Debian NEW package overview for edk2
edk2_2025.11-1_amd64.changes (click to toggle)
Format:1.8
Date:Sun, 21 Dec 2025 18:44:07 -0700
Source:edk2
Binary:efi-shell-aa64 efi-shell-loongarch64 efi-shell-riscv64 efi-shell-x64 ovmf ovmf-amdsev ovmf-generic ovmf-inteltdx qemu-efi-aarch64 qemu-efi-loongarch64 qemu-efi-riscv64
Architecture:source all
Version:2025.11-1
Distribution:unstable
Urgency:medium
Maintainer:Debian QEMU Team <pkg-qemu-devel@lists.alioth.debian.org>
Changed-By:dann frazier <dannf@debian.org>
Description:
efi-shell-aa64 - UEFI Shell for 64-bit ARM architecture
efi-shell-loongarch64 - UEFI Shell for 64-bit LoongArch architecture
efi-shell-riscv64 - UEFI Shell for 64-bit RISC-V architecture
efi-shell-x64 - UEFI Shell for 64-bit x86 architecture
ovmf       - UEFI firmware for 64-bit x86 virtual machines
ovmf-amdsev - UEFI firmware for AMD SEV-SNP confidential virtual machines
ovmf-generic - UEFI firmware for 64-bit x86 virtual machines
ovmf-inteltdx - UEFI firmware for Intel TDX confidential virtual machines
qemu-efi-aarch64 - UEFI firmware for 64-bit ARM virtual machines
qemu-efi-loongarch64 - UEFI firmware for LoongArch64 virtual machines
qemu-efi-riscv64 - UEFI firmware for RISCV64 virtual machines
Closes:1122288
Changes:
edk2 (2025.11-1) unstable; urgency=medium

  * New upstream release, based on edk2-stable202511 tag.
    - Refresh patches:
      + no-stack-protector-all-archs.diff
      + brotlicompress-disable.diff
      + x64-baseline-abi.patch
      + fix_nasm_compile.patch
    - Clear keyboard queue buffer to avoid leaking the password
      string, CVE-2024-38798. (Closes: #1122288)
  * Remove qemu-efi-arm, upstream has removed support for it.
  * Remove ovmf-ia32, upstream has removed support for it.
  * Split ovmf out into ovmf-generic, ovmf-amdsev, ovmf-inteltdx,
    and transition ovmf into a metapackage that depends on each
    of them. This lets users install only the packages that are
    usable on their CPUs.
  * d/control, d/tests/control: Use architecture-specific qemu-system
    virtual packages.
Files:
7a046cc8a959bd0c025ddd4d5fe6c5ab 2974 misc optional edk2_2025.11-1.dsc
1e434a676e9a8aa36eae6cff15752ed4 60617840 misc optional edk2_2025.11.orig.tar.xz
3a1f56d5411f1e7cef6d10c51e3bf528 67696 misc optional edk2_2025.11-1.debian.tar.xz
34443965902ac252d9dc5f7938daf4a9 13817 misc optional edk2_2025.11-1_amd64.buildinfo
ac46cfe9e265ede7a3d4f40797964410 228248 misc optional efi-shell-aa64_2025.11-1_all.deb
4242a2f8f653b771f0320abc316fe136 268904 misc optional efi-shell-loongarch64_2025.11-1_all.deb
9e090e96ba3411b0ac52c11598694499 266692 misc optional efi-shell-riscv64_2025.11-1_all.deb
5aac6f7218c4273b2569d8bbfba8a6ff 257276 misc optional efi-shell-x64_2025.11-1_all.deb
dc64c5f70f9ee43a9eebfe002d0412f2 706696 misc optional ovmf-amdsev_2025.11-1_all.deb
74369cb595b952074043afb98ed6fb82 7264684 misc optional ovmf-generic_2025.11-1_all.deb
d8311c24bc1f7f599f0d43ec8738cd87 1192660 misc optional ovmf-inteltdx_2025.11-1_all.deb
4b12fbc8b2a03f23b050961716775532 20432 misc optional ovmf_2025.11-1_all.deb
749c496d6ae23ae7dd8c7089a16fe50d 5255816 misc optional qemu-efi-aarch64_2025.11-1_all.deb
8a2982fda61e7432167f9a436b93bf62 1700708 misc optional qemu-efi-loongarch64_2025.11-1_all.deb
73c5c659b9d2b04bf8b8b4fc68f73a01 1503724 misc optional qemu-efi-riscv64_2025.11-1_all.deb
control file for ovmf-amdsev_2025.11-1_all.deb (click to toggle)
Package:ovmf-amdsev
Source:edk2
Version:2025.11-1
Architecture:all
Maintainer:Debian QEMU Team <pkg-qemu-devel@lists.alioth.debian.org>
Installed-Size:4139
Suggests:qemu-system-x86-64
Breaks:ovmf (<< 2025.11~)
Replaces:ovmf (<< 2025.11~)
Section:misc
Priority:optional
Multi-Arch:foreign
Homepage:http://www.tianocore.org
Description:
UEFI firmware for AMD SEV-SNP confidential virtual machines
 Open Virtual Machine Firmware builds of EDK II for confidential computing
 virtual machines on host CPUs that support AMD SEV-SNP.
lintian 2.116.3+deb12u1 check for ovmf-amdsev_2025.11-1_all.deb (click to toggle)
contents of ovmf-amdsev_2025.11-1_all.deb (click to toggle)
drwxr-xr-x root/root         0 2025-12-22 01:44 ./
drwxr-xr-x root/root         0 2025-12-22 01:44 ./usr/
drwxr-xr-x root/root         0 2025-12-22 01:44 ./usr/share/
drwxr-xr-x root/root         0 2025-12-22 01:44 ./usr/share/doc/
drwxr-xr-x root/root         0 2025-12-22 01:44 ./usr/share/doc/ovmf-amdsev/
-rw-r--r-- root/root       229 2025-12-22 01:44 ./usr/share/doc/ovmf-amdsev/README.Debian
-rw-r--r-- root/root     13618 2025-12-22 01:44 ./usr/share/doc/ovmf-amdsev/changelog.Debian.gz
-rw-r--r-- root/root     18202 2025-12-22 01:44 ./usr/share/doc/ovmf-amdsev/copyright
drwxr-xr-x root/root         0 2025-12-22 01:44 ./usr/share/ovmf/
-rw-r--r-- root/root   4194304 2025-12-22 01:44 ./usr/share/ovmf/OVMF.amdsev.fd
drwxr-xr-x root/root         0 2025-12-22 01:44 ./usr/share/qemu/
drwxr-xr-x root/root         0 2025-12-22 01:44 ./usr/share/qemu/firmware/
-rw-r--r-- root/root       604 2025-12-22 01:44 ./usr/share/qemu/firmware/60-edk2-x86_64-amdsev.json
control file for ovmf-generic_2025.11-1_all.deb (click to toggle)
Package:ovmf-generic
Source:edk2
Version:2025.11-1
Architecture:all
Maintainer:Debian QEMU Team <pkg-qemu-devel@lists.alioth.debian.org>
Installed-Size:16443
Suggests:qemu-system-x86-64
Breaks:ovmf (<< 2025.11~)
Replaces:ovmf (<< 2025.11~)
Section:misc
Priority:optional
Multi-Arch:foreign
Homepage:http://www.tianocore.org
Description:
UEFI firmware for 64-bit x86 virtual machines
 Open Virtual Machine Firmware is a build of EDK II for 64-bit x86 virtual
 machines. It includes full support for UEFI, including Secure Boot, allowing
 use of UEFI in place of a traditional BIOS in your VM.
 .
 This package provides images that do not require specific CPU support. They
 can be booted in a fully-emulated mode, or accelerated with KVM on supported
 CPUs.
lintian 2.116.3+deb12u1 check for ovmf-generic_2025.11-1_all.deb (click to toggle)
contents of ovmf-generic_2025.11-1_all.deb (click to toggle)
drwxr-xr-x root/root         0 2025-12-22 01:44 ./
drwxr-xr-x root/root         0 2025-12-22 01:44 ./usr/
drwxr-xr-x root/root         0 2025-12-22 01:44 ./usr/share/
drwxr-xr-x root/root         0 2025-12-22 01:44 ./usr/share/OVMF/
-rw-r--r-- root/root   3653632 2025-12-22 01:44 ./usr/share/OVMF/OVMF_CODE_4M.fd
-rw-r--r-- root/root   3653632 2025-12-22 01:44 ./usr/share/OVMF/OVMF_CODE_4M.secboot.fd
-rw-r--r-- root/root   3653632 2025-12-22 01:44 ./usr/share/OVMF/OVMF_CODE_4M.secboot.strictnx.fd
-rw-r--r-- root/root    540672 2025-12-22 01:44 ./usr/share/OVMF/OVMF_VARS_4M.fd
-rw-r--r-- root/root    540672 2025-12-22 01:44 ./usr/share/OVMF/OVMF_VARS_4M.ms.fd
-rw-r--r-- root/root    540672 2025-12-22 01:44 ./usr/share/OVMF/OVMF_VARS_4M.snakeoil.fd
drwxr-xr-x root/root         0 2025-12-22 01:44 ./usr/share/doc/
drwxr-xr-x root/root         0 2025-12-22 01:44 ./usr/share/doc/ovmf-generic/
-rw-r--r-- root/root       944 2025-12-22 01:44 ./usr/share/doc/ovmf-generic/2M_VARS-to-4M_VARS.sh
-rw-r--r-- root/root      3763 2025-12-22 01:44 ./usr/share/doc/ovmf-generic/README.Debian
-rw-r--r-- root/root     13615 2025-12-22 01:44 ./usr/share/doc/ovmf-generic/changelog.Debian.gz
-rw-r--r-- root/root     18202 2025-12-22 01:44 ./usr/share/doc/ovmf-generic/copyright
-rw-r--r-- root/root      1576 2025-12-22 01:44 ./usr/share/doc/ovmf-generic/howto-2M-to-4M-migration.md.gz
drwxr-xr-x root/root         0 2025-12-22 01:44 ./usr/share/ovmf/
-rw-r--r-- root/root   4194304 2025-12-22 01:44 ./usr/share/ovmf/OVMF.fd
-rw-r--r-- root/root      1854 2025-12-22 01:44 ./usr/share/ovmf/PkKek-1-snakeoil.key
-rw-r--r-- root/root      1391 2025-12-22 01:44 ./usr/share/ovmf/PkKek-1-snakeoil.pem
drwxr-xr-x root/root         0 2025-12-22 01:44 ./usr/share/qemu/
drwxr-xr-x root/root         0 2025-12-22 01:44 ./usr/share/qemu/firmware/
-rw-r--r-- root/root       796 2025-12-22 01:44 ./usr/share/qemu/firmware/40-edk2-x86_64-secure-enrolled.json
-rw-r--r-- root/root       758 2025-12-22 01:44 ./usr/share/qemu/firmware/50-edk2-x86_64-secure.json
-rw-r--r-- root/root       737 2025-12-22 01:44 ./usr/share/qemu/firmware/60-edk2-x86_64.json
lrwxrwxrwx root/root         0 2025-12-22 01:44 ./usr/share/OVMF/OVMF_CODE_4M.ms.fd -> OVMF_CODE_4M.secboot.fd
lrwxrwxrwx root/root         0 2025-12-22 01:44 ./usr/share/OVMF/OVMF_CODE_4M.snakeoil.fd -> OVMF_CODE_4M.secboot.fd
lrwxrwxrwx root/root         0 2025-12-22 01:44 ./usr/share/qemu/OVMF.fd -> ../ovmf/OVMF.fd
control file for ovmf-inteltdx_2025.11-1_all.deb (click to toggle)
Package:ovmf-inteltdx
Source:edk2
Version:2025.11-1
Architecture:all
Maintainer:Debian QEMU Team <pkg-qemu-devel@lists.alioth.debian.org>
Installed-Size:4139
Suggests:qemu-system-x86-64
Breaks:ovmf (<< 2025.11~)
Replaces:ovmf (<< 2025.11~)
Section:misc
Priority:optional
Multi-Arch:foreign
Homepage:http://www.tianocore.org
Description:
UEFI firmware for Intel TDX confidential virtual machines
 Open Virtual Machine Firmware builds of EDK II for confidential computing
 virtual machines on host CPUs that support Intel TDX.
lintian 2.116.3+deb12u1 check for ovmf-inteltdx_2025.11-1_all.deb (click to toggle)
contents of ovmf-inteltdx_2025.11-1_all.deb (click to toggle)
drwxr-xr-x root/root         0 2025-12-22 01:44 ./
drwxr-xr-x root/root         0 2025-12-22 01:44 ./usr/
drwxr-xr-x root/root         0 2025-12-22 01:44 ./usr/share/
drwxr-xr-x root/root         0 2025-12-22 01:44 ./usr/share/doc/
drwxr-xr-x root/root         0 2025-12-22 01:44 ./usr/share/doc/ovmf-inteltdx/
-rw-r--r-- root/root       352 2025-12-22 01:44 ./usr/share/doc/ovmf-inteltdx/README.Debian
-rw-r--r-- root/root     13619 2025-12-22 01:44 ./usr/share/doc/ovmf-inteltdx/changelog.Debian.gz
-rw-r--r-- root/root     18202 2025-12-22 01:44 ./usr/share/doc/ovmf-inteltdx/copyright
drwxr-xr-x root/root         0 2025-12-22 01:44 ./usr/share/ovmf/
-rw-r--r-- root/root   4194304 2025-12-22 01:44 ./usr/share/ovmf/OVMF.inteltdx.ms.fd
drwxr-xr-x root/root         0 2025-12-22 01:44 ./usr/share/qemu/
drwxr-xr-x root/root         0 2025-12-22 01:44 ./usr/share/qemu/firmware/
-rw-r--r-- root/root       500 2025-12-22 01:44 ./usr/share/qemu/firmware/60-edk2-x86_64-inteltdx.json

Timestamp: 22.12.2025 / 16:02:41 (UTC)