Debian Patches

Status for edk2/2025.11-4

Patch Description Author Forwarded Bugs Origin Last update
brotlicompress-disable.diff Do not attempt to compile removed BrotliCompress source BrotliCompress is not currently used, and including an embedded
copy of its source could cause false-positives when scanning for
security issues. This code is stripped from our orig.tar (at the request
of the Ubuntu security team), so we also need to disable the build.
dann frazier <dannf@debian.org> not-needed 2025-12-13
x64-baseline-abi.patch Explicitly target generic x86-64 ABI The system compiler may be configured to target a higher x86-64 psABI by
default, so explicitly target the generic psABI to retain compatibility
with older machine types.
dann frazier <dannf@debian.org> yes 2025-12-13
OvmfPkg-X64-add-opt-org.tianocore-UninstallMemAttrPr.patch OvmfPkg/X64: add opt/org.tianocore/UninstallMemAttrProtocol support

Add support for opt/org.tianocore/UninstallMemAttrProtocol, to allow
turning off EFI_MEMORY_ATTRIBUTE_PROTOCOL, simliar to ArmVirtPkg.
Gerd Hoffmann <kraxel@redhat.com> no debian https://github.com/tianocore/edk2/pull/10667/commits/aa7f29a9e92b9e6f8b2e56bacaef6c96b8dc80ed 2025-01-16
fix_nasm_compile.patch fix FTBFS w/ nasm 3.01 yes debian upstream https://github.com/tianocore/edk2/issues/11635#issuecomment-3429984162 2025-12-13
CVE-2025-9232.patch use_proxy(): Add missing terminating NUL byte
Fixes CVE-2025-9232

There is a missing terminating NUL byte after strncpy() call.
Issue and a proposed fix reported by Stanislav Fort (Aisle Research).

(cherry picked from commit 6bca15039e99d37ce3a3564eb862a3b1ff40e63d)
Tomas Mraz <tomas@openssl.org> no 2025-09-11

All known versions for source package 'edk2'

Links