Your message dated Tue, 10 Feb 2026 15:33:50 +0000
with message-id <[email protected]>
and subject line Bug#1127556: fixed in grub2 2.14-2
has caused the Debian Bug report #1127556,
regarding grub-efi-amd64-signed: 'shim_lock verifier_init:177:prohibited by 
secure boot policy' error
to be marked as done.

This means that you claim that the problem has been dealt with.
If this is not the case it is now your responsibility to reopen the
Bug report if necessary, and/or fix the problem forthwith.

(NB: If you are a system administrator and have no idea what this
message is talking about, this may indicate a serious mail system
misconfiguration somewhere. Please contact [email protected]
immediately.)


-- 
1127556: https://bugs.debian.org/cgi-bin/bugreport.cgi?bug=1127556
Debian Bug Tracking System
Contact [email protected] with problems
--- Begin Message ---
Package: grub-efi-amd64-unsigned
Version: 1+2.14+1
Severity: normal
X-Debbugs-Cc: [email protected]
User: [email protected]
Usertags: amd64

Dear Maintainer,

I got this error after updating grub and it appears after a kernel update.

It can be reproduced by these steps.

Update grub2 and grub-efi-amd64-signed to 2.14-1

Install any new kernel or

Run the following commands

update-grub
grub-install

Reboot and, for a few seconds, it's throw this error:

grub-core/kern/efi/sb.c/shim_lock verifier_init:177:prohibited by secure
boot policy

And it boots normally after this error.

Reverting back to 2.14~git20250718.0e36779+2 fixes this.


-- System Information:
Debian Release: forky/sid
  APT prefers unstable
  APT policy: (500, 'unstable')
Architecture: amd64 (x86_64)
Foreign Architectures: i386

Kernel: Linux 6.19.0 (SMP w/8 CPU threads; PREEMPT)
Kernel taint flags: TAINT_PROPRIETARY_MODULE, TAINT_OOT_MODULE
Locale: LANG=pt_BR.UTF-8, LC_CTYPE=pt_BR.UTF-8 (charmap=UTF-8),
LANGUAGE=pt_BR:pt:en
Shell: /bin/sh linked to /usr/bin/dash
Init: systemd (via /run/systemd/system)

Versions of packages grub-efi-amd64-signed depends on:
ii  grub2-common  2.14-1

Versions of packages grub-efi-amd64-signed recommends:
ii  shim-signed  1.47+15.8-1

grub-efi-amd64-signed suggests no packages.

Versions of packages grub-efi-amd64-unsigned depends on:
ii  grub2-common  2.14-1

-- no debconf information

-- 
Adilson dos Santos Dantas
https://www.adilson.net.br
https://bsky.adilson.net.br

--- End Message ---
--- Begin Message ---
Source: grub2
Source-Version: 2.14-2
Done: Mate Kukri <[email protected]>

We believe that the bug you reported is fixed in the latest version of
grub2, which is due to be installed in the Debian FTP archive.

A summary of the changes between this version and the previous one is
attached.

Thank you for reporting the bug, which will now be closed.  If you
have further comments please address them to [email protected],
and the maintainer will reopen the bug report if appropriate.

Debian distribution maintenance software
pp.
Mate Kukri <[email protected]> (supplier of updated grub2 package)

(This message was generated automatically at their request; if you
believe that there is a problem with it please contact the archive
administrators by mailing [email protected])


-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA512

Format: 1.8
Date: Tue, 10 Feb 2026 11:27:19 +0000
Source: grub2
Architecture: source
Version: 2.14-2
Distribution: unstable
Urgency: medium
Maintainer: GRUB Maintainers <[email protected]>
Changed-By: Mate Kukri <[email protected]>
Closes: 1127371 1127556
Changes:
 grub2 (2.14-2) unstable; urgency=medium
 .
   [ Mate Kukri ]
   * grub-common.service: Add After/Requires=boot-complete.target
   * Provide pre-built BIOS and IEEE1275 El-Torito images
   * Drop vt-handoff support (LP #2052673)
 .
   [ Julian Andres Klode ]
   * debian/upstream/signing-key.asc: merge keyring
 .
   [ Mate Kukri ]
   * Do not append file/function/line prefixes to GRUB error message
   * efi: Drop support for UGA Draw and Console Control protocols (Closes: 
#1127371) (Closes: #1127556)
Checksums-Sha1:
 4bb419902826c076a8d6a73f8cf2105221fafc2a 7204 grub2_2.14-2.dsc
 7e3e8c2b9e0360265984e03a8be6bac6fa1166c8 1089740 grub2_2.14-2.debian.tar.xz
 647a7d5f1e56b43c223a079a964a94e5439caa54 14408 grub2_2.14-2_source.buildinfo
Checksums-Sha256:
 c4cd53b3f5df6a758606f3971ac52b104b855a8e99f1d3d90a89ca9512cb78b9 7204 
grub2_2.14-2.dsc
 8c962b4813e808a1b5a2bbbd886d5055919ab85b3046d2fae1404469271baa7b 1089740 
grub2_2.14-2.debian.tar.xz
 8f367b580be75ca8af7f479e8b6196498fd17a74aa7858a9b36f34afcde0439b 14408 
grub2_2.14-2_source.buildinfo
Files:
 0512351337737e2e26445515ebc46e8a 7204 admin optional grub2_2.14-2.dsc
 1f18ea2d33fb495db66007248a7c0d92 1089740 admin optional 
grub2_2.14-2.debian.tar.xz
 e792dd4c61a40c39fd92f4964a7fa156 14408 admin optional 
grub2_2.14-2_source.buildinfo

-----BEGIN PGP SIGNATURE-----
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=d2s6
-----END PGP SIGNATURE-----

Attachment: pgpF4k4zQQjP3.pgp
Description: PGP signature


--- End Message ---

Reply via email to