diff --git a/DBXUpdate-20100307.x64.bin b/DBXUpdate-20131210.ia32+x64.bin similarity index 100% rename from DBXUpdate-20100307.x64.bin rename to DBXUpdate-20131210.ia32+x64.bin diff --git a/DBXUpdate-20140413.x64.bin b/DBXUpdate-2014-04-13-22-14-00.bin similarity index 100% rename from DBXUpdate-20140413.x64.bin rename to DBXUpdate-2014-04-13-22-14-00.bin diff --git a/DBXUpdate-20140227.ia32+x64.bin b/DBXUpdate-20140227.ia32+x64.bin new file mode 100644 index 0000000..b486d86 Binary files /dev/null and b/DBXUpdate-20140227.ia32+x64.bin differ diff --git a/DBXUpdate-20140513.ia32+x64.bin b/DBXUpdate-20140513.ia32+x64.bin new file mode 100644 index 0000000..e79929f Binary files /dev/null and b/DBXUpdate-20140513.ia32+x64.bin differ diff --git a/DBXUpdate-20160809.x64.bin b/DBXUpdate-20160809.ia32+x64+arm+aa64.bin similarity index 100% rename from DBXUpdate-20160809.x64.bin rename to DBXUpdate-20160809.ia32+x64+arm+aa64.bin diff --git a/DBXUpdate-20200211.ia32+x64+arm+aa64.bin b/DBXUpdate-20200211.ia32+x64+arm+aa64.bin new file mode 100644 index 0000000..1f5156a Binary files /dev/null and b/DBXUpdate-20200211.ia32+x64+arm+aa64.bin differ diff --git a/DBXUpdate-20200211.x64.bin b/DBXUpdate-20200211.x64.bin new file mode 100644 index 0000000..ddb76b4 Binary files /dev/null and b/DBXUpdate-20200211.x64.bin differ diff --git a/DBXUpdate-20201012.x64.bin b/DBXUpdate-20201012.x64.bin new file mode 100644 index 0000000..aa7b716 Binary files /dev/null and b/DBXUpdate-20201012.x64.bin differ diff --git a/DBXUpdate-20201012.x64.metainfo.xml b/DBXUpdate-20201012.x64.metainfo.xml new file mode 100644 index 0000000..0b1a7e2 --- /dev/null +++ b/DBXUpdate-20201012.x64.metainfo.xml @@ -0,0 +1,53 @@ + + + + org.linuxfoundation.dbx.x64.firmware + Secure Boot dbx + x64 + UEFI Secure Boot Forbidden Signature Database + +

+ Updating the UEFI dbx prevents starting EFI binaries with known security issues. +

+
+ + + f8ba2887-9411-5c36-9cee-88995bb39731 + + https://uefi.org/revocationlistfile + CC0-1.0 + proprietary + Microsoft Corporation + + + + + +

+ An insecure version of software from Cisco has been added to the list of forbidden + signatures due to a discovered security problem. + This updates the dbx to the latest release from Microsoft. +

+

+ Before installing the update, fwupd will check for any affected executables + in the ESP and will refuse to update if it finds any boot binaries signed + with any of the forbidden signatures. +

+
+ + CVE-2023-28005 + +
+
+ + org.freedesktop.fwupd + + + org.uefi.dbx + number + + + X-Configuration + +
diff --git a/DBXUpdate-20220812.aa64.bin b/DBXUpdate-20220809.aa64.bin similarity index 100% rename from DBXUpdate-20220812.aa64.bin rename to DBXUpdate-20220809.aa64.bin diff --git a/DBXUpdate-20220812.ia32.bin b/DBXUpdate-20220809.ia32.bin similarity index 100% rename from DBXUpdate-20220812.ia32.bin rename to DBXUpdate-20220809.ia32.bin diff --git a/DBXUpdate-20220812.x64.bin b/DBXUpdate-20220809.x64.bin similarity index 100% rename from DBXUpdate-20220812.x64.bin rename to DBXUpdate-20220809.x64.bin diff --git a/DBXUpdate-20230314.aa64.bin b/DBXUpdate-20220907.aa64.bin similarity index 100% rename from DBXUpdate-20230314.aa64.bin rename to DBXUpdate-20220907.aa64.bin diff --git a/DBXUpdate-20220907.aa64.metainfo.xml b/DBXUpdate-20220907.aa64.metainfo.xml new file mode 100644 index 0000000..0fcd5ec --- /dev/null +++ b/DBXUpdate-20220907.aa64.metainfo.xml @@ -0,0 +1,53 @@ + + + + org.linuxfoundation.dbx.aa64.firmware + Secure Boot dbx + aa64 + UEFI Secure Boot Forbidden Signature Database + +

+ Updating the UEFI dbx prevents starting EFI binaries with known security issues. +

+
+ + + 67d35028-ca5b-5834-834a-f97380381082 + + https://uefi.org/revocationlistfile + CC0-1.0 + proprietary + Microsoft Corporation + + + + + +

+ An insecure version of software from VMware has been added to the list of forbidden + signatures due to a discovered security problem. + This updates the dbx to the latest release from Microsoft. +

+

+ Before installing the update, fwupd will check for any affected executables + in the ESP and will refuse to update if it finds any boot binaries signed + with any of the forbidden signatures. +

+
+ + CVE-2023-28005 + +
+
+ + org.freedesktop.fwupd + + + org.uefi.dbx + number + + + X-Configuration + +
diff --git a/DBXUpdate-20220907.x64.bin b/DBXUpdate-20220907.x64.bin new file mode 100644 index 0000000..efb9143 Binary files /dev/null and b/DBXUpdate-20220907.x64.bin differ diff --git a/DBXUpdate-20220907.x64.metainfo.xml b/DBXUpdate-20220907.x64.metainfo.xml new file mode 100644 index 0000000..d860104 --- /dev/null +++ b/DBXUpdate-20220907.x64.metainfo.xml @@ -0,0 +1,53 @@ + + + + org.linuxfoundation.dbx.x64.firmware + Secure Boot dbx + x64 + UEFI Secure Boot Forbidden Signature Database + +

+ Updating the UEFI dbx prevents starting EFI binaries with known security issues. +

+
+ + + f8ba2887-9411-5c36-9cee-88995bb39731 + + https://uefi.org/revocationlistfile + CC0-1.0 + proprietary + Microsoft Corporation + + + + + +

+ An insecure version of software from VMware has been added to the list of forbidden + signatures due to a discovered security problem. + This updates the dbx to the latest release from Microsoft. +

+

+ Before installing the update, fwupd will check for any affected executables + in the ESP and will refuse to update if it finds any boot binaries signed + with any of the forbidden signatures. +

+
+ + CVE-2023-28005 + +
+
+ + org.freedesktop.fwupd + + + org.uefi.dbx + number + + + X-Configuration + +
diff --git a/Makefile b/Makefile index ff044de..1ad5183 100644 --- a/Makefile +++ b/Makefile @@ -1,16 +1,4 @@ all: - gcab --create --nopath DBXUpdate-20100307-x64.cab DBXUpdate-20100307.x64.bin DBXUpdate-20100307.x64.metainfo.xml - gcab --create --nopath DBXUpdate-20140413-x64.cab DBXUpdate-20140413.x64.bin DBXUpdate-20140413.x64.metainfo.xml - gcab --create --nopath DBXUpdate-20160809-x64.cab DBXUpdate-20160809.x64.bin DBXUpdate-20160809.x64.metainfo.xml - gcab --create --nopath DBXUpdate-20200729-aa64.cab DBXUpdate-20200729.aa64.bin DBXUpdate-20200729.aa64.metainfo.xml - gcab --create --nopath DBXUpdate-20200729-ia32.cab DBXUpdate-20200729.ia32.bin DBXUpdate-20200729.ia32.metainfo.xml - gcab --create --nopath DBXUpdate-20200729-x64.cab DBXUpdate-20200729.x64.bin DBXUpdate-20200729.x64.metainfo.xml - gcab --create --nopath DBXUpdate-20210429-aa64.cab DBXUpdate-20210429.aa64.bin DBXUpdate-20210429.aa64.metainfo.xml - gcab --create --nopath DBXUpdate-20210429-ia32.cab DBXUpdate-20210429.ia32.bin DBXUpdate-20210429.ia32.metainfo.xml - gcab --create --nopath DBXUpdate-20210429-x64.cab DBXUpdate-20210429.x64.bin DBXUpdate-20210429.x64.metainfo.xml - gcab --create --nopath DBXUpdate-20220812-aa64.cab DBXUpdate-20220812.aa64.bin DBXUpdate-20220812.aa64.metainfo.xml - gcab --create --nopath DBXUpdate-20220812-ia32.cab DBXUpdate-20220812.ia32.bin DBXUpdate-20220812.ia32.metainfo.xml - gcab --create --nopath DBXUpdate-20220812-x64.cab DBXUpdate-20220812.x64.bin DBXUpdate-20220812.x64.metainfo.xml gcab --create --nopath DBXUpdate-20230314-aa64.cab DBXUpdate-20230314.aa64.bin DBXUpdate-20230314.aa64.metainfo.xml gcab --create --nopath DBXUpdate-20230314-ia32.cab DBXUpdate-20230314.ia32.bin DBXUpdate-20230314.ia32.metainfo.xml gcab --create --nopath DBXUpdate-20230314-x64.cab DBXUpdate-20230314.x64.bin DBXUpdate-20230314.x64.metainfo.xml