-
Mon Jun 08 2026 Akshata Konala <akshata.konala@oracle.com> - 2.06-126.0.2
- Fix code32_start for compatibility with older kernels [EVG-3643]
-
Tue Mar 24 2026 Kevin Lyons <kevin.x.lyons@oracle.com> - 2.06-126.0.1
- Update grub2 dependencies to match new Secure Boot certificate chain of trust [Orabug: 37766761]
- Fix typo in SBAT metadata [Orabug: 37693946]
- Allow installation of grub2 only with shim-aa64 that allows booting it [Orabug: 37693946]
- net/dns: Fix removal of DNS server [Orabug: 37539625]
- net/dns: Simplify error handling of recv_hook() function [Orabug: 37539625]
- net/dns: Add debugging messages in recv_hook() function [Orabug: 37539625]
- net/dns: Fix lookup error when no IPv6 is returned [Orabug: 37539625]
- efinet: close and reopen network card on failure [Orabug: 35126950], [Orabug: 37747175]
- efinet: Correct closing of SNP protocol [Orabug: 35126950], [Orabug: 37747175]
- Support setting custom kernels as default kernels [Orabug: 36043978]
- Bump SBAT metadata for grub to 3 [Orabug: 34872719]
- Fix CVE-2022-3775 [Orabug: 34871953]
- Enable signing for aarch64 EFI
- Fix signing certificate names
- Enable back btrfs grub module for EFI pre-built image [Orabug: 34360986]
- Replaced bugzilla.oracle.com references [Orabug: 34202300]
- Update provided certificate version to 202204 [JIRA: OLDIS-16371]
- Various coverity fixes [JIRA: OLDIS-16371]
- bump SBAT generation
- Update bug url [Orabug: 34202300]
- Revert provided certificate version back to 202102 [JIRA: OLDIS-16371]
- Update signing certificate [JIRA: OLDIS-16371]
- fix SBAT data [JIRA: OLDIS-16371]
- Update requires [JIRA: OLDIS-16371]
- Rebuild for SecureBoot signatures [Orabug: 33801813]
- Do not add shim and grub certificate deps for aarch64 packages [Orabug: 32670033]
- Update Oracle SBAT data [Orabug: 32670033]
- Use new signing certificate [Orabug: 32670033]
- honor /etc/sysconfig/kernel DEFAULTKERNEL setting for BLS [Orabug: 30643497]
- set EFIDIR as redhat for additional grub2 tools [Orabug: 29875597]
- Update upstream references [Orabug: 26388226]
- Insert Unbreakable Enterprise Kernel text into BLS config file [Orabug: 29417955]
- Put "with" in menuentry instead of "using" [Orabug: 18504756]
- Use different titles for UEK and RHCK kernels [Orabug: 18504756]
-
Mon Mar 09 2026 Josue Hernandez <josherna@redhat.com> 2.06-126
- kern/efi/mm: Change grub_efi_mm_add_regions() to keep track of map allocation size
- Resolves: #RHEL-148310
-
Thu Mar 05 2026 Nicolas Frayer <nfrayer@redhat.com> 2.06-125
- ppc64le/sbat: Add an sbat CSV file for ppc64le
- Resolves: #RHEL-146555
-
Fri Feb 13 2026 Marta Lewandowska <mlewando@redhat.com> 2.06-124
- ppc64le: Pointing to the right cert after redhat-release change
- Related: #RHEL-24742
-
Fri Feb 06 2026 Nicolas Frayer <nfrayer@redhat.com> 2.06-123
- ppc/mkimage/appendedsig: Upstream code sync for alignment and sbat
- Related: #RHEL-24742
-
Wed Feb 04 2026 Nicolas Frayer <nfrayer@redhat.com> 2.06-122
- Fix several security issues about module unloading and file handling
- Resolved: #RHEL-141594
- Resolves: #CVE-2025-54771 #CVE-2025-61661
- Resolves: #CVE-2025-61662 #CVE-2025-61663 #CVE-2025-61664
-
Fri Dec 05 2025 Leo Sandoval <lsandova@redhat.com> 2.06-121
- rpminspect: disable abidiff inspections
- Resolves: #RHEL-106446
-
Wed Dec 03 2025 Nicolas Frayer <nfrayer@redhat.com> 2.06-120
- appendedsig: Fix grub-mkimage with an unaligned appended signature size
- Related: #RHEL-24742
-
Mon Nov 17 2025 Nicolas Frayer <nfrayer@redhat.com> 2.06-119
- ieee1275: Upstream patches for appended signature support
- Related: #RHEL-24742