Fedora Linux 8568 Published by

A grub2 security update has been released for Fedora 34.



SECURITY: Fedora 34 Update: grub2-2.06~rc1-2.fc34


--------------------------------------------------------------------------------
Fedora Update Notification
FEDORA-2021-c5ed9c3970
2021-03-26 00:15:07.081504
--------------------------------------------------------------------------------

Name : grub2
Product : Fedora 34
Version : 2.06~rc1
Release : 2.fc34
URL :   http://www.gnu.org/software/grub/
Summary : Bootloader with support for Linux, Multiboot and more
Description :

The GRand Unified Bootloader (GRUB) is a highly configurable and
customizable bootloader with modular architecture. It supports a rich
variety of kernel formats, file systems, computer architectures and
hardware devices.

--------------------------------------------------------------------------------
Update Information:

Fix a couple of merge mistakes made when rebasing to 2.06~rc1 ---- Update to
2.06~rc1 to fix a bunch of CVEs ---- Fix config file generation failing due
invalid petitboot version value ---- Fix keyboards that report IBM PC AT scan
codes (rmetrich)
--------------------------------------------------------------------------------
ChangeLog:

* Wed Mar 24 2021 Javier Martinez Canillas 2.06~rc1-2
- Fix a couple of merge mistakes made when rebasing to 2.06~rc1
Resolves: rhbz#1940524
* Fri Mar 12 2021 Javier Martinez Canillas - 2.06~rc1-1
- Update to 2.06~rc1 to fix a bunch of CVEs
Resolves: CVE-2020-14372
Resolves: CVE-2020-25632
Resolves: CVE-2020-25647
Resolves: CVE-2020-27749
Resolves: CVE-2020-27779
Resolves: CVE-2021-20225
Resolves: CVE-2021-20233
* Thu Mar 11 2021 Javier Martinez Canillas - 2.04-39
- Fix config file generation failing due invalid petitboot version value
Resolves: rhbz#1921479
* Fri Mar 5 2021 Javier Martinez Canillas - 2.04-38
- Fix keyboards that report IBM PC AT scan codes (rmetrich)
--------------------------------------------------------------------------------
References:

[ 1 ] Bug #1921479 - /etc/grub.d/10_linux: line 234: test: 0ed84c0-p94177c1: integer expression expected
  https://bugzilla.redhat.com/show_bug.cgi?id=1921479
[ 2 ] Bug #1940524 - grub2-mkconfig -o /boot/grub2/grub.cfg breaks grub
  https://bugzilla.redhat.com/show_bug.cgi?id=1940524
--------------------------------------------------------------------------------

This update can be installed with the "dnf" update program. Use
su -c 'dnf upgrade --advisory FEDORA-2021-c5ed9c3970' at the command
line. For more information, refer to the dnf documentation available at
  http://dnf.readthedocs.io/en/latest/command_ref.html#upgrade-command-label

All packages are signed with the Fedora Project GPG key. More details on the
GPG keys used by the Fedora Project can be found at
  https://fedoraproject.org/keys