From 8011b75904f143e64345c7cdb641df9c9b14c9fc Mon Sep 17 00:00:00 2001 From: jinlun Date: Tue, 10 Jan 2023 06:07:04 +0000 Subject: [PATCH] =?UTF-8?q?shim=EF=BC=9Aadd=20code=20check=20in=20shim?= MIME-Version: 1.0 Content-Type: text/plain; charset=UTF-8 Content-Transfer-Encoding: 8bit Signed-off-by: jinlun --- shim.spec | 10 ++++++++-- 1 file changed, 8 insertions(+), 2 deletions(-) diff --git a/shim.spec b/shim.spec index 5e23d02..0606c40 100644 --- a/shim.spec +++ b/shim.spec @@ -22,7 +22,7 @@ Name: shim Version: 15.4 -Release: 5 +Release: 6 Summary: First-stage UEFI bootloader ExclusiveArch: x86_64 aarch64 License: BSD @@ -58,7 +58,7 @@ Patch23: backport-CVE-2021-23841.patch Patch24: backport-CVE-2022-0778.patch Patch25: backport-CVE-2021-3712.patch -BuildRequires: elfutils-libelf-devel openssl-devel openssl git pesign gnu-efi gnu-efi-devel gcc +BuildRequires: elfutils-libelf-devel openssl-devel openssl git pesign gnu-efi gnu-efi-devel gcc vim-common Requires: dbxtool efi-filesystem mokutil Provides: bundled(openssl) = 1.0.2j Provides: shim-%{efi_arch} @@ -141,6 +141,9 @@ install -m 644 shim%{efi_arch}.efi.debug ${RPM_BUILD_ROOT}/usr/lib/debug/%{shime cd .. +%check +make test + %files %license COPYRIGHT %{shimBOOT}/fb%{efi_arch}.efi @@ -163,6 +166,9 @@ cd .. /usr/src/debug/%{name}-%{version}-%{release}/* %changelog +* Tue Jan 10 2023 jinlun - 15.4-6 +- add code check in shim + * Tue Sep 20 2022 jinlun - 15.4-5 - fix CVE-2017-3735 CVE-2017-3737 CVE-2018-0732 CVE-2018-0737 CVE-2018-0739 CVE-2019-1563 CVE-2020-1971 CVE-2021-23840 -- Gitee