home  bbs  files  messages ]

      ZZLI4424             linux.debian.kernel             1332 messages      

[ previous | next | reply ]

[ list messages | list forums ]

  Msg # 198 of 1332 on ZZLI4424, Thursday 9-10-25, 1:10  
  From: BEN HUTCHINGS  
  To: BAVARIAN DEVELOPER  
  Subj: Bug#1114773: linux-image-6.1.0-39-amd64:  
 XPost: linux.debian.bugs.dist 
 From: ben@decadent.org.uk 
  
 Control: tag -1 confirmed 
  
 On Tue, 2025-09-09 at 19:46 +0200, Bavarian Developer wrote: 
 > €€ 
 > 
 > Package: src:linux 
 > €€Version: 6.1.148-1 
 > €€Severity: important 
 > €€ 
 > 
 > €€Dear Maintainer, 
 > €€ 
 > 
 > €€when booting the a complete vanilla installation of Debian 12.12 
 (installed from the released CD image) in Virtualbox, there is an immediate 
 kernel panic. 
 > €€ 
 > 
 > €€The error message is as follows: 
 > €€ 
 > 
 > €€Kernel panic - not syncing: Module crc32_intel signature verification 
 failed in FIPS mode 
 > €€ 
 > 
 > €€The commit history shows changes of kernel module signing. 
 [...] 
  
 This may have been triggered by the switch from RSA to ECDSA signatures 
 for modules.  We could easily revert that if necessary. 
  
 I've checked and found that this doesn't happen with the 6.12 kernel 
 where we also use ECDSA signatures.  There have been changes to the 
 crypto core that added self-tests and allow-listing of ECDSA in FIPS 
 mode.  But I think it would be safer to switch back to RSA here. 
  
 Ben. 
  
 -- 
 Ben Hutchings 
 Every program is either trivial or else contains at least one bug 
  
 -----BEGIN PGP SIGNATURE----- 
  
 iQIzBAABCgAdFiEErCspvTSmr92z9o8157/I7JWGEQkFAmjAh9cACgkQ57/I7JWG 
 EQlqRg//ffaHZdXEk4+JoplSxVOcuU4rC2KhQHJ2KNTDdK0gRRF3GD95Vr5X7oRM 
 +xUo1ATf8q5PGIw5+X5voKsrpo0/Noi7CbimJioqYNLwGRJc1sBX/ALYs+2KywwR 
 ktbuCeuXofFqRMIvMeuLz7OIHwOzPvNIdiDsY/16gtIz1S4soUt4yWS0FxperNY1 
 MZ18Yxs2kWuSCi8Py31hIaiGGDGpyxSHsJJ1hwXnO5SQI66vfYpEuXJDapVuhVn5 
 Q17vNR3uvZao2Y9//R6DsBcs1XfK2zOiBz9t9BfaRoKRfUnnx2Pkoc7ehFTelFFh 
 Fz2YVhBY1Z8a2MuGY/LZ3q2zBEugsm64Ii5f/vvhZirXl2NZNePx3+K5FvtErr/T 
 Vggsqhj8r3LO9+njRn3SPSmBZQF/+Ey66r0OSQlVV8icSjxwewQY2jrU/AyoGsnt 
 HEXsFQ0X1QEtVSOzDWZmocxrQ7dDLDkGrzQ4M/nZnCnyesD+yKo5YfyoUD42dF/Q 
 DC23JrChFCY8UEpXPIh1/1DfJUAlxTQGvw4Y5X7FVf/gDCOkW+UuvVqQ1d6RSBj0 
 3bPT81iTW68N0lnS3MS2u9Sllo3uVZW/GLTpMfxrkY79bI3SaVJ0p7n0a4zDMT39 
 C8bqj6m+2eSZBvKyvgUpFjU8gJXmdNxrY8zDLyaiVLe7t0SDhZI= 
 =Okxn 
 -----END PGP SIGNATURE----- 
  
 --- SoupGate-Win32 v1.05 
  * Origin: you cannot sedate... all the things you hate (1:229/2) 

[ list messages | list forums | previous | next | reply ]

search for:

328,116 visits
(c) 1994,  bbs@darkrealms.ca