ELSA-2019-4785 - edk2 security update
Type: | SECURITY |
Impact: | IMPORTANT |
Release Date: | 2019-09-13 |
Description
[1:1.2-5.el7]
- Update spec file to remove 'modprobe kvm-intel' and remove --enable-kvm arg to ovmf_vars_generator so qemu will not require kvm kernel module. (Aaron Young)
- Update spec file to modprobe kvm_intel module prior to running qemu to enroll default keys. (Aaron Young)
- Enroll Oracle cert/key for OL secureboot support. (Aaron Young)
[1:1.2-2.el7]
- Change Image.c image load error to DEBUG_WARN from DEBUG_ERROR since it is normal for some images to fail to load if the associated hardware is not present. Such is the case with Ramfb. (Aaron Young) [Orabug: 28868674]
- Fix AAVMF build. Pull in OpenSSL code (as is done for x86_64) (Aaron Young)
- Update AAVMF change log for version 1.2 (Aaron Young)
[1:1.2-1.el7]
- Update spec files and OVMF change log to version 1.2
Related CVEs
Updated Packages
Release/Architecture | Filename | sha256 | Superseded By Advisory | Channel Label |
|
Oracle Linux 7 (aarch64) | edk2-1.2-5.el7.src.rpm | 8e5bdd6ef591ed75a5a9c851e3974e9be922e741b026729afa0557a8d3510a0d | ELSA-2024-12794 | ol7_aarch64_beta |
| edk2-1.2-5.el7.src.rpm | 8e5bdd6ef591ed75a5a9c851e3974e9be922e741b026729afa0557a8d3510a0d | ELSA-2024-12794 | ol7_aarch64_latest |
| edk2-1.2-5.el7.src.rpm | 8e5bdd6ef591ed75a5a9c851e3974e9be922e741b026729afa0557a8d3510a0d | ELSA-2024-12794 | ol7_aarch64_u7_base |
| edk2-1.2-5.el7.src.rpm | 8e5bdd6ef591ed75a5a9c851e3974e9be922e741b026729afa0557a8d3510a0d | ELSA-2024-12794 | ol7_aarch64_u8_base |
| edk2-1.2-5.el7.src.rpm | 8e5bdd6ef591ed75a5a9c851e3974e9be922e741b026729afa0557a8d3510a0d | ELSA-2024-12794 | ol7_aarch64_u9_base |
|
Oracle Linux 7 (x86_64) | edk2-1.2-5.el7.src.rpm | 8e5bdd6ef591ed75a5a9c851e3974e9be922e741b026729afa0557a8d3510a0d | ELSA-2024-12794 | ol7_x86_64_kvm_utils |
| OVMF-1.2-5.el7.noarch.rpm | f84191aba4eb6be271d7ee6d7db9b664ec5f9fcc790d12ba1be9418c53c5a70b | ELSA-2024-12793 | ol7_x86_64_kvm_utils |
This page is generated automatically and has not been checked for errors or omissions. For clarification
or corrections please contact the Oracle Linux ULN team