]> git.ipfire.org Git - thirdparty/grub.git/commit
loader/xnu: Don't allow loading extension and packages when locked down
authorJavier Martinez Canillas <javierm@redhat.com>
Wed, 24 Feb 2021 13:44:38 +0000 (14:44 +0100)
committerDaniel Kiper <daniel.kiper@oracle.com>
Tue, 2 Mar 2021 14:54:15 +0000 (15:54 +0100)
commit9c5565135f12400a925ee901b25984e7af4442f5
tree19362c74f11fdc3bc9d1830aa46f6438098ec083
parent508270838998f151a82e9c13e7cb8a470a2dc23d
loader/xnu: Don't allow loading extension and packages when locked down

The shim_lock verifier validates the XNU kernels but no its extensions
and packages. Prevent these to be loaded when the GRUB is locked down.

Signed-off-by: Javier Martinez Canillas <javierm@redhat.com>
Reviewed-by: Daniel Kiper <daniel.kiper@oracle.com>
grub-core/loader/xnu.c