This update for shim fixes the following issues:
Updated shim signature after shim 15.7 be signed back: signature-sles.x86_64.asc, signature-sles.aarch64.asc (bsc#1198458)
Add POSTPROCESSPE_FLAGS=-N to the build command in shim.spec to disable the NX compatibility flag when using post-process-pe because grub2 is not ready. (bsc#1205588)
Enable the NX compatibility flag by default. (jsc#PED-127)
Update to 15.7 (bsc#1198458) (jsc#PED-127):
Other fixes:
Support enhance shim measurement to TD RTMR. (jsc#PED-1273)
shim-install: ensure grub.cfg created is not overwritten after installing grub related files
Update to 15.6 (bsc#1198458):
Update to 15.5 (bsc#1198458):
pe: missing perror argument
CVE-2022-28737: Fixed a buffer overflow when SizeOfRawData > VirtualSize (bsc#1198458)
Add mokutil command to post script for setting sbat policy to latest mode when the SbatPolicy-605dab50-e046-4300-abb6-3dd810dd8b23 is not created. (bsc#1198458)
Updated vendor dbx binary and script (bsc#1198458)
avoid buffer overflow when copying data to the MOK config table (bsc#1185232)
handle ignoredb and userinsecure_mode correctly (bsc#1185441, bsc#1187071)
Split the keys in vendor-dbx.bin to vendor-dbx-sles and vendor-dbx-opensuse for shim-sles and shim-opensuse to reduce the size of MokListXRT (bsc#1185261)