Received: by 2002:a05:6a10:8c0a:0:0:0:0 with SMTP id go10csp1043022pxb; Tue, 9 Feb 2021 21:10:58 -0800 (PST) X-Google-Smtp-Source: ABdhPJyAfXRdkZQ5SD4TGyN8urpLBGpRYM9yiq0BXX39pN9o66ox6OXgfXy38uiB4lrxr81rNW2R X-Received: by 2002:a17:906:3c1:: with SMTP id c1mr1156445eja.428.1612933858591; Tue, 09 Feb 2021 21:10:58 -0800 (PST) ARC-Seal: i=1; a=rsa-sha256; t=1612933858; cv=none; d=google.com; s=arc-20160816; b=YHL9ExYCRD8Kb6B+u6ayahRyNPiYfQBoQBEdoHYfjc9VlUiUyjVPNZcnNC8y+kIWrA iyz3z3PwApMum+UFawzAKIiZtWozOd4SIlGp87EE0nJsB3W0AWyemqwx5InSA8a482fn QxjqSMPU688kt7jTw9eeaezV1vsdaqSpnwxaACi27Mt+BTPtjukYvIAqrzF8aZUuDu8q Izd2FfDmixEfvB83JS0y2OCkfv9pGe++2VbNyqvV5DeIDCoyaa6P0t+5NLVVdfZvkJS8 xY4PepL98fALiIc00z8icHBPPBKNSpzmdSvM56aRHVHHRQBVFM3HR3XV9cXbLQORfHD4 5Gbw== ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=google.com; s=arc-20160816; h=list-id:precedence:content-transfer-encoding:content-language :in-reply-to:mime-version:user-agent:date:message-id:from:references :cc:to:subject; bh=EMW9ShdXrIo/LWCLKS+qfFduTHsDRieguIMRZVUQLYQ=; b=C87wZ1wR4ozAayTeSbM/vacs2pjoh+B/MS3rbaAHsXH5AlbvMkxCgW3IO/V1rmaNVr l9KNQ9Q/SV3E6rqkj8E7pRD4rms2ju7VhJ+kwxvtBHmiOFmEpun4A6iLxlDjW/dPsho7 TmHz0/bh76+QfkJ1moVaTLLTHtBTioG5tR5BEAnyLg+xpawuVCtULFMSOb+EvH+QHMvL TQa54Lkd7sz2aVKnpgUV3rNVjSAox9Avk6lzCuiRg0JwdG1WDoaBnM2u1TsIuqvYMYrB 4wxpyC20mG5BDOVVjM8y9gdFCDEqmHhYCFWMRS2qRCP6d68iRXerA8vpmwbU+GqDIehc NEGQ== ARC-Authentication-Results: i=1; mx.google.com; spf=pass (google.com: domain of linux-kernel-owner@vger.kernel.org designates 23.128.96.18 as permitted sender) smtp.mailfrom=linux-kernel-owner@vger.kernel.org Return-Path: Received: from vger.kernel.org (vger.kernel.org. [23.128.96.18]) by mx.google.com with ESMTP id by12si643478edb.611.2021.02.09.21.10.35; Tue, 09 Feb 2021 21:10:58 -0800 (PST) Received-SPF: pass (google.com: domain of linux-kernel-owner@vger.kernel.org designates 23.128.96.18 as permitted sender) client-ip=23.128.96.18; Authentication-Results: mx.google.com; spf=pass (google.com: domain of linux-kernel-owner@vger.kernel.org designates 23.128.96.18 as permitted sender) smtp.mailfrom=linux-kernel-owner@vger.kernel.org Received: (majordomo@vger.kernel.org) by vger.kernel.org via listexpand id S231629AbhBIOAh (ORCPT + 99 others); Tue, 9 Feb 2021 09:00:37 -0500 Received: from smtp-bc0d.mail.infomaniak.ch ([45.157.188.13]:57171 "EHLO smtp-bc0d.mail.infomaniak.ch" rhost-flags-OK-OK-OK-OK) by vger.kernel.org with ESMTP id S230408AbhBIN7k (ORCPT ); Tue, 9 Feb 2021 08:59:40 -0500 Received: from smtp-3-0001.mail.infomaniak.ch (unknown [10.4.36.108]) by smtp-2-3000.mail.infomaniak.ch (Postfix) with ESMTPS id 4DZkyM0ZD7zMqQlf; Tue, 9 Feb 2021 14:58:51 +0100 (CET) Received: from ns3096276.ip-94-23-54.eu (unknown [23.97.221.149]) by smtp-3-0001.mail.infomaniak.ch (Postfix) with ESMTPA id 4DZkyJ230Czlh8TN; Tue, 9 Feb 2021 14:58:48 +0100 (CET) Subject: =?UTF-8?Q?Re=3a_Conflict_with_Micka=c3=abl_Sala=c3=bcn=27s_blacklis?= =?UTF-8?Q?t_patches_=5bwas_=5bPATCH_v5_0/4=5d_Add_EFI=5fCERT=5fX509=5fGUID_?= =?UTF-8?Q?support_for_dbx/mokx_entries=5d?= To: David Howells , Eric Snowberg Cc: dwmw2@infradead.org, Jarkko Sakkinen , James.Bottomley@HansenPartnership.com, masahiroy@kernel.org, michal.lkml@markovi.net, jmorris@namei.org, serge@hallyn.com, ardb@kernel.org, Mimi Zohar , lszubowi@redhat.com, javierm@redhat.com, keyrings@vger.kernel.org, linux-kernel@vger.kernel.org, linux-kbuild@vger.kernel.org, linux-security-module@vger.kernel.org, Tyler Hicks References: <74EC102D-BD18-4863-A7FB-C88439654C8C@oracle.com> <20210122181054.32635-1-eric.snowberg@oracle.com> <1103491.1612369600@warthog.procyon.org.uk> <10e6616e-0598-9f33-2de9-4a5268bba586@digikod.net> <7924ce4c-ea94-9540-0730-bddae7c6af07@digikod.net> <188DE1AF-A011-4631-B88A-2C4324DA013B@oracle.com> <99066eb7-53ac-41b0-46cf-36ea3d7f6590@digikod.net> <525705.1612876446@warthog.procyon.org.uk> From: =?UTF-8?Q?Micka=c3=abl_Sala=c3=bcn?= Message-ID: <5055b9b4-2808-8816-d50c-e651bd88a7c3@digikod.net> Date: Tue, 9 Feb 2021 14:59:14 +0100 User-Agent: MIME-Version: 1.0 In-Reply-To: <525705.1612876446@warthog.procyon.org.uk> Content-Type: text/plain; charset=utf-8 Content-Language: en-US Content-Transfer-Encoding: 8bit Precedence: bulk List-ID: X-Mailing-List: linux-kernel@vger.kernel.org Hi David, The only commit causing issues is commit f78e50c8f750 ("certs: Factor out the blacklist hash creation"). I think my last patch fix the issue, and I'm testing with the UEFI DBX, but I don't understand why this change would have an impact. In the meantime you can push Eric's commits first, I'll adapt my changes. Mickaël On 09/02/2021 14:14, David Howells wrote: > > Hi Eric, Mickaël, > > Do we have a consensus on this? From what's written here, I don't think I can > ask Linus to pull the merge of your two branches. I feel that I probably need > to push Eric's first as that fixes a CVE if I can't offer a merge. > > David >