entries-is-.patch - Removed temporary fix as reverting it will cause a different XFS parser bug * 0001-Revert-fs-xfs-Fix-XFS-directory-extent-parsing.patch ------------------------------------------------------------------- Sat Jan 20 20:08:34 UTC 2024 - Giacomo Comes <gcomes.obs@gmail.com> - allow to boot memtest86 if stored in /usr/lib/memtest86+ * SR#1071109 can then work ------------------------------------------------------------------- Wed Jan 17 03:32:48 UTC 2024 - Michael Chang <mchang@suse.com> - Resolved XFS regression leading to the "not a correct XFS inode" error by temporarily reverting the problematic commit (bsc#1218864) * 0001-Revert-fs-xfs-Fix-XFS-directory-extent-parsing.patch ------------------------------------------------------------------- Wed Jan 10 08:13:00 UTC 2024 - Michael Chang <mchang@suse.com> - Version bump to 2.12 (PED-5589) * Added: - grub-2.12.tar.xz - fix_no_extra_deps_in_release_tarball.patch * Removed: - grub-2.12~rc1.tar.xz * Patch dropped as it merged into new version: - 0001-disk-cryptodisk-Fix-missing-change-when-updating-to-.patch - 0001-fs-btrfs-Zero-file-data-not-backed-by-extents.patch - 0001-fs-ntfs-Fix-an-OOB-write-when-parsing-the-ATTRIBUTE_.patch - 0002-fs-ntfs-Fix-an-OOB-read-when-reading-data-from-the-r.patch - 0003-fs-ntfs-Fix-an-OOB-read-when-parsing-directory-entri.patch - 0004-fs-ntfs-Fix-an-OOB-read-when-parsing-bitmaps-for-ind.patch - 0005-fs-ntfs-Fix-an-OOB-read-when-parsing-a-volume-label.patch - 0006-fs-ntfs-Make-code-more-readable.patch - 0001-kern-ieee1275-init-Restrict-high-memory-in-presence-.patch - 0001-fs-xfs-Incorrect-short-form-directory-data-boundary-.patch - 0002-fs-xfs-Fix-XFS-directory-extent-parsing.patch - 0003-fs-xfs-add-large-extent-counters-incompat-feature-su.patch - 0001-mkstandalone-ensure-stable-timestamps-for-generated-.patch - 0002-mkstandalone-ensure-deterministic-tar-file-creation-.patch * Patch adjusted for the updated base version: - use-grub2-as-a-package-name.patch - grub2-s390x-04-grub2-install.patch - grub2-btrfs-04-grub2-install.patch - grub2-ppc64le-disable-video.patch - 0002-AUDIT-0-http-boot-tracker-bug.patch - 0001-Unify-the-check-to-enable-btrfs-relative-path.patch - 0003-Handle-multi-arch-64-on-32-boot-in-linuxefi-loader.patch - 0004-Add-suport-for-signing-grub-with-an-appended-signatu.patch - 0016-grub-install-support-embedding-x509-certificates.patch - 0021-appended-signatures-documentation.patch - 0022-ieee1275-enter-lockdown-based-on-ibm-secure-boot.patch - safe_tpm_pcr_snapshot.patch ------------------------------------------------------------------- Wed Jan 3 10:05:50 UTC 2024 - Michael Chang <mchang@suse.com> - grub2.spec: Add ofnet to signed grub.elf to support powerpc net boot installation when secure boot is enabled (bsc#1217761) - Improved check for disk device when looking for PReP partition * 0004-Introduce-prep_load_env-command.patch ------------------------------------------------------------------- Thu Nov 30 09:41:10 UTC 2023 - Michael Chang <mchang@suse.com> - Fix reproducible build for grub.xen (bsc#1217619) * 0001-mkstandalone-ensure-stable-timestamps-for-generated-.patch * 0002-mkstandalone-ensure-deterministic-tar-file-creation-.patch ------------------------------------------------------------------- Wed Nov 22 09:25:23 UTC 2023 - Michael Chang <mchang@suse.com> - Fix unattended boot with TPM2 allows downgrading kernel and rootfs, also enhancing the overall security posture (bsc#1216680) * 0001-Improve-TPM-key-protection-on-boot-interruptions.patch * 0002-Restrict-file-access-on-cryptodisk-print.patch * 0003-Restrict-ls-and-auto-file-completion-on-cryptodisk-p.patch * 0004-Key-revocation-on-out-of-bound-file-access.patch ------------------------------------------------------------------- Tue Nov 21 06:52:08 UTC 2023 - Michael Chang <mchang@suse.com> - grub2.spec: Fix openQA test failure in SLE-15-SP6 due to missing font in memdisk ------------------------------------------------------------------- Thu Nov 16 06:39:46 UTC 2023 - Gary Ching-Pang Lin <glin@suse.com> - Update the TPM2 patches to skip the persistent SRK handle if not specified and improve the error messages + 0003-protectors-Add-TPM2-Key-Protector.patch + 0005-util-grub-protect-Add-new-tool.patch + 0004-tpm2-Support-authorized-policy.patch ------------------------------------------------------------------- Tue Nov 14 07:52:41 UTC 2023 - Michael Chang <mchang@suse.com> - Fix XFS regression in 2.12~rc1 and support large extent counters * 0001-fs-xfs-Incorrect-short-form-directory-data-boundary-.patch * 0002-fs-xfs-Fix-XFS-directory-extent-parsing.patch * 0003-fs-xfs-add-large-extent-counters-incompat-feature-su.patch ------------------------------------------------------------------- Mon Oct 30 07:15:17 UTC 2023 - Michael Chang <mchang@suse.com> - Fix fadump not working with 1GB/2GB/4GB LMB[P10] (bsc#1216253) * 0001-kern-ieee1275-init-Restrict-high-memory-in-presence-.patch ------------------------------------------------------------------- Thu Oct 26 06:04:54 UTC 2023 - Gary Ching-Pang Lin <glin@suse.com> - Fix a potential error when appending multiple keys into the synthesized initrd * Fix-the-size-calculation-for-the-synthesized-initrd.patch ------------------------------------------------------------------- Wed Oct 25 01:56:09 UTC 2023 - Michael Chang <mchang@suse.com> - Fix Xen chainloding error of no matching file path found (bsc#1216081) * grub2-efi-chainload-harder.patch ------------------------------------------------------------------- Mon Oct 23 13:11:45 UTC 2023 - Michael Chang <mchang@suse.com> - Use grub-tpm2 token to unlock keyslots to make the unsealing process more efficient and secure. * 0001-luks2-Use-grub-tpm2-token-for-TPM2-protected-volume-.patch ------------------------------------------------------------------- Mon Oct 16 08:05:03 UTC 2023 - Michael Chang <mchang@suse.com> - Fix detection of encrypted disk's uuid in powerpc to cope with logical disks when signed image installation is specified (bsc#1216075) * 0003-grub-install-support-prep-environment-block.patch - grub2.spec: Add support to unlocking multiple encrypted disks in signed grub.elf image for logical disks ------------------------------------------------------------------- Fri Oct 6 05:06:59 UTC 2023 - Michael Chang <mchang@suse.com> - Fix CVE-2023-4692 (bsc#1215935) - Fix CVE-2023-4693 (bsc#1215936) * 0001-fs-ntfs-Fix-an-OOB-write-when-parsing-the-ATTRIBUTE_.patch * 0002-fs-ntfs-Fix-an-OOB-read-when-reading-data-from-the-r.patch * 0003-fs-ntfs-Fix-an-OOB-read-when-parsing-directory-entri.patch * 0004-fs-ntfs-Fix-an-OOB-read-when-parsing-bitmaps-for-ind.patch * 0005-fs-ntfs-Fix-an-OOB-read-when-parsing-a-volume-label.patch * 0006-fs-ntfs-Make-code-more-readable.patch - Bump upstream SBAT generation to 4 ------------------------------------------------------------------- Thu Oct 5 09:49:54 UTC 2023 - Fabian Vogt <fvogt@suse.com> - Add patch to fix reading files from btrfs with "implicit" holes: * 0001-fs-btrfs-Zero-file-data-not-backed-by-extents.patch ------------------------------------------------------------------- Mon Oct 2 14:30:49 UTC 2023 - Gary Ching-Pang Lin <glin@suse.com> - Update the TPM 2.0 patches to support more RSA and ECC algorithms * 0002-tpm2-Add-TPM-Software-Stack-TSS.patch * 0003-protectors-Add-TPM2-Key-Protector.patch * 0005-util-grub-protect-Add-new-tool.patch ------------------------------------------------------------------- Mon Oct 2 08:11:56 UTC 2023 - Michael Chang <mchang@suse.com> - Remove build require for gcc-32bit, target platform didn't rely on libgcc function shipped with compiler but rather using functions supplied in grub directly. ------------------------------------------------------------------- Fri Sep 29 08:38:13 UTC 2023 - Fabian Vogt <fvogt@suse.com> - Add BuildIgnore to break cycle with the branding package ------------------------------------------------------------------- Wed Sep 27 03:37:10 UTC 2023 - Gary Ching-Pang Lin <glin@suse.com> - Only build with fde-tpm-helper-rpm-macros for the architectures supporting the newer UEFI and TPM 2.0. * Also correct the location of %fde_tpm_update_requires ------------------------------------------------------------------- Wed Sep 20 07:54:05 UTC 2023 - Michael Chang <mchang@suse.com> - Fix a boot delay regression in PowerPC PXE boot (bsc#1201300) * 0001-ieee1275-ofdisk-retry-on-open-and-read-failure.patch ------------------------------------------------------------------- Tue Sep 19 06:31:43 UTC 2023 - Gary Ching-Pang Lin <glin@suse.com> - Add the new BuildRequires for EFI builds for the better FDE support: fde-tpm-helper-rpm-macros + Also add the the macros to %post and %posttrans ------------------------------------------------------------------- Mon Sep 11 13:17:20 UTC 2023 - Chester Lin <clin@suse.com> - Correct the type of allocated EFI pages for ARM64 kernel (bsc#1215151) * arm64-Use-proper-memory-type-for-kernel-allocation.patch ------------------------------------------------------------------- Thu Aug 31 19:09:33 UTC 2023 - Andreas Schwab <schwab@suse.de> - grub2-mkconfig-riscv64.patch: Handle riscv64 in mkconfig ------------------------------------------------------------------- Wed Aug 16 06:59:35 UTC 2023 - Gary Ching-Pang Lin <glin@suse.com> - Implement NV index mode for TPM 2.0 key protector 0001-protectors-Implement-NV-index.patch - Fall back to passphrase mode when the key protector fails to unlock the disk 0002-cryptodisk-Fallback-to-passphrase.patch - Wipe out the cached key cleanly 0003-cryptodisk-wipe-out-the-cached-keys-from-protectors.patch - Make diskfiler to look up cryptodisk devices first 0004-diskfilter-look-up-cryptodisk-devices-first.patch ------------------------------------------------------------------- Thu Aug 3 03:24:41 UTC 2023 - Gary Ching-Pang Lin <glin@suse.com> - Change the bash-completion directory (bsc#1213855) * grub2-change-bash-completion-dir.patch ------------------------------------------------------------------- Thu Jul 27 06:16:36 UTC 2023 - Michael Chang <mchang@suse.com> - Version bump to 2.12~rc1 (PED-5589) * Added: - grub-2.12~rc1.tar.xz * Removed: - grub-2.06.tar.xz * Patch dropped merged by new version: - grub2-GRUB_CMDLINE_LINUX_RECOVERY-for-recovery-mode.patch - grub2-s390x-02-kexec-module-added-to-emu.patch - grub2-efi-chainloader-root.patch - grub2-Fix-incorrect-netmask-on-ppc64.patch - 0001-osdep-Introduce-include-grub-osdep-major.h-and-use-i.patch - 0002-osdep-linux-hostdisk-Use-stat-instead-of-udevadm-for.patch - 0002-net-read-bracketed-ipv6-addrs-and-port-numbers.patch - grub2-s390x-10-keep-network-at-kexec.patch - 0001-Fix-build-error-in-binutils-2.36.patch - 0001-emu-fix-executable-stack-marking.patch - 0046-squash-verifiers-Move-verifiers-API-to-kernel-image.patch - 0001-30_uefi-firmware-fix-printf-format-with-null-byte.patch - 0001-tpm-Pass-unknown-error-as-non-fatal-but-debug-print-.patch - 0001-Filter-out-POSIX-locale-for-translation.patch - 0001-disk-diskfilter-Use-nodes-in-logical-volume-s-segmen.patch - 0001-fs-xfs-Fix-unreadable-filesystem-with-v4-superblock.patch - 0001-fs-btrfs-Make-extent-item-iteration-to-handle-gaps.patch - 0001-grub-mkconfig-restore-umask-for-grub.cfg.patch - 0001-ieee1275-Drop-HEAP_MAX_ADDR-and-HEAP_MIN_SIZE-consta.patch - 0002-ieee1275-claim-more-memory.patch - 0003-ieee1275-request-memory-with-ibm-client-architecture.patch - 0001-RISC-V-Adjust-march-flags-for-binutils-2.38.patch - 0001-mkimage-Fix-dangling-pointer-may-be-used-error.patch - 0002-Fix-Werror-array-bounds-array-subscript-0-is-outside.patch - 0003-reed_solomon-Fix-array-subscript-0-is-outside-array-.patch - 0001-powerpc-do-CAS-in-a-more-compatible-way.patch - 0001-libc-config-merge-from-glibc.patch - 0001-video-Remove-trailing-whitespaces.patch - 0002-loader-efi-chainloader-Simplify-the-loader-state.patch - 0003-commands-boot-Add-API-to-pass-context-to-loader.patch - 0004-loader-efi-chainloader-Use-grub_loader_set_ex.patch - 0005-kern-efi-sb-Reject-non-kernel-files-in-the-shim_lock.patch - 0006-kern-file-Do-not-leak-device_name-on-error-in-grub_f.patch - 0007-video-readers-png-Abort-sooner-if-a-read-operation-f.patch - 0008-video-readers-png-Refuse-to-handle-multiple-image-he.patch - 0009-video-readers-png-Drop-greyscale-support-to-fix-heap.patch - 0010-video-readers-png-Avoid-heap-OOB-R-W-inserting-huff-.patch - 0011-video-readers-png-Sanity-check-some-huffman-codes.patch - 0012-video-readers-jpeg-Abort-sooner-if-a-read-operation-.patch - 0013-video-readers-jpeg-Do-not-reallocate-a-given-huff-ta.patch - 0014-video-readers-jpeg-Refuse-to-handle-multiple-start-o.patch - 0015-video-readers-jpeg-Block-int-underflow-wild-pointer-.patch - 0016-normal-charset-Fix-array-out-of-bounds-formatting-un.patch - 0017-net-ip-Do-IP-fragment-maths-safely.patch - 0018-net-netbuff-Block-overly-large-netbuff-allocs.patch - 0019-net-dns-Fix-double-free-addresses-on-corrupt-DNS-res.patch - 0020-net-dns-Don-t-read-past-the-end-of-the-string-we-re-.patch - 0021-net-tftp-Prevent-a-UAF-and-double-free-from-a-failed.patch - 0022-net-tftp-Avoid-a-trivial-UAF.patch - 0023-net-http-Do-not-tear-down-socket-if-it-s-already-bee.patch - 0024-net-http-Fix-OOB-write-for-split-http-headers.patch - 0025-net-http-Error-out-on-headers-with-LF-without-CR.patch - 0026-fs-f2fs-Do-not-read-past-the-end-of-nat-journal-entr.patch - 0027-fs-f2fs-Do-not-read-past-the-end-of-nat-bitmap.patch - 0028-fs-f2fs-Do-not-copy-file-names-that-are-too-long.patch - 0029-fs-btrfs-Fix-several-fuzz-issues-with-invalid-dir-it.patch - 0030-fs-btrfs-Fix-more-ASAN-and-SEGV-issues-found-with-fu.patch - 0031-fs-btrfs-Fix-more-fuzz-issues-related-to-chunks.patch - 0032-Use-grub_loader_set_ex-for-secureboot-chainloader.patch - 0001-luks2-Add-debug-message-to-align-with-luks-and-geli-.patch - 0002-cryptodisk-Refactor-to-discard-have_it-global.patch - 0003-cryptodisk-Return-failure-in-cryptomount-when-no-cry.patch - 0004-cryptodisk-Improve-error-messaging-in-cryptomount-in.patch - 0005-cryptodisk-Improve-cryptomount-u-error-message.patch - 0006-cryptodisk-Add-infrastructure-to-pass-data-from-cryp.patch - 0007-cryptodisk-Refactor-password-input-out-of-crypto-dev.patch - 0008-cryptodisk-Move-global-variables-into-grub_cryptomou.patch - 0009-cryptodisk-Improve-handling-of-partition-name-in-cry.patch - 0001-crytodisk-fix-cryptodisk-module-looking-up.patch - 0001-devmapper-getroot-Have-devmapper-recognize-LUKS2.patch - 0002-devmapper-getroot-Set-up-cheated-LUKS2-cryptodisk-mo.patch - 0003-disk-cryptodisk-When-cheatmounting-use-the-sector-in.patch - 0004-normal-menu-Don-t-show-Booting-s-msg-when-auto-booti.patch - 0005-EFI-suppress-the-Welcome-to-GRUB-message-in-EFI-buil.patch - 0006-EFI-console-Do-not-set-colorstate-until-the-first-te.patch - 0007-EFI-console-Do-not-set-cursor-until-the-first-text-o.patch - efi-set-variable-with-attrs.patch - 0001-mm-Allow-dynamically-requesting-additional-memory-re.patch - 0002-kern-efi-mm-Always-request-a-fixed-number-of-pages-o.patch - 0003-kern-efi-mm-Extract-function-to-add-memory-regions.patch - 0004-kern-efi-mm-Pass-up-errors-from-add_memory_regions.patch - 0005-kern-efi-mm-Implement-runtime-addition-of-pages.patch - 0001-kern-efi-mm-Enlarge-the-default-heap-size.patch - 0002-mm-Defer-the-disk-cache-invalidation.patch - 0001-grub-install-set-point-of-no-return-for-powerpc-ieee1275.patch - 0001-commands-efi-tpm-Refine-the-status-of-log-event.patch - 0002-commands-efi-tpm-Use-grub_strcpy-instead-of-grub_mem.patch - 0003-efi-tpm-Add-EFI_CC_MEASUREMENT_PROTOCOL-support.patch - 0001-ibmvtpm-Add-support-for-trusted-boot-using-a-vTPM-2..patch - 0002-ieee1275-implement-vec5-for-cas-negotiation.patch - 0001-font-Reject-glyphs-exceeds-font-max_glyph_width-or-f.patch - 0002-font-Fix-size-overflow-in-grub_font_get_glyph_intern.patch - 0003-font-Fix-several-integer-overflows-in-grub_font_cons.patch - 0004-font-Remove-grub_font_dup_glyph.patch - 0005-font-Fix-integer-overflow-in-ensure_comb_space.patch - 0006-font-Fix-integer-overflow-in-BMP-index.patch - 0007-font-Fix-integer-underflow-in-binary-search-of-char-.patch - 0008-fbutil-Fix-integer-overflow.patch - 0009-font-Fix-an-integer-underflow-in-blit_comb.patch - 0010-font-Harden-grub_font_blit_glyph-and-grub_font_blit_.patch - 0011-font-Assign-null_font-to-glyphs-in-ascii_font_glyph.patch - 0012-normal-charset-Fix-an-integer-overflow-in-grub_unico.patch - 0001-fs-btrfs-Use-full-btrfs-bootloader-area.patch - 0001-ieee1275-Increase-initially-allocated-heap-from-1-4-.patch - 0001-grub-core-modify-sector-by-sysfs-as-disk-sector.patch - grub2-add-module-for-boot-loader-interface.patch - 0001-ieee1275-Further-increase-initially-allocated-heap-f.patch - 0002-tpm-Disable-tpm-verifier-if-tpm-is-not-present.patch - 0001-RISC-V-Handle-R_RISCV_CALL_PLT-reloc.patch - 0001-loader-linux-Ensure-the-newc-pathname-is-NULL-termin.patch - 0001-kern-ieee1275-init-Convert-plain-numbers-to-constant.patch - 0002-kern-ieee1275-init-Extended-support-in-Vec5.patch - 0001-fs-ext2-Ignore-checksum-seed-incompat-feature.patch - 0001-fs-ext2-Ignore-the-large_dir-incompat-feature.patch * Patch modified to new base version: - use-grub2-as-a-package-name.patch - grub2-fix-menu-in-xen-host-server.patch - grub2-secureboot-add-linuxefi.patch - grub2-secureboot-chainloader.patch - grub2-s390x-01-Changes-made-and-files-added-in-order-to-allow-s390x.patch - grub2-s390x-03-output-7-bit-ascii.patch - grub2-s390x-04-grub2-install.patch - grub2-use-rpmsort-for-version-sorting.patch - grub2-getroot-treat-mdadm-ddf-as-simple-device.patch - grub2-grubenv-in-btrfs-header.patch - grub2-commands-introduce-read_file-subcommand.patch - grub2-efi-chainload-harder.patch - grub2-emu-4-all.patch - grub2-util-30_os-prober-multiple-initrd.patch - grub2-install-fix-not-a-directory-error.patch - grub-install-force-journal-draining-to-ensure-data-i.patch - grub2-btrfs-01-add-ability-to-boot-from-subvolumes.patch - grub2-btrfs-04-grub2-install.patch - grub2-btrfs-05-grub2-mkconfig.patch - grub2-btrfs-06-subvol-mount.patch - grub2-efi-xen-chainload.patch - grub2-efi-xen-cmdline.patch - grub2-efi-xen-removable.patch - grub2-suse-remove-linux-root-param.patch - grub2-ppc64le-disable-video.patch - grub2-install-remove-useless-check-PReP-partition-is-empty.patch - 0004-efinet-UEFI-IPv6-PXE-support.patch - 0007-efinet-Setting-network-from-UEFI-device-path.patch - 0008-efinet-Setting-DNS-server-from-UEFI-protocol.patch - 0001-add-support-for-UEFI-network-protocols.patch - grub2-mkconfig-default-entry-correction.patch - grub2-s390x-11-secureboot.patch - grub2-secureboot-install-signed-grub.patch - grub2-gfxmenu-support-scrolling-menu-entry-s-text.patch - 0002-cmdline-Provide-cmdline-functions-as-module.patch - 0001-efi-linux-provide-linux-command.patch - 0001-Add-support-for-Linux-EFI-stub-loading-on-aarch64.patch - 0004-arm-arm64-loader-Better-memory-allocation-and-error-.patch - 0002-Arm-check-for-the-PE-magic-for-the-compiled-arch.patch - 0001-Factor-out-grub_efi_linux_boot.patch - 0003-Handle-multi-arch-64-on-32-boot-in-linuxefi-loader.patch - 0015-test_asn1-test-module-for-libtasn1.patch - 0021-appended-signatures-documentation.patch - 0022-ieee1275-enter-lockdown-based-on-ibm-secure-boot.patch - 0003-grub-install-support-prep-environment-block.patch - 0004-Introduce-prep_load_env-command.patch - 0001-grub-install-bailout-root-device-probing.patch - 0001-install-fix-software-raid1-on-esp.patch - 0001-ofdisk-improve-boot-time-by-lookup-boot-disk-first.patch - 0001-protectors-Add-key-protectors-framework.patch - 0002-tpm2-Add-TPM-Software-Stack-TSS.patch - 0004-cryptodisk-Support-key-protectors.patch - 0008-linuxefi-Use-common-grub_initrd_load.patch - 0009-Add-crypttab_entry-to-obviate-the-need-to-input-pass.patch - grub-read-pcr.patch - tpm-record-pcrs.patch - 0001-clean-up-crypttab-and-linux-modules-dependency.patch * Patch refreshed: - rename-grub-info-file-to-grub2.patch - grub2-linux.patch - grub2-simplefb.patch - grub2-ppc-terminfo.patch - grub2-pass-corret-root-for-nfsroot.patch - grub2-efi-HP-workaround.patch - grub2-secureboot-no-insmod-on-sb.patch - grub2-linuxefi-fix-boot-params.patch - grub2-s390x-05-grub2-mkconfig.patch - grub2-xen-linux16.patch - grub2-efi-disable-video-cirrus-and-bochus.patch - grub2-vbe-blacklist-preferred-1440x900x32.patch - grub2-mkconfig-aarch64.patch - grub2-menu-unrestricted.patch - grub2-mkconfig-arm.patch - grub2-s390x-06-loadparm.patch - grub2-s390x-07-add-image-param-for-zipl-setup.patch - grub2-s390x-08-workaround-part-to-disk.patch - grub2-diskfilter-support-pv-without-metadatacopies.patch - grub2-getroot-support-nvdimm.patch - grub2-s390x-skip-zfcpdump-image.patch - grub2-btrfs-02-export-subvolume-envvars.patch - grub2-btrfs-03-follow_default.patch - grub2-btrfs-07-subvol-fallback.patch - grub2-btrfs-08-workaround-snapshot-menu-default-entry.patch - grub2-btrfs-09-get-default-subvolume.patch - grub2-btrfs-10-config-directory.patch - grub2-efi-xen-cfg-unquote.patch - grub2-Add-hidden-menu-entries.patch - grub2-SUSE-Add-the-t-hotkey.patch - grub2-ppc64le-memory-map.patch - grub2-ppc64-cas-reboot-support.patch - grub2-ppc64-cas-new-scope.patch - grub2-ppc64-cas-fix-double-free.patch - 0003-bootp-New-net_bootp6-command.patch - 0005-grub.texi-Add-net_bootp6-doument.patch - 0006-bootp-Add-processing-DHCPACK-packet-from-HTTP-Boot.patch - 0012-tpm-Build-tpm-as-module.patch - 0002-AUDIT-0-http-boot-tracker-bug.patch - grub2-btrfs-help-on-snapper-rollback.patch - grub2-video-limit-the-resolution-for-fixed-bimap-font.patch - 0001-kern-mm.c-Make-grub_calloc-inline.patch - 0001-Unify-the-check-to-enable-btrfs-relative-path.patch - 0002-arm64-make-sure-fdt-has-address-cells-and-size-cells.patch - 0003-Make-grub_error-more-verbose.patch - 0001-ieee1275-Avoiding-many-unecessary-open-close.patch - 0001-Workaround-volatile-efi-boot-variable.patch - 0001-templates-Follow-the-path-of-usr-merged-kernel-confi.patch - 0004-Try-to-pick-better-locations-for-kernel-and-initrd.patch - 0004-Add-suport-for-signing-grub-with-an-appended-signatu.patch - 0005-docs-grub-Document-signing-grub-under-UEFI.patch - 0006-docs-grub-Document-signing-grub-with-an-appended-sig.patch - 0007-dl-provide-a-fake-grub_dl_set_persistent-for-the-emu.patch - 0008-pgp-factor-out-rsa_pad.patch - 0010-posix_wrap-tweaks-in-preparation-for-libtasn1.patch - 0011-libtasn1-import-libtasn1-4.18.0.patch - 0014-libtasn1-compile-into-asn1-module.patch - 0016-grub-install-support-embedding-x509-certificates.patch - 0017-appended-signatures-import-GNUTLS-s-ASN.1-descriptio.patch - 0018-appended-signatures-parse-PKCS-7-signedData-and-X.50.patch - 0019-appended-signatures-support-verifying-appended-signa.patch - 0020-appended-signatures-verification-tests.patch - 0001-grub-install-Add-SUSE-signed-image-support-for-power.patch - 0002-Add-grub_disk_write_tail-helper-function.patch - 0005-export-environment-at-start-up.patch - 0001-Fix-infinite-boot-loop-on-headless-system-in-qemu.patch - 0003-protectors-Add-TPM2-Key-Protector.patch - 0005-util-grub-protect-Add-new-tool.patch - 0010-templates-import-etc-crypttab-to-grub.cfg.patch - grub-install-record-pcrs.patch - safe_tpm_pcr_snapshot.patch - 0002-Mark-environmet-blocks-as-used-for-image-embedding.patch - 0001-grub2-Set-multiple-device-path-for-a-nvmf-boot-devic.patch - 0002-discard-cached-key-before-entering-grub-shell-and-ed.patch - 0001-ieee1275-ofdisk-retry-on-open-and-read-failure.patch - 0002-Restrict-cryptsetup-key-file-permission-for-better-s.patch * New: - 0001-xen_boot-add-missing-grub_arch_efi_linux_load_image_.patch - 0001-font-Try-memdisk-fonts-with-the-same-name.patch - 0001-Make-grub.cfg-compatible-to-old-binaries.patch - 0001-disk-cryptodisk-Fix-missing-change-when-updating-to-.patch * Embedding fonts in the grub.efi to get signed for secure boot ------------------------------------------------------------------- Wed Jul 26 03:04:25 UTC 2023 - Michael Chang <mchang@suse.com> - Fix error message "unknown command tpm_record_pcrs" with encrypted boot and no tpm device present (bsc#1213547) * 0002-tpm-Disable-tpm-verifier-if-tpm-is-not-present.patch ------------------------------------------------------------------- Tue May 30 11:03:54 UTC 2023 - Dirk Müller <dmueller@suse.com> - add 0001-fs-ext2-Ignore-checksum-seed-incompat-feature.patch, 0001-fs-ext2-Ignore-the-large_dir-incompat-feature.patch: * support more featureful extX filesystems (backport from upstream git) ------------------------------------------------------------------- Thu May 4 06:58:12 UTC 2023 - Michael Chang <mchang@suse.com> - grub2-once: Fix 'sh: terminal_output: command not found' error (bsc#1204563) ------------------------------------------------------------------- Wed Apr 26 07:22:03 UTC 2023 - Gary Ching-Pang Lin <glin@suse.com> - Exclude the deprecated EFI location, /usr/lib64/efi/, from Tumbleweed and ALP ------------------------------------------------------------------- Fri Apr 21 07:53:30 UTC 2023 - Gary Ching-Pang Lin <glin@suse.com> - Update TPM 2.0 key unsealing patches * Add the new upstreaming patches 0001-protectors-Add-key-protectors-framework.patch 0002-tpm2-Add-TPM-Software-Stack-TSS.patch 0003-protectors-Add-TPM2-Key-Protector.patch 0004-cryptodisk-Support-key-protectors.patch 0005-util-grub-protect-Add-new-tool.patch * Add the authorized policy patches based on the upstreaming patches 0001-tpm2-Add-TPM2-types-structures-and-command-constants.patch 0002-tpm2-Add-more-marshal-unmarshal-functions.patch 0003-tpm2-Implement-more-TPM2-commands.patch 0004-tpm2-Support-authorized-policy.patch * Drop the old patches 0010-protectors-Add-key-protectors-framework.patch 0011-tpm2-Add-TPM-Software-Stack-TSS.patch 0012-protectors-Add-TPM2-Key-Protector.patch 0013-cryptodisk-Support-key-protectors.patch 0014-util-grub-protect-Add-new-tool.patch fix-tpm2-build.patch tpm-protector-dont-measure-sealed-key.patch tpm-protector-export-secret-key.patch grub-unseal-debug.patch 0001-tpm2-adjust-the-input-parameters-of-TPM2_EvictContro.patch 0002-tpm2-declare-the-input-arguments-of-TPM2-functions-a.patch 0003-tpm2-resend-the-command-on-TPM_RC_RETRY.patch 0004-tpm2-add-new-TPM2-types-structures-and-command-const.patch 0005-tpm2-add-more-marshal-unmarshal-functions.patch 0006-tpm2-check-the-command-parameters-of-TPM2-commands.patch 0007-tpm2-pack-the-missing-authorization-command-for-TPM2.patch 0008-tpm2-allow-some-command-parameters-to-be-NULL.patch 0009-tpm2-remove-the-unnecessary-variables.patch 0010-tpm2-add-TPM2-commands-to-support-authorized-policy.patch 0011-tpm2-make-the-file-reading-unmarshal-functions-gener.patch 0012-tpm2-initialize-the-PCR-selection-list-early.patch 0013-tpm2-support-unsealing-key-with-authorized-policy.patch * Refresh grub-read-pcr.patch * Introduce a new build requirement: libtasn1-devel - Only package grub2-protect for the architectures with EFI support ------------------------------------------------------------------- Fri Apr 21 04:53:54 UTC 2023 - Michael Chang <mchang@suse.com> - Fix PowerVS deployment fails to boot with 90 cores (bsc#1208581) * 0001-kern-ieee1275-init-Convert-plain-numbers-to-constant.patch * 0002-kern-ieee1275-init-Extended-support-in-Vec5.patch ------------------------------------------------------------------- Tue Apr 18 02:42:23 UTC 2023 - Michael Chang <mchang@suse.com> - Fix no prep partition error on non-PReP architectures by making the prep_loadenv module exclusive to powerpc_ieee1275 platform (bsc#1210489) * 0004-Introduce-prep_load_env-command.patch - Fix the issue of freeing an uninitialized pointer * 0002-prep_loadenv-Fix-regex-for-Open-Firmware-device-spec.patch - Rediff * 0005-export-environment-at-start-up.patch * 0009-Add-crypttab_entry-to-obviate-the-need-to-input-pass.patch ------------------------------------------------------------------- Tue Apr 11 11:13:26 UTC 2023 - Michael Chang <mchang@suse.com> - Resolve some issues with OS boot failure on PPC NVMe-oF disks and made enhancements to PPC secure boot's root device discovery config (bsc#1207230) - Ensure get_devargs and get_devname functions are consistent * 0001-openfw-Ensure-get_devargs-and-get_devname-functions-.patch - Fix regex for Open Firmware device specifier with encoded commas * 0002-prep_loadenv-Fix-regex-for-Open-Firmware-device-spec.patch - Fix regular expression in PPC secure boot config to prevent escaped commas from being treated as delimiters when retrieving partition substrings. - Use prep_load_env in PPC secure boot config to handle unset host-specific environment variables and ensure successful command execution. * 0004-Introduce-prep_load_env-command.patch - Refreshed * 0005-export-environment-at-start-up.patch ------------------------------------------------------------------- Thu Mar 23 05:25:50 UTC 2023 - Michael Chang <mchang@suse.com> - Fix aarch64 kiwi image's file not found due to '/@' prepended to path in btrfs filesystem. (bsc#1209165) * grub2-btrfs-05-grub2-mkconfig.patch ------------------------------------------------------------------- Mon Mar 20 05:02:01 UTC 2023 - Michael Chang <mchang@suse.com> - Restrict cryptsetup key file permission for better security (bsc#1207499) * 0001-loader-linux-Ensure-the-newc-pathname-is-NULL-termin.patch * 0002-Restrict-cryptsetup-key-file-permission-for-better-s.patch ------------------------------------------------------------------- Wed Mar 15 21:46:00 UTC 2023 - Hans-Peter Jansen <hpj@urpla.net> - Meanwhile, memtest86+ gained EFI support, but using the grub command line to run it manually is quite tedious... Adapt 20_memtest86+ to provide a proper menu entry. Executing memtest requires to turn security off in BIOS: (Boot Mode: Other OS). ------------------------------------------------------------------- Mon Mar 13 15:43:01 UTC 2023 - rw@suse.com - Tolerate kernel moved out of /boot. (bsc#1184804) * grub2-s390x-12-zipl-setup-usrmerge.patch ------------------------------------------------------------------- Mon Mar 6 06:31:09 UTC 2023 - Michael Chang <mchang@suse.com> - Discard cached key from grub shell and editor mode * 0001-clean-up-crypttab-and-linux-modules-dependency.patch * 0002-discard-cached-key-before-entering-grub-shell-and-ed.patch ------------------------------------------------------------------- Fri Mar 3 07:48:56 UTC 2023 - Michael Chang <mchang@suse.com> - Make grub more robust against storage race condition causing system boot failures (bsc#1189036) * 0001-ieee1275-ofdisk-retry-on-open-and-read-failure.patch ------------------------------------------------------------------- Wed Mar 1 02:58:07 UTC 2023 - Michael Chang <mchang@suse.com> - Fix riscv64 error for relocation 0x13 is not implemented yet * 0001-RISC-V-Handle-R_RISCV_CALL_PLT-reloc.patch ------------------------------------------------------------------- Wed Feb 22 07:08:44 UTC 2023 - Michael Chang <mchang@suse.com> - Fix out of memory error on lpar installation from virtual cdrom (bsc#1208024) * 0001-ieee1275-Further-increase-initially-allocated-heap-f.patch * 0002-tpm-Disable-tpm-verifier-if-tpm-is-not-present.patch - Fix lpar got hung at grub after inactive migration (bsc#1207684) * 0002-ieee1275-implement-vec5-for-cas-negotiation.patch - Rediff * safe_tpm_pcr_snapshot.patch - Patch supersceded * 0001-tpm-Disable-tpm-verifier-if-tpm-is-not-present.patch ------------------------------------------------------------------- Wed Feb 15 07:09:39 UTC 2023 - Gary Ching-Pang Lin <glin@suse.com> - Refresh 0003-tpm2-resend-the-command-on-TPM_RC_RETRY.patch to handle the TPM2 responseCode correctly. ------------------------------------------------------------------- Fri Feb 10 14:54:35 UTC 2023 - Valentin Lefebvre <valentin.lefebvre@suse.com> - Add module for boot loader interface. Needed for load Unified Kernel Image (UKI) * grub2-add-module-for-boot-loader-interface.patch ------------------------------------------------------------------- Thu Feb 9 08:42:26 UTC 2023 - Gary Ching-Pang Lin <glin@suse.com> - Amend the TPM2 stack and add authorized policy mode to tpm2_key_protector * 0001-tpm2-adjust-the-input-parameters-of-TPM2_EvictContro.patch * 0002-tpm2-declare-the-input-arguments-of-TPM2-functions-a.patch * 0003-tpm2-resend-the-command-on-TPM_RC_RETRY.patch * 0004-tpm2-add-new-TPM2-types-structures-and-command-const.patch * 0005-tpm2-add-more-marshal-unmarshal-functions.patch * 0006-tpm2-check-the-command-parameters-of-TPM2-commands.patch * 0007-tpm2-pack-the-missing-authorization-command-for-TPM2.patch * 0008-tpm2-allow-some-command-parameters-to-be-NULL.patch * 0009-tpm2-remove-the-unnecessary-variables.patch * 0010-tpm2-add-TPM2-commands-to-support-authorized-policy.patch * 0011-tpm2-make-the-file-reading-unmarshal-functions-gener.patch * 0012-tpm2-initialize-the-PCR-selection-list-early.patch * 0013-tpm2-support-unsealing-key-with-authorized-policy.patch ------------------------------------------------------------------- Wed Feb 8 02:24:16 UTC 2023 - Michael Chang <mchang@suse.com> - Fix nvmf boot device setup (bsc#1207811) * 0001-grub2-Can-t-setup-a-default-boot-device-correctly-on.patch ------------------------------------------------------------------- Tue Feb 7 02:11:47 UTC 2023 - Michael Chang <mchang@suse.com> - Fix unknown filesystem error on disks with 4096 sector size (bsc#1207064) * 0001-grub-core-modify-sector-by-sysfs-as-disk-sector.patch ------------------------------------------------------------------- Sat Feb 4 05:57:02 UTC 2023 - Michael Chang <mchang@suse.com> - Fix GCC 13 build failure (bsc#1201089) * 0002-AUDIT-0-http-boot-tracker-bug.patch ------------------------------------------------------------------- Tue Jan 3 02:48:05 UTC 2023 - Gary Ching-Pang Lin <glin@suse.com> - Move unsupported zfs modules into 'extras' packages (bsc#1205554) (PED-2947) ------------------------------------------------------------------- Fri Dec 30 07:58:54 UTC 2022 - Michael Chang <mchang@suse.com> - Fix inappropriately including commented lines in crypttab (bsc#1206279) * 0010-templates-import-etc-crypttab-to-grub.cfg.patch ------------------------------------------------------------------- Fri Dec 23 09:50:42 UTC 2022 - Michael Chang <mchang@suse.com> - Make grub.cfg invariant to efi and legacy platforms (bsc#1205200) - Removed patch linuxefi * grub2-secureboot-provide-linuxefi-config.patch * grub2-secureboot-use-linuxefi-on-uefi-in-os-prober.patch * grub2-secureboot-use-linuxefi-on-uefi.patch - Rediff * grub2-btrfs-05-grub2-mkconfig.patch * grub2-efi-xen-cmdline.patch * grub2-s390x-05-grub2-mkconfig.patch * grub2-suse-remove-linux-root-param.patch ------------------------------------------------------------------- Mon Dec 19 08:39:05 UTC 2022 - Michael Chang <mchang@suse.com> - Setup multiple device paths for a nvmf boot device (bsc#1205666) * 0001-grub2-Set-multiple-device-path-for-a-nvmf-boot-devic.patch ------------------------------------------------------------------- Fri Dec 16 01:51:45 UTC 2022 - Gary Ching-Pang Lin <glin@suse.com> - Increase the path buffer in the crypttab command for the long volume name (bsc#1206333) * grub2-increase-crypttab-path-buffer.patch ------------------------------------------------------------------- Mon Dec 5 08:47:06 UTC 2022 - Michael Chang <mchang@suse.com> - Add tpm to signed grub.elf image (PED-1990) (bsc#1205912) - Increase initial heap size from 1/4 to 1/3 * 0001-ieee1275-Increase-initially-allocated-heap-from-1-4-.patch ------------------------------------------------------------------- Tue Nov 22 08:11:17 UTC 2022 - Michael Chang <mchang@suse.com> - Make full utilization of btrfs bootloader area (bsc#1161823) * 0001-fs-btrfs-Use-full-btrfs-bootloader-area.patch * 0002-Mark-environmet-blocks-as-used-for-image-embedding.patch - Patch removed * 0001-i386-pc-build-btrfs-zstd-support-into-separate-modul.patch ------------------------------------------------------------------- Mon Nov 21 02:10:28 UTC 2022 - Michael Chang <mchang@suse.com> - Fix regression of reverting back to asking password twice when a keyfile is already used (bsc#1205309) * 0010-templates-import-etc-crypttab-to-grub.cfg.patch ------------------------------------------------------------------- Wed Nov 16 02:36:23 UTC 2022 - Michael Chang <mchang@suse.com> - Security fixes and hardenings * 0001-font-Reject-glyphs-exceeds-font-max_glyph_width-or-f.patch * 0002-font-Fix-size-overflow-in-grub_font_get_glyph_intern.patch - Fix CVE-2022-2601 (bsc#1205178) * 0003-font-Fix-several-integer-overflows-in-grub_font_cons.patch * 0004-font-Remove-grub_font_dup_glyph.patch * 0005-font-Fix-integer-overflow-in-ensure_comb_space.patch * 0006-font-Fix-integer-overflow-in-BMP-index.patch * 0007-font-Fix-integer-underflow-in-binary-search-of-char-.patch * 0008-fbutil-Fix-integer-overflow.patch - Fix CVE-2022-3775 (bsc#1205182) * 0009-font-Fix-an-integer-underflow-in-blit_comb.patch * 0010-font-Harden-grub_font_blit_glyph-and-grub_font_blit_.patch * 0011-font-Assign-null_font-to-glyphs-in-ascii_font_glyph.patch * 0012-normal-charset-Fix-an-integer-overflow-in-grub_unico.patch - Bump upstream SBAT generation to 3 ------------------------------------------------------------------- Mon Nov 14 09:54:16 UTC 2022 - Michael Chang <mchang@suse.com> - Removed 0001-linux-fix-efi_relocate_kernel-failure.patch as reported regression in some hardware being stuck in initrd loading (bsc#1205380) ------------------------------------------------------------------- Mon Nov 14 03:03:35 UTC 2022 - Michael Chang <mchang@suse.com> - Fix password asked twice if third field in crypttab not present (bsc#1205312) * 0009-Add-crypttab_entry-to-obviate-the-need-to-input-pass.patch ------------------------------------------------------------------- Fri Oct 28 04:58:28 UTC 2022 - Michael Chang <mchang@suse.com> - NVMeoFC support on grub (jsc#PED-996) * 0001-ieee1275-add-support-for-NVMeoFC.patch * 0002-ieee1275-ofpath-enable-NVMeoF-logical-device-transla.patch * 0003-ieee1275-change-the-logic-of-ieee1275_get_devargs.patch * 0004-ofpath-controller-name-update.patch - TDX: Enhance grub2 measurement to TD RTMR (jsc#PED-1265) * 0001-commands-efi-tpm-Refine-the-status-of-log-event.patch * 0002-commands-efi-tpm-Use-grub_strcpy-instead-of-grub_mem.patch * 0003-efi-tpm-Add-EFI_CC_MEASUREMENT_PROTOCOL-support.patch - Measure the kernel on POWER10 and extend TPM PCRs (PED-1990) * 0001-ibmvtpm-Add-support-for-trusted-boot-using-a-vTPM-2..patch * 0002-ieee1275-implement-vec5-for-cas-negotiation.patch - Fix efi pcr snapshot related funtion is defined but not used on powerpc platform. * safe_tpm_pcr_snapshot.patch ------------------------------------------------------------------- Mon Oct 24 01:58:08 UTC 2022 - Michael Chang <mchang@suse.com> - Include loopback into signed grub2 image (jsc#PED-2150) ------------------------------------------------------------------- Thu Oct 6 07:13:23 UTC 2022 - Michael Chang <mchang@suse.com> - Fix firmware oops after disk decrypting failure (bsc#1204037) * 0009-Add-crypttab_entry-to-obviate-the-need-to-input-pass.patch ------------------------------------------------------------------- Fri Sep 23 10:13:54 UTC 2022 - Michael Chang <mchang@suse.com> - Add patch to fix kernel relocation error in low memory * 0001-linux-fix-efi_relocate_kernel-failure.patch ------------------------------------------------------------------- Mon Sep 19 04:07:36 UTC 2022 - Michael Chang <mchang@suse.com> - Add safety measure to pcr snapshot by checking platform and tpm status * safe_tpm_pcr_snapshot.patch ------------------------------------------------------------------- Fri Sep 16 03:56:14 UTC 2022 - Michael Chang <mchang@suse.com> - Fix installation failure due to unavailable nvram device on ppc64le (bsc#1201361) * 0001-grub-install-set-point-of-no-return-for-powerpc-ieee1275.patch ------------------------------------------------------------------- Fri Sep 16 03:12:36 UTC 2022 - Gary Ching-Pang Lin <glin@suse.com> - Add patches to dynamically allocate additional memory regions for EFI systems (bsc#1202438) * 0001-mm-Allow-dynamically-requesting-additional-memory-re.patch * 0002-kern-efi-mm-Always-request-a-fixed-number-of-pages-o.patch * 0003-kern-efi-mm-Extract-function-to-add-memory-regions.patch * 0004-kern-efi-mm-Pass-up-errors-from-add_memory_regions.patch * 0005-kern-efi-mm-Implement-runtime-addition-of-pages.patch - Enlarge the default heap size and defer the disk cache invalidation (bsc#1202438) * 0001-kern-efi-mm-Enlarge-the-default-heap-size.patch * 0002-mm-Defer-the-disk-cache-invalidation.patch ------------------------------------------------------------------- Thu Sep 15 09:51:07 UTC 2022 - Michael Chang <mchang@suse.com> - Add patches for ALP FDE support * 0001-devmapper-getroot-Have-devmapper-recognize-LUKS2.patch * 0002-devmapper-getroot-Set-up-cheated-LUKS2-cryptodisk-mo.patch * 0003-disk-cryptodisk-When-cheatmounting-use-the-sector-in.patch * 0004-normal-menu-Don-t-show-Booting-s-msg-when-auto-booti.patch * 0005-EFI-suppress-the-Welcome-to-GRUB-message-in-EFI-buil.patch * 0006-EFI-console-Do-not-set-colorstate-until-the-first-te.patch * 0007-EFI-console-Do-not-set-cursor-until-the-first-text-o.patch * 0008-linuxefi-Use-common-grub_initrd_load.patch * 0009-Add-crypttab_entry-to-obviate-the-need-to-input-pass.patch * 0010-templates-import-etc-crypttab-to-grub.cfg.patch * grub-read-pcr.patch * efi-set-variable-with-attrs.patch * tpm-record-pcrs.patch * tpm-protector-dont-measure-sealed-key.patch * tpm-protector-export-secret-key.patch * grub-install-record-pcrs.patch * grub-unseal-debug.patch ------------------------------------------------------------------- Mon Aug 29 03:48:55 UTC 2022 - Michael Chang <mchang@suse.com> - Fix out of memory error cannot be prevented via disabling tpm (bsc#1202438) * 0001-tpm-Disable-tpm-verifier-if-tpm-is-not-present.patch ------------------------------------------------------------------- Thu Aug 18 02:47:28 UTC 2022 - Michael Chang <mchang@suse.com> - Fix tpm error stop tumbleweed from booting (bsc#1202374) * 0001-tpm-Pass-unknown-error-as-non-fatal-but-debug-print-.patch - Patch Removed * 0001-tpm-Log-EFI_VOLUME_FULL-and-continue.patch ------------------------------------------------------------------- Wed Jun 8 03:25:26 UTC 2022 - Michael Chang <mchang@suse.com> - Add tpm, tpm2, luks2 and gcry_sha512 to default grub.efi (bsc#1197625) - Make grub-tpm.efi a symlink to grub.efi * grub2.spec - Log error when tpm event log is full and continue * 0001-tpm-Log-EFI_VOLUME_FULL-and-continue.patch - Patch superseded * 0001-tpm-Pass-unknown-error-as-non-fatal-but-debug-print-.patch ------------------------------------------------------------------- Wed Jun 8 03:17:29 UTC 2022 - Michael Chang <mchang@suse.com> - Add patches for automatic TPM disk unlock (jsc#SLE-24018) (bsc#1196668) (jsc#PED-1276) * 0001-luks2-Add-debug-message-to-align-with-luks-and-geli-.patch * 0002-cryptodisk-Refactor-to-discard-have_it-global.patch * 0003-cryptodisk-Return-failure-in-cryptomount-when-no-cry.patch * 0004-cryptodisk-Improve-error-messaging-in-cryptomount-in.patch * 0005-cryptodisk-Improve-cryptomount-u-error-message.patch * 0006-cryptodisk-Add-infrastructure-to-pass-data-from-cryp.patch * 0007-cryptodisk-Refactor-password-input-out-of-crypto-dev.patch * 0008-cryptodisk-Move-global-variables-into-grub_cryptomou.patch * 0009-cryptodisk-Improve-handling-of-partition-name-in-cry.patch * 0010-protectors-Add-key-protectors-framework.patch * 0011-tpm2-Add-TPM-Software-Stack-TSS.patch * 0012-protectors-Add-TPM2-Key-Protector.patch * 0013-cryptodisk-Support-key-protectors.patch * 0014-util-grub-protect-Add-new-tool.patch - Fix no disk unlocking happen (bsc#1196668) * 0001-crytodisk-fix-cryptodisk-module-looking-up.patch - Fix build error * fix-tpm2-build.patch ------------------------------------------------------------------- Tue May 31 04:44:18 UTC 2022 - Michael Chang <mchang@suse.com> - Security fixes and hardenings for boothole 3 / boothole 2022 (bsc#1198581) * 0001-video-Remove-trailing-whitespaces.patch * 0002-loader-efi-chainloader-Simplify-the-loader-state.patch * 0003-commands-boot-Add-API-to-pass-context-to-loader.patch - Fix CVE-2022-28736 (bsc#1198496) * 0004-loader-efi-chainloader-Use-grub_loader_set_ex.patch - Fix CVE-2022-28735 (bsc#1198495) * 0005-kern-efi-sb-Reject-non-kernel-files-in-the-shim_lock.patch * 0006-kern-file-Do-not-leak-device_name-on-error-in-grub_f.patch * 0007-video-readers-png-Abort-sooner-if-a-read-operation-f.patch * 0008-video-readers-png-Refuse-to-handle-multiple-image-he.patch - Fix CVE-2021-3695 (bsc#1191184) * 0009-video-readers-png-Drop-greyscale-support-to-fix-heap.patch - Fix CVE-2021-3696 (bsc#1191185) * 0010-video-readers-png-Avoid-heap-OOB-R-W-inserting-huff-.patch * 0011-video-readers-png-Sanity-check-some-huffman-codes.patch * 0012-video-readers-jpeg-Abort-sooner-if-a-read-operation-.patch * 0013-video-readers-jpeg-Do-not-reallocate-a-given-huff-ta.patch * 0014-video-readers-jpeg-Refuse-to-handle-multiple-start-o.patch - Fix CVE-2021-3697 (bsc#1191186) * 0015-video-readers-jpeg-Block-int-underflow-wild-pointer-.patch * 0016-normal-charset-Fix-array-out-of-bounds-formatting-un.patch - Fix CVE-2022-28733 (bsc#1198460) * 0017-net-ip-Do-IP-fragment-maths-safely.patch * 0018-net-netbuff-Block-overly-large-netbuff-allocs.patch * 0019-net-dns-Fix-double-free-addresses-on-corrupt-DNS-res.patch * 0020-net-dns-Don-t-read-past-the-end-of-the-string-we-re-.patch * 0021-net-tftp-Prevent-a-UAF-and-double-free-from-a-failed.patch * 0022-net-tftp-Avoid-a-trivial-UAF.patch * 0023-net-http-Do-not-tear-down-socket-if-it-s-already-bee.patch - Fix CVE-2022-28734 (bsc#1198493) * 0024-net-http-Fix-OOB-write-for-split-http-headers.patch - Fix CVE-2022-28734 (bsc#1198493) * 0025-net-http-Error-out-on-headers-with-LF-without-CR.patch * 0026-fs-f2fs-Do-not-read-past-the-end-of-nat-journal-entr.patch * 0027-fs-f2fs-Do-not-read-past-the-end-of-nat-bitmap.patch * 0028-fs-f2fs-Do-not-copy-file-names-that-are-too-long.patch * 0029-fs-btrfs-Fix-several-fuzz-issues-with-invalid-dir-it.patch * 0030-fs-btrfs-Fix-more-ASAN-and-SEGV-issues-found-with-fu.patch * 0031-fs-btrfs-Fix-more-fuzz-issues-related-to-chunks.patch * 0032-Use-grub_loader_set_ex-for-secureboot-chainloader.patch - Bump grub's SBAT generation to 2 ------------------------------------------------------------------- Tue May 31 04:41:44 UTC 2022 - Michael Chang <mchang@suse.com> - Use boot disks in OpenFirmware, fixing regression caused by 0001-ieee1275-implement-FCP-methods-for-WWPN-and-LUNs.patch, when the root LV is completely in the boot LUN (bsc#1197948) * 0001-ofdisk-improve-boot-time-by-lookup-boot-disk-first.patch ------------------------------------------------------------------- Thu May 26 10:10:56 UTC 2022 - Michael Chang <mchang@suse.com> - Fix error message in displaying help on bootable snapshot (bsc#1199609) ------------------------------------------------------------------- Tue May 17 10:46:38 UTC 2022 - Michael Chang <mchang@suse.com> - Fix installation over serial console ends up in infinite boot loop (bsc#1187810) (bsc#1209667) (bsc#1209372) * 0001-Fix-infinite-boot-loop-on-headless-system-in-qemu.patch - Fix ppc64le build error for new IEEE long double ABI * 0001-libc-config-merge-from-glibc.patch ------------------------------------------------------------------- Thu Apr 21 09:35:15 UTC 2022 - Michael Chang <mchang@suse.com> - Fix Power10 LPAR error "The partition fails to activate as partition went into invalid state" (bsc#1198714) * 0001-powerpc-do-CAS-in-a-more-compatible-way.patch ------------------------------------------------------------------- Mon Apr 11 11:50:04 UTC 2022 - Ludwig Nussel <lnussel@suse.de> - use common SBAT values (boo#1193282) ------------------------------------------------------------------- Fri Mar 25 03:46:55 UTC 2022 - Michael Chang <mchang@suse.com> - Fix wrong order in kernel sorting of listing rc before final release (bsc#1197376) * grub2-use-rpmsort-for-version-sorting.patch ------------------------------------------------------------------- Fri Mar 18 09:10:07 UTC 2022 - Michael Chang <mchang@suse.com> - Fix duplicated insmod part_gpt lines in grub.cfg (bsc#1197186) * 0001-grub-probe-Deduplicate-probed-partmap-output.patch ------------------------------------------------------------------- Wed Mar 16 14:57:02 UTC 2022 - Michael Chang <mchang@suse.com> - Fix GCC 12 build failure (bsc#1196546) * 0001-mkimage-Fix-dangling-pointer-may-be-used-error.patch * 0002-Fix-Werror-array-bounds-array-subscript-0-is-outside.patch * 0003-reed_solomon-Fix-array-subscript-0-is-outside-array-.patch - Revised * grub2-btrfs-01-add-ability-to-boot-from-subvolumes.patch * 0002-ieee1275-powerpc-enables-device-mapper-discovery.patch ------------------------------------------------------------------- Fri Mar 11 09:30:05 UTC 2022 - Michael Chang <mchang@suse.com> - Fix grub-install error when efi system partition is created as mdadm software raid1 device (bsc#1179981) (bsc#1195204) * 0001-install-fix-software-raid1-on-esp.patch ------------------------------------------------------------------- Thu Mar 10 09:10:23 UTC 2022 - Michael Chang <mchang@suse.com> - Fix riscv64 build error * 0001-RISC-V-Adjust-march-flags-for-binutils-2.38.patch ------------------------------------------------------------------- Thu Mar 10 07:08:52 UTC 2022 - Michael Chang <mchang@suse.com> - Fix error in grub-install when linux root device is on lvm thin volume (bsc#1192622) (bsc#1191974) * 0001-grub-install-bailout-root-device-probing.patch ------------------------------------------------------------------- Fri Mar 4 03:37:40 UTC 2022 - Michael Chang <mchang@suse.com> - Support saving grub environment for POWER signed grub images (jsc#SLE-23854) * 0001-Add-grub_envblk_buf-helper-function.patch * 0002-Add-grub_disk_write_tail-helper-function.patch * 0003-grub-install-support-prep-environment-block.patch * 0004-Introduce-prep_load_env-command.patch * 0005-export-environment-at-start-up.patch - Use enviroment variable in early boot config to looking up root device * grub2.spec ------------------------------------------------------------------- Tue Mar 1 08:55:57 UTC 2022 - Michal Suchanek <msuchanek@suse.com> - Remove obsolete openSUSE 12.2 conditionals in spec file - Clean up powerpc certificate handling. ------------------------------------------------------------------- Thu Feb 10 16:20:24 UTC 2022 - Bjørn Lie <bjorn.lie@gmail.com> - Set grub2-check-default shebang to "#!/bin/bash", as the the code uses many instructions which are undefined for a POSIX sh. (boo#1195794). ------------------------------------------------------------------- Fri Jan 14 08:39:36 UTC 2022 - Michael Chang <mchang@suse.com> - Power guest secure boot with static keys: GRUB2 signing portion (jsc#SLE-18271) (bsc#1192764) * 0001-grub-install-Add-SUSE-signed-image-support-for-power.patch ------------------------------------------------------------------- Thu Jan 13 06:36:44 UTC 2022 - Michael Chang <mchang@suse.com> - Fix wrong default entry when booting snapshot (bsc#1159205) * grub2-btrfs-08-workaround-snapshot-menu-default-entry.patch ------------------------------------------------------------------- Tue Jan 11 03:49:15 UTC 2022 - Michael Chang <mchang@suse.com> - Power guest secure boot with static keys: GRUB2 signing portion (jsc#SLE-18271) (bsc#1192764) * grub2.spec - Power guest secure boot with static keys: GRUB2 portion (jsc#SLE-18144) (bsc#1192686) * 0001-ieee1275-Drop-HEAP_MAX_ADDR-and-HEAP_MIN_SIZE-consta.patch * 0002-ieee1275-claim-more-memory.patch * 0003-ieee1275-request-memory-with-ibm-client-architecture.patch * 0004-Add-suport-for-signing-grub-with-an-appended-signatu.patch * 0005-docs-grub-Document-signing-grub-under-UEFI.patch * 0006-docs-grub-Document-signing-grub-with-an-appended-sig.patch * 0007-dl-provide-a-fake-grub_dl_set_persistent-for-the-emu.patch * 0008-pgp-factor-out-rsa_pad.patch * 0009-crypto-move-storage-for-grub_crypto_pk_-to-crypto.c.patch * 0010-posix_wrap-tweaks-in-preparation-for-libtasn1.patch * 0011-libtasn1-import-libtasn1-4.18.0.patch * 0012-libtasn1-disable-code-not-needed-in-grub.patch * 0013-libtasn1-changes-for-grub-compatibility.patch * 0014-libtasn1-compile-into-asn1-module.patch * 0015-test_asn1-test-module-for-libtasn1.patch * 0016-grub-install-support-embedding-x509-certificates.patch * 0017-appended-signatures-import-GNUTLS-s-ASN.1-descriptio.patch * 0018-appended-signatures-parse-PKCS-7-signedData-and-X.50.patch * 0019-appended-signatures-support-verifying-appended-signa.patch * 0020-appended-signatures-verification-tests.patch * 0021-appended-signatures-documentation.patch * 0022-ieee1275-enter-lockdown-based-on-ibm-secure-boot.patch * 0023-x509-allow-Digitial-Signature-plus-other-Key-Usages.patch ------------------------------------------------------------------- Mon Jan 10 09:38:46 UTC 2022 - Michael Chang <mchang@suse.com> - Fix no menuentry is found if hibernation on btrfs RAID1 (bsc#1193090) * grub2-systemd-sleep-plugin ------------------------------------------------------------------- Tue Dec 21 03:03:47 UTC 2021 - Michael Chang <mchang@suse.com> - Fix CVE-2021-3981 (bsc#1189644) * 0001-grub-mkconfig-restore-umask-for-grub.cfg.patch ------------------------------------------------------------------- Fri Dec 17 10:42:33 UTC 2021 - Michael Chang <mchang@suse.com> - Fix can't allocate initrd error (bsc#1191378) * 0001-Factor-out-grub_efi_linux_boot.patch * 0002-Fix-race-in-EFI-validation.patch * 0003-Handle-multi-arch-64-on-32-boot-in-linuxefi-loader.patch * 0004-Try-to-pick-better-locations-for-kernel-and-initrd.patch * 0005-x86-efi-Use-bounce-buffers-for-reading-to-addresses-.patch * 0006-x86-efi-Re-arrange-grub_cmd_linux-a-little-bit.patch * 0007-x86-efi-Make-our-own-allocator-for-kernel-stuff.patch * 0008-x86-efi-Allow-initrd-params-cmdline-allocations-abov.patch * 0009-x86-efi-Reduce-maximum-bounce-buffer-size-to-16-MiB.patch * 0010-efilinux-Fix-integer-overflows-in-grub_cmd_initrd.patch * 0011-Also-define-GRUB_EFI_MAX_ALLOCATION_ADDRESS-for-RISC.patch ------------------------------------------------------------------- Wed Dec 8 14:16:58 UTC 2021 - Michal Suchanek <msuchanek@suse.com> - Add support for simplefb (boo#1193532). + grub2-simplefb.patch ------------------------------------------------------------------- Mon Dec 6 01:21:07 UTC 2021 - Michael Chang <mchang@suse.com> - Fix extent not found when initramfs contains shared extents (bsc#1190982) * 0001-fs-btrfs-Make-extent-item-iteration-to-handle-gaps.patch ------------------------------------------------------------------- Thu Nov 11 07:45:11 UTC 2021 - Michael Chang <mchang@suse.com> - Fix arm64 kernel image not aligned on 64k boundary (bsc#1192522) * 0001-arm64-Fix-EFI-loader-kernel-image-allocation.patch * 0002-Arm-check-for-the-PE-magic-for-the-compiled-arch.patch ------------------------------------------------------------------- Thu Oct 21 12:51:46 UTC 2021 - Michael Chang <mchang@suse.com> - Remove openSUSE Tumbleweed specific handling for default grub distributor (bsc#1191198) - Use /usr/lib/os-release as fallback (bsc#1191196) * grub2-default-distributor.patch * grub2-check-default.sh - VUL-0: grub2: grub2-once uses fixed file name in /var/tmp (bsc#1190474) (CVE-2021-46705) * grub2-once * grub2-once.service - Fix unknown TPM error on buggy uefi firmware (bsc#1191504) * 0001-tpm-Pass-unknown-error-as-non-fatal-but-debug-print-.patch - Fix error /boot/grub2/locale/POSIX.gmo not found (bsc#1189769) * 0001-Filter-out-POSIX-locale-for-translation.patch - Fix error lvmid disk cannot be found after second disk added to the root volume group (bsc#1189874) (bsc#1071559) * 0001-ieee1275-implement-FCP-methods-for-WWPN-and-LUNs.patch - Fix error in grub installation due to unnecessary requirement to support excessive device for the root logical volume (bsc#1184135) * 0001-disk-diskfilter-Use-nodes-in-logical-volume-s-segmen.patch - Fix regression in reading xfs v4 *0001-fs-xfs-Fix-unreadable-filesystem-with-v4-superblock.patch ------------------------------------------------------------------- Tue Oct 19 08:26:50 UTC 2021 - Fabian Vogt <fvogt@suse.com> - Fix installation on usrmerged s390x ------------------------------------------------------------------- Wed Sep 22 14:29:12 UTC 2021 - rw@suse.com - Improve support for SLE Micro 5.1 on s390x. (bsc#1190395) * amend grub2-s390x-04-grub2-install.patch * refresh grub2-s390x-11-secureboot.patch ------------------------------------------------------------------- Tue Sep 7 02:32:30 UTC 2021 - Michael Chang <mchang@suse.com> - Follow usr merge for looking up kernel config (bsc#1189782) (bsc#1190061) * 0001-templates-Follow-the-path-of-usr-merged-kernel-confi.patch ------------------------------------------------------------------- Wed Sep 1 05:49:47 UTC 2021 - Michael Chang <mchang@suse.com> - Add btrfs zstd compression on i386-pc and also make sure it won't break existing grub installations (bsc#1161823) * deleted 0001-btrfs-disable-zstd-support-for-i386-pc.patch * added 0001-i386-pc-build-btrfs-zstd-support-into-separate-modul.patch ------------------------------------------------------------------- Tue Aug 31 05:56:56 UTC 2021 - Petr Vorel <pvorel@suse.cz> - Delete the author list from %description (the %description section is literally for package descriptions (only) these days, encoding was also problematic). - Add %doc AUTHORS to get packaged that info ------------------------------------------------------------------- Wed Aug 4 10:28:49 UTC 2021 - Stefan Seyfried <seife+obs@b1-systems.com> - update grub2-systemd-sleep.sh to fix hibernation by avoiding the error "no kernelfile matching the running kernel found" on usrmerged setup ------------------------------------------------------------------- Wed Aug 4 08:36:25 UTC 2021 - Fabian Vogt <fvogt@suse.com> - Use %autosetup ------------------------------------------------------------------- Thu Jul 22 16:43:20 UTC 2021 - Petr Vorel <pvorel@suse.cz> - Replace grub2-use-stat-instead-of-udevadm-for-partition-lookup.patch and fix-grub2-use-stat-instead-of-udevadm-for-partition-lookup-with-new-glibc.patch with upstream backport: 0001-osdep-Introduce-include-grub-osdep-major.h-and-use-i.patch and 0002-osdep-linux-hostdisk-Use-stat-instead-of-udevadm-for.patch. ------------------------------------------------------------------- Mon Jun 28 10:14:26 UTC 2021 - Michael Chang <mchang@suse.com> - Fix error not a btrfs filesystem on s390x (bsc#1187645) * 80_suse_btrfs_snapshot ------------------------------------------------------------------- Wed Jun 23 07:41:57 UTC 2021 - Michael Chang <mchang@suse.com> - Fix error gfxterm isn't found with multiple terminals (bsc#1187565) * grub2-fix-error-terminal-gfxterm-isn-t-found.patch ------------------------------------------------------------------- Mon Jun 21 10:45:40 UTC 2021 - Michael Chang <mchang@suse.com> - Fix boot failure after kdump due to the content of grub.cfg is not completed with pending modificaton in xfs journal (bsc#1186975) * grub-install-force-journal-draining-to-ensure-data-i.patch - Patch refreshed * grub2-mkconfig-default-entry-correction.patch ------------------------------------------------------------------- Thu Jun 3 11:17:49 UTC 2021 - Michael Chang <mchang@suse.com> - Version bump to 2.06 * rediff - 0001-add-support-for-UEFI-network-protocols.patch - 0002-net-read-bracketed-ipv6-addrs-and-port-numbers.patch - 0003-Make-grub_error-more-verbose.patch - 0003-bootp-New-net_bootp6-command.patch - 0005-grub.texi-Add-net_bootp6-doument.patch - 0006-bootp-Add-processing-DHCPACK-packet-from-HTTP-Boot.patch - 0006-efi-Set-image-base-address-before-jumping-to-the-PE-.patch - 0008-efinet-Setting-DNS-server-from-UEFI-protocol.patch - 0046-squash-verifiers-Move-verifiers-API-to-kernel-image.patch - grub-install-force-journal-draining-to-ensure-data-i.patch - grub2-btrfs-01-add-ability-to-boot-from-subvolumes.patch - grub2-diskfilter-support-pv-without-metadatacopies.patch - grub2-efi-HP-workaround.patch - grub2-efi-xen-cfg-unquote.patch - grub2-efi-xen-chainload.patch - grub2-fix-menu-in-xen-host-server.patch - grub2-gfxmenu-support-scrolling-menu-entry-s-text.patch - grub2-install-remove-useless-check-PReP-partition-is-empty.patch - grub2-lvm-allocate-metadata-buffer-from-raw-contents.patch - grub2-mkconfig-default-entry-correction.patch - grub2-pass-corret-root-for-nfsroot.patch - grub2-s390x-03-output-7-bit-ascii.patch - grub2-s390x-04-grub2-install.patch - grub2-secureboot-install-signed-grub.patch - grub2-setup-try-fs-embed-if-mbr-gap-too-small.patch - use-grub2-as-a-package-name.patch * update by patch squashed: - 0001-Add-support-for-Linux-EFI-stub-loading-on-aarch64.patch - grub2-efi-chainload-harder.patch - grub2-secureboot-no-insmod-on-sb.patch - grub2-secureboot-chainloader.patch - grub2-secureboot-add-linuxefi.patch * remove squashed patches: - 0008-squash-Add-support-for-Linux-EFI-stub-loading-on-aar.patch - 0009-squash-Add-support-for-linuxefi.patch - 0041-squash-Add-secureboot-support-on-efi-chainloader.patch - 0042-squash-grub2-efi-chainload-harder.patch - 0043-squash-Don-t-allow-insmod-when-secure-boot-is-enable.patch - 0045-squash-Add-support-for-Linux-EFI-stub-loading-on-aar.patch * drop upstream patches: - 0001-Warn-if-MBR-gap-is-small-and-user-uses-advanced-modu.patch - 0001-include-grub-i386-linux.h-Include-missing-grub-types.patch - 0001-kern-efi-sb-Add-chainloaded-image-as-shim-s-verifiab.patch - 0001-mdraid1x_linux-Fix-gcc10-error-Werror-array-bounds.patch - 0001-normal-Move-common-datetime-functions-out-of-the-nor.patch - 0001-yylex-Make-lexer-fatal-errors-actually-be-fatal.patch - 0002-efi-Make-shim_lock-GUID-and-protocol-type-public.patch - 0002-grub-install-Avoid-incompleted-install-on-i386-pc.patch - 0002-kern-Add-X-option-to-printf-functions.patch - 0002-safemath-Add-some-arithmetic-primitives-that-check-f.patch - 0002-zfs-Fix-gcc10-error-Werror-zero-length-bounds.patch - 0003-calloc-Make-sure-we-always-have-an-overflow-checking.patch - 0003-efi-Return-grub_efi_status_t-from-grub_efi_get_varia.patch - 0003-normal-main-Search-for-specific-config-files-for-net.patch - 0004-calloc-Use-calloc-at-most-places.patch - 0004-datetime-Enable-the-datetime-module-for-the-emu-plat.patch - 0004-efi-Add-a-function-to-read-EFI-variables-with-attrib.patch - 0005-Make-linux_arm_kernel_header.hdr_offset-be-at-the-ri.patch - 0005-efi-Add-secure-boot-detection.patch - 0005-malloc-Use-overflow-checking-primitives-where-we-do-.patch - 0006-efi-Only-register-shim_lock-verifier-if-shim_lock-pr.patch - 0006-iso9660-Don-t-leak-memory-on-realloc-failures.patch - 0007-font-Do-not-load-more-than-one-NAME-section.patch - 0007-verifiers-Move-verifiers-API-to-kernel-image.patch - 0008-efi-Move-the-shim_lock-verifier-to-the-GRUB-core.patch - 0008-script-Remove-unused-fields-from-grub_script_functio.patch - 0009-kern-Add-lockdown-support.patch - 0009-script-Avoid-a-use-after-free-when-redefining-a-func.patch - 0010-kern-lockdown-Set-a-variable-if-the-GRUB-is-locked-d.patch - 0010-linux-Fix-integer-overflows-in-initrd-size-handling.patch - 0011-efi-Lockdown-the-GRUB-when-the-UEFI-Secure-Boot-is-e.patch - 0012-efi-Use-grub_is_lockdown-instead-of-hardcoding-a-dis.patch - 0013-acpi-Don-t-register-the-acpi-command-when-locked-dow.patch - 0014-mmap-Don-t-register-cutmem-and-badram-commands-when-.patch - 0015-commands-Restrict-commands-that-can-load-BIOS-or-DT-.patch - 0016-commands-setpci-Restrict-setpci-command-when-locked-.patch - 0017-commands-hdparm-Restrict-hdparm-command-when-locked-.patch - 0018-gdb-Restrict-GDB-access-when-locked-down.patch - 0019-loader-xnu-Don-t-allow-loading-extension-and-package.patch - 0020-dl-Only-allow-unloading-modules-that-are-not-depende.patch - 0021-usb-Avoid-possible-out-of-bound-accesses-caused-by-m.patch - 0022-lib-arg-Block-repeated-short-options-that-require-an.patch - 0023-commands-menuentry-Fix-quoting-in-setparams_prefix.patch - 0024-kern-parser-Fix-resource-leak-if-argc-0.patch - 0025-kern-parser-Fix-a-memory-leak.patch - 0026-kern-parser-Introduce-process_char-helper.patch - 0027-kern-parser-Introduce-terminate_arg-helper.patch - 0028-kern-parser-Refactor-grub_parser_split_cmdline-clean.patch - 0029-kern-buffer-Add-variable-sized-heap-buffer.patch - 0030-kern-parser-Fix-a-stack-buffer-overflow.patch - 0031-util-mkimage-Remove-unused-code-to-add-BSS-section.patch - 0032-util-mkimage-Use-grub_host_to_target32-instead-of-gr.patch - 0033-util-mkimage-Always-use-grub_host_to_target32-to-ini.patch - 0034-util-mkimage-Unify-more-of-the-PE32-and-PE32-header-.patch - 0035-util-mkimage-Reorder-PE-optional-header-fields-set-u.patch - 0036-util-mkimage-Improve-data_size-value-calculation.patch - 0037-util-mkimage-Refactor-section-setup-to-use-a-helper.patch - 0038-util-mkimage-Add-an-option-to-import-SBAT-metadata-i.patch - 0039-grub-install-common-Add-sbat-option.patch - 0040-shim_lock-Only-skip-loading-shim_lock-verifier-with-.patch - grub-install-define-default-platform-for-risc-v.patch - grub2-editenv-add-warning-message.patch - grub2-efi-gop-add-blt.patch - grub2-efi-uga-64bit-fb.patch - grub2-verifiers-fix-system-freeze-if-verify-failed.patch - risc-v-add-clzdi2-symbol.patch - risc-v-fix-computation-of-pc-relative-relocation-offset.patch - Add grub2-instdev-fixup.pl for correcting /etc/default/grub_installdevice to use disk devie if grub has been installed to it - Add 0001-30_uefi-firmware-fix-printf-format-with-null-byte.patch to fix detection of efi fwsetup support ------------------------------------------------------------------- Mon May 31 07:18:56 UTC 2021 - Michael Chang <mchang@suse.com> - Fix running grub2-once leads to failure of starting systemd service in the boot sequence (bsc#1169460) * grub2-once * grub2-once.service ------------------------------------------------------------------- Fri May 28 15:16:37 UTC 2021 - Michael Chang <mchang@suse.com> - Fix crash in launching gfxmenu without theme file (bsc#1186481) * grub2-gfxmenu-support-scrolling-menu-entry-s-text.patch ------------------------------------------------------------------- Tue May 11 02:14:06 UTC 2021 - Michael Chang <mchang@suse.com> - Fix plaintext password in grub config didn't work to unlock menu entry if enabling secure boot in UEFI (bsc#1181892) ------------------------------------------------------------------- Fri Apr 23 03:27:37 UTC 2021 - Michael Chang <mchang@suse.com> - Fix obsolete syslog in systemd unit file and updating to use journal as StandardOutput (bsc#1185149) * grub2-once.service ------------------------------------------------------------------- Mon Apr 19 09:53:43 UTC 2021 - Michael Chang <mchang@suse.com> - Fix build error on armv6/armv7 (bsc#1184712) * 0001-emu-fix-executable-stack-marking.patch ------------------------------------------------------------------- Thu Apr 8 12:32:52 UTC 2021 - Michael Chang <mchang@suse.com> - Fix error grub_file_filters not found in Azure virtual machine (bsc#1182012) * 0001-Workaround-volatile-efi-boot-variable.patch ------------------------------------------------------------------- Tue Mar 16 02:57:12 UTC 2021 - Michael Chang <mchang@suse.com> - Fix powerpc-ieee1275 lpar takes long time to boot with increasing number of nvme namespace (bsc#1177751) 0001-ieee1275-Avoiding-many-unecessary-open-close.patch ------------------------------------------------------------------- Thu Mar 11 02:00:15 UTC 2021 - Michael Chang <mchang@suse.com> - Fix chainloading windows on dual boot machine (bsc#1183073) * 0001-kern-efi-sb-Add-chainloaded-image-as-shim-s-verifiab.patch ------------------------------------------------------------------- Fri Feb 26 06:52:18 UTC 2021 - Michael Chang <mchang@suse.com> - VUL-0: grub2,shim: implement new SBAT method (bsc#1182057) * 0031-util-mkimage-Remove-unused-code-to-add-BSS-section.patch * 0032-util-mkimage-Use-grub_host_to_target32-instead-of-gr.patch * 0033-util-mkimage-Always-use-grub_host_to_target32-to-ini.patch * 0034-util-mkimage-Unify-more-of-the-PE32-and-PE32-header-.patch * 0035-util-mkimage-Reorder-PE-optional-header-fields-set-u.patch * 0036-util-mkimage-Improve-data_size-value-calculation.patch * 0037-util-mkimage-Refactor-section-setup-to-use-a-helper.patch * 0038-util-mkimage-Add-an-option-to-import-SBAT-metadata-i.patch * 0039-grub-install-common-Add-sbat-option.patch - Fix CVE-2021-20225 (bsc#1182262) * 0022-lib-arg-Block-repeated-short-options-that-require-an.patch - Fix CVE-2020-27749 (bsc#1179264) * 0024-kern-parser-Fix-resource-leak-if-argc-0.patch * 0025-kern-parser-Fix-a-memory-leak.patch * 0026-kern-parser-Introduce-process_char-helper.patch * 0027-kern-parser-Introduce-terminate_arg-helper.patch * 0028-kern-parser-Refactor-grub_parser_split_cmdline-clean.patch * 0029-kern-buffer-Add-variable-sized-heap-buffer.patch * 0030-kern-parser-Fix-a-stack-buffer-overflow.patch - Fix CVE-2021-20233 (bsc#1182263) * 0023-commands-menuentry-Fix-quoting-in-setparams_prefix.patch - Fix CVE-2020-25647 (bsc#1177883) * 0021-usb-Avoid-possible-out-of-bound-accesses-caused-by-m.patch - Fix CVE-2020-25632 (bsc#1176711) * 0020-dl-Only-allow-unloading-modules-that-are-not-depende.patch - Fix CVE-2020-27779, CVE-2020-14372 (bsc#1179265) (bsc#1175970) * 0001-include-grub-i386-linux.h-Include-missing-grub-types.patch * 0002-efi-Make-shim_lock-GUID-and-protocol-type-public.patch * 0003-efi-Return-grub_efi_status_t-from-grub_efi_get_varia.patch * 0004-efi-Add-a-function-to-read-EFI-variables-with-attrib.patch * 0005-efi-Add-secure-boot-detection.patch * 0006-efi-Only-register-shim_lock-verifier-if-shim_lock-pr.patch * 0007-verifiers-Move-verifiers-API-to-kernel-image.patch * 0008-efi-Move-the-shim_lock-verifier-to-the-GRUB-core.patch * 0009-kern-Add-lockdown-support.patch * 0010-kern-lockdown-Set-a-variable-if-the-GRUB-is-locked-d.patch * 0011-efi-Lockdown-the-GRUB-when-the-UEFI-Secure-Boot-is-e.patch * 0012-efi-Use-grub_is_lockdown-instead-of-hardcoding-a-dis.patch * 0013-acpi-Don-t-register-the-acpi-command-when-locked-dow.patch * 0014-mmap-Don-t-register-cutmem-and-badram-commands-when-.patch * 0015-commands-Restrict-commands-that-can-load-BIOS-or-DT-.patch * 0016-commands-setpci-Restrict-setpci-command-when-locked-.patch * 0017-commands-hdparm-Restrict-hdparm-command-when-locked-.patch * 0018-gdb-Restrict-GDB-access-when-locked-down.patch * 0019-loader-xnu-Don-t-allow-loading-extension-and-package.patch * 0040-shim_lock-Only-skip-loading-shim_lock-verifier-with-.patch * 0041-squash-Add-secureboot-support-on-efi-chainloader.patch * 0042-squash-grub2-efi-chainload-harder.patch * 0043-squash-Don-t-allow-insmod-when-secure-boot-is-enable.patch * 0044-squash-kern-Add-lockdown-support.patch * 0045-squash-Add-support-for-Linux-EFI-stub-loading-on-aar.patch * 0046-squash-verifiers-Move-verifiers-API-to-kernel-image.patch - Drop patch supersceded by the new backport * 0001-linuxefi-fail-kernel-validation-without-shim-protoco.patch * 0001-shim_lock-Disable-GRUB_VERIFY_FLAGS_DEFER_AUTH-if-se.patch * 0007-linuxefi-fail-kernel-validation-without-shim-protoco.patch - Add SBAT metadata section to grub.efi - Drop shim_lock module as it is part of core of grub.efi * grub2.spec ------------------------------------------------------------------- Mon Feb 22 12:49:48 UTC 2021 - Michael Chang <mchang@suse.com> - Fix build error in binutils 2.36 (bsc#1181741) * 0001-Fix-build-error-in-binutils-2.36.patch - Fix executable stack in grub-emu (bsc#1181696) * 0001-emu-fix-executable-stack-marking.patch ------------------------------------------------------------------- Thu Feb 18 05:21:29 UTC 2021 - Michael Chang <mchang@suse.com> - Restore compatibilty sym-links * grub2.spec - Use rpmlintrc to filter out rpmlint 2.0 error (bsc#1179044) * grub2.rpmlintrc ------------------------------------------------------------------- Wed Jan 27 04:13:32 UTC 2021 - Michael Chang <mchang@suse.com> - Complete Secure Boot support on aarch64 (jsc#SLE-15020) * 0001-Add-support-for-Linux-EFI-stub-loading-on-aarch64.patch * 0002-arm64-make-sure-fdt-has-address-cells-and-size-cells.patch * 0003-Make-grub_error-more-verbose.patch * 0004-arm-arm64-loader-Better-memory-allocation-and-error-.patch * 0005-Make-linux_arm_kernel_header.hdr_offset-be-at-the-ri.patch * 0006-efi-Set-image-base-address-before-jumping-to-the-PE-.patch * 0007-linuxefi-fail-kernel-validation-without-shim-protoco.patch * 0008-squash-Add-support-for-Linux-EFI-stub-loading-on-aar.patch * 0009-squash-Add-support-for-linuxefi.patch ------------------------------------------------------------------- Thu Jan 21 07:59:39 UTC 2021 - Michael Chang <mchang@suse.com> - Fix rpmlint 2.0 error for having arch specific path in noarch package aiming for compatibility with old package (bsc#1179044) * grub2.spec - Fix non POSIX sed argument which failed in sed from busybox (bsc#1181091) * grub2-check-default.sh ------------------------------------------------------------------- Mon Nov 2 06:42:04 UTC 2020 - Michael Chang <mchang@suse.com> - Fix boot failure in blocklist installation (bsc#1178278) * Modified 0002-grub-install-Avoid-incompleted-install-on-i386-pc.patch ------------------------------------------------------------------- Thu Oct 22 06:19:13 UTC 2020 - Michael Chang <mchang@suse.com> - Fix grub2-install error with "failed to get canonical path of `/boot/grub2/i386-pc'." (bsc#1177957) * Modified 0002-grub-install-Avoid-incompleted-install-on-i386-pc.patch ------------------------------------------------------------------- Wed Oct 14 08:46:46 UTC 2020 - Michael Chang <mchang@suse.com> - Fix https boot interrupted by unrecognised network address error message (bsc#1172952) * 0001-add-support-for-UEFI-network-protocols.patch ------------------------------------------------------------------- Tue Oct 13 08:54:10 UTC 2020 - Michael Chang <mchang@suse.com> - grub2.spec: Fix bare words used as string in expression which is no longer allowed in rpm 4.16 ------------------------------------------------------------------- Fri Sep 25 07:13:27 UTC 2020 - Michael Chang <mchang@suse.com> - Improve the error handling when grub2-install fails with short mbr gap (bsc#1176062) * 0001-Warn-if-MBR-gap-is-small-and-user-uses-advanced-modu.patch * 0002-grub-install-Avoid-incompleted-install-on-i386-pc.patch ------------------------------------------------------------------- Wed Sep 9 08:10:45 UTC 2020 - Michael Chang <mchang@suse.com> - Make efi hand off the default entry point of the linux command (bsc#1176134) * 0001-efi-linux-provide-linux-command.patch ------------------------------------------------------------------- Thu Aug 27 06:58:37 UTC 2020 - Michael Chang <mchang@suse.com> - Fix verification requested but nobody cares error when loading external module in secure boot off (bsc#1175766) * 0001-shim_lock-Disable-GRUB_VERIFY_FLAGS_DEFER_AUTH-if-se.patch ------------------------------------------------------------------- Sat Aug 22 02:41:49 UTC 2020 - Michael Chang <mchang@suse.com> - Make consistent check to enable relative path on btrfs (bsc#1174567) * 0001-Unify-the-check-to-enable-btrfs-relative-path.patch ------------------------------------------------------------------- Fri Aug 21 04:40:48 UTC 2020 - Michael Chang <mchang@suse.com> - Add fibre channel device's ofpath support to grub-ofpathname and search hint to speed up root device discovery (bsc#1172745) * 0001-ieee1275-powerpc-implements-fibre-channel-discovery-.patch * 0002-ieee1275-powerpc-enables-device-mapper-discovery.patch ------------------------------------------------------------------- Tue Aug 18 06:02:21 UTC 2020 - Michael Chang <mchang@suse.com> - Fix for CVE-2020-15705 (bsc#1174421) * 0001-linuxefi-fail-kernel-validation-without-shim-protoco.patch * 0002-cmdline-Provide-cmdline-functions-as-module.patch ------------------------------------------------------------------- Thu Aug 13 06:41:16 UTC 2020 - Michael Chang <mchang@suse.com> - Make grub-calloc inline to avoid symbol not found error as the system may not use updated grub to boot the system (bsc#1174782) (bsc#1175060) (bsc#1175036) * 0001-kern-mm.c-Make-grub_calloc-inline.patch ------------------------------------------------------------------- Mon Jul 27 10:04:49 UTC 2020 - Michael Chang <mchang@suse.com> - Fix for CVE-2020-10713 (bsc#1168994) * 0001-yylex-Make-lexer-fatal-errors-actually-be-fatal.patch - Fix for CVE-2020-14308 CVE-2020-14309, CVE-2020-14310, CVE-2020-14311 (bsc#1173812) * 0002-safemath-Add-some-arithmetic-primitives-that-check-f.patch * 0003-calloc-Make-sure-we-always-have-an-overflow-checking.patch * 0004-calloc-Use-calloc-at-most-places.patch * 0005-malloc-Use-overflow-checking-primitives-where-we-do-.patch * 0006-iso9660-Don-t-leak-memory-on-realloc-failures.patch * 0007-font-Do-not-load-more-than-one-NAME-section.patch - Fix CVE-2020-15706 (bsc#1174463) * 0008-script-Remove-unused-fields-from-grub_script_functio.patch * 0009-script-Avoid-a-use-after-free-when-redefining-a-func.patch - Fix CVE-2020-15707 (bsc#1174570) * 0010-linux-Fix-integer-overflows-in-initrd-size-handling.patch - Use overflow checking primitives where the arithmetic expression for buffer allocations may include unvalidated data - Use grub_calloc for overflow check and return NULL when it would occur * 0001-add-support-for-UEFI-network-protocols.patch * 0003-bootp-New-net_bootp6-command.patch * grub2-btrfs-01-add-ability-to-boot-from-subvolumes.patch * grub2-btrfs-09-get-default-subvolume.patch * grub2-gfxmenu-support-scrolling-menu-entry-s-text.patch * grub2-grubenv-in-btrfs-header.patch ------------------------------------------------------------------- Thu Jul 16 13:15:27 UTC 2020 - Michel Normand <normand@linux.vnet.ibm.com> - No 95_textmode for PowerPC (boo#1174166) ------------------------------------------------------------------- Mon May 18 08:15:01 UTC 2020 - Michael Chang <mchang@suse.com> - Skip zfcpdump kernel from the grub boot menu (bsc#1166513) * grub2-s390x-skip-zfcpdump-image.patch ------------------------------------------------------------------- Tue May 5 06:48:55 UTC 2020 - Michael Chang <mchang@suse.com> - Fix boot failure as journaled data not get drained due to abrupt power off after grub-install (bsc#1167756) * grub-install-force-journal-draining-to-ensure-data-i.patch ------------------------------------------------------------------- Thu Apr 16 13:35:10 UTC 2020 - Michael Chang <mchang@suse.com> - Fix executable stack in grub-probe and other grub utility (bsc#1169137) * grub2-btrfs-06-subvol-mount.patch ------------------------------------------------------------------- Tue Mar 24 08:17:33 UTC 2020 - Michael Chang <mchang@suse.com> - Fix GCC 10 build fail (bsc#1158189) * 0001-mdraid1x_linux-Fix-gcc10-error-Werror-array-bounds.patch * 0002-zfs-Fix-gcc10-error-Werror-zero-length-bounds.patch ------------------------------------------------------------------- Fri Mar 20 10:36:54 UTC 2020 - Michael Chang <mchang@suse.com> - Backport to support searching for specific config files for netboot (bsc#1166409) * 0001-normal-Move-common-datetime-functions-out-of-the-nor.patch * 0002-kern-Add-X-option-to-printf-functions.patch * 0003-normal-main-Search-for-specific-config-files-for-net.patch * 0004-datetime-Enable-the-datetime-module-for-the-emu-plat.patch ------------------------------------------------------------------- Mon Mar 16 11:42:08 UTC 2020 - Ludwig Nussel <lnussel@suse.de> - move *.module files to separate -debug subpackage (boo#1166578) ------------------------------------------------------------------- Thu Mar 12 08:29:55 UTC 2020 - Fabian Vogt <fvogt@suse.com> - Fix EFI console detection to make it a runtime decision (bsc#1164385) * grub2-SUSE-Add-the-t-hotkey.patch ------------------------------------------------------------------- Tue Mar 10 11:59:23 UTC 2020 - Ludwig Nussel <lnussel@suse.de> - Downgrade mtools to Suggests for consistency with xorriso (boo#1165839) - remove info requirements, file triggers are used now (boo#1152105) ------------------------------------------------------------------- Fri Feb 28 16:36:57 UTC 2020 - rw@suse.com - Add secure boot support for s390x. (jsc#SLE-9425) * grub2-s390x-11-secureboot.patch ------------------------------------------------------------------- Tue Feb 18 08:43:30 UTC 2020 - Michael Chang <mchang@suse.com> - Fix grub hangs after loading rogue image without valid signature for uefi secure boot (bsc#1159102) * grub2-verifiers-fix-system-freeze-if-verify-failed.patch ------------------------------------------------------------------- Tue Feb 4 07:59:40 UTC 2020 - Michael Chang <mchang@suse.com> - From Stefan Seyfried <seife@novell.slipkontur.de> : Fix grub2-install fails with "not a directory" error (boo#1161641, bsc#1162403) * grub2-install-fix-not-a-directory-error.patch ------------------------------------------------------------------- Wed Nov 27 17:09:42 UTC 2019 - olaf@aepfle.de - Correct awk pattern in 20_linux_xen (bsc#900418, bsc#1157912) - Correct linux and initrd handling in 20_linux_xen (bsc#1157912) M grub2-efi-xen-cfg-unquote.patch M grub2-efi-xen-chainload.patch M grub2-efi-xen-cmdline.patch M grub2-efi-xen-removable.patch ------------------------------------------------------------------- Wed Oct 30 06:26:33 UTC 2019 - Michael Chang <mchang@suse.com> - Disable btrfs zstd support for i386-pc to workaround core.img too large to be embedded in btrfs bootloader area or MBR gap (boo#1154809) * 0001-btrfs-disable-zstd-support-for-i386-pc.patch ------------------------------------------------------------------- Mon Oct 28 11:52:19 UTC 2019 - Bernhard Wiedemann <bwiedemann@suse.com> - Fix grub2.sleep to load old kernel after hibernation (boo#1154783) ------------------------------------------------------------------- Tue Oct 22 08:05:19 UTC 2019 - Andreas Schwab <schwab@suse.de> - Enable support for riscv64 - Backports from upstream: * risc-v-fix-computation-of-pc-relative-relocation-offset.patch * risc-v-add-clzdi2-symbol.patch * grub-install-define-default-platform-for-risc-v.patch ------------------------------------------------------------------- Thu Oct 17 06:34:52 UTC 2019 - Michael Chang <mchang@suse.com> - Version bump to 2.04 * removed - translations-20170427.tar.xz * grub2.spec - Make signed grub-tpm.efi specific to x86_64-efi build, the platform currently shipped with tpm module from upstream codebase - Add shim_lock to signed grub.efi in x86_64-efi build - x86_64: linuxefi now depends on linux, both will verify kernel via shim_lock - Remove translation tarball and po file hacks as it's been included in upstream tarball * rediff - grub2-setup-try-fs-embed-if-mbr-gap-too-small.patch - grub2-commands-introduce-read_file-subcommand.patch - grub2-secureboot-add-linuxefi.patch - 0001-add-support-for-UEFI-network-protocols.patch - grub2-efi-HP-workaround.patch - grub2-secureboot-install-signed-grub.patch - grub2-linux.patch - use-grub2-as-a-package-name.patch - grub2-pass-corret-root-for-nfsroot.patch - grub2-secureboot-use-linuxefi-on-uefi.patch - grub2-secureboot-no-insmod-on-sb.patch - grub2-secureboot-provide-linuxefi-config.patch - grub2-secureboot-chainloader.patch - grub2-s390x-01-Changes-made-and-files-added-in-order-to-allow-s390x.patch - grub2-s390x-02-kexec-module-added-to-emu.patch - grub2-s390x-04-grub2-install.patch - grub2-btrfs-01-add-ability-to-boot-from-subvolumes.patch - grub2-efi-chainloader-root.patch - grub2-ppc64le-disable-video.patch - grub2-ppc64-cas-reboot-support.patch - grub2-Fix-incorrect-netmask-on-ppc64.patch - 0003-bootp-New-net_bootp6-command.patch - 0006-bootp-Add-processing-DHCPACK-packet-from-HTTP-Boot.patch - 0012-tpm-Build-tpm-as-module.patch - grub2-emu-4-all.patch - grub2-btrfs-09-get-default-subvolume.patch - grub2-ppc64le-memory-map.patch - grub2-ppc64-cas-fix-double-free.patch - 0008-efinet-Setting-DNS-server-from-UEFI-protocol.patch * drop upstream patches - grub2-fix-locale-en.mo.gz-not-found-error-message.patch - grub2-fix-build-with-flex-2.6.4.patch - grub2-accept-empty-module.patch - 0001-Fix-packed-not-aligned-error-on-GCC-8.patch - 0001-Fix-PCIe-LER-when-GRUB2-accesses-non-enabled-MMIO-da.patch - unix-exec-avoid-atexit-handlers-when-child-exits.patch - 0001-xfs-Accept-filesystem-with-sparse-inodes.patch - grub2-binutils2.31.patch - grub2-msdos-fix-overflow.patch - 0001-tsc-Change-default-tsc-calibration-method-to-pmtimer.patch - grub2-efi-Move-grub_reboot-into-kernel.patch - grub2-efi-Free-malloc-regions-on-exit.patch - grub2-move-initrd-upper.patch - 0002-Add-Virtual-LAN-support.patch - 0001-ofnet-Initialize-structs-in-bootpath-parser.patch - 0001-misc-fix-invalid-character-recongition-in-strto-l.patch - 0001-tpm-Core-TPM-support.patch - 0002-tpm-Measure-kernel-initrd.patch - 0003-tpm-Add-BIOS-boot-measurement.patch - 0004-tpm-Rework-linux-command.patch - 0005-tpm-Rework-linux16-command.patch - 0006-tpm-Measure-kernel-and-initrd-on-BIOS-systems.patch - 0007-tpm-Measure-the-kernel-commandline.patch - 0008-tpm-Measure-commands.patch - 0009-tpm-Measure-multiboot-images-and-modules.patch - 0010-tpm-Fix-boot-when-there-s-no-TPM.patch - 0011-tpm-Fix-build-error.patch - 0013-tpm-i386-pc-diskboot-img.patch - grub2-freetype-pkgconfig.patch - 0001-cpio-Disable-gcc9-Waddress-of-packed-member.patch - 0002-jfs-Disable-gcc9-Waddress-of-packed-member.patch - 0003-hfs-Fix-gcc9-error-Waddress-of-packed-member.patch - 0004-hfsplus-Fix-gcc9-error-with-Waddress-of-packed-membe.patch - 0005-acpi-Fix-gcc9-error-Waddress-of-packed-member.patch - 0006-usbtest-Disable-gcc9-Waddress-of-packed-member.patch - 0007-chainloader-Fix-gcc9-error-Waddress-of-packed-member.patch - 0008-efi-Fix-gcc9-error-Waddress-of-packed-member.patch ------------------------------------------------------------------- Tue Oct 15 13:29:14 UTC 2019 - rw@suse.com - Consistently find btrfs snapshots on s390x. (bsc#1136970) * grub2-s390x-04-grub2-install.patch ------------------------------------------------------------------- Fri Aug 16 04:51:16 UTC 2019 - Michael Chang <mchang@suse.com> - Fix fallback embed doesn't work when no post mbr gap at all (boo#1142229) * Refresh grub2-setup-try-fs-embed-if-mbr-gap-too-small.patch ------------------------------------------------------------------- Thu Jul 18 09:54:14 UTC 2019 - mchang@suse.com - Revert grub2-ieee1275-FCP-methods-for-WWPN-and-LUNs.patch until merged by upstream (bsc#1134287, bsc#1139345, LTC#177836, LTC#174229). ------------------------------------------------------------------- Mon Jun 24 17:56:12 UTC 2019 - Michal Suchanek <msuchanek@suse.de> - Fix iteration of FCP LUNs (bsc#1134287, bsc#1139345, LTC#177836, LTC#174229). * Refresh grub2-ieee1275-FCP-methods-for-WWPN-and-LUNs.patch ------------------------------------------------------------------- Mon Jun 17 09:45:49 UTC 2019 - mchang@suse.com - Use grub2-install to handle signed grub installation for UEFI secure boot and also provide options to override default (bsc#1136601) * grub2-secureboot-install-signed-grub.patch - Remove arm64 linuxefi patches as it's not needed for secure boot * 0001-efi-refactor-grub_efi_allocate_pages.patch * 0002-Remove-grub_efi_allocate_pages.patch * 0003-arm64-efi-move-EFI_PAGE-definitions-to-efi-memory.h.patch * 0004-efi-Add-central-copy-of-grub_efi_find_mmap_size.patch * 0005-efi-Add-grub_efi_get_ram_base-function-for-arm64.patch * 0006-Add-support-for-EFI-handover-on-ARM64.patch ------------------------------------------------------------------- Fri Jun 14 06:13:58 UTC 2019 - mchang@suse.com - Avoid high resolution when trying to keep current mode (bsc#1133842) * grub2-video-limit-the-resolution-for-fixed-bimap-font.patch - Make GRUB_SAVEDEFAULT working with btrfs (bsc#1128592) * grub2-grubenv-in-btrfs-header.patch ------------------------------------------------------------------- Fri May 17 13:57:29 UTC 2019 - rw@suse.com - Check/refresh zipl-kernel before hibernate on s390x. (bsc#940457) (Getting rid of hardcoded 'vmlinuz', which failed on PPC as well.) * grub2-systemd-sleep.sh ------------------------------------------------------------------- Fri May 17 12:22:55 UTC 2019 - rw@suse.com - Try to refresh zipl-kernel on failed kexec. (bsc#1127293) * grub2-s390x-04-grub2-install.patch - Fully support "previous" zipl-kernel, with 'mem=1G' being available on dedicated entries. (bsc#928131) * grub2-s390x-09-improve-zipl-setup.patch - Refresh * grub2-zipl-setup-fix-btrfs-multipledev.patch ------------------------------------------------------------------- Fri May 3 02:42:27 UTC 2019 - mchang <mchang@suse.com> - Fix GCC 9 build failure (bsc#1121208) * 0001-cpio-Disable-gcc9-Waddress-of-packed-member.patch * 0002-jfs-Disable-gcc9-Waddress-of-packed-member.patch * 0003-hfs-Fix-gcc9-error-Waddress-of-packed-member.patch * 0004-hfsplus-Fix-gcc9-error-with-Waddress-of-packed-membe.patch * 0005-acpi-Fix-gcc9-error-Waddress-of-packed-member.patch * 0006-usbtest-Disable-gcc9-Waddress-of-packed-member.patch * 0007-chainloader-Fix-gcc9-error-Waddress-of-packed-member.patch * 0008-efi-Fix-gcc9-error-Waddress-of-packed-member.patch ------------------------------------------------------------------- Tue Mar 19 06:14:47 UTC 2019 - mchang <mchang@suse.com> - Use %doc for older products for compatibility, or may end up with unsuccessful build result * grub2.spec ------------------------------------------------------------------- Tue Mar 19 04:18:46 UTC 2019 - mchang <mchang@suse.com> - Revert grub2-ieee1275-open-raw-mode.patch for regression of crashing lvm on multipath SAN (bsc#1113702) * deleted grub2-ieee1275-open-raw-mode.patch - Add exception handling to FCP lun enumeration (bsc#1113702) * grub2-ieee1275-FCP-methods-for-WWPN-and-LUNs.patch ------------------------------------------------------------------- Wed Feb 20 08:38:55 UTC 2019 - mchang@suse.com - Fix LOADER_TYPE parsing in grub2-once (boo#1122569) ------------------------------------------------------------------- Tue Feb 12 08:57:03 UTC 2019 - mchang@suse.com - Create compatibility sym-link of grub.xen in the old location to which old VM definition is pointing (bsc#1123942) ------------------------------------------------------------------- Mon Jan 28 14:12:05 UTC 2019 - Guillaume GARDET <guillaume.gardet@opensuse.org> - Add patch to fix ARM boot, when kernel become too big: * grub2-move-initrd-upper.patch (boo#1123350) ------------------------------------------------------------------- Fri Jan 25 22:20:36 UTC 2019 - Jan Engelhardt <jengelh@inai.de> - Replace old $RPM_* shell vars. ------------------------------------------------------------------- Fri Jan 25 07:08:32 UTC 2019 - mchang@suse.com - Support long menu entry by scrolling its text left and right through the key stroke ctrl+l and ctrl+r (FATE#325760) * grub2-gfxmenu-support-scrolling-menu-entry-s-text.patch ------------------------------------------------------------------- Thu Jan 24 09:26:09 UTC 2019 - mchang@suse.com - Improved hiDPI device support (FATE#326680) * grub2-video-limit-the-resolution-for-fixed-bimap-font.patch ------------------------------------------------------------------- Wed Jan 23 10:44:09 UTC 2019 - rw@suse.com - Build platform-packages 'noarch' and move to '/usr/share/efi' for SUSE Manager. (FATE#326960) * grub2-efi-xen-chainload.patch (bsc#1122563) * grub2-efi-xen-removable.patch (refresh) ------------------------------------------------------------------- Thu Dec 20 09:21:27 UTC 2018 - mchang@suse.com - Support for UEFI Secure Boot on AArch64 (FATE#326541) * 0001-efi-refactor-grub_efi_allocate_pages.patch * 0002-Remove-grub_efi_allocate_pages.patch * 0003-arm64-efi-move-EFI_PAGE-definitions-to-efi-memory.h.patch * 0004-efi-Add-central-copy-of-grub_efi_find_mmap_size.patch * 0005-efi-Add-grub_efi_get_ram_base-function-for-arm64.patch * 0006-Add-support-for-EFI-handover-on-ARM64.patch ------------------------------------------------------------------- Mon Nov 26 06:54:34 UTC 2018 - mchang@suse.com - Change default tsc calibration method to pmtimer on EFI (bsc#1114754) * 0001-tsc-Change-default-tsc-calibration-method-to-pmtimer.patch ------------------------------------------------------------------- Fri Oct 19 07:17:34 UTC 2018 - mchang@suse.com - ieee1275: Fix double free in CAS reboot (bsc#1111955) * grub2-ppc64-cas-fix-double-free.patch ------------------------------------------------------------------- Thu Oct 4 06:52:58 UTC 2018 - glin@suse.com - Support NVDIMM device names (bsc#1110073) * grub2-getroot-support-nvdimm.patch ------------------------------------------------------------------- Wed Oct 3 07:08:14 UTC 2018 - mchang@suse.com - Translate caret back to space as the initrd stanza could use space to delimit multiple files loaded (bsc#1101942) * grub2-util-30_os-prober-multiple-initrd.patch ------------------------------------------------------------------- Wed Sep 26 08:01:05 UTC 2018 - mchang@suse.com - ieee1275: implement FCP methods for WWPN and LUNs (bsc#1093145) * grub2-ieee1275-FCP-methods-for-WWPN-and-LUNs.patch ------------------------------------------------------------------- Thu Sep 13 08:38:01 UTC 2018 - mchang@suse.com - Fix broken network interface with random address and same name (bsc#1084508) * 0001-ofnet-Initialize-structs-in-bootpath-parser.patch ------------------------------------------------------------------- Fri Aug 31 10:06:56 UTC 2018 - mchang@suse.com - Fix outputting invalid btrfs subvol path on non btrfs filesystem due to bogus return code handling. (bsc#1106381) * modified grub2-btrfs-10-config-directory.patch ------------------------------------------------------------------- Thu Aug 23 08:37:15 UTC 2018 - mchang@suse.com - Fix overflow in sector count calculation (bsc#1105163) * grub2-msdos-fix-overflow.patch ------------------------------------------------------------------- Thu Aug 9 02:48:18 UTC 2018 - mchang@suse.com - Downgrade libburnia-tools to suggest as minimal system can't afford pulling in tcl/tk and half of the x11 stack (bsc#1102515) * modified grub2.spec ------------------------------------------------------------------- Wed Aug 8 15:17:13 UTC 2018 - dimstar@opensuse.org - Add grub2-binutils2.31.patch: x86-64: Treat R_X86_64_PLT32 as R_X86_64_PC32. Starting from binutils commit bd7ab16b x86-64 assembler generates R_X86_64_PLT32, instead of R_X86_64_PC32, for 32-bit PC-relative branches. Grub2 should treat R_X86_64_PLT32 as R_X86_64_PC32. ------------------------------------------------------------------- Mon Aug 6 09:02:45 UTC 2018 - josef.moellers@suse.com - The grubxenarch packages are now architecture-independent. [bsc#953297, grub2.spec, grub2-rpmlintrc] ------------------------------------------------------------------- Tue Jul 24 07:56:02 UTC 2018 - mchang@suse.com - Fix config_directory on btrfs to follow path scheme (bsc#1063443) * grub2-btrfs-10-config-directory.patch - Fix grub2-install --root-directory does not work for /boot/grub2/<arch> on separate btrfs subvolume (boo#1098420) * grub2-btrfs-06-subvol-mount.patch - Fix setparams doesn't work as expected from boot-last-label NVRAM var, after inital CAS reboot on ieee1275 (bsc#1088830) * grub2-ppc64-cas-new-scope.patch ------------------------------------------------------------------- Mon Jul 16 07:53:19 UTC 2018 - mchang@suse.com - Fix install on xfs error (bsc#1101283) * 0001-xfs-Accept-filesystem-with-sparse-inodes.patch ------------------------------------------------------------------- Tue Jul 10 15:57:50 UTC 2018 - jbohac@suse.cz - grub2.spec: change %config to %config(noreplace) Don't overwrite user changes to config files on upgrades. ------------------------------------------------------------------- Wed Jul 4 12:55:30 UTC 2018 - josef.moellers@suse.com - Marked %{_sysconfdir}/grub.d/40_custom as (noreplace) [bsc#1079332, grub2.spec] ------------------------------------------------------------------- Wed Jun 27 08:39:07 UTC 2018 - josef.moellers@suse.com - Replace "GRUB_DISABLE_LINUX_RECOVERY" by "GRUB_DISABLE_RECOVERY" in /etc/default/grub and remove test from s390x install section in upec file. [bsc#1042433, grub.default, grub2.spec] ------------------------------------------------------------------- Wed Jun 20 09:21:48 UTC 2018 - josef.moellers@suse.com - Added "# needssslcertforbuild", which got lost somewhere, to spec file [grub2.spec] ------------------------------------------------------------------- Fri Jun 15 09:33:17 UTC 2018 - josef.moellers@suse.com - Replace confusing menu on btrfs "snapper rollback" by help text. [bsc#1027588, grub2-btrfs-help-on-snapper-rollback.patch] ------------------------------------------------------------------- Thu May 24 11:02:04 CEST 2018 - kukuk@suse.de - Use %license instead of %doc [bsc#1082318] ------------------------------------------------------------------- Wed May 16 09:07:08 UTC 2018 - Thomas.Blume@suse.com - grub2-emu on s390 keep network during kexec boot (bsc#1089493) * grub2-s390x-10-keep-network-at-kexec.patch ------------------------------------------------------------------- Fri May 4 08:07:09 UTC 2018 - idonmez@suse.com - Add grub2-freetype-pkgconfig.patch to fix build with new freetype use pkgconfig to find Freetype libraries. ------------------------------------------------------------------- Tue Apr 17 07:54:15 UTC 2018 - mchang@suse.com - Fallback to raw mode if Open Firmware returns invalid ihandler (bsc#1071559) * grub2-ieee1275-open-raw-mode.patch ------------------------------------------------------------------- Thu Apr 12 08:41:39 UTC 2018 - mchang@suse.com - Fix error of essential directory not found on UEFI Xen host (bsc#1085842) * add grub2-efi-xen-removable.patch * rediff grub2-suse-remove-linux-root-param.patch ------------------------------------------------------------------- Tue Apr 10 15:12:28 CEST 2018 - jdelvare@suse.de - Fix corruption of "grub2-install --help" and grub2-install manual page (bsc#1086670) * unix-exec-avoid-atexit-handlers-when-child-exits.patch ------------------------------------------------------------------- Mon Apr 2 08:30:05 UTC 2018 - mchang@suse.com - Fix Nvidia GPU in legacy I/O slot 2 disappears during system startup (bsc#1082914) * 0001-Fix-PCIe-LER-when-GRUB2-accesses-non-enabled-MMIO-da.patch ------------------------------------------------------------------- Fri Mar 30 09:16:06 UTC 2018 - mchang@suse.com - Fix packed-not-aligned error on GCC 8 (bsc#1084632) * 0001-Fix-packed-not-aligned-error-on-GCC-8.patch ------------------------------------------------------------------- Mon Mar 26 11:37:13 UTC 2018 - msuchanek@suse.com - Fix incorrect netmask on ppc64 (bsc#1085419) * grub2-Fix-incorrect-netmask-on-ppc64.patch ------------------------------------------------------------------- Mon Mar 12 07:31:10 UTC 2018 - mchang@suse.com - Fix UEFI HTTPS Boot from ISO installation image (bsc#1076132) * 0001-add-support-for-UEFI-network-protocols.patch ------------------------------------------------------------------- Tue Mar 6 08:21:43 UTC 2018 - mchang@suse.com - fix wrong command output when default subvolume is toplevel tree with id 5 (bsc#1078775) * grub2-btrfs-09-get-default-subvolume.patch - insert mdraid modules to support software RAID (bsc#1078775) * grub2-xen-pv-firmware.cfg ------------------------------------------------------------------- Thu Mar 1 18:36:33 UTC 2018 - iforster@suse.com - Rename grub2-btrfs-workaround-grub2-once.patch to grub2-grubenv-in-btrfs-header.patch - Store GRUB environment variable health_checker_flag in Btrfs header ------------------------------------------------------------------- Tue Feb 13 09:05:45 UTC 2018 - mchang@suse.com - Fix incorrect check preventing the script from running (bsc#1078481) * 80_suse_btrfs_snapshot ------------------------------------------------------------------- Wed Feb 7 09:58:26 UTC 2018 - mchang@suse.com - Fix disappeared snapshot menu entry (bsc#1078481) * 80_suse_btrfs_snapshot ------------------------------------------------------------------- Tue Feb 6 09:44:26 UTC 2018 - mchang@suse.com - Fix unquoted string error and add some more checks (bsc#1079330) * grub2-check-default.sh ------------------------------------------------------------------- Mon Feb 5 08:52:20 UTC 2018 - olaf@aepfle.de - The %prep section applies patches, the %build section builds. Remove mixup of patching and building from %prep for quilt setup Related to bsc#1065703 ------------------------------------------------------------------- Tue Jan 23 04:41:22 UTC 2018 - mchang@suse.com - Check if default entry need to be corrected for updated distributor version and/or use fallback entry if default kernel entry removed (bsc#1065349) * grub2-check-default.sh * grub2-mkconfig-default-entry-correction.patch - Fix grub2-mkconfig warning when disk is LVM PV (bsc#1071239) * grub2-getroot-scan-disk-pv.patch ------------------------------------------------------------------- Fri Dec 8 09:30:46 UTC 2017 - mchang@suse.com - Filter out autofs and securityfs from /proc/self/mountinfo to speed up nfsroot test in large number of autofs mounts (bsc#1069094) * modified grub2-pass-corret-root-for-nfsroot.patch ------------------------------------------------------------------- Tue Nov 28 09:35:48 UTC 2017 - mchang@suse.com - Fix http(s) boot security review (bsc#1058090) * 0002-AUDIT-0-http-boot-tracker-bug.patch ------------------------------------------------------------------- Tue Nov 14 09:02:19 UTC 2017 - mchang@suse.com - 0001-add-support-for-UEFI-network-protocols.patch: * Workaround http data access in firmware * Fix DNS device path parsing for efinet device * Relaxed UEFI Protocol requirement * Support Intel OPA (Omni-Path Architecture) PXE Boot (bsc#1015589) ------------------------------------------------------------------- Wed Nov 8 09:37:12 UTC 2017 - olaf@aepfle.de - grub2-xen-pv-firmware.cfg: remove linemode=1 from cmdline for SUSE installer. openQA expects ncurses interface. (bsc#1066919) ------------------------------------------------------------------- Mon Nov 6 15:34:03 UTC 2017 - jmatejek@suse.com - use python3 for autogen.sh (fate#323526) ------------------------------------------------------------------- Tue Oct 31 13:36:02 UTC 2017 - msuchanek@suse.com - Do not check that PReP partition does not contain an ELF during installation (bsc#1065738). * grub2-install-remove-useless-check-PReP-partition-is-empty.patch ------------------------------------------------------------------- Tue Sep 26 06:35:50 UTC 2017 - mchang@suse.com - Build diskboot_tpm.img as separate image to diskboot.img to prevent failure in booting on some bogus firmware. To use the TPM image you have to use suse-enable-tpm option of grub2-install (bsc#1052401) * 0013-tpm-i386-pc-diskboot-img.patch ------------------------------------------------------------------- Wed Sep 20 22:17:10 UTC 2017 - mlatimer@suse.com - Use /boot/<arch>/loader/linux to determine if install media is SUSE instead of /contents file (bsc#1054453) ------------------------------------------------------------------- Tue Sep 19 22:52:45 UTC 2017 - mlatimer@suse.com - Use the pvops-enabled default kernel if the traditional xen pv kernel and initrd are not found (bsc#1054453) ------------------------------------------------------------------- Fri Sep 8 08:04:41 UTC 2017 - agraf@suse.com - Fix reboot in UEFI environments (bsc#1047331) * Add grub2-efi-Move-grub_reboot-into-kernel.patch * Refresh grub2-efi-Free-malloc-regions-on-exit.patch ------------------------------------------------------------------- Sun Sep 3 12:12:21 UTC 2017 - mchang@suse.com - Add preliminary patch for UEFI HTTPS and related network protocol support (fate#320130) * 0001-add-support-for-UEFI-network-protocols.patch ------------------------------------------------------------------- Sun Sep 3 11:41:42 UTC 2017 - mchang@suse.com - grub2-s390x-04-grub2-install.patch : remove arybase dependency in grub2-zipl-setup by not referencing to $[ (bsc#1055280) ------------------------------------------------------------------- Wed Aug 23 17:52:32 UTC 2017 - rw@suse.com - Fix minor oversights in and the exit value of the grub2-install helper on s390x. (bsc#1055343, fate#323298) * grub2-s390x-09-improve-zipl-setup.patch ------------------------------------------------------------------- Mon Jul 24 13:39:25 UTC 2017 - bwiedemann@suse.com - Make grub2.info build reproducible (boo#1047218) ------------------------------------------------------------------- Tue Jul 4 16:56:33 UTC 2017 - arvidjaar@gmail.com - add grub2-fix-build-with-flex-2.6.4.patch - fix build with flex 2.6.4+ that removed explicit (void) cast from fprintf call in yy_fatal_error. ------------------------------------------------------------------- Thu Jun 1 09:45:44 UTC 2017 - mchang@suse.com - Support LVM physical volume created without metadatacopies (bsc#1027526) * grub2-diskfilter-support-pv-without-metadatacopies.patch - Fix page fault exception when grub loads with Nvidia cards (bsc#1038533) * grub2-efi-uga-64bit-fb.patch - Require 'kexec-tools' for System z. (bsc#944358) * modified grub2.spec ------------------------------------------------------------------- Thu May 11 08:56:57 UTC 2017 - mchang@suse.com - grub2-xen-pv-firmware.cfg: insmod lvm module as it's not auto-loaded to support booting from lvm volume (bsc#1004324) - Grub not working correctly with xen and btrfs snapshots (bsc#1026511) * Add grub2-btrfs-09-get-default-subvolume.patch * grub2-xen-pv-firmware.cfg : search path in default subvolume ------------------------------------------------------------------- Thu Apr 27 18:39:21 UTC 2017 - arvidjaar@gmail.com - new upstream version 2.02 * rediff - use-grub2-as-a-package-name.patch * drop upstream patches - grub2-fix-uninitialized-variable-in-btrfs-with-GCC7.patch - grub2-add-FALLTHROUGH-annotations.patch - update translations ------------------------------------------------------------------- Sun Mar 26 18:08:20 UTC 2017 - arvidjaar@gmail.com - update grub2-btrfs-workaround-grub2-once.patch to also store saved_entry in additional environment block (boo#1031025) ------------------------------------------------------------------- Wed Mar 22 17:39:52 UTC 2017 - arvidjaar@gmail.com - fix building with GCC (bsc#1030247) * add grub2-fix-uninitialized-variable-in-btrfs-with-GCC7.patch * grub2-add-FALLTHROUGH-annotations.patch ------------------------------------------------------------------- Mon Mar 20 09:43:58 UTC 2017 - mchang@suse.com - Fix out of memory error on lvm detection (bsc#1016536) (bsc#1027401) * grub2-lvm-allocate-metadata-buffer-from-raw-contents.patch - Fix boot failure if /boot is separate btrfs partition (bsc#1023160) * grub2-btrfs-06-subvol-mount.patch ------------------------------------------------------------------- Fri Mar 17 06:22:42 UTC 2017 - mchang@suse.com - 0004-tpm-Rework-linux-command.patch : Fix out of bound memory copy (bsc#1029187) ------------------------------------------------------------------- Thu Mar 16 16:32:54 UTC 2017 - arvidjaar@gmail.com - new upstream version 2.02~rc2 * rediff - use-grub2-as-a-package-name.patch - grub2-linguas.sh-no-rsync.patch * drop upstream patches - 0001-efi-strip-off-final-NULL-from-File-Path-in-grub_efi_.patch ------------------------------------------------------------------- Mon Mar 6 06:34:01 UTC 2017 - mchang@suse.com - TPM Support (FATE#315831) * 0001-tpm-Core-TPM-support.patch * 0002-tpm-Measure-kernel-initrd.patch * 0003-tpm-Add-BIOS-boot-measurement.patch * 0004-tpm-Rework-linux-command.patch * 0005-tpm-Rework-linux16-command.patch * 0006-tpm-Measure-kernel-and-initrd-on-BIOS-systems.patch * 0007-tpm-Measure-the-kernel-commandline.patch * 0008-tpm-Measure-commands.patch * 0009-tpm-Measure-multiboot-images-and-modules.patch * 0010-tpm-Fix-boot-when-there-s-no-TPM.patch * 0011-tpm-Fix-build-error.patch * 0012-tpm-Build-tpm-as-module.patch - grub2.spec : Add grub-tpm.efi for Secure Boot ------------------------------------------------------------------- Fri Mar 3 10:26:10 UTC 2017 - mchang@suse.com - Fix invalid Xen EFI config files if xen_args include GRUB2 quoting (bsc#900418) (bsc#951748) * grub2-efi-xen-cfg-unquote.patch - Fix linuxefi erroneously initialize linux's boot_params with non-zero values. (bsc#1025563) * grub2-linuxefi-fix-boot-params.patch - Removed grub2-fix-multi-device-root-kernel-argument.patch as it has regression on how GRUB_DISABLE_LINUX_UUID=true interpreted (bsc#1015138) ------------------------------------------------------------------- Wed Mar 1 10:29:46 UTC 2017 - mchang@suse.com - Fix for openQA UEFI USB Boot failure with upstream patch (bsc#1026344) * added 0001-efi-strip-off-final-NULL-from-File-Path-in-grub_efi_.patch * removed 0001-Revert-efi-properly-terminate-filepath-with-NULL-in-.patch ------------------------------------------------------------------- Thu Feb 23 15:06:44 UTC 2017 - mchang@suse.com - Temporary fix for openQA UEFI USB Boot failure (bsc#1026344) * 0001-Revert-efi-properly-terminate-filepath-with-NULL-in-.patch ------------------------------------------------------------------- Fri Feb 17 06:46:11 UTC 2017 - mchang@suse.com - grub2.spec: fix s390x file list. ------------------------------------------------------------------- Thu Feb 16 12:55:29 UTC 2017 - msuchanek@suse.com - require efibootmgr in efi package (boo#1025520) ------------------------------------------------------------------- Wed Feb 15 07:25:02 UTC 2017 - mchang@suse.com - Merge changes from SLE12 - add grub2-emu-4-all.patch * Build 'grub2-emu' wherever possible, to allow a better implementation of that feature. - add grub2-s390x-06-loadparm.patch, - add grub2-commands-introduce-read_file-subcommand.patch: * allow s390x to telecontrol grub2. (bsc#891946, bsc#892852) - add grub2-s390x-06-loadparm.patch: * ignore case and fix transliteration of parameter. (bsc#891946) - add grub2-s390x-07-add-image-param-for-zipl-setup.patch * Add --image switch to force zipl update to specific kernel (bsc#928131) - add grub2-s390x-08-workaround-part-to-disk.patch * Ignore partition tables on s390x. (bsc#935127) - add grub2-efi-chainload-harder.patch: * allow XEN to be chain-loaded despite firmware flaws. (bnc#887793) * Do not use shim lock protocol for reading pe header, it won't be available when secure boot disabled (bsc#943380) * Make firmware flaw condition be more precisely detected and add debug message for the case * Check msdos header to find PE file header (bsc#954126) - grub2-s390x-04-grub2-install.patch: * streamline boot to grub menu. (bsc#898198) * Force '/usr' to read-only before calling kexec. (bsc#932951) - grub2-once: * add '--enum' option to enumerate boot-entries in a way actually understood by 'grub2'. (bsc#892852, bsc#892811) * Examine variables from grub environment in 'grub2-once'. (fate#319632) ------------------------------------------------------------------- Fri Feb 10 17:58:22 UTC 2017 - arvidjaar@gmail.com - new upstream version 2.02~rc1 * rediff - use-grub2-as-a-package-name.patch - grub2-s390x-04-grub2-install.patch - grub2-accept-empty-module.patch - grub2-btrfs-04-grub2-install.patch - grub2-btrfs-06-subvol-mount.patch * drop upstream patches - 0001-dns-fix-buffer-overflow-for-data-addresses-in-recv_h.patch - 0001-build-Use-AC_HEADER_MAJOR-to-find-device-macros.patch - 0002-configure-fix-check-for-sys-sysmacros.h-under-glibc-.patch - 0001-Fix-fwpath-in-efi-netboot.patch - 0001-arm64-Move-firmware-fdt-search-into-global-function.patch - 0002-arm-efi-Use-fdt-from-firmware-when-available.patch - grub2-arm64-mknetdir-add-suport-for-arm64-efi.patch - 0001-10_linux-Fix-grouping-of-tests-for-GRUB_DEVICE.patch - 0002-20_linux_xen-fix-test-for-GRUB_DEVICE.patch - 0001-xen-make-xen-loader-callable-multiple-times.patch - 0002-xen-avoid-memleaks-on-error.patch - 0003-xen-reduce-number-of-global-variables-in-xen-loader.patch - 0004-xen-add-elfnote.h-to-avoid-using-numbers-instead-of-.patch - 0005-xen-synchronize-xen-header.patch - 0006-xen-factor-out-p2m-list-allocation-into-separate-fun.patch - 0007-xen-factor-out-allocation-of-special-pages-into-sepa.patch - 0008-xen-factor-out-allocation-of-page-tables-into-separa.patch - 0009-xen-add-capability-to-load-initrd-outside-of-initial.patch - 0010-xen-modify-page-table-construction.patch - 0011-xen-add-capability-to-load-p2m-list-outside-of-kerne.patch * add - fix-grub2-use-stat-instead-of-udevadm-for-partition-lookup-with-new-glibc.patch fix compilation with new glibc ------------------------------------------------------------------- Thu Feb 9 03:45:16 UTC 2017 - mchang@suse.com - Fix build error on glibc-2.25 * 0001-build-Use-AC_HEADER_MAJOR-to-find-device-macros.patch * 0002-configure-fix-check-for-sys-sysmacros.h-under-glibc-.patch - Fix fwpath in efi netboot (fate#321993) (bsc#1022294) * 0001-Fix-fwpath-in-efi-netboot.patch ------------------------------------------------------------------- Fri Feb 3 08:18:30 UTC 2017 - mchang@suse.com - grub2-systemd-sleep.sh: Fix prematurely abort by commands error return code and skip the offending menu entry (bsc#1022880) ------------------------------------------------------------------- Wed Feb 1 21:42:49 UTC 2017 - agraf@suse.com - Add support for BLT only EFI GOP adapters (FATE#322332) * grub2-efi-gop-add-blt.patch ------------------------------------------------------------------- Wed Jan 25 09:58:20 UTC 2017 - schwab@linux-m68k.org - info-dir-entry.patch: Update info dir entry to follow renaming to grub2 ------------------------------------------------------------------- Mon Jan 16 10:15:52 UTC 2017 - matwey.kornilov@gmail.com - Add serial module to efi image. Serial terminal is still useful even with EFI Secure Boot ------------------------------------------------------------------- Wed Jan 11 06:58:56 UTC 2017 - mchang@suse.com - Support %posttrans with marcos provided by update-bootloader-rpm-macros package (bsc#997317) ------------------------------------------------------------------- Wed Jan 4 08:48:56 UTC 2017 - mchang@suse.com - Remove outdated README.openSUSE (bsc#907693) ------------------------------------------------------------------- Fri Dec 30 14:47:39 UTC 2016 - sor.alexei@meowr.ru - 20_memtest86+: avoid adding memtest86+ to the list with UEFI booting. ------------------------------------------------------------------- Fri Oct 28 04:08:19 UTC 2016 - mchang@suse.com - Fix new line character in distributor (bsc#1007212) * modified grub2-default-distributor.patch ------------------------------------------------------------------- Fri Oct 21 09:34:58 UTC 2016 - mchang@suse.com - From Juergen Gross <jgross@suse.com>: grub-xen: support booting huge pv-domains (bsc#1004398) (bsc#899465) * 0001-xen-make-xen-loader-callable-multiple-times.patch * 0002-xen-avoid-memleaks-on-error.patch * 0003-xen-reduce-number-of-global-variables-in-xen-loader.patch * 0004-xen-add-elfnote.h-to-avoid-using-numbers-instead-of-.patch * 0005-xen-synchronize-xen-header.patch * 0006-xen-factor-out-p2m-list-allocation-into-separate-fun.patch * 0007-xen-factor-out-allocation-of-special-pages-into-sepa.patch * 0008-xen-factor-out-allocation-of-page-tables-into-separa.patch * 0009-xen-add-capability-to-load-initrd-outside-of-initial.patch * 0010-xen-modify-page-table-construction.patch * 0011-xen-add-capability-to-load-p2m-list-outside-of-kerne.patch ------------------------------------------------------------------- Tue Oct 11 20:59:40 UTC 2016 - dmueller@suse.com - add support for netboot on arm64-efi platforms (bsc#998097) * grub2-arm64-mknetdir-add-suport-for-arm64-efi.patch ------------------------------------------------------------------- Fri Sep 2 03:24:19 UTC 2016 - mchang@suse.com - use $PRETTY_NAME instead of $NAME $VERSION for $GRUB_DISTRIBUTOR in openSUSE Tumbleweed (bsc#995549) * modified grub2-default-distributor.patch - grub2.spec: add http module to grub.efi (fate#320129) ------------------------------------------------------------------- Wed Aug 31 15:40:28 UTC 2016 - matz@suse.com - binutils 2.27 creates empty modules without a symtab. Add patch grub2-accept-empty-module.patch to not reject them. ------------------------------------------------------------------- Sat Aug 20 05:42:12 UTC 2016 - arvidjaar@gmail.com - since version 1.7 cryptsetup defaults to SHA256 for LUKS - include gcry_sha256 in signed EFI image ------------------------------------------------------------------- Fri Aug 12 08:32:05 UTC 2016 - mchang@suse.com - Workaround default entry in snapshot menu (bsc#956046) * grub2-btrfs-08-workaround-snapshot-menu-default-entry.patch - grub2.spec: Add true command to grub.efi (bsc#993274) ------------------------------------------------------------------- Wed Aug 3 04:45:51 UTC 2016 - mchang@suse.com - grub.default: Empty GRUB_CMDLINE_LINUX_DEFAULT, the value will be fully taken from YaST settings. (bsc#989803) ------------------------------------------------------------------- Wed Aug 3 04:45:34 UTC 2016 - mchang@suse.com - Add patches from Roberto Sassu <rsassu@suse.de> - Fix grub2-10_linux-avoid-multi-device-root-kernel-argument.patch, device path is not tested if GRUB_DISABLE_LINUX_UUID="true" - added grub2-fix-multi-device-root-kernel-argument.patch (bsc#960776) - grub2-zipl-setup: avoid multi-device root= kernel argument * added grub2-zipl-setup-fix-btrfs-multipledev.patch (bsc#960776) - Add SUSE_REMOVE_LINUX_ROOT_PARAM configuration option to /etc/default/grub, to remove root= and rootflags= from the kernel command line in /boot/grub2/grub.cfg and /boot/zipl/config - added grub2-suse-remove-linux-root-param.patch (bsc#962585) ------------------------------------------------------------------- Tue Aug 2 09:05:11 UTC 2016 - mchang@suse.com - Support HTTP Boot IPv4 and IPv6 (fate#320129) * 0001-misc-fix-invalid-character-recongition-in-strto-l.patch * 0002-net-read-bracketed-ipv6-addrs-and-port-numbers.patch * 0003-bootp-New-net_bootp6-command.patch * 0004-efinet-UEFI-IPv6-PXE-support.patch * 0005-grub.texi-Add-net_bootp6-doument.patch * 0006-bootp-Add-processing-DHCPACK-packet-from-HTTP-Boot.patch * 0007-efinet-Setting-network-from-UEFI-device-path.patch * 0008-efinet-Setting-DNS-server-from-UEFI-protocol.patch - Fix heap corruption after dns lookup * 0001-dns-fix-buffer-overflow-for-data-addresses-in-recv_h.patch ------------------------------------------------------------------- Tue Jun 28 00:31:47 CEST 2016 - ro@suse.de - fix filelist for s390x ------------------------------------------------------------------- Tue Jun 21 06:19:27 UTC 2016 - mchang@suse.com - Fix grub2-editenv error on encrypted lvm installation (bsc#981621) * modified grub2-btrfs-workaround-grub2-once.patch - Add missing closing bracket in 'grub2-snapper-plugin.sh'. - Fix snapshot booting on s390x (bsc#955115) * modified grub2-snapper-plugin.sh - Fallback to old subvol name scheme to support old snapshot config (bsc#953538) * added grub2-btrfs-07-subvol-fallback.patch ------------------------------------------------------------------- Thu Jun 2 19:25:58 UTC 2016 - arvidjaar@gmail.com - update grub2-once with patch from Björn Voigt - skip comments in /etc/sysconfig/bootloader (boo#963610) ------------------------------------------------------------------- Fri May 20 09:28:16 UTC 2016 - jengelh@inai.de - Make sure all systemd unit files are passed to %service_ macros. ------------------------------------------------------------------- Thu May 19 14:56:53 UTC 2016 - agraf@suse.com - Add patch to free memory on exit in efi environments (bsc#980739) * grub2-efi-Free-malloc-regions-on-exit.patch ------------------------------------------------------------------- Mon May 2 13:25:02 UTC 2016 - olaf@aepfle.de - Remove xen-devel from BuildRequires required headers are included in grub-2.0.2 ------------------------------------------------------------------- Thu Apr 28 09:06:11 UTC 2016 - agraf@suse.com - Add support for "t" hotkey to switch to text mode (bsc#976836) * added grub2-SUSE-Add-the-t-hotkey.patch - Add support for hidden menu entries (bsc#976836) * added grub2-Add-hidden-menu-entries.patch ------------------------------------------------------------------- Tue Apr 19 08:21:24 UTC 2016 - mchang@suse.com - Correct show user defined comments in menu for snapshots (bsc#956698) * modified grub2-snapper-plugin.sh ------------------------------------------------------------------- Mon Mar 21 11:27:54 UTC 2016 - mchang@suse.com - Fix GRUB_DISABLE_LINUX_UUID to be ignore and also fallback kernel device won't be used if fs uuid not detected (bsc#971867) * added 0001-10_linux-Fix-grouping-of-tests-for-GRUB_DEVICE.patch * added 0002-20_linux_xen-fix-test-for-GRUB_DEVICE.patch ------------------------------------------------------------------- Tue Mar 1 18:53:17 UTC 2016 - arvidjaar@gmail.com - new upstream version 2.02~beta3 * highlights of user visible changes not yet present in openSUSE package - arm-uboot now generates position independent self relocating image, so single binary should run on all supported systems - loader for Xen on aarch64. grub-mkconfig support was not in time for beta3 yet. - improved ZFS support (extensible_dataset, large_blocks, embedded_data, hole_birth features) - support for IPv6 Router Advertisements - support for persistent memory (we do not overwrite it and pass correct information to OS) - try to display more specific icons for os-prober generated menu entries - grub-install detects EFI bit size and selects correct platform (x86_64-efi or i386-efi) independent of OS bit size; needs kernel 4.0 or higher. - LVM RAID1 support - xnu loader fixes which should make OS X menu entry generated by os-prober work again - key modifiers (Ctrl-X etc) should work on EFI too - ... and lot of fixes over entire tree * rediff - rename-grub-info-file-to-grub2.patch - use-grub2-as-a-package-name.patch - grub2-GRUB_CMDLINE_LINUX_RECOVERY-for-recovery-mode.patch - grub2-fix-menu-in-xen-host-server.patch - grub2-efi-HP-workaround.patch - grub2-secureboot-chainloader.patch - grub2-s390x-02-kexec-module-added-to-emu.patch - grub2-s390x-04-grub2-install.patch - grub2-s390x-05-grub2-mkconfig.patch - grub2-efi-xen-chainload.patch - grub2-mkconfig-aarch64.patch - grub2-btrfs-04-grub2-install.patch - grub2-ppc64-cas-reboot-support.patch - 0002-Add-Virtual-LAN-support.patch * fix grub2-secureboot-add-linuxefi.patch - use grub_memset and grub_memcpy instead of memset and memcpy (caused errors due to compiler warning) * drop upstream patches - 0001-grub-core-kern-efi-efi.c-Ensure-that-the-result-star.patch - 0001-look-for-DejaVu-also-in-usr-share-fonts-truetype.patch - 0001-efidisk-move-device-path-helpers-in-core-for-efinet.patch - 0002-efinet-skip-virtual-IPv4-and-IPv6-devices-when-enume.patch - 0003-efinet-open-Simple-Network-Protocol-exclusively.patch - 0001-efinet-Check-for-immediate-completition.patch - 0001-efinet-enable-hardware-filters-when-opening-interfac.patch - grub2-xen-legacy-config-device-name.patch - grub2-getroot-support-NVMe-device-names.patch - grub2-netboot-hang.patch - grub2-btrfs-fix-incorrect-address-reference.patch - aarch64-reloc.patch - grub2-glibc-2.20.patch (related code dropped upstream) - grub2-Initialized-initrd_ctx-so-we-don-t-free-a-random-poi.patch - grub2-btrfs-fix-get_root-key-comparison-failures-due-to-en.patch - grub2-getroot-fix-get-btrfs-fs-prefix-big-endian.patch - grub2-ppc64-qemu.patch - grub2-xfs-Add-helper-for-inode-size.patch - grub2-xfs-Fix-termination-loop-for-directory-iteration.patch - grub2-xfs-Convert-inode-numbers-to-cpu-endianity-immediate.patch - grub2-xfs-V5-filesystem-format-support.patch - 0001-Add-bootargs-parser-for-open-firmware.patch - grub2-arm64-set-correct-length.patch - grub2-arm64-setjmp-Add-missing-license-macro.patch - grub2-arm64-efinet-handle-get_status-on-buggy-firmware-properly.patch - 0001-unix-password-Fix-file-descriptor-leak.patch - 0002-linux-getroot-fix-descriptor-leak.patch - 0003-util-grub-mount-fix-descriptor-leak.patch - 0004-linux-ofpath-fix-descriptor-leak.patch - 0005-grub-fstest-fix-descriptor-leak.patch - ppc64le.patch - libgcc-prereq.patch - libgcc.patch - 0001-Fix-security-issue-when-reading-username-and-passwor.patch - 0001-menu-fix-line-count-calculation-for-long-lines.patch - grub2-arm64-Reduce-timer-event-frequency-by-10.patch - 0001-unix-do-not-close-stdin-in-grub_passwd_get.patch - 0001-grub-core-kern-i386-tsc.c-calibrate_tsc-Ensure-that.patch - 0002-i386-tsc-Fix-unused-function-warning-on-xen.patch - 0003-acpi-do-not-skip-BIOS-scan-if-EBDA-length-is-zero.patch - 0004-tsc-Use-alternative-delay-sources-whenever-appropria.patch - 0005-i386-fix-TSC-calibration-using-PIT.patch - biendian.patch - ppc64_opt.patch * drop workarounds for gdb_grub and grub.chrp, they are now installed under fixed name * do not patch docs/Makefile.in, it is regenerated anyway ------------------------------------------------------------------- Tue Mar 1 11:06:34 UTC 2016 - agraf@suse.com - Make mkconfig search for zImage on arm * grub2-mkconfig-arm.patch ------------------------------------------------------------------- Sun Feb 28 23:10:06 UTC 2016 - agraf@suse.com - Add support to directly pass an EFI FDT table to a kernel on 32bit arm * 0001-arm64-Move-firmware-fdt-search-into-global-function.patch * 0002-arm-efi-Use-fdt-from-firmware-when-available.patch ------------------------------------------------------------------- Fri Jan 29 03:54:15 UTC 2016 - mchang@suse.com - Add config option to set efi xen loader command line option (bsc#957383) * added grub2-efi-xen-cmdline.patch ------------------------------------------------------------------- Thu Jan 28 12:27:27 UTC 2016 - dvaleev@suse.com - Drop ppc64le patches. Build stage1 as BE for Power Droped patches: - grub2-ppc64le-01-Add-Little-Endian-support-for-Power64-to-the-build.patch - grub2-ppc64le-02-Build-grub-as-O1-until-we-add-savegpr-and-restgpr-ro.patch - grub2-ppc64le-03-disable-creation-of-vsx-and-altivec-instructions.patch - grub2-ppc64le-04-powerpc64-LE-s-linker-knows-how-to-handle-the-undefi.patch - grub2-ppc64le-05-grub-install-can-now-recognize-and-install-a-LE-grub.patch - grub2-ppc64le-06-set-the-ABI-version-to-0x02-in-the-e_flag-of-the-PPC.patch - grub2-ppc64le-07-Add-IEEE1275_ADDR-helper.patch - grub2-ppc64le-08-Fix-some-more-warnings-when-casting.patch - grub2-ppc64le-09-Add-powerpc64-types.patch - grub2-ppc64le-10-powerpc64-is-not-necessarily-BigEndian-anymore.patch - grub2-ppc64le-11-Fix-warnings-when-building-powerpc-linux-loader-64bi.patch - grub2-ppc64le-12-GRUB_ELF_R_PPC_-processing-is-applicable-only-for-32.patch - grub2-ppc64le-13-Fix-powerpc-setjmp-longjmp-64bit-issues.patch - grub2-ppc64le-14-Add-powerpc64-ieee1275-trampoline.patch - grub2-ppc64le-15-Add-64bit-support-to-powerpc-startup-code.patch - grub2-ppc64le-16-Add-grub_dl_find_section_addr.patch - grub2-ppc64le-17-Add-ppc64-relocations.patch - grub2-ppc64le-18-ppc64-doesn-t-need-libgcc-routines.patch - grub2-ppc64le-19-Use-FUNC_START-FUNC_END-for-powerpc-function-definit.patch - grub2-ppc64le-20-.TOC.-symbol-is-special-in-ppc64le-.-It-maps-to-the-.patch - grub2-ppc64le-21-the-.toc-section-in-powerpc64le-modules-are-sometime.patch - grub2-ppc64le-22-all-parameter-to-firmware-calls-should-to-be-BigEndi.patch - grub2-ppc64le-fix-64bit-trampoline-in-dyn-linker.patch - grub2-ppc64le-timeout.patch - grub2-ppc64-build-ppc64-32bit.patch - Added patches: - biendian.patch - grub2-ppc64-cas-reboot-support.patch - libgcc-prereq.patch - libgcc.patch - ppc64_opt.patch - ppc64le.patch ------------------------------------------------------------------- Wed Jan 20 11:44:27 UTC 2016 - mchang@suse.com - Backport upstream patches for HyperV gen2 TSC timer calbration without RTC (bsc#904647) * added 0001-grub-core-kern-i386-tsc.c-calibrate_tsc-Ensure-that.patch * added 0002-i386-tsc-Fix-unused-function-warning-on-xen.patch * added 0003-acpi-do-not-skip-BIOS-scan-if-EBDA-length-is-zero.patch * added 0004-tsc-Use-alternative-delay-sources-whenever-appropria.patch * added 0005-i386-fix-TSC-calibration-using-PIT.patch ------------------------------------------------------------------- Wed Dec 28 16:53:54 UTC 2015 - arvidjaar@gmail.com - Add 0001-menu-fix-line-count-calculation-for-long-lines.patch (bsc#943585) ------------------------------------------------------------------- Thu Dec 17 11:04:06 UTC 2015 - olaf@aepfle.de - grub2-xen-pv-firmware.cfg: fix hd boot (boo#926795) ------------------------------------------------------------------- Wed Dec 16 05:04:37 UTC 2015 - arvidjaar@gmail.com - Add 0001-Fix-security-issue-when-reading-username-and-passwor.patch Fix for CVE-2015-8370 [boo#956631] ------------------------------------------------------------------- Wed Dec 9 18:13:27 UTC 2015 - arvidjaar@gmail.com - Update grub2-efi-xen-chainload.patch - fix copying of Linux kernel and initrd to ESP (boo#958193) ------------------------------------------------------------------- Mon Dec 7 08:03:41 UTC 2015 - olaf@aepfle.de - Rename grub2-xen.cfg to grub2-xen-pv-firmware.cfg (boo#926795) ------------------------------------------------------------------- Fri Dec 4 17:06:17 UTC 2015 - olaf@aepfle.de - grub2-xen.cfg: to handle grub1 menu.lst in PV guest (boo#926795) ------------------------------------------------------------------- Thu Nov 26 10:22:28 UTC 2015 - mchang@suse.com - Expand list of grub.cfg search path in PV Xen guest for systems installed to btrfs snapshot. (bsc#946148) (bsc#952539) * modified grub2-xen.cfg - drop grub2-fix-Grub2-with-SUSE-Xen-package-install.patch (bsc#774666) ------------------------------------------------------------------- Wed Nov 18 19:33:42 UTC 2015 - arvidjaar@gmail.com - Add 0001-unix-do-not-close-stdin-in-grub_passwd_get.patch Fix reading password by grub2-mkpasswd-pbdk2 without controlling tty, e.g. when called from Xfce menu (boo#954519) ------------------------------------------------------------------- Mon Nov 1 21:30:02 UTC 2015 - arvidjaar@gmail.com - Modify grub2-linguas.sh-no-rsync.patch to re-enable en@quot catalog (boo#953022). Other autogenerated catalogs still fail to build due to missing C.UTF-8 locale. ------------------------------------------------------------------- Fri Oct 30 10:09:02 UTC 2015 - mchang@suse.com - Allow to execute menuentry unrestricted as default (fate#318574) * added grub2-menu-unrestricted.patch ------------------------------------------------------------------- Thu Oct 29 04:17:08 UTC 2015 - mchang@suse.com - Add missing quoting for linuxefi (bsc#951962) * modified grub2-secureboot-use-linuxefi-on-uefi.patch * refreshed grub2-secureboot-provide-linuxefi-config.patch ------------------------------------------------------------------- Sun Oct 18 11:45:10 UTC 2015 - eich@suse.com - Include custom.cfg into the files scanned by grub2-once. Allows to chose manually added entries as well (FATE#319632). ------------------------------------------------------------------- Wed Oct 7 09:01:37 UTC 2015 - mchang@suse.com - Upstream patches for fixing file descriptor leakage (bsc#943784) * added 0001-unix-password-Fix-file-descriptor-leak.patch * added 0002-linux-getroot-fix-descriptor-leak.patch * added 0003-util-grub-mount-fix-descriptor-leak.patch * added 0004-linux-ofpath-fix-descriptor-leak.patch * added 0005-grub-fstest-fix-descriptor-leak.patch ------------------------------------------------------------------- Tue Oct 6 07:59:47 UTC 2015 - mchang@suse.com - Do not force ro option in linuxefi patch (bsc#948555) * modified grub2-secureboot-use-linuxefi-on-uefi.patch * refrehed grub2-secureboot-provide-linuxefi-config.patch ------------------------------------------------------------------- Wed Sep 23 20:02:47 UTC 2015 - dmueller@suse.com - add 0001-efinet-Check-for-immediate-completition.patch, 0001-efinet-enable-hardware-filters-when-opening-interfac.patch, grub2-arm64-efinet-handle-get_status-on-buggy-firmware-properly.patch (bsc#947203) ------------------------------------------------------------------- Mon Sep 14 06:36:04 UTC 2015 - mchang@suse.com - Set default GRUB_DISTRIBUTOR from /etc/os-release if it is empty or not set by user (bsc#942519) * added grub2-default-distributor.patch * modified grub.default ------------------------------------------------------------------- Tue Aug 18 09:53:54 UTC 2015 - mchang@suse.com - add systemd-sleep-plugin subpackage (bsc#941758) - evaluate the menu entry's title string by printf * modified grub2-once * added grub2-systemd-sleep.sh ------------------------------------------------------------------- Fri Jul 31 03:55:32 UTC 2015 - mchang@suse.com - fix for 'rollback' hint (bsc#901487) * modified grub2-btrfs-05-grub2-mkconfig.patch: ------------------------------------------------------------------- Fri Jul 17 08:44:24 UTC 2015 - mchang@suse.com - Replace 12.1 with 12 SP1 for the list of snapshots (bsc#934252) * modified grub2-snapper-plugin.sh ------------------------------------------------------------------- Thu Jun 18 08:43:07 UTC 2015 - mchang@suse.com - Fix btrfs subvol detection on BigEndian systems (bsc#933541) * modified grub2-btrfs-06-subvol-mount.patch - Fix grub2-mkrelpath outputs wrong path on BigEndian system * added grub2-getroot-fix-get-btrfs-fs-prefix-big-endian.patch ------------------------------------------------------------------- Fri Jun 12 07:20:00 UTC 2015 - mchang@suse.com - If we have a post entry and the description field is empty, we should use the "Pre" number and add that description to the post entry. (fate#317972) - Show user defined comments in grub2 menu for snapshots (fate#318101) * modified grub2-snapper-plugin.sh ------------------------------------------------------------------- Sun Jun 7 04:00:56 UTC 2015 - arvidjaar@gmail.com - add 0001-grub-core-kern-efi-efi.c-Ensure-that-the-result-star.patch make sure firmware path starts with '/' (boo#902982) ------------------------------------------------------------------- Fri Jun 5 03:46:33 UTC 2015 - mchang@suse.com - Fix btrfs patch on BigEndian systems (bsc#933541) * modified grub2-btrfs-01-add-ability-to-boot-from-subvolumes.patch * modified grub2-btrfs-06-subvol-mount.patch ------------------------------------------------------------------- Wed Jun 3 20:07:33 UTC 2015 - agraf@suse.com - Fix license for setjmp module * added grub2-arm64-setjmp-Add-missing-license-macro.patch ------------------------------------------------------------------- Thu May 21 09:23:52 UTC 2015 - mchang@suse.com - Fix install into snapper controlled btrfs subvolume and can't load grub modules from separate subvolume (fate#318392) * added grub2-btrfs-06-subvol-mount.patch * grub2-snapper-plugin.sh: use absolute subvol name ------------------------------------------------------------------- Tue May 19 17:47:33 UTC 2015 - arvidjaar@gmail.com - also Recommends mtools for grub2-mkrescue (used to create EFI boot image) in addition to libburnia-tools. ------------------------------------------------------------------- Mon May 11 08:50:14 UTC 2015 - mchang@suse.com - Support booting opensuse installer as PV DomU (boo#926795) * added grub2-xen.cfg for tracking default pvgrub2 xen configs rather than generating it from spec file * grub2-xen.cfg: from Olaf Hering <ohering@suse.com> ------------------------------------------------------------------- Sun May 10 19:38:00 UTC 2015 - arvidjaar@gmail.com - replace grub2-efinet-reopen-SNP-protocol-for-exclusive-use-by-grub.patch with upstream version: * 0001-efidisk-move-device-path-helpers-in-core-for-efinet.patch * 0002-efinet-skip-virtual-IPv4-and-IPv6-devices-when-enume.patch * 0003-efinet-open-Simple-Network-Protocol-exclusively.patch Fixes EFI network boot in some QEMU configurations. ------------------------------------------------------------------- Wed Apr 29 13:20:20 UTC 2015 - dmueller@suse.com - fix grub2-mkconfig-aarch64.patch: fix arch detection broken by malformed patch rediffing ------------------------------------------------------------------- Wed Apr 15 06:02:36 UTC 2015 - mchang@suse.com - Cleanup patch not applied * remove grub2-enable-theme-for-terminal-window.patch * grub2.rpmlintrc: remove addFilter("patch-not-applied") ------------------------------------------------------------------- Thu Apr 2 04:25:52 UTC 2015 - mchang@suse.com - Merge changes from SLE12 - Do not pass root= when root is on nfs (bnc#894374) * modified grub2-pass-corret-root-for-nfsroot.patch * modified grub2-secureboot-provide-linuxefi-config.patch * modified grub2-secureboot-use-linuxefi-on-uefi.patch - Fix xen pvops kernel not appear on menu (bnc#895286) * modified grub2-fix-menu-in-xen-host-server.patch - Workaround grub2-once (bnc#892358) * added grub2-btrfs-workaround-grub2-once.patch * added grub2-once.service * modified grub2-once - Fix busy-loop and hang while network booting (bnc#870613) * added grub2-netboot-hang.patch - Add warning in grubenv file about editing it directly (bnc#887008) * added grub2-editenv-add-warning-message.patch - Fix broken graphics with efifb on QEMU/KVM and nomodeset (bnc#884558) * added grub2-efi-disable-video-cirrus-and-bochus.patch - Disable video support on Power (bnc#877142) * added grub2-ppc64le-disable-video.patch - Track occupied memory so it can be released on exit (bnc#885026) * added grub2-ppc64le-memory-map.patch - Fix grub.xen config searching path on boot partition (bnc#884828) - Add linux16 and initrd16 to grub.xen (bnc#884830) * added grub2-xen-linux16.patch - VLAN tag support (fate#315753) * added 0001-Add-bootargs-parser-for-open-firmware.patch * added 0002-Add-Virtual-LAN-support.patch - Use chainloader to boot xen.efi under UEFI (bnc#871857) * added grub2-efi-xen-chainload.patch - Use device part of chainloader target, if present (bnc#871857) * added grub2-efi-chainloader-root.patch - Create only hypervisor pointed by /boot/xen.gz symlink (bnc#877040) * modified grub2-fix-Grub2-with-SUSE-Xen-package-install.patch - Fix xen and native entries differ in grub.cfg (bnc#872014) * modified grub2-linux.patch - Fix install error on ddf md device (bnc#872360) * added grub2-getroot-treat-mdadm-ddf-as-simple-device.patch - Fix booting from NVMe device (bnc#873132) * added grub2-getroot-support-NVMe-device-names.patch - Document peculiarities of s390 terminals * added README.ibm3215 - Grub2 for System z (fate#314213) * added grub2-s390x-02-kexec-module-added-to-emu.patch * added grub2-s390x-03-output-7-bit-ascii.patch * added grub2-s390x-04-grub2-install.patch * added grub2-s390x-05-grub2-mkconfig.patch ------------------------------------------------------------------- Mon Mar 16 08:08:32 UTC 2015 - schwab@suse.de - grub2-arm64-set-correct-length.patch: arm64: set correct length of device path end entry ------------------------------------------------------------------- Wed Mar 4 04:03:37 UTC 2015 - mchang@suse.com - grub2-efi-HP-workaround.patch: * try to read config from all-uppercase prefix as last resort. (bnc#872503) (boo#902982) ------------------------------------------------------------------- Mon Feb 16 16:25:50 UTC 2015 - arvidjaar@gmail.com - add luks, gcry_rijndael, gcry_sha1 to signed EFI image to support LUKS partition in default setup (boo#917427) ------------------------------------------------------------------- Thu Feb 5 09:37:46 UTC 2015 - mchang@suse.com - enable i386-xen (boo#891043) ------------------------------------------------------------------- Wed Feb 4 07:43:27 UTC 2015 - mchang@suse.com - Downgrade os-prober dependency to Recommends (boo#898610) ------------------------------------------------------------------- Thu Dec 25 08:52:12 UTC 2014 - mchang@suse.com - grub2-snapper-plugin.sh: cleanup grub-snapshot.cfg not referring to any snapshot (boo#909359) ------------------------------------------------------------------- Thu Dec 25 08:34:49 UTC 2014 - mpluskal@suse.com - Require efibootmgr also on i586 ------------------------------------------------------------------- Tue Dec 16 10:41:08 UTC 2014 - schwab@suse.de - Require efibootmgr also on aarch64 ------------------------------------------------------------------- Thu Dec 11 11:20:13 UTC 2014 - schwab@suse.de - grub2-snapper-plugin.sh: fix use of printf without format string; fix quoting ------------------------------------------------------------------- Wed Dec 10 09:12:47 UTC 2014 - schwab@suse.de - grub2-arm64-Reduce-timer-event-frequency-by-10.patch: fix periodic timer on arm64 ------------------------------------------------------------------- Thu Dec 4 01:42:39 UTC 2014 - agraf@suse.com - enable 32bit arm targets for uboot and efi ------------------------------------------------------------------- Sat Nov 29 18:26:00 UTC 2014 - Led <ledest@gmail.com> - Replace 'echo -e' command in grub2-snapper-plugin.sh script to 'printf' command. '-e' option of 'echo' command may be unsupported in some POSIX-complete shells. ------------------------------------------------------------------- Fri Nov 14 16:06:00 UTC 2014 - Led <ledest@gmail.com> - fix bashism in post script ------------------------------------------------------------------- Thu Oct 30 15:18:16 CET 2014 - jdelvare@suse.de - grub2.spec: Fix conditional construct which wasn't supported by older versions of rpmbuild (caused error message "parseExpressionBoolean returns -1".) ------------------------------------------------------------------- Thu Oct 30 07:36:15 UTC 2014 - mchang@suse.com - fix errors when boot is btrfs with Windows partition scheme. The first partition is created on cylinder boundary that can't offer enough room for core.img and also the installation has to be in logical paritition which made MBR the only location to install. (bnc#841247) * add grub2-setup-try-fs-embed-if-mbr-gap-too-small.patch ------------------------------------------------------------------- Tue Sep 30 03:45:04 UTC 2014 - mchang@suse.com - packaging 20_memtest86+ and 20_ppc_terminfo in corresponing grubarch package ------------------------------------------------------------------- Mon Sep 29 07:22:29 UTC 2014 - fcastelli@suse.com - Add '80_suse_btrfs_snapshot' required to show btrfs snapshots inside of the boot menu. ------------------------------------------------------------------- Sun Sep 28 06:16:35 UTC 2014 - arvidjaar@gmail.com - fix btrfs on big endian systems (ppc/ppc64) * add grub2-btrfs-fix-get_root-key-comparison-failures-due-to-en.patch ------------------------------------------------------------------- Sun Sep 21 06:47:12 UTC 2014 - arvidjaar@gmail.com - update translations - fix possible access to uninitialized pointer in linux loader * add grub2-Initialized-initrd_ctx-so-we-don-t-free-a-random-poi.patch * drop superceded grub2-ppc64le-23-grub-segfaults-if-initrd-is-specified-before-specify.patch ------------------------------------------------------------------- Thu Sep 18 09:55:57 UTC 2014 - mchang@suse.com - fix grub.xen not able to handle legacy menu.lst hdX names (bnc#863821) * add grub2-xen-legacy-config-device-name.patch from arvidjaar - fix the performance of grub2 uefi pxe is bad (bnc#871555) * add grub2-efinet-reopen-SNP-protocol-for-exclusive-use-by-grub.patch ------------------------------------------------------------------- Tue Sep 16 07:08:18 UTC 2014 - schwab@suse.de - grub2-mkconfig-aarch64.patch: Look for Image-* instead of vmlinuz-* on aarch64 ------------------------------------------------------------------- Mon Sep 15 15:30:03 UTC 2014 - arvidjaar@gmail.com - add grub2-glibc-2.20.patch - fix build with glibc 2.20+ (use _DEFAULT_SOURCE to avoid warning) ------------------------------------------------------------------- Fri Sep 12 04:14:38 UTC 2014 - mchang@suse.com - fix xen pvops kernel not appear on menu (bnc#895286) * refresh grub2-fix-menu-in-xen-host-server.patch ------------------------------------------------------------------- Wed Sep 10 10:34:47 UTC 2014 - mchang@suse.com - fix extraneous comma in printf shell command (bnc#895884) * refresh grub2-btrfs-04-grub2-install.patch ------------------------------------------------------------------- Wed Aug 27 07:53:35 UTC 2014 - schwab@suse.de - aarch64-reloc.patch: replace with upstream solution ------------------------------------------------------------------- Mon Aug 25 03:10:18 UTC 2014 - mchang@suse.com - remove unused patch, which's supersceded by new snapper rollback support patches * 0001-script-provide-overridable-root-by-subvol.patch * 0002-script-create-menus-for-btrfs-snapshot.patch ------------------------------------------------------------------- Fri Aug 22 10:05:13 UTC 2014 - mchang@suse.com - fix openqa boot error on separate boot partition * refresh grub2-btrfs-05-grub2-mkconfig.patch ------------------------------------------------------------------- Thu Aug 21 06:10:07 UTC 2014 - mchang@suse.com - update snapper plugin for rollback support * refresh grub2-snapper-plugin.sh ------------------------------------------------------------------- Fri Aug 15 07:55:54 UTC 2014 - mchang@suse.com - snapper rollback support patches. - rename patch * 0002-btrfs-add-ability-to-boot-from-subvolumes.patch to grub2-btrfs-01-add-ability-to-boot-from-subvolumes.patch * 0004-btrfs-export-subvolume-envvars.patch to grub2-btrfs-02-export-subvolume-envvars.patch - added patches * grub2-btrfs-03-follow_default.patch * grub2-btrfs-04-grub2-install.patch * grub2-btrfs-05-grub2-mkconfig.patch - remove patch * 0003-cmdline-add-envvar-loader_cmdline_append.patch ------------------------------------------------------------------- Thu Aug 14 06:35:58 UTC 2014 - mchang@suse.com - grub2-btrfs-fix-incorrect-address-reference.patch * Fix incorrect address reference in GRUB_BTRFS_EXTENT_REGULAR range check (bnc#869748) ------------------------------------------------------------------- Wed Aug 13 02:56:22 UTC 2014 - mchang@suse.com - grub2-vbe-blacklist-preferred-1440x900x32.patch * Blacklist preferred resolution 1440x900x32 which is broken on many Thinkpads (bnc#888727) ------------------------------------------------------------------- Tue Aug 12 12:56:29 UTC 2014 - schwab@suse.de - Enable building on aarch64 - aarch64-reloc.patch: support R_AARCH64_PREL32 relocation - Build host tools with RPM_OPT_FLAGS ------------------------------------------------------------------- Mon Aug 11 14:34:55 UTC 2014 - dvaleev@suse.com - Fix the 64-bit trampoline code in dynamic linker (bnc#890999) grub2-ppc64le-fix-64bit-trampoline-in-dyn-linker.patch ------------------------------------------------------------------- Tue Jul 29 11:46:54 CEST 2014 - tiwai@suse.de - Prefer a higher resolution in efi_gop driver if the mode taking over is too small like 640x480 (bnc#887972): grub2-efi_gop-avoid-low-resolution.patch ------------------------------------------------------------------- Wed Jul 9 16:26:35 UTC 2014 - dvlaeev@suse.com - Fix ppc64le build by fixing grub2-xfs-V5-filesystem-format-support.patch ------------------------------------------------------------------- Wed Jun 25 09:20:16 UTC 2014 - jack@suse.cz - xfs V5 superblock support (bnc#880166 bnc#883942) - added patches: * grub2-xfs-Add-helper-for-inode-size.patch * grub2-xfs-Fix-termination-loop-for-directory-iteration.patch * grub2-xfs-Convert-inode-numbers-to-cpu-endianity-immediate.patch * grub2-xfs-V5-filesystem-format-support.patch ------------------------------------------------------------------- Fri Jun 20 19:50:28 UTC 2014 - jeffm@suse.com - grub2: use stat instead of udevadm for partition lookup (bnc#883635) * Added grub2-use-stat-instead-of-udevadm-for-partition-lookup.patch ------------------------------------------------------------------- Tue Apr 15 08:36:46 UTC 2014 - tchvatal@suse.com - Fix sorting of RC kernels to be older than first regular of the series. Fixes bnc#827531. - added patches: * grub2-use-rpmsort-for-version-sorting.patch ------------------------------------------------------------------- Thu Apr 10 16:35:08 UTC 2014 - dvaleev@suse.com - Build GRUB2 for ppc64le as LittleEndian and 64bit - Fix timeout issue on ppc64le (bnc#869166) - Add powerpc-utils requires to grub2-powerpc-ieee1275 - added patches: * grub2-ppc64-build-ppc64-32bit.patch * grub2-ppc64-qemu.patch * grub2-ppc64le-01-Add-Little-Endian-support-for-Power64-to-the-build.patch * grub2-ppc64le-02-Build-grub-as-O1-until-we-add-savegpr-and-restgpr-ro.patch * grub2-ppc64le-03-disable-creation-of-vsx-and-altivec-instructions.patch * grub2-ppc64le-04-powerpc64-LE-s-linker-knows-how-to-handle-the-undefi.patch * grub2-ppc64le-05-grub-install-can-now-recognize-and-install-a-LE-grub.patch * grub2-ppc64le-06-set-the-ABI-version-to-0x02-in-the-e_flag-of-the-PPC.patch * grub2-ppc64le-07-Add-IEEE1275_ADDR-helper.patch * grub2-ppc64le-08-Fix-some-more-warnings-when-casting.patch * grub2-ppc64le-09-Add-powerpc64-types.patch * grub2-ppc64le-10-powerpc64-is-not-necessarily-BigEndian-anymore.patch * grub2-ppc64le-11-Fix-warnings-when-building-powerpc-linux-loader-64bi.patch * grub2-ppc64le-12-GRUB_ELF_R_PPC_-processing-is-applicable-only-for-32.patch * grub2-ppc64le-13-Fix-powerpc-setjmp-longjmp-64bit-issues.patch * grub2-ppc64le-14-Add-powerpc64-ieee1275-trampoline.patch * grub2-ppc64le-15-Add-64bit-support-to-powerpc-startup-code.patch * grub2-ppc64le-16-Add-grub_dl_find_section_addr.patch * grub2-ppc64le-17-Add-ppc64-relocations.patch * grub2-ppc64le-18-ppc64-doesn-t-need-libgcc-routines.patch * grub2-ppc64le-19-Use-FUNC_START-FUNC_END-for-powerpc-function-definit.patch * grub2-ppc64le-20-.TOC.-symbol-is-special-in-ppc64le-.-It-maps-to-the-.patch * grub2-ppc64le-21-the-.toc-section-in-powerpc64le-modules-are-sometime.patch * grub2-ppc64le-22-all-parameter-to-firmware-calls-should-to-be-BigEndi.patch * grub2-ppc64le-23-grub-segfaults-if-initrd-is-specified-before-specify.patch * grub2-ppc64le-timeout.patch - removed patches: * grub2-powerpc-libgcc.patch * grub2-ppc64le-core-bigendian.patch * grub2-ppc64le-platform.patch ------------------------------------------------------------------- Thu Apr 10 07:39:30 UTC 2014 - mchang@suse.com - add grub2-x86_64-xen subpackage (bnc#863821) ------------------------------------------------------------------- Sat Apr 5 14:27:45 UTC 2014 - arvidjaar@gmail.com - rename grub2.chrp back into grub.chrp, otherwise it is not found by grub tools - replace grub2-use-DejaVuSansMono-for-starfield-theme.patch with grub2-use-Unifont-for-starfield-theme-terminal.patch - use Unifont font for terminal window ------------------------------------------------------------------- Thu Feb 27 04:30:07 UTC 2014 - mchang@suse.com - grub2-snapper-plugin: fix important snapshots are not marked as such in grub2 menu, also display the snapshot entries in the format "important distribution version (kernel_version, timestamp, pre/post)" (bnc#864842) ------------------------------------------------------------------- Mon Feb 24 07:28:42 UTC 2014 - mchang@suse.com - refresh grub2-fix-menu-in-xen-host-server.patch (bnc#859361) * prevent 10_linux from booting xen kernel without pv_opt support on systems other than xen PV domU guest * prevent 20_linux_xen.in from setting up nested virt running from Xen domU - refresh grub2-fix-Grub2-with-SUSE-Xen-package-install.patch * adjust accordingly ------------------------------------------------------------------- Thu Feb 20 14:43:21 UTC 2014 - jw@suse.com - updating grub2-once - added --list switch. - improved --help and error handling. ------------------------------------------------------------------- Tue Feb 11 03:02:21 UTC 2014 - mchang@suse.com - add Supplements: packageand(snapper:grub2) in grub2-snapper-plugin to install it while both snapper and grub2 are installed ------------------------------------------------------------------- Wed Feb 5 04:33:55 UTC 2014 - mchang@suse.com - add grub2-snapper-plugin.sh (fate#316232) * grub2's snapper plugin for advanced btrfs snapshot menu management * package as grub2-snapper-plugin.noarch - refresh 0002-script-create-menus-for-btrfs-snapshot.patch * when booting btrfs snapshots disabled, deleting snapshot master config if it's not customized ------------------------------------------------------------------- Fri Jan 31 14:42:26 UTC 2014 - dvaleev@suse.com - Enable grub2 for PowerPC LE (ppc64le) - Add ppc64le to exclusive arches - Don't require gcc-32bit (PowerLE don't have 32bit toolchain) - added patches: * grub2-powerpc-libgcc.patch Provide 32bit libgcc functions for PowerLE * grub2-ppc64le-core-bigendian.patch Build grub kernel and images as BE on ppc64le (BL is BE there) * grub2-ppc64le-platform.patch Enable ppc64le platform ------------------------------------------------------------------- Fri Jan 24 13:48:13 CET 2014 - jjolly@suse.com - Add changes to allow build for s390x arch: added grub2-s390x-01-Changes-made-and-files-added-in-order-to-allow-s390x.patch ------------------------------------------------------------------- Wed Jan 22 05:19:35 UTC 2014 - mchang@suse.com - refresh 0002-script-create-menus-for-btrfs-snapshot.patch * Fix bootable snapshots not found while root is on Btrfs subvolume (bnc#859587) * Create missing slave config in /.snapshots/<num>/ * Prefix with SUSE_ for related options ------------------------------------------------------------------- Fri Jan 17 06:23:04 UTC 2014 - mchang@suse.com - refresh 0001-script-provide-overridable-root-by-subvol.patch * Introduce $boot_prefix for setting prefix on seeking other /boot directory. - refresh 0002-script-create-menus-for-btrfs-snapshot.patch * Support existing snapshots by creating their missing slave configs. * Temporarily default to disable this feature until receiving more tests from QA. * Introduce GRUB_ENABLE_CUSTOM_SNAPSHOT_SUBMENU to allow custom submenu for listing snapshots rather than the default one. ------------------------------------------------------------------- Wed Jan 15 15:46:31 UTC 2014 - arvidjaar@gmail.com - package autoiso.cfg and osdetect.cfg as documentation - add 0001-look-for-DejaVu-also-in-usr-share-fonts-truetype.patch - fix configure test for DejaVu font - add dejavu-fonts to BR (needed to build starfield theme) - package starfield theme as grub2-branding-upstream - add grub2-use-DejaVuSansMono-for-starfield-theme.patch - use fixed width font for starfield theme - clarify that grub2 subpackage contains only user space tools ------------------------------------------------------------------- Wed Jan 15 06:18:10 UTC 2014 - mchang@suse.com - add new patches for booting btrfs snapshot (fate#316522) (fate#316232) * 0001-script-provide-overridable-root-by-subvol.patch * 0002-script-create-menus-for-btrfs-snapshot.patch ------------------------------------------------------------------- Fri Dec 27 16:36:40 UTC 2013 - arvidjaar@gmail.com - update to grub-2.02 beta2 * drop upstream patches - grub2-fix-unquoted-string-in-class.patch (different) - grub2-cdpath.patch (modified) - grub2-fix-parsing-of-short-LVM-PV-names.patch - grub2-fix-descriptor-leak-in-grub_util_is_imsm.patch - grub2-install-opt-skip-fs-probe.patch (file it patched no more exists, functionality included upstream) - grub2-fix-x86_64-efi-startup-stack-alignment.patch - grub2-fix-x86_64-efi-callwrap-stack-alignment.patch - 0001-Fix-build-with-FreeType-2.5.1.patch * rediff - grub2-linux.patch - use-grub2-as-a-package-name.patch (do not patch generated configure) - grub2-GRUB_CMDLINE_LINUX_RECOVERY-for-recovery-mode.patch - grub2-fix-locale-en.mo.gz-not-found-error-message.patch (upstream added explicit exclusion for en_* language only; I do not see reason to stop with error in this case for any language). - not-display-menu-when-boot-once.patch - grub2-secureboot-provide-linuxefi-config.patch - grub2-pass-corret-root-for-nfsroot.patch - 0002-btrfs-add-ability-to-boot-from-subvolumes.patch - grub2-fix-menu-in-xen-host-server.patch - grub2-fix-Grub2-with-SUSE-Xen-package-install.patch - grub2-secureboot-add-linuxefi.patch - grub2-secureboot-no-insmod-on-sb.patch - rename-grub-info-file-to-grub2.patch * drop Makefile.util.am and Makefile.core.am, they are now generated during build * call ./autogen.sh again now when it does not need autogen anymore; drop autoreconf call, it is called by autogen.sh * drop 0001-btrfs-rename-skip_default-to-follow_default.patch - is not needed anymore due to upstream changes * package /usr/bin/grub2-file, /usr/bin/grub2-syslinux2cfg and /usr/sbin/grub2-macbless * use grub-install --no-bootsector instead of --grub-setup=/bin/true in postinstall script ------------------------------------------------------------------- Tue Dec 17 07:20:33 UTC 2013 - mchang@suse.com - add new patches for booting btrfs snapshot (fate#316522) (fate#316232) * 0001-btrfs-rename-skip_default-to-follow_default.patch * 0002-btrfs-add-ability-to-boot-from-subvolumes.patch * 0003-cmdline-add-envvar-loader_cmdline_append.patch * 0004-btrfs-export-subvolume-envvars.patch ------------------------------------------------------------------- Tue Dec 10 19:13:53 UTC 2013 - arvidjaar@gmail.com - add patch 0001-Fix-build-with-FreeType-2.5.1.patch - fix build with freetype2 >= 2.5.1 (backport from fd0df6d098b1e6a4f60275c48a3ec88d15ba1fbb) ------------------------------------------------------------------- Sun Dec 1 13:10:23 UTC 2013 - arvidjaar@gmail.com - reset executable bits on *module, *.exec and *.image files. They are not executable. ------------------------------------------------------------------- Fri Nov 22 07:12:16 UTC 2013 - glin@suse.com - add grub2-fix-x86_64-efi-startup-stack-alignment.patch and grub2-fix-x86_64-efi-callwrap-stack-alignment.patch: fix the stack alignment of x86_64 efi. (bnc#841426) ------------------------------------------------------------------- Wed Sep 11 07:17:07 UTC 2013 - mchang@suse.com - use new update-bootloader option --reinit to install and update bootloader config - refresh grub2-secureboot-no-insmod-on-sb.patch to fobid module loading completely. ------------------------------------------------------------------- Mon Sep 9 09:22:34 UTC 2013 - lnussel@suse.de - replace openSUSE UEFI certificate with new 2048 bit certificate. ------------------------------------------------------------------- Sat Jul 27 10:12:36 UTC 2013 - arvidjaar@gmail.com - add grub2-fix-parsing-of-short-LVM-PV-names.patch - fix PV detection in grub-probe when PV name is less than 10 charaters - add grub2-fix-descriptor-leak-in-grub_util_is_imsm.patch - fix decriptor leak which later caused LVM warnings during grub-probe invocation - remove --enable-grub-emu-usb - it is not needed on physical platform ------------------------------------------------------------------- Tue Jul 9 10:54:41 UTC 2013 - mchang@suse.com - refresh grub2-fix-menu-in-xen-host-server.patch: In domU we have to add xen kernel to config. (bnc#825528) ------------------------------------------------------------------- Wed Jun 26 17:02:08 UTC 2013 - elchevive@opensuse.org - updated existent translations and include new ones (es, lt, pt_BR, sl, tr) ------------------------------------------------------------------- Sun Jun 16 12:42:33 UTC 2013 - arvidjaar@gmail.com - update to current upstream trunk rev 5042 * drop upstream patches - grub2-correct-font-path.patch - grub2-fix-mo-not-copied-to-grubdir-locale.patch - grub2-stdio.in.patch - grub2-fix-build-error-on-flex-2.5.37.patch - grub2-quote-messages-in-grub.cfg.patch - 30_os-prober_UEFI_support.patch - grub2-fix-enumeration-of-extended-partition.patch - grub2-add-device-to-os_prober-linux-menuentry.patch - grub2-fix-tftp-endianness.patch - efidisk-ahci-workaround - grub2-grub-mount-return-failure-if-FUSE-failed.patch * rediff - rename-grub-info-file-to-grub2.patch - grub2-linux.patch - use-grub2-as-a-package-name.patch - grub2-iterate-and-hook-for-extended-partition.patch - grub2-secureboot-add-linuxefi.patch - grub2-secureboot-no-insmod-on-sb.patch - grub2-secureboot-chainloader.patch * add - grub2-linguas.sh-no-rsync.patch + disable rsync in linguas.sh so it can be used during RPM build + disable auto-generated catalogs, they fail at the moment due to missing C.UTF-8 locale * update Makefile.util.am and Makefile.core.am * grub2-mknetdir is now in /usr/bin * generate po/LINGUAS for message catalogs using distributed linguas.sh * remove po/stamp-po during setup to trigger message catalogs rebuild * package bootinfo.txt on PPC (used by grub2-mkrescue) ------------------------------------------------------------------- Sat Apr 13 08:48:52 UTC 2013 - arvidjaar@gmail.com - BuildRequires: help2man to generate man pages and package them too ------------------------------------------------------------------- Fri Apr 5 17:01:42 UTC 2013 - arvidjaar@gmail.com - add grub2-secureboot-use-linuxefi-on-uefi-in-os-prober.patch (bnc#810912) * use linuxefi in 30_os-prober if secure boot is enabled ------------------------------------------------------------------- Wed Apr 3 17:56:20 UTC 2013 - arvidjaar@gmail.com - update rename-grub-info-file-to-grub2.patch * do not rename docs/grub2.texi here, do it in %%prep (we do it there conditionally already). It simplifies patch refreshing using quilt which does not support file rename. ------------------------------------------------------------------- Wed Apr 3 06:55:52 UTC 2013 - mchang@suse.com - refresh grub2-secureboot-chainloader.patch: Fix wrongly aligned buffer address (bnc#811608) ------------------------------------------------------------------- Thu Mar 28 02:57:47 UTC 2013 - mchang@suse.com - package Secure Boot CA file as /usr/lib64/efi/grub.der which could be used to verify signed image from build server - add openSUSE-UEFI-CA-Certificate.crt, openSUSE Secure Boot CA - add SLES-UEFI-CA-Certificate.crt, SUSE Linux Enterprise Secure Boot CA ------------------------------------------------------------------- Mon Mar 25 17:37:59 UTC 2013 - dvaleev@suse.com - extraconfigure macro is not defined on ppc ------------------------------------------------------------------- Sat Mar 23 18:31:07 UTC 2013 - arvidjaar@gmail.com - corretly set chainloaded image device handle in secure boot mode (bnc#809038) ------------------------------------------------------------------- Wed Mar 13 11:30:52 UTC 2013 - mchang@suse.com - remove all compatible links in grub2-efi as now all concerned utilities are fixed - superseding grub2-efi by grub2-x86_64-efi and grub2-i386-efi on x86_64 and ix86 respectively - make grub2-x86_64-efi and grub2-i386-efi providing grub2-efi capability to not break package dependency - handle upgrade from 12.2 by preseving grubenv and custom.cfg to new directory /boot/grub2, rename /boot/grub2-efi to /boot/grub2-efi.rpmsave to avoid confusion. ------------------------------------------------------------------- Mon Mar 11 16:02:26 UTC 2013 - arvidjaar@gmail.com - move post scripts into corresponding subpackages to ensure they are run after updated binaries are installed. Currently it may happen that update-bootlader picks up old binaries. - move requires for perl-Bootloader to target subpackages. Make sure efi requires minimal version that supports /boot/grub2. - add requires(post) to force order of installation: grub2 => grub2-arch => grub2-efi - split efi post in two parts. One that updates configuration and is part of grub2-efiarch and second that migrates settings and is part of grub2-efi. Only custom.cfg and grubenv may need migration. device.map is not relevant for EFI and new grub.cfg had been created at this point. ------------------------------------------------------------------- Mon Mar 11 06:52:58 UTC 2013 - mchang@suse.com - add grub2-fix-tftp-endianness.patch from upstream (bnc#808582) - add efinet and tftp to grub.efi (bnc#808582) ------------------------------------------------------------------- Thu Mar 7 15:39:50 UTC 2013 - seife+obs@b1-systems.com - convert spec file to UTF-8 ------------------------------------------------------------------- Thu Mar 7 08:12:57 UTC 2013 - mchang@suse.com - add lvm to grub.efi (bnc#807989) - add loadenv to grub.efi (bnc#807992) ------------------------------------------------------------------- Mon Mar 4 16:48:32 UTC 2013 - arvidjaar@gmail.com - grub2-grub-mount-return-failure-if-FUSE-failed.patch - return error if fuse_main failed (bnc#802983) ------------------------------------------------------------------- Mon Feb 25 13:31:31 UTC 2013 - fcrozat@suse.com - Fix build for SLES 11. ------------------------------------------------------------------- Tue Feb 19 15:38:04 UTC 2013 - duwe@suse.com Fix up bogus items from the previous merge: - efi_libdir = _libdir = /usr/lib - package /usr/lib/grub2 dir only once - move grub.efi to /usr/lib/grub2/%{grubefiarch}/ - create a symlink so that scripts can find it there. ------------------------------------------------------------------- Thu Feb 14 11:42:40 UTC 2013 - duwe@suse.com - merge internal+external BS changes into superset spec file, remove obsolete dependencies - merge SLES+openSUSE patches, restrict "grub-efi" to 12.2 - add efidisk-ahci-workaround (bnc#794674) - fix unquoted-string-in-class.patch (bnc#788322) ------------------------------------------------------------------- Fri Feb 8 01:58:22 UTC 2013 - mchang@suse.com - adapt to pesign-obs-integration changes ------------------------------------------------------------------- Thu Feb 7 10:38:42 UTC 2013 - mchang@suse.com - grub.efi signing on build server. ------------------------------------------------------------------- Thu Jan 31 16:18:56 UTC 2013 - duwe@suse.com - switch to out of source / subdir build ------------------------------------------------------------------- Wed Jan 30 07:29:29 UTC 2013 - mchang@suse.com - sync from SLE-11 SP3 to date - set empty prefix to grub.efi for looking up in current directory - grub2-cdpath.patch: fix the grub.cfg not found when booting from optical disk - put grub.efi in grub2's source module directory - create links in system's efi directory to grub.efi - arvidjaar: do not overwrite device path in grub2-cdpath.patch ------------------------------------------------------------------- Wed Jan 30 04:36:45 UTC 2013 - arvidjaar@gmail.com - remove obsolete reference to /boot/grub2-efi and /usr/sbin/grub2-efi from grub2-once - add GRUB_SAVEDFAULT description to /etc/default/grub ------------------------------------------------------------------- Tue Jan 29 02:42:28 UTC 2013 - mchang@suse.com - set empty prefix to grub.efi for looking up in current directory - remove grubcd.efi, as grub.efi can now be used for cdrom booting ------------------------------------------------------------------- Mon Jan 28 08:05:52 CET 2013 - snwint@suse.de - add fat module to grubcd - explicitly set empty prefix to get grub to set $prefix to the currrent directory ------------------------------------------------------------------- Fri Jan 18 07:39:18 UTC 2013 - mchang@suse.com - ship a Secure Boot UEFI compatible bootloader (fate#314485) - add grub2-secureboot-chainloader.patch, which expands the efi chainloader to be able to verify images via shim lock protocol. ------------------------------------------------------------------- Fri Jan 18 06:24:57 UTC 2013 - mchang@suse.com - ship a Secure Boot UEFI compatible bootloader (fate#314485). - update for cdrom boot support. - grub2-cdpath.patch: fix the grub.cfg not found when booting from optical disk. - grubcd.efi: the efi image used for optial disk booting, with reduced size and $prefix set to /EFI/BOOT. ------------------------------------------------------------------- Tue Jan 8 08:09:01 UTC 2013 - mchang@suse.com - add grub2-fix-unquoted-string-in-class.patch (bnc#788322) ------------------------------------------------------------------- Tue Jan 8 07:09:47 UTC 2013 - arvidjaar@gmail.com - add grub2-add-device-to-os_prober-linux-menuentry.patch (bnc#796919) ------------------------------------------------------------------- Sun Jan 6 18:54:54 UTC 2013 - arvidjaar@gmail.com - add patch grub2-fix-enumeration-of-extended-partition.patch to fix enumeration of extended partitions with non-standard EBR (bnc#779534) ------------------------------------------------------------------- Fri Jan 4 10:29:58 UTC 2013 - arvidjaar@gmail.com - add support for chainloading another UEFI bootloader to 30_os-prober (bnc#775610) ------------------------------------------------------------------- Fri Dec 21 04:18:06 UTC 2012 - mchang@suse.com - put 32-bit grub2 modules to /usr/lib/grub2 - put 64-bit grub2 modules to /usr/lib64/grub2 (x86_64-efi) - put grub.efi to /usr/lib64/efi(x86_64) or /usr/lib/efi(i586) ------------------------------------------------------------------- Tue Dec 18 03:43:38 UTC 2012 - mchang@suse.com - ship a Secure Boot UEFI compatible bootloader (fate#314485) - add grub2-secureboot-chainloader.patch, which expands the efi chainloader to be able to verify images via shim lock protocol. ------------------------------------------------------------------- Fri Nov 30 06:39:15 UTC 2012 - mchang@suse.com - replace %{sles_version} by %{suse_version} - use correct product name ------------------------------------------------------------------- Mon Nov 26 08:26:10 UTC 2012 - mchang@suse.com - ship a Secure Boot UEFI compatible bootloader (fate#314485) - added secureboot patches which introduces new linuxefi module that is able to perform verifying signed images via exported protocol from shim. The insmod command will not function if secure boot enabled (as all modules should built in grub.efi and signed). - grub2-secureboot-add-linuxefi.patch - grub2-secureboot-use-linuxefi-on-uefi.patch - grub2-secureboot-no-insmod-on-sb.patch - grub2-secureboot-provide-linuxefi-config.patch - Makefile.core.am : support building linuxefi module - Make grub.efi image that is with all relevant modules incorporated and signed, it will be the second stage to the shim loader which will verified it when secureboot enabled. - Make grub.efi's path to align with shim loader's default loader lookup path. - The changes has been verified not affecting any factory instalation, but will allow us to run & test secure boot setup manually with shim. ------------------------------------------------------------------- Thu Nov 22 07:01:31 UTC 2012 - mchang@suse.com - ship a Secure Boot UEFI compatible bootloader (fate#314485) - In SLE-11 SP3, don't include any other architecture binaries except EFI, so we split packages by architecture binaries to meet the requirement. - grub2 : common utilties and config etc - grub2-efi : provide compatibilty to grub2-efi package - grub2-i386-pc : binaries for x86 legacy pc firmware - grub2-i386-efi : binaries for ia32 EFI firmware - grub2-x86_64-efi : binaries for x86_64 firmware - grub2-powerpc-ieee1275: binaries for powerpc open firmware ------------------------------------------------------------------- Tue Nov 20 16:14:50 UTC 2012 - arvidjaar@gmail.com - update grub2-quote-messages-in-grub.cfg.patch to use upstream commit ------------------------------------------------------------------- Mon Nov 19 16:40:25 UTC 2012 - arvidjaar@gmail.com - quote localized "Loading ..." messages in grub.cfg (bnc#790195) ------------------------------------------------------------------- Mon Nov 5 08:17:26 UTC 2012 - aj@suse.de - We really only need makeinfo, so require that one where it exists. ------------------------------------------------------------------- Thu Nov 1 08:10:12 UTC 2012 - mchang@suse.com - ship a Secure Boot UEFI compatible bootloader (fate#314485) - Secure boot support in installer DVD (fate#314489) - prime support for package on SLE-11 (SP3) - remove buildrequire to libuse and ncurses 32-bit devel packages as they are needed by grub-emu which we don't support - remove buildrequire to freetype2-devel-32bit as it's not need by grub2-mkfont and others - buildrequire to xz instead of lzma - buildrequire to texinfo instead of makeinfo - remove buildrequire to autogen as it's not available in SLE-11 - add Makefile.util.am Makefile.core.am generated by autogen - run autoreconf -vi instead of ./autogen.sh - For SLE-11 remove buildrequire to gnu-unifont as it's not yet available. Also do not package pf fonts created from it. - workaround SLE-11 patch utility not rename file for us - add -fno-inline-functions-called-once to CFLAGS to fix build error on gcc 4.3.x - not require os-prober for SLE-11, as package not yet ready ------------------------------------------------------------------- Sat Oct 27 05:27:42 UTC 2012 - arvidjaar@gmail.com - grub2-efi now depends on exact grub2 version ------------------------------------------------------------------- Fri Oct 25 17:00:35 UTC 2012 - arvidjaar@gmail.com - build grub2-efi with standard "grub2" prefix (bnc#782891) - remove use-grub2-efi-as-a-package-name.patch - migrate settings from /boot/grub2-efi to /boot/grub2 in efi post - provide some compatibility links grub2-efi-xxx for perl-Bootloader - workaround for /boot/grub2-efi linkk and /boot/grub2/grub.cfg missing on update from older versions ------------------------------------------------------------------- Thu Oct 25 05:56:59 UTC 2012 - mchang@suse.com - add grub2-fix-build-error-on-flex-2.5.37.patch ------------------------------------------------------------------- Thu Oct 18 16:10:02 UTC 2012 - arvidjaar@gmail.com - modify patch grub2-iterate-and-hook-for-extended-partition.patch to ignore extended partitions other then primary (bnc#785341) ------------------------------------------------------------------- Wed Sep 26 08:04:48 UTC 2012 - mchang@suse.com - refresh grub2-fix-locale-en.mo.gz-not-found-error-message.patch with the correct fix in upstream bugzilla #35880 by Colin Watson (bnc#771393) ------------------------------------------------------------------- Fri Sep 21 07:37:53 UTC 2012 - mchang@suse.com - grub2-fix-locale-en.mo.gz-not-found-error-message.patch (bnc#771393) ------------------------------------------------------------------- Wed Sep 19 18:54:34 UTC 2012 - arvidjaar@gmail.com - add 20_memtest86+ (bnc#780622) ------------------------------------------------------------------- Tue Sep 18 09:26:29 UTC 2012 - mchang@suse.com - Fix un-bootable grub2 testing entry in grub's menu.lst (bnc#779370) - Not add new grub2 testing entry if it's not found in menu.lst - Update grub2 stuff and config if there's grub2 entry in menu.lst - Check for current bootloader as update-bootloader acts on it ------------------------------------------------------------------- Thu Aug 30 08:00:54 UTC 2012 - mchang@suse.com - add grub2-fix-Grub2-with-SUSE-Xen-package-install.patch (bnc#774666) - add grub2-pass-corret-root-for-nfsroot.patch (bnc#774548) ------------------------------------------------------------------- Mon Aug 20 06:27:23 UTC 2012 - mchang@suse.com - disable grub2-enable-theme-for-terminal-window.patch to use default black background due to current background has poor contrast to the font color (bnc#776244). ------------------------------------------------------------------- Fri Aug 10 19:31:40 UTC 2012 - jslaby@suse.de - rename grub2once to grub2-once ------------------------------------------------------------------- Wed Aug 1 08:01:41 UTC 2012 - mchang@suse.com - add grub2once (bnc#771587) - add not-display-menu-when-boot-once.patch ------------------------------------------------------------------- Sat Jul 28 14:17:56 UTC 2012 - aj@suse.de - Fix build with missing gets declaration (glibc 2.16) ------------------------------------------------------------------- Fri Jul 27 13:22:24 UTC 2012 - tittiatcoke@gmail.com - Add grub2-enable-theme-for-terminal-window.patch (bnc#770107) ------------------------------------------------------------------- Thu Jul 19 11:03:37 UTC 2012 - mchang@suse.com - add grub2-fix-menu-in-xen-host-server.patch (bnc#757895) ------------------------------------------------------------------- Wed Jul 18 08:29:53 UTC 2012 - mchang@suse.com - add grub2-fix-error-terminal-gfxterm-isn-t-found.patch - add grub2-fix-mo-not-copied-to-grubdir-locale.patch ------------------------------------------------------------------- Wed Jul 18 08:12:19 UTC 2012 - aj@suse.de - We only need makeinfo, not texinfo for building. ------------------------------------------------------------------- Tue Jul 17 21:12:26 CEST 2012 - jslaby@suse.de - fix build by adding texinfo to buildrequires. ------------------------------------------------------------------- Fri Jul 6 08:09:16 UTC 2012 - mchang@suse.com - grub2-GRUB_CMDLINE_LINUX_RECOVERY-for-recovery-mode.patch. We don't run in sigle user mode for recovery, instead use different set kernel command line options which could be specified by this GRUB_CMDLINE_LINUX_RECOVERY setting. ------------------------------------------------------------------- Wed Jul 4 06:20:23 UTC 2012 - mchang@suse.com - add use-grub2-efi-as-a-package-name.patch (bnc#769916) ------------------------------------------------------------------- Fri Jun 29 10:02:08 UTC 2012 - dvaleev@suse.com - Add configuration support for serial terminal consoles. This will set the maximum screen size so that text is not overwritten. ------------------------------------------------------------------- Fri Jun 29 09:51:59 UTC 2012 - dvaleev@suse.com - don't enable grub-emu-usb on ppc ppc641 ------------------------------------------------------------------- Thu Jun 28 09:33:26 CEST 2012 - jslaby@suse.de - update to 2.0 final * see ChangeLog for changes ------------------------------------------------------------------- Mon Jun 25 11:10:27 UTC 2012 - adrian@suse.de - enable xz/lzma support for image file generation ------------------------------------------------------------------- Sun Jun 24 18:10:27 UTC 2012 - jslaby@suse.de - update to 2.0 beta6, a snapshot from today * see ChangeLog for changes ------------------------------------------------------------------- Fri Jun 22 08:50:12 UTC 2012 - mchang@suse.com - do not package grub.cfg, as it's generated at runtime and the presence of it would confuse pygrub (bnc#768063) ------------------------------------------------------------------- Wed May 16 06:38:05 UTC 2012 - mchang@suse.com - fix build error on 12.1 caused by autogen aborts because of absence of guile package ------------------------------------------------------------------- Wed May 2 03:17:21 UTC 2012 - mchang@suse.com - grub2-automake-1-11-2.patch : fix grub2 build error on newer autotools (automake >= 1.11.2) - call ./autogen.sh ------------------------------------------------------------------- Thu Apr 19 11:28:44 UTC 2012 - mchang@suse.com - grub2-probe-disk-mountby.patch : fix grub2-probe fails on probing mount-by devices under /dev/disk/by-(id|uuid|path). (bnc#757746) ------------------------------------------------------------------- Thu Mar 29 07:08:38 UTC 2012 - mchang@suse.com - Add Requires to os-prober as script depends on it for probing foreign os (bnc#753229) ------------------------------------------------------------------- Wed Mar 21 06:58:43 UTC 2012 - mchang@suse.com - Mark %config(noreplace) to /etc/default/grub (bnc#753246) ------------------------------------------------------------------- Fri Mar 16 09:21:40 UTC 2012 - aj@suse.de - Fix build with gcc 4.7 (needs -fno-strict-aliasing for zfs code). ------------------------------------------------------------------- Tue Mar 13 04:06:06 UTC 2012 - mchang@suse.com - Fix error in installation to extended partition (bnc#750897) add grub2-iterate-and-hook-for-extended-partition.patch add grub2-install-opt-skip-fs-probe.patch ------------------------------------------------------------------- Mon Mar 12 09:34:40 UTC 2012 - tittiatcoke@gmail.com - Added BuildRequires for gnu-unifont in order to create the necessary fonts for a graphical boot menu. ------------------------------------------------------------------- Mon Feb 20 13:04:51 UTC 2012 - andrea.turrini@gmail.com - fixed typos in grub2.spec ------------------------------------------------------------------- Mon Jan 2 03:16:13 UTC 2012 - mchang@suse.com - platforms without efi should not specify exclusion of it ------------------------------------------------------------------- Thu Dec 29 02:31:23 UTC 2011 - mchang@suse.com - set --target=%{_target_plaform) explicitly to %configure in case it wouldn't do that for us implicitly - when making x86_64-efi image not use i386 target build and keep use of x86_64. otherwise it would have error "invalid ELF header" ------------------------------------------------------------------- Fri Dec 2 16:31:14 UTC 2011 - coolo@suse.com - add automake as buildrequire to avoid implicit dependency ------------------------------------------------------------------- Mon Nov 28 09:40:44 CET 2011 - jslaby@suse.de - remove doubly packaged files - remove INSTALL from docs - handle duplicate bindir files ------------------------------------------------------------------- Mon Oct 31 13:08:21 CET 2011 - meissner@suse.de - make efi exclusion more complete ------------------------------------------------------------------- Thu Oct 27 08:16:58 UTC 2011 - aj@suse.de - efibootmgr only exists on x86-64 and ia64. ------------------------------------------------------------------- Tue Oct 25 08:38:19 UTC 2011 - aj@suse.de - Add requires from efi subpackage to main package (bnc#72596) ------------------------------------------------------------------- Mon Oct 24 13:11:39 CEST 2011 - jslaby@suse.de - update it and pl translations - cleanup spec file * don't package efi files to non-efi package ------------------------------------------------------------------- Thu Aug 25 14:46:04 UTC 2011 - aj@suse.de - Fix directory ownership. ------------------------------------------------------------------- Tue Aug 23 12:46:43 UTC 2011 - aj@suse.de - Build an efi subpackage [bnc#713595]. ------------------------------------------------------------------- Tue Aug 2 12:10:39 UTC 2011 - dvaleev@novell.com - enable ppc build - patch unused-but-set-variable ------------------------------------------------------------------- Tue Jul 12 14:03:05 UTC 2011 - aj@suse.de - Create submenu for all besides primary Linux kernels. - Only run preun section during package install but not during upgrade. ------------------------------------------------------------------- Tue Jul 12 11:48:08 UTC 2011 - aj@suse.de - Update README.openSUSE ------------------------------------------------------------------- Tue May 31 10:42:29 CEST 2011 - jslaby@suse.de - update translations - update to 1.99 final * See NEWS file for changes ------------------------------------------------------------------- Sat May 7 12:33:43 CEST 2011 - jslaby@suse.de - fix build with gcc 4.6 - build in parallel (fixed finally in 1.99) - add translations from translations project - update to 1.99-rc2 * See NEWS file for changes ------------------------------------------------------------------- Wed Oct 27 16:57:13 CEST 2010 - jslaby@suse.de - fix vanishing of /boot/grub2/* if /boot/grub/device.map doesn't exist ------------------------------------------------------------------- Mon Oct 25 12:39:11 UTC 2010 - jslaby@suse.de - add missing " in the default file; add "fi" to grub2-linux.patch ------------------------------------------------------------------- Mon Oct 11 22:29:27 CEST 2010 - jslaby@suse.de - repack gz to bz2 (0.5M saving) ------------------------------------------------------------------- Sat Oct 9 19:16:51 UTC 2010 - aj@suse.de - Do not output vmlinux if vmlinuz of same version exists. - Update default grub file. ------------------------------------------------------------------- Sat Oct 9 13:58:31 UTC 2010 - aj@suse.de - Add patch grub-1.98-follow-dev-mapper-symlinks.patch from Fedora for grub2-probe to detect lvm devices correctly ------------------------------------------------------------------- Sat Sep 11 23:55:54 CEST 2010 - jslaby@suse.de - add gettext "requires" ------------------------------------------------------------------- Sun Mar 14 12:11:53 UTC 2010 - aj@suse.de - Fix build on x86-64. ------------------------------------------------------------------- Fri Mar 12 20:39:25 UTC 2010 - aj@suse.de - Don't build parallel. - Update to grub 1.98 including: * Multiboot on EFI support. * Saved default menu entry support, with new utilities `grub-reboot' and `grub-set-default'. * Encrypted password support, with a new utility `grub-mkpasswd-pbkdf2'. * `grub-mkfloppy' removed; use `grub-mkrescue' to create floppy images. ------------------------------------------------------------------- Fri Feb 12 08:21:10 UTC 2010 - aj@suse.de - Update to grub 1.97.2: * Fix a few 4 GiB limits. * Fix license problems with a few BSD headers. * Lots of misc bugfixes. ------------------------------------------------------------------- Wed Dec 9 12:37:18 UTC 2009 - aj@suse.de - Fix requires. ------------------------------------------------------------------- Wed Dec 9 11:45:57 UTC 2009 - aj@suse.de - Mark /etc/default/grub as config file. ------------------------------------------------------------------- Wed Dec 9 10:45:33 UTC 2009 - aj@suse.de - Mark root partition rw ------------------------------------------------------------------- Wed Dec 9 09:11:33 UTC 2009 - aj@suse.de - New package grub2.
Locations
Projects
Search
Status Monitor
Help
OpenBuildService.org
Documentation
API Documentation
Code of Conduct
Contact
Support
@OBShq
Terms
openSUSE Build Service is sponsored by
The Open Build Service is an
openSUSE project
.
Sign Up
Log In
Places
Places
All Projects
Status Monitor