Diff of the two buildlogs: -- --- b1/build.log 2025-03-15 18:34:35.789440781 +0000 +++ b2/build.log 2025-03-15 18:38:42.410192914 +0000 @@ -1,6 +1,6 @@ I: pbuilder: network access will be disabled during build -I: Current time: Fri Apr 17 12:56:53 -12 2026 -I: pbuilder-time-stamp: 1776473813 +I: Current time: Sun Mar 16 08:34:38 +14 2025 +I: pbuilder-time-stamp: 1742063678 I: Building the build Environment I: extracting base tarball [/var/cache/pbuilder/unstable-reproducible-base.tgz] I: copying local configuration @@ -31,52 +31,84 @@ dpkg-source: info: applying no-efi-on-aarch64.patch I: using fakeroot in build. I: Installing the build-deps -I: user script /srv/workspace/pbuilder/3727349/tmp/hooks/D02_print_environment starting +I: user script /srv/workspace/pbuilder/2938217/tmp/hooks/D01_modify_environment starting +debug: Running on ionos11-amd64. +I: Changing host+domainname to test build reproducibility +I: Adding a custom variable just for the fun of it... +I: Changing /bin/sh to bash +'/bin/sh' -> '/bin/bash' +lrwxrwxrwx 1 root root 9 Mar 15 18:34 /bin/sh -> /bin/bash +I: Setting pbuilder2's login shell to /bin/bash +I: Setting pbuilder2's GECOS to second user,second room,second work-phone,second home-phone,second other +I: user script /srv/workspace/pbuilder/2938217/tmp/hooks/D01_modify_environment finished +I: user script /srv/workspace/pbuilder/2938217/tmp/hooks/D02_print_environment starting I: set - BUILDDIR='/build/reproducible-path' - BUILDUSERGECOS='first user,first room,first work-phone,first home-phone,first other' - BUILDUSERNAME='pbuilder1' - BUILD_ARCH='amd64' - DEBIAN_FRONTEND='noninteractive' - DEB_BUILD_OPTIONS='buildinfo=+all reproducible=+all parallel=42 ' - DISTRIBUTION='unstable' - HOME='/root' - HOST_ARCH='amd64' + BASH=/bin/sh + BASHOPTS=checkwinsize:cmdhist:complete_fullquote:extquote:force_fignore:globasciiranges:globskipdots:hostcomplete:interactive_comments:patsub_replacement:progcomp:promptvars:sourcepath + BASH_ALIASES=() + BASH_ARGC=() + BASH_ARGV=() + BASH_CMDS=() + BASH_LINENO=([0]="12" [1]="0") + BASH_LOADABLES_PATH=/usr/local/lib/bash:/usr/lib/bash:/opt/local/lib/bash:/usr/pkg/lib/bash:/opt/pkg/lib/bash:. + BASH_SOURCE=([0]="/tmp/hooks/D02_print_environment" [1]="/tmp/hooks/D02_print_environment") + BASH_VERSINFO=([0]="5" [1]="2" [2]="37" [3]="1" [4]="release" [5]="x86_64-pc-linux-gnu") + BASH_VERSION='5.2.37(1)-release' + BUILDDIR=/build/reproducible-path + BUILDUSERGECOS='second user,second room,second work-phone,second home-phone,second other' + BUILDUSERNAME=pbuilder2 + BUILD_ARCH=amd64 + DEBIAN_FRONTEND=noninteractive + DEB_BUILD_OPTIONS='buildinfo=+all reproducible=+all parallel=20 ' + DIRSTACK=() + DISTRIBUTION=unstable + EUID=0 + FUNCNAME=([0]="Echo" [1]="main") + GROUPS=() + HOME=/root + HOSTNAME=i-capture-the-hostname + HOSTTYPE=x86_64 + HOST_ARCH=amd64 IFS=' ' - INVOCATION_ID='c4be044c07ff4ee1b375bbb19741674b' - LANG='C' - LANGUAGE='en_US:en' - LC_ALL='C' - MAIL='/var/mail/root' - OPTIND='1' - PATH='/usr/sbin:/usr/bin:/sbin:/bin:/usr/games' - PBCURRENTCOMMANDLINEOPERATION='build' - PBUILDER_OPERATION='build' - PBUILDER_PKGDATADIR='/usr/share/pbuilder' - PBUILDER_PKGLIBDIR='/usr/lib/pbuilder' - PBUILDER_SYSCONFDIR='/etc' - PPID='3727349' - PS1='# ' - PS2='> ' + INVOCATION_ID=c31bef02c2b64e14b3ba91cf6e117ec9 + LANG=C + LANGUAGE=et_EE:et + LC_ALL=C + MACHTYPE=x86_64-pc-linux-gnu + MAIL=/var/mail/root + OPTERR=1 + OPTIND=1 + OSTYPE=linux-gnu + PATH=/usr/sbin:/usr/bin:/sbin:/bin:/usr/games:/i/capture/the/path + PBCURRENTCOMMANDLINEOPERATION=build + PBUILDER_OPERATION=build + PBUILDER_PKGDATADIR=/usr/share/pbuilder + PBUILDER_PKGLIBDIR=/usr/lib/pbuilder + PBUILDER_SYSCONFDIR=/etc + PIPESTATUS=([0]="0") + POSIXLY_CORRECT=y + PPID=2938217 PS4='+ ' - PWD='/' - SHELL='/bin/bash' - SHLVL='2' - SUDO_COMMAND='/usr/bin/timeout -k 18.1h 18h /usr/bin/ionice -c 3 /usr/bin/nice /usr/sbin/pbuilder --build --configfile /srv/reproducible-results/rbuild-debian/r-b-build.qUP6hKul/pbuilderrc_Y8Eg --distribution unstable --hookdir /etc/pbuilder/first-build-hooks --debbuildopts -b --basetgz /var/cache/pbuilder/unstable-reproducible-base.tgz --buildresult /srv/reproducible-results/rbuild-debian/r-b-build.qUP6hKul/b1 --logfile b1/build.log efitools_1.9.2-3.5.dsc' - SUDO_GID='110' - SUDO_UID='105' - SUDO_USER='jenkins' - TERM='unknown' - TZ='/usr/share/zoneinfo/Etc/GMT+12' - USER='root' - _='/usr/bin/systemd-run' - http_proxy='http://213.165.73.152:3128' + PWD=/ + SHELL=/bin/bash + SHELLOPTS=braceexpand:errexit:hashall:interactive-comments:posix + SHLVL=3 + SUDO_COMMAND='/usr/bin/timeout -k 24.1h 24h /usr/bin/ionice -c 3 /usr/bin/nice -n 11 /usr/bin/unshare --uts -- /usr/sbin/pbuilder --build --configfile /srv/reproducible-results/rbuild-debian/r-b-build.qUP6hKul/pbuilderrc_oYEY --distribution unstable --hookdir /etc/pbuilder/rebuild-hooks --debbuildopts -b --basetgz /var/cache/pbuilder/unstable-reproducible-base.tgz --buildresult /srv/reproducible-results/rbuild-debian/r-b-build.qUP6hKul/b2 --logfile b2/build.log efitools_1.9.2-3.5.dsc' + SUDO_GID=111 + SUDO_UID=106 + SUDO_USER=jenkins + TERM=unknown + TZ=/usr/share/zoneinfo/Etc/GMT-14 + UID=0 + USER=root + _='I: set' + http_proxy=http://46.16.76.132:3128 I: uname -a - Linux ionos5-amd64 6.12.12+bpo-amd64 #1 SMP PREEMPT_DYNAMIC Debian 6.12.12-1~bpo12+1 (2025-02-23) x86_64 GNU/Linux + Linux i-capture-the-hostname 6.1.0-32-amd64 #1 SMP PREEMPT_DYNAMIC Debian 6.1.129-1 (2025-03-06) x86_64 GNU/Linux I: ls -l /bin - lrwxrwxrwx 1 root root 7 Mar 4 2025 /bin -> usr/bin -I: user script /srv/workspace/pbuilder/3727349/tmp/hooks/D02_print_environment finished + lrwxrwxrwx 1 root root 7 Mar 4 11:20 /bin -> usr/bin +I: user script /srv/workspace/pbuilder/2938217/tmp/hooks/D02_print_environment finished -> Attempting to satisfy build-dependencies -> Creating pbuilder-satisfydepends-dummy package Package: pbuilder-satisfydepends-dummy @@ -161,7 +193,7 @@ Get: 35 http://deb.debian.org/debian unstable/main amd64 libssl-dev amd64 3.4.1-1 [2787 kB] Get: 36 http://deb.debian.org/debian unstable/main amd64 openssl amd64 3.4.1-1 [1427 kB] Get: 37 http://deb.debian.org/debian unstable/main amd64 sbsigntool amd64 0.9.4-3.2 [67.5 kB] -Fetched 25.7 MB in 0s (107 MB/s) +Fetched 25.7 MB in 1s (23.6 MB/s) Preconfiguring packages ... Selecting previously unselected package liblocale-gettext-perl. (Reading database ... (Reading database ... 5% (Reading database ... 10% (Reading database ... 15% (Reading database ... 20% (Reading database ... 25% (Reading database ... 30% (Reading database ... 35% (Reading database ... 40% (Reading database ... 45% (Reading database ... 50% (Reading database ... 55% (Reading database ... 60% (Reading database ... 65% (Reading database ... 70% (Reading database ... 75% (Reading database ... 80% (Reading database ... 85% (Reading database ... 90% (Reading database ... 95% (Reading database ... 100% (Reading database ... 19785 files and directories currently installed.) @@ -330,7 +362,11 @@ fakeroot is already the newest version (1.37-1). 0 upgraded, 0 newly installed, 0 to remove and 0 not upgraded. I: Building the package -I: Running cd /build/reproducible-path/efitools-1.9.2/ && env PATH="/usr/sbin:/usr/bin:/sbin:/bin:/usr/games" HOME="/nonexistent/first-build" dpkg-buildpackage -us -uc -b && env PATH="/usr/sbin:/usr/bin:/sbin:/bin:/usr/games" HOME="/nonexistent/first-build" dpkg-genchanges -S > ../efitools_1.9.2-3.5_source.changes +I: user script /srv/workspace/pbuilder/2938217/tmp/hooks/A99_set_merged_usr starting +Not re-configuring usrmerge for unstable +I: user script /srv/workspace/pbuilder/2938217/tmp/hooks/A99_set_merged_usr finished +hostname: Name or service not known +I: Running cd /build/reproducible-path/efitools-1.9.2/ && env PATH="/usr/sbin:/usr/bin:/sbin:/bin:/usr/games:/i/capture/the/path" HOME="/nonexistent/second-build" dpkg-buildpackage -us -uc -b && env PATH="/usr/sbin:/usr/bin:/sbin:/bin:/usr/games:/i/capture/the/path" HOME="/nonexistent/second-build" dpkg-genchanges -S > ../efitools_1.9.2-3.5_source.changes dpkg-buildpackage: info: source package efitools dpkg-buildpackage: info: source version 1.9.2-3.5 dpkg-buildpackage: info: source distribution unstable @@ -340,7 +376,7 @@ debian/rules clean dh clean dh_auto_clean - make -j42 clean + make -j20 clean make[1]: Entering directory '/build/reproducible-path/efitools-1.9.2' rm -f PK.* KEK.* DB.* HelloWorld.efi LockDown.efi Loader.efi ReadVars.efi UpdateVars.efi KeyTool.efi HashTool.efi SetNull.efi ShimReplace.efi HelloWorld-signed.efi LockDown-signed.efi Loader-signed.efi ReadVars-signed.efi UpdateVars-signed.efi KeyTool-signed.efi HashTool-signed.efi SetNull-signed.efi ShimReplace-signed.efi cert-to-efi-sig-list sig-list-to-certs sign-efi-sig-list hash-to-efi-sig-list efi-readvar efi-updatevar cert-to-efi-hash-list flash-var *.o *.so rm -f noPK.* @@ -380,7 +416,7 @@ dh_autoreconf dh_auto_configure dh_auto_build - make -j42 "INSTALL=install --strip-program=true" + make -j20 "INSTALL=install --strip-program=true" make[1]: Entering directory '/build/reproducible-path/efitools-1.9.2' make -C lib lib-efi.a make[2]: Entering directory '/build/reproducible-path/efitools-1.9.2/lib' @@ -388,34 +424,33 @@ openssl req -new -x509 -newkey rsa:2048 -subj "/CN=DB/" -keyout DB.key -out DB.crt -days 3650 -nodes -sha256 cc -I/build/reproducible-path/efitools-1.9.2/include/ -I/usr/include/efi -I/usr/include/efi/x86_64 -I/usr/include/efi/protocol -O2 -g -fno-stack-protector -fpic -Wall -fshort-wchar -fno-strict-aliasing -fno-merge-constants -D_XOPEN_SOURCE=700 -DGNU_EFI_USE_MS_ABI -DEFI_FUNCTION_WRAPPER -mno-red-zone -DCONFIG_x86_64 -fno-toplevel-reorder -DBUILD_EFI -c simple_file.c -o simple_file.efi.o openssl req -new -x509 -newkey rsa:2048 -subj "/CN=PK/" -keyout PK.key -out PK.crt -days 3650 -nodes -sha256 -.+.+..............+......+...+.+.........+.....+++++++++++++++++++++++++++++++++++++++*..+.+..................+..+++++++++++++++++++++++++++++++++++++++*......+.+..............+..........+..+.......+..+...+.......+.....+.+.....+...+......+.+............+........+...+...............+.........+cc -I/build/reproducible-path/efitools-1.9.2/include/ -I/usr/include/efi -I/usr/include/efi/x86_64 -I/usr/include/efi/protocol -O2 -g -fno-stack-protector -fpic -Wall -fshort-wchar -fno-strict-aliasing -fno-merge-constants -D_XOPEN_SOURCE=700 -DGNU_EFI_USE_MS_ABI -DEFI_FUNCTION_WRAPPER -mno-red-zone -DCONFIG_x86_64 -fno-toplevel-reorder -DBUILD_EFI -c pecoff.c -o pecoff.efi.o -............+.+..+..........+.....+...+...+......+......+...+......+.+.........+....+...+...........+++++++++++++++..++++++++++++++++....+.....++....+...+++++++*....+.....+.+...+.....+........++....+..+.........++++.+++++++++++++++...+..++++++++++++cc -I/build/reproducible-path/efitools-1.9.2/include/ -I/usr/include/efi -I/usr/include/efi/x86_64 -I/usr/include/efi/protocol -O2 -g -fno-stack-protector -fpic -Wall -fshort-wchar -fno-strict-aliasing -fno-merge-constants -D_XOPEN_SOURCE=700 -DGNU_EFI_USE_MS_ABI -DEFI_FUNCTION_WRAPPER -mno-red-zone -DCONFIG_x86_64 -c cert-to-efi-sig-list.c -o cert-to-efi-sig-list.o -++.++++++++*......+...+....+.+......++.+...+................++......++...+....+............++.....................+.+..+............+.....+......+.............++.........+..........+..+.....+......++........++...........+......+..............+.+............+.....+....++.........++...++.........+............+....+...........+...............++.............++.........+............+.....++.....++.....++........++...............++......+...............+............++.............++............+..+....+..+.............++cc -I/build/reproducible-path/efitools-1.9.2/include/ -I/usr/include/efi -I/usr/include/efi/x86_64 -I/usr/include/efi/protocol -O2 -g -fno-stack-protector -fpic -Wall -fshort-wchar -fno-strict-aliasing -fno-merge-constants -D_XOPEN_SOURCE=700 -DGNU_EFI_USE_MS_ABI -DEFI_FUNCTION_WRAPPER -mno-red-zone -DCONFIG_x86_64 -fno-toplevel-reorder -DBUILD_EFI -c guid.c -o guid.efi.o -................++....++.....++.............++make -C lib lib.a -............+.+......+..+......++...............++..+.....+............++.................++....++...................+++.........++.++......++...+ -............+..+.......+..+++++++++++++++++++++++++++++++++++++.+.+*.....+..++.+..............+...+++++++++++++++++++++++++++++++++++++.+..+*..+...+.......+.....+...++.........++..........+...............+...........+..+.......+.......+..+...+............++.......++................+.+.....+...+..++............+.+....+...+..........++...........++.....++.........+......+..........++.............+......+...........+......+......++..................+++.....+.++openssl req -new -x509 -newkey rsa:2048 -subj "/CN=KEK/" -keyout KEK.key -out KEK.crt -days 3650 -nodes -sha256 -+.................++make[2]: Entering directory '/build/reproducible-path/efitools-1.9.2/lib' -.++ -...+...............+....+.......+.....++.........+...+...+...+...........+.......++..+.......+..+.+............+..........................++...+++++++++...+....+..++++++++++++++.++++++++++++++...+..+*..++.....+.+...+.................+...+.......++...+..+......+....................+.............++.+..++++++++++...+++++++++++++++...+....+.....++.++++++++++++*.......++............+......+........++cc -I/build/reproducible-path/efitools-1.9.2/include/ -I/usr/include/efi -I/usr/include/efi/x86_64 -I/usr/include/efi/protocol -O2 -g -fno-stack-protector -fpic -Wall -fshort-wchar -fno-strict-aliasing -fno-merge-constants -D_XOPEN_SOURCE=700 -DGNU_EFI_USE_MS_ABI -DEFI_FUNCTION_WRAPPER -mno-red-zone -DCONFIG_x86_64 -fno-toplevel-reorder -DBUILD_EFI -c sha256.c -o sha256.efi.o -........+.................+.................+...+...........++........++................++....+.+......+.......+.........+......+...............++.........++....++.........................+..+..+..+.+...+.........++.......++.......++..+.........+.............++..................++....+.......++.....++.+++..++ -.............+..............+......+.......+..+..........+...+.........+...+......----- -+.....+....+.................+.....+.......+..+.....+....+........+.............+....+........++.+.........+......+..............+......+......+...+............+.........+......+....+.....+.......+...+..+++++.+..+.+++++++++++++++++++++++++++++++++*..++..+.+++++++++++++++++++++++++++++++++++++*.........+.......+cc -I/build/reproducible-path/efitools-1.9.2/include/ -I/usr/include/efi -I/usr/include/efi/x86_64 -I/usr/include/efi/protocol -O2 -g -fno-stack-protector -fpic -Wall -fshort-wchar -fno-strict-aliasing -fno-merge-constants -D_XOPEN_SOURCE=700 -DGNU_EFI_USE_MS_ABI -DEFI_FUNCTION_WRAPPER -mno-red-zone -DCONFIG_x86_64 -c sign-efi-sig-list.c -o sign-efi-sig-list.o -.....+...+....+..+........+.....+.................+...+............++....++....+.......+.........++............+..+...............+...+....+.+......++.......++.......++......++...........................+cc -I/build/reproducible-path/efitools-1.9.2/include/ -I/usr/include/efi -I/usr/include/efi/x86_64 -I/usr/include/efi/protocol -O2 -g -fno-stack-protector -fpic -Wall -fshort-wchar -fno-strict-aliasing -fno-merge-constants -D_XOPEN_SOURCE=700 -DGNU_EFI_USE_MS_ABI -DEFI_FUNCTION_WRAPPER -mno-red-zone -DCONFIG_x86_64 -fno-toplevel-reorder -DBUILD_EFI -c console.c -o console.efi.o -+.............++..........++.+...+...............++.......++........++.........++.............++.......++......+.+cc -I/build/reproducible-path/efitools-1.9.2/include/ -I/usr/include/efi -I/usr/include/efi/x86_64 -I/usr/include/efi/protocol -O2 -g -fno-stack-protector -fpic -Wall -fshort-wchar -fno-strict-aliasing -fno-merge-constants -D_XOPEN_SOURCE=700 -DGNU_EFI_USE_MS_ABI -DEFI_FUNCTION_WRAPPER -mno-red-zone -DCONFIG_x86_64 -c simple_file.c -o simple_file.o -.......+.....+............++................++....+.+......+..........+..+...+...+........+.........+..........+...+..+....+................+..+.........+...+...................+.....+.....+....+....++.......++...+++.++.....+++ -...+..........++..+....+++++++++..+.+.+....++++++++++++++++....+..+..+.+...+++++++++*....+++++.+..++++++++++++++.+.....+.+++++++++++++++...+..++++*...+..........+.............+...+...................................+...+....+..+...++........++.........+..+..............+.....+cc -I/build/reproducible-path/efitools-1.9.2/include/ -I/usr/include/efi -I/usr/include/efi/x86_64 -I/usr/include/efi/protocol -O2 -g -fno-stack-protector -fpic -Wall -fshort-wchar -fno-strict-aliasing -fno-merge-constants -D_XOPEN_SOURCE=700 -DGNU_EFI_USE_MS_ABI -DEFI_FUNCTION_WRAPPER -mno-red-zone -DCONFIG_x86_64 -c Loader.c -o Loader.o -.............++..................+.+..........++.+.+...........++..............+....+....+..+..............+...+.+......+.....+....+......+..............+.....................++............+..........+......+.+.............+..........+cc -I/build/reproducible-path/efitools-1.9.2/include/ -I/usr/include/efi -I/usr/include/efi/x86_64 -I/usr/include/efi/protocol -O2 -g -fno-stack-protector -fpic -Wall -fshort-wchar -fno-strict-aliasing -fno-merge-constants -D_XOPEN_SOURCE=700 -DGNU_EFI_USE_MS_ABI -DEFI_FUNCTION_WRAPPER -mno-red-zone -DCONFIG_x86_64 -fno-toplevel-reorder -DBUILD_EFI -c execute.c -o execute.efi.o -.+...+...+...+...........+......+..+....+..............++..........++....................++...+....+......++..........+.+.+.........cc -I/build/reproducible-path/efitools-1.9.2/include/ -I/usr/include/efi -I/usr/include/efi/x86_64 -I/usr/include/efi/protocol -O2 -g -fno-stack-protector -fpic -Wall -fshort-wchar -fno-strict-aliasing -fno-merge-constants -D_XOPEN_SOURCE=700 -DGNU_EFI_USE_MS_ABI -DEFI_FUNCTION_WRAPPER -mno-red-zone -DCONFIG_x86_64 -c pecoff.c -o pecoff.o -+..................++......+.....+............++..........++.....................++...........+..+........+..........+.......++..++......+.+...........+...................+.+..........+.....++.........++...++...............++make -C lib/asn1 libasn1-efi.a -............................++.....++..............++...........++..................................+....+........................++....++........++.......................++...........+.....+..+...+....+...+............++......++...................++....+.+.........++................++.......++.............++........+......................+............+......+...+...........+.........+.......+.......+..+.....+.+.+......+..+.....+.......+..........+...+........++......cc -I/build/reproducible-path/efitools-1.9.2/include/ -I/usr/include/efi -I/usr/include/efi/x86_64 -I/usr/include/efi/protocol -O2 -g -fno-stack-protector -fpic -Wall -fshort-wchar -fno-strict-aliasing -fno-merge-constants -D_XOPEN_SOURCE=700 -DGNU_EFI_USE_MS_ABI -DEFI_FUNCTION_WRAPPER -mno-red-zone -DCONFIG_x86_64 -fno-toplevel-reorder -DBUILD_EFI -c configtable.c -o configtable.efi.o -.+..+......+++...++..+++.++ -............+.....+............+.........+.+........+cc -I/build/reproducible-path/efitools-1.9.2/include/ -I/usr/include/efi -I/usr/include/efi/x86_64 -I/usr/include/efi/protocol -O2 -g -fno-stack-protector -fpic -Wall -fshort-wchar -fno-strict-aliasing -fno-merge-constants -D_XOPEN_SOURCE=700 -DGNU_EFI_USE_MS_ABI -DEFI_FUNCTION_WRAPPER -mno-red-zone -DCONFIG_x86_64 -c guid.c -o guid.o -make[2]: Entering directory '/build/reproducible-path/efitools-1.9.2/lib/asn1' -.+..+.......+----- -..+...+...............+.+.....+.+.....+.....................+..........+..+.+......+...........+cc -I/build/reproducible-path/efitools-1.9.2/include/ -I/usr/include/efi -I/usr/include/efi/x86_64 -I/usr/include/efi/protocol -O2 -g -fno-stack-protector -fpic -Wall -fshort-wchar -fno-strict-aliasing -fno-merge-constants -D_XOPEN_SOURCE=700 -DGNU_EFI_USE_MS_ABI -DEFI_FUNCTION_WRAPPER -mno-red-zone -DCONFIG_x86_64 -c ReadVars.c -o ReadVars.o -......................+...........+.......+...+.....+................++++++ +.+......+......+......+...+..........+++++++++++++++++++++++++++++++++++++++*.+.+.....+.......+...+.................+.......+...+......+.....+............+.......+...+.................+......+.+++++++++++++++++++++++++++++++++++++++*.+...+.......+...+...+..+.......+......+........+....+......+......+...............+......+............+..+...+.+...........+.+...+.....+.+......+...............+........+.........+.+.........+.....+.+......+........+...+....+...+......+......+......+.....+...+.+......+.....+...+....+..+....+..+.......+............+........+...+..........+.....+..................+...............+....+........+...++++++ +.+++++++++++++++++++++++++++++++++++++++*...+......+......+...+...............+..+++++++++++++++++++++++++++++++++++++++*.+..+.+.....+.......cc -I/build/reproducible-path/efitools-1.9.2/include/ -I/usr/include/efi -I/usr/include/efi/x86_64 -I/usr/include/efi/protocol -O2 -g -fno-stack-protector -fpic -Wall -fshort-wchar -fno-strict-aliasing -fno-merge-constants -D_XOPEN_SOURCE=700 -DGNU_EFI_USE_MS_ABI -DEFI_FUNCTION_WRAPPER -mno-red-zone -DCONFIG_x86_64 -fno-toplevel-reorder -DBUILD_EFI -c pecoff.c -o pecoff.efi.o ++........+.......+...+..+.......+......+...+...+..+.......+.....+.......+......+++++++++++++++++++++++++++++++++++++++*..........+++++++++++++++++++++++++++++++++++++.....+.........+.........+++*...........+.....+.+......+......+....+...............+..+.................+.........+.+.............+......+.....+..+...+...+......+....+........+...................+++...+...+.+cc -I/build/reproducible-path/efitools-1.9.2/include/ -I/usr/include/efi -I/usr/include/efi/x86_64 -I/usr/include/efi/protocol -O2 -g -fno-stack-protector -fpic -Wall -fshort-wchar -fno-strict-aliasing -fno-merge-constants -D_XOPEN_SOURCE=700 -DGNU_EFI_USE_MS_ABI -DEFI_FUNCTION_WRAPPER -mno-red-zone -DCONFIG_x86_64 -c cert-to-efi-sig-list.c -o cert-to-efi-sig-list.o ++++ +.........+...........+..........+..................+...----- ++.....+.......+..+..........+.....+.........+.........+............+....+.....+.......+.....+.......+........+...+.........+......+.......+........+.........+...............+................+.....+....+..+......+............+.+..+...+....make -C lib lib.a ++.....+.+......+...++++++ +..+.......+..+.+...+......+++++++++++++++++++++++++++++++++++++++*..+.............+..+...+.+++++++++++++++++++++++++++++++++++++++*...............+.........+......+..+...+....+...cc -I/build/reproducible-path/efitools-1.9.2/include/ -I/usr/include/efi -I/usr/include/efi/x86_64 -I/usr/include/efi/protocol -O2 -g -fno-stack-protector -fpic -Wall -fshort-wchar -fno-strict-aliasing -fno-merge-constants -D_XOPEN_SOURCE=700 -DGNU_EFI_USE_MS_ABI -DEFI_FUNCTION_WRAPPER -mno-red-zone -DCONFIG_x86_64 -fno-toplevel-reorder -DBUILD_EFI -c guid.c -o guid.efi.o ++...+...+..+...+....+........+......................+...+..+.+..+..........+..+.+...........+.........+.+..............+.+.....+.+...+.....+....+...+.....+.............+.....+openssl req -new -x509 -newkey rsa:2048 -subj "/CN=KEK/" -keyout KEK.key -out KEK.crt -days 3650 -nodes -sha256 +.+make[2]: Entering directory '/build/reproducible-path/efitools-1.9.2/lib' +...+...+.....+..........+.................+......+......+.........+.+...........+...+.........+.+..+....+.....+.............+.....+......+.+......+..+.+......+.....+......+............+...+.......+...........+............+.........+................+........+.+.....+.+..............+....+...........+......+.......+cc -I/build/reproducible-path/efitools-1.9.2/include/ -I/usr/include/efi -I/usr/include/efi/x86_64 -I/usr/include/efi/protocol -O2 -g -fno-stack-protector -fpic -Wall -fshort-wchar -fno-strict-aliasing -fno-merge-constants -D_XOPEN_SOURCE=700 -DGNU_EFI_USE_MS_ABI -DEFI_FUNCTION_WRAPPER -mno-red-zone -DCONFIG_x86_64 -fno-toplevel-reorder -DBUILD_EFI -c sha256.c -o sha256.efi.o +..+....+..+.........+......+.........+.........+....+...+...+.....+.+.....+.+.........+...........+........++.........+++++++++++++++++++++++++++++++++++++++*.........+.................+.......+......+..+.+..+....+..............+.+........+.+..+.........+.+........+....+......+..+...+......+.+..+.+..+....+...+..+...+......+.+..............+......+....+............+++...+...+..+++++++++++++++++++++++++++++++++++++*..+...........+....+...+.....+.............+........+......+.......+...........+.+..+.+.+.........+..+......+...........+....+...+.........................+..+...+....+.................+cc -I/build/reproducible-path/efitools-1.9.2/include/ -I/usr/include/efi -I/usr/include/efi/x86_64 -I/usr/include/efi/protocol -O2 -g -fno-stack-protector -fpic -Wall -fshort-wchar -fno-strict-aliasing -fno-merge-constants -D_XOPEN_SOURCE=700 -DGNU_EFI_USE_MS_ABI -DEFI_FUNCTION_WRAPPER -mno-red-zone -DCONFIG_x86_64 -c sign-efi-sig-list.c -o sign-efi-sig-list.o +...+........+...+......+.........+......+..........+...+.......+...+...........++...+...+............+........+.+...+...+.........+..................+..+....+............+..........+..+.+..+............+.+..............+.........+......+...+..+......++++.........+.+......+++ +..........+....+.........+......+++++++++++++++++++++++++++++++++++++++*...+..+.......+.....+.........+.+...+++.+.+++++++++++++++++++++++++++++++++..+..+..+*+.....+...........++.......+...+......+.......+.....+...............+......+.....+...+.+.........+.+.....+........+.......+...+.......+++cc -I/build/reproducible-path/efitools-1.9.2/include/ -I/usr/include/efi -I/usr/include/efi/x86_64 -I/usr/include/efi/protocol -O2 -g -fno-stack-protector -fpic -Wall -fshort-wchar -fno-strict-aliasing -fno-merge-constants -D_XOPEN_SOURCE=700 -DGNU_EFI_USE_MS_ABI -DEFI_FUNCTION_WRAPPER -mno-red-zone -DCONFIG_x86_64 -c simple_file.c -o simple_file.o +........+.......+......++++ +..+....+...+cc -I/build/reproducible-path/efitools-1.9.2/include/ -I/usr/include/efi -I/usr/include/efi/x86_64 -I/usr/include/efi/protocol -O2 -g -fno-stack-protector -fpic -Wall -fshort-wchar -fno-strict-aliasing -fno-merge-constants -D_XOPEN_SOURCE=700 -DGNU_EFI_USE_MS_ABI -DEFI_FUNCTION_WRAPPER -mno-red-zone -DCONFIG_x86_64 -fno-toplevel-reorder -DBUILD_EFI -c console.c -o console.efi.o +........+..........+........----- ++.........+.+..............+.......+.....++++++ +cc -I/build/reproducible-path/efitools-1.9.2/include/ -I/usr/include/efi -I/usr/include/efi/x86_64 -I/usr/include/efi/protocol -O2 -g -fno-stack-protector -fpic -Wall -fshort-wchar -fno-strict-aliasing -fno-merge-constants -D_XOPEN_SOURCE=700 -DGNU_EFI_USE_MS_ABI -DEFI_FUNCTION_WRAPPER -mno-red-zone -DCONFIG_x86_64 -c Loader.c -o Loader.o ----- -cc -I/build/reproducible-path/efitools-1.9.2/include/ -I/usr/include/efi -I/usr/include/efi/x86_64 -I/usr/include/efi/protocol -O2 -g -fno-stack-protector -fpic -Wall -fshort-wchar -fno-strict-aliasing -fno-merge-constants -D_XOPEN_SOURCE=700 -DGNU_EFI_USE_MS_ABI -DEFI_FUNCTION_WRAPPER -mno-red-zone -DCONFIG_x86_64 -fno-toplevel-reorder -DBUILD_EFI -c shell.c -o shell.efi.o +cc -I/build/reproducible-path/efitools-1.9.2/include/ -I/usr/include/efi -I/usr/include/efi/x86_64 -I/usr/include/efi/protocol -O2 -g -fno-stack-protector -fpic -Wall -fshort-wchar -fno-strict-aliasing -fno-merge-constants -D_XOPEN_SOURCE=700 -DGNU_EFI_USE_MS_ABI -DEFI_FUNCTION_WRAPPER -mno-red-zone -DCONFIG_x86_64 -c pecoff.c -o pecoff.o +make -C lib/asn1 libasn1-efi.a +cc -I/build/reproducible-path/efitools-1.9.2/include/ -I/usr/include/efi -I/usr/include/efi/x86_64 -I/usr/include/efi/protocol -O2 -g -fno-stack-protector -fpic -Wall -fshort-wchar -fno-strict-aliasing -fno-merge-constants -D_XOPEN_SOURCE=700 -DGNU_EFI_USE_MS_ABI -DEFI_FUNCTION_WRAPPER -mno-red-zone -DCONFIG_x86_64 -fno-toplevel-reorder -DBUILD_EFI -c execute.c -o execute.efi.o +make[2]: Entering directory '/build/reproducible-path/efitools-1.9.2/lib/asn1' +cc -I/build/reproducible-path/efitools-1.9.2/include/ -I/usr/include/efi -I/usr/include/efi/x86_64 -I/usr/include/efi/protocol -O2 -g -fno-stack-protector -fpic -Wall -fshort-wchar -fno-strict-aliasing -fno-merge-constants -D_XOPEN_SOURCE=700 -DGNU_EFI_USE_MS_ABI -DEFI_FUNCTION_WRAPPER -mno-red-zone -DCONFIG_x86_64 -fno-toplevel-reorder -DBUILD_EFI -c configtable.c -o configtable.efi.o +cc -I/build/reproducible-path/efitools-1.9.2/include/ -I/usr/include/efi -I/usr/include/efi/x86_64 -I/usr/include/efi/protocol -O2 -g -fno-stack-protector -fpic -Wall -fshort-wchar -fno-strict-aliasing -fno-merge-constants -D_XOPEN_SOURCE=700 -DGNU_EFI_USE_MS_ABI -DEFI_FUNCTION_WRAPPER -mno-red-zone -DCONFIG_x86_64 -c ReadVars.c -o ReadVars.o +cc -I/build/reproducible-path/efitools-1.9.2/include/ -I/usr/include/efi -I/usr/include/efi/x86_64 -I/usr/include/efi/protocol -O2 -g -fno-stack-protector -fpic -Wall -fshort-wchar -fno-strict-aliasing -fno-merge-constants -D_XOPEN_SOURCE=700 -DGNU_EFI_USE_MS_ABI -DEFI_FUNCTION_WRAPPER -mno-red-zone -DCONFIG_x86_64 -c guid.c -o guid.o In file included from pecoff.c:69: pecoff.c: In function 'pecoff_relocate': /build/reproducible-path/efitools-1.9.2/include/buildefi.h:8:27: warning: too many arguments for format [-Wformat-extra-args] @@ -424,10 +459,10 @@ pecoff.c:197:17: note: in expansion of macro 'Print' 197 | Print(L"Reloc table overflows binary %d %d\n", | ^~~~~ -cc -I/build/reproducible-path/efitools-1.9.2/include/ -I/usr/include/efi -I/usr/include/efi/x86_64 -I/usr/include/efi/protocol -O2 -g -fno-stack-protector -fpic -Wall -fshort-wchar -fno-strict-aliasing -fno-merge-constants -D_XOPEN_SOURCE=700 -DGNU_EFI_USE_MS_ABI -DEFI_FUNCTION_WRAPPER -mno-red-zone -DCONFIG_x86_64 -c sha256.c -o sha256.o +cc -I/build/reproducible-path/efitools-1.9.2/include/ -I/usr/include/efi -I/usr/include/efi/x86_64 -I/usr/include/efi/protocol -O2 -g -fno-stack-protector -fpic -Wall -fshort-wchar -fno-strict-aliasing -fno-merge-constants -D_XOPEN_SOURCE=700 -DGNU_EFI_USE_MS_ABI -DEFI_FUNCTION_WRAPPER -mno-red-zone -DCONFIG_x86_64 -fno-toplevel-reorder -DBUILD_EFI -c shell.c -o shell.efi.o cc -I/build/reproducible-path/efitools-1.9.2/include/ -I/usr/include/efi -I/usr/include/efi/x86_64 -I/usr/include/efi/protocol -O2 -g -fno-stack-protector -fpic -Wall -fshort-wchar -fno-strict-aliasing -fno-merge-constants -D_XOPEN_SOURCE=700 -DGNU_EFI_USE_MS_ABI -DEFI_FUNCTION_WRAPPER -mno-red-zone -DCONFIG_x86_64 -c UpdateVars.c -o UpdateVars.o cc -I/build/reproducible-path/efitools-1.9.2/include/ -I/usr/include/efi -I/usr/include/efi/x86_64 -I/usr/include/efi/protocol -O2 -g -fno-stack-protector -fpic -Wall -fshort-wchar -fno-strict-aliasing -fno-merge-constants -D_XOPEN_SOURCE=700 -DGNU_EFI_USE_MS_ABI -DEFI_FUNCTION_WRAPPER -mno-red-zone -DCONFIG_x86_64 -fno-toplevel-reorder -DBUILD_EFI -c asn1.c -o asn1.efi.o -cc -I/build/reproducible-path/efitools-1.9.2/include/ -I/usr/include/efi -I/usr/include/efi/x86_64 -I/usr/include/efi/protocol -O2 -g -fno-stack-protector -fpic -Wall -fshort-wchar -fno-strict-aliasing -fno-merge-constants -D_XOPEN_SOURCE=700 -DGNU_EFI_USE_MS_ABI -DEFI_FUNCTION_WRAPPER -mno-red-zone -DCONFIG_x86_64 -fno-toplevel-reorder -DBUILD_EFI -c security_policy.c -o security_policy.efi.o +cc -I/build/reproducible-path/efitools-1.9.2/include/ -I/usr/include/efi -I/usr/include/efi/x86_64 -I/usr/include/efi/protocol -O2 -g -fno-stack-protector -fpic -Wall -fshort-wchar -fno-strict-aliasing -fno-merge-constants -D_XOPEN_SOURCE=700 -DGNU_EFI_USE_MS_ABI -DEFI_FUNCTION_WRAPPER -mno-red-zone -DCONFIG_x86_64 -c sha256.c -o sha256.o ReadVars.c: In function 'efi_main': ReadVars.c:177:73: warning: dangling pointer 'variables' to an unnamed temporary may be used [-Wdangling-pointer=] 177 | Print(L"Variable %s has no entries\n", variables[i]); @@ -459,6 +494,7 @@ ReadVars.c:112:41: note: unnamed temporary defined here 112 | variables = (CHAR16 *[]){ L"PK", L"KEK", L"db", L"dbx", L"dbt", L"MokList" , NULL}; | ^ +cc -I/build/reproducible-path/efitools-1.9.2/include/ -I/usr/include/efi -I/usr/include/efi/x86_64 -I/usr/include/efi/protocol -O2 -g -fno-stack-protector -fpic -Wall -fshort-wchar -fno-strict-aliasing -fno-merge-constants -D_XOPEN_SOURCE=700 -DGNU_EFI_USE_MS_ABI -DEFI_FUNCTION_WRAPPER -mno-red-zone -DCONFIG_x86_64 -fno-toplevel-reorder -DBUILD_EFI -c security_policy.c -o security_policy.efi.o cc -I/build/reproducible-path/efitools-1.9.2/include/ -I/usr/include/efi -I/usr/include/efi/x86_64 -I/usr/include/efi/protocol -O2 -g -fno-stack-protector -fpic -Wall -fshort-wchar -fno-strict-aliasing -fno-merge-constants -D_XOPEN_SOURCE=700 -DGNU_EFI_USE_MS_ABI -DEFI_FUNCTION_WRAPPER -mno-red-zone -DCONFIG_x86_64 -c console.c -o console.o cc -I/build/reproducible-path/efitools-1.9.2/include/ -I/usr/include/efi -I/usr/include/efi/x86_64 -I/usr/include/efi/protocol -O2 -g -fno-stack-protector -fpic -Wall -fshort-wchar -fno-strict-aliasing -fno-merge-constants -D_XOPEN_SOURCE=700 -DGNU_EFI_USE_MS_ABI -DEFI_FUNCTION_WRAPPER -mno-red-zone -DCONFIG_x86_64 -c KeyTool.c -o KeyTool.o cc -I/build/reproducible-path/efitools-1.9.2/include/ -I/usr/include/efi -I/usr/include/efi/x86_64 -I/usr/include/efi/protocol -O2 -g -fno-stack-protector -fpic -Wall -fshort-wchar -fno-strict-aliasing -fno-merge-constants -D_XOPEN_SOURCE=700 -DGNU_EFI_USE_MS_ABI -DEFI_FUNCTION_WRAPPER -mno-red-zone -DCONFIG_x86_64 -fno-toplevel-reorder -DBUILD_EFI -c asn1_parser.c -o asn1_parser.efi.o @@ -478,10 +514,6 @@ In file included from typedefs.h:3: /usr/include/efi/efilib.h:413:24: note: expected 'const CHAR8 *' {aka 'const char *'} but argument is of type 'u_char *' {aka 'unsigned char *'} 413 | IN CONST CHAR8 *s1, -UpdateVars.c: In function 'efi_main': -UpdateVars.c:24:49: warning: variable 'owner_guid' set but not used [-Wunused-but-set-variable] - 24 | CHAR16 **ARGV, *var, *name, *progname, *owner_guid; - | ^~~~~~~~~~ chunk.h:139:57: warning: pointer targets in passing argument 2 of 'strncmpa' differ in signedness [-Wpointer-sign] 139 | a.len == b.len && memeq(a.ptr, b.ptr, a.len); | ~^~~~ @@ -495,19 +527,14 @@ | ^~~~~ /usr/include/efi/efilib.h:414:24: note: expected 'const CHAR8 *' {aka 'const char *'} but argument is of type 'u_char *' {aka 'unsigned char *'} 414 | IN CONST CHAR8 *s2, +UpdateVars.c: In function 'efi_main': +UpdateVars.c:24:49: warning: variable 'owner_guid' set but not used [-Wunused-but-set-variable] + 24 | CHAR16 **ARGV, *var, *name, *progname, *owner_guid; + | ^~~~~~~~~~ cc -I/build/reproducible-path/efitools-1.9.2/include/ -I/usr/include/efi -I/usr/include/efi/x86_64 -I/usr/include/efi/protocol -O2 -g -fno-stack-protector -fpic -Wall -fshort-wchar -fno-strict-aliasing -fno-merge-constants -D_XOPEN_SOURCE=700 -DGNU_EFI_USE_MS_ABI -DEFI_FUNCTION_WRAPPER -mno-red-zone -DCONFIG_x86_64 -fno-toplevel-reorder -DBUILD_EFI -c shim_protocol.c -o shim_protocol.efi.o cc -I/build/reproducible-path/efitools-1.9.2/include/ -I/usr/include/efi -I/usr/include/efi/x86_64 -I/usr/include/efi/protocol -O2 -g -fno-stack-protector -fpic -Wall -fshort-wchar -fno-strict-aliasing -fno-merge-constants -D_XOPEN_SOURCE=700 -DGNU_EFI_USE_MS_ABI -DEFI_FUNCTION_WRAPPER -mno-red-zone -DCONFIG_x86_64 -c execute.c -o execute.o -In file included from sha256.c:35: -sha256.c: In function 'sha256_get_pecoff_digest_mem': -/build/reproducible-path/efitools-1.9.2/include/buildefi.h:8:27: warning: too many arguments for format [-Wformat-extra-args] - 8 | #define Print(...) printf("%ls", __VA_ARGS__) - | ^~~~~ -sha256.c:360:17: note: in expansion of macro 'Print' - 360 | Print(L"Invalid Data Size %d bytes too small\n", DataSize + context.SecDir->Size - sum_of_bytes); - | ^~~~~ -cc -I/build/reproducible-path/efitools-1.9.2/include/ -I/usr/include/efi -I/usr/include/efi/x86_64 -I/usr/include/efi/protocol -O2 -g -fno-stack-protector -fpic -Wall -fshort-wchar -fno-strict-aliasing -fno-merge-constants -D_XOPEN_SOURCE=700 -DGNU_EFI_USE_MS_ABI -DEFI_FUNCTION_WRAPPER -mno-red-zone -DCONFIG_x86_64 -c HashTool.c -o HashTool.o cc -I/build/reproducible-path/efitools-1.9.2/include/ -I/usr/include/efi -I/usr/include/efi/x86_64 -I/usr/include/efi/protocol -O2 -g -fno-stack-protector -fpic -Wall -fshort-wchar -fno-strict-aliasing -fno-merge-constants -D_XOPEN_SOURCE=700 -DGNU_EFI_USE_MS_ABI -DEFI_FUNCTION_WRAPPER -mno-red-zone -DCONFIG_x86_64 -fno-toplevel-reorder -DBUILD_EFI -c enumerator.c -o enumerator.efi.o -cc -I/build/reproducible-path/efitools-1.9.2/include/ -I/usr/include/efi -I/usr/include/efi/x86_64 -I/usr/include/efi/protocol -O2 -g -fno-stack-protector -fpic -Wall -fshort-wchar -fno-strict-aliasing -fno-merge-constants -D_XOPEN_SOURCE=700 -DGNU_EFI_USE_MS_ABI -DEFI_FUNCTION_WRAPPER -mno-red-zone -DCONFIG_x86_64 -fno-toplevel-reorder -DBUILD_EFI -c pkcs7verify.c -o pkcs7verify.efi.o +cc -I/build/reproducible-path/efitools-1.9.2/include/ -I/usr/include/efi -I/usr/include/efi/x86_64 -I/usr/include/efi/protocol -O2 -g -fno-stack-protector -fpic -Wall -fshort-wchar -fno-strict-aliasing -fno-merge-constants -D_XOPEN_SOURCE=700 -DGNU_EFI_USE_MS_ABI -DEFI_FUNCTION_WRAPPER -mno-red-zone -DCONFIG_x86_64 -c HashTool.c -o HashTool.o In file included from asn1_parser.c:18: chunk.h: In function 'chunk_equals': chunk.h:139:50: warning: pointer targets in passing argument 1 of 'strncmpa' differ in signedness [-Wpointer-sign] @@ -541,17 +568,26 @@ asn1_parser.c:82:15: warning: variable 'level' set but not used [-Wunused-but-set-variable] 82 | u_int level; | ^~~~~ +In file included from sha256.c:35: +sha256.c: In function 'sha256_get_pecoff_digest_mem': +/build/reproducible-path/efitools-1.9.2/include/buildefi.h:8:27: warning: too many arguments for format [-Wformat-extra-args] + 8 | #define Print(...) printf("%ls", __VA_ARGS__) + | ^~~~~ +sha256.c:360:17: note: in expansion of macro 'Print' + 360 | Print(L"Invalid Data Size %d bytes too small\n", DataSize + context.SecDir->Size - sum_of_bytes); + | ^~~~~ cc -I/build/reproducible-path/efitools-1.9.2/include/ -I/usr/include/efi -I/usr/include/efi/x86_64 -I/usr/include/efi/protocol -O2 -g -fno-stack-protector -fpic -Wall -fshort-wchar -fno-strict-aliasing -fno-merge-constants -D_XOPEN_SOURCE=700 -DGNU_EFI_USE_MS_ABI -DEFI_FUNCTION_WRAPPER -mno-red-zone -DCONFIG_x86_64 -c configtable.c -o configtable.o -cc -I/build/reproducible-path/efitools-1.9.2/include/ -I/usr/include/efi -I/usr/include/efi/x86_64 -I/usr/include/efi/protocol -O2 -g -fno-stack-protector -fpic -Wall -fshort-wchar -fno-strict-aliasing -fno-merge-constants -D_XOPEN_SOURCE=700 -DGNU_EFI_USE_MS_ABI -DEFI_FUNCTION_WRAPPER -mno-red-zone -DCONFIG_x86_64 -c SetNull.c -o SetNull.o -cc -I/build/reproducible-path/efitools-1.9.2/include/ -I/usr/include/efi -I/usr/include/efi/x86_64 -I/usr/include/efi/protocol -O2 -g -fno-stack-protector -fpic -Wall -fshort-wchar -fno-strict-aliasing -fno-merge-constants -D_XOPEN_SOURCE=700 -DGNU_EFI_USE_MS_ABI -DEFI_FUNCTION_WRAPPER -mno-red-zone -DCONFIG_x86_64 -fno-toplevel-reorder -DBUILD_EFI -c chunk.c -o chunk.efi.o -cc -I/build/reproducible-path/efitools-1.9.2/include/ -I/usr/include/efi -I/usr/include/efi/x86_64 -I/usr/include/efi/protocol -O2 -g -fno-stack-protector -fpic -Wall -fshort-wchar -fno-strict-aliasing -fno-merge-constants -D_XOPEN_SOURCE=700 -DGNU_EFI_USE_MS_ABI -DEFI_FUNCTION_WRAPPER -mno-red-zone -DCONFIG_x86_64 -c variables.c -o variables.o HashTool.c: In function 'efi_main': +cc -I/build/reproducible-path/efitools-1.9.2/include/ -I/usr/include/efi -I/usr/include/efi/x86_64 -I/usr/include/efi/protocol -O2 -g -fno-stack-protector -fpic -Wall -fshort-wchar -fno-strict-aliasing -fno-merge-constants -D_XOPEN_SOURCE=700 -DGNU_EFI_USE_MS_ABI -DEFI_FUNCTION_WRAPPER -mno-red-zone -DCONFIG_x86_64 -fno-toplevel-reorder -DBUILD_EFI -c pkcs7verify.c -o pkcs7verify.efi.o HashTool.c:187:25: warning: variable 'setup_mode_arg' set but not used [-Wunused-but-set-variable] 187 | setup_mode_arg = 0, keytool = NOSEL; | ^~~~~~~~~~~~~~ HashTool.c:185:28: warning: variable 'setup_mode' set but not used [-Wunused-but-set-variable] 185 | int c = 0, setup_mode = NOSEL, uefi_reboot = NOSEL, | ^~~~~~~~~~ +cc -I/build/reproducible-path/efitools-1.9.2/include/ -I/usr/include/efi -I/usr/include/efi/x86_64 -I/usr/include/efi/protocol -O2 -g -fno-stack-protector -fpic -Wall -fshort-wchar -fno-strict-aliasing -fno-merge-constants -D_XOPEN_SOURCE=700 -DGNU_EFI_USE_MS_ABI -DEFI_FUNCTION_WRAPPER -mno-red-zone -DCONFIG_x86_64 -c SetNull.c -o SetNull.o +cc -I/build/reproducible-path/efitools-1.9.2/include/ -I/usr/include/efi -I/usr/include/efi/x86_64 -I/usr/include/efi/protocol -O2 -g -fno-stack-protector -fpic -Wall -fshort-wchar -fno-strict-aliasing -fno-merge-constants -D_XOPEN_SOURCE=700 -DGNU_EFI_USE_MS_ABI -DEFI_FUNCTION_WRAPPER -mno-red-zone -DCONFIG_x86_64 -fno-toplevel-reorder -DBUILD_EFI -c chunk.c -o chunk.efi.o +cc -I/build/reproducible-path/efitools-1.9.2/include/ -I/usr/include/efi -I/usr/include/efi/x86_64 -I/usr/include/efi/protocol -O2 -g -fno-stack-protector -fpic -Wall -fshort-wchar -fno-strict-aliasing -fno-merge-constants -D_XOPEN_SOURCE=700 -DGNU_EFI_USE_MS_ABI -DEFI_FUNCTION_WRAPPER -mno-red-zone -DCONFIG_x86_64 -c variables.c -o variables.o cc -I/build/reproducible-path/efitools-1.9.2/include/ -I/usr/include/efi -I/usr/include/efi/x86_64 -I/usr/include/efi/protocol -O2 -g -fno-stack-protector -fpic -Wall -fshort-wchar -fno-strict-aliasing -fno-merge-constants -D_XOPEN_SOURCE=700 -DGNU_EFI_USE_MS_ABI -DEFI_FUNCTION_WRAPPER -mno-red-zone -DCONFIG_x86_64 -c shell.c -o shell.o cc -I/build/reproducible-path/efitools-1.9.2/include/ -I/usr/include/efi -I/usr/include/efi/x86_64 -I/usr/include/efi/protocol -O2 -g -fno-stack-protector -fpic -Wall -fshort-wchar -fno-strict-aliasing -fno-merge-constants -D_XOPEN_SOURCE=700 -DGNU_EFI_USE_MS_ABI -DEFI_FUNCTION_WRAPPER -mno-red-zone -DCONFIG_x86_64 -c ShimReplace.c -o ShimReplace.o cc -I/build/reproducible-path/efitools-1.9.2/include/ -I/usr/include/efi -I/usr/include/efi/x86_64 -I/usr/include/efi/protocol -O2 -g -fno-stack-protector -fpic -Wall -fshort-wchar -fno-strict-aliasing -fno-merge-constants -D_XOPEN_SOURCE=700 -DGNU_EFI_USE_MS_ABI -DEFI_FUNCTION_WRAPPER -mno-red-zone -DCONFIG_x86_64 -fno-toplevel-reorder -DBUILD_EFI -c oid.c -o oid.efi.o @@ -606,7 +642,6 @@ /usr/include/efi/efilib.h:414:24: note: expected 'const CHAR8 *' {aka 'const char *'} but argument is of type 'u_char *' {aka 'unsigned char *'} 414 | IN CONST CHAR8 *s2, cc -I/build/reproducible-path/efitools-1.9.2/include/ -I/usr/include/efi -I/usr/include/efi/x86_64 -I/usr/include/efi/protocol -O2 -g -fno-stack-protector -fpic -Wall -fshort-wchar -fno-strict-aliasing -fno-merge-constants -D_XOPEN_SOURCE=700 -DGNU_EFI_USE_MS_ABI -DEFI_FUNCTION_WRAPPER -mno-red-zone -DCONFIG_x86_64 -c security_policy.c -o security_policy.o -cc -I/build/reproducible-path/efitools-1.9.2/include/ -I/usr/include/efi -I/usr/include/efi/x86_64 -I/usr/include/efi/protocol -O2 -g -fno-stack-protector -fpic -Wall -fshort-wchar -fno-strict-aliasing -fno-merge-constants -D_XOPEN_SOURCE=700 -DGNU_EFI_USE_MS_ABI -DEFI_FUNCTION_WRAPPER -mno-red-zone -DCONFIG_x86_64 -c sig-list-to-certs.c -o sig-list-to-certs.o cc -I/build/reproducible-path/efitools-1.9.2/include/ -I/usr/include/efi -I/usr/include/efi/x86_64 -I/usr/include/efi/protocol -O2 -g -fno-stack-protector -fpic -Wall -fshort-wchar -fno-strict-aliasing -fno-merge-constants -D_XOPEN_SOURCE=700 -DGNU_EFI_USE_MS_ABI -DEFI_FUNCTION_WRAPPER -mno-red-zone -DCONFIG_x86_64 -fno-toplevel-reorder -DBUILD_EFI -c identification.c -o identification.efi.o oid.c:13:43: warning: pointer targets in initialization of 'const unsigned char *' from 'char *' differ in signedness [-Wpointer-sign] 13 | {0x02, 7, 1, 0, "ITU-T Administration" }, /* 0 */ @@ -931,6 +966,20 @@ oid.c:93:43: warning: pointer targets in initialization of 'const unsigned char *' from 'char *' differ in signedness [-Wpointer-sign] 93 | { 0x86, 128, 1, 3, "" }, /* 80 */ | ^~ +ShimReplace.c: In function 'efi_main': +ShimReplace.c:51:37: warning: passing argument 2 of 'execute' discards 'const' qualifier from pointer target type [-Wdiscarded-qualifiers] + 51 | efi_status = execute(image, loader); + | ^~~~~~ +In file included from ShimReplace.c:17: +/build/reproducible-path/efitools-1.9.2/include/execute.h:5:35: note: expected 'CHAR16 *' {aka 'short unsigned int *'} but argument is of type 'const CHAR16 *' {aka 'const short unsigned int *'} + 5 | execute(EFI_HANDLE image, CHAR16 *name); + | ~~~~~~~~^~~~ +ShimReplace.c:57:37: warning: passing argument 2 of 'execute' discards 'const' qualifier from pointer target type [-Wdiscarded-qualifiers] + 57 | efi_status = execute(image, fallback); + | ^~~~~~~~ +/build/reproducible-path/efitools-1.9.2/include/execute.h:5:35: note: expected 'CHAR16 *' {aka 'short unsigned int *'} but argument is of type 'const CHAR16 *' {aka 'const short unsigned int *'} + 5 | execute(EFI_HANDLE image, CHAR16 *name); + | ~~~~~~~~^~~~ oid.c:93:43: note: (near initialization for 'oid_names[80].name') oid.c:94:43: warning: pointer targets in initialization of 'const unsigned char *' from 'char *' differ in signedness [-Wpointer-sign] 94 | { 0xF6, 86, 1, 4, "" }, /* 81 */ @@ -1004,18 +1053,10 @@ 111 | { 0x0D, 99, 0, 8, "sha512WithRSAEncryption" }, /* 98 */ | ^~~~~~~~~~~~~~~~~~~~~~~~~ oid.c:111:43: note: (near initialization for 'oid_names[98].name') -ShimReplace.c: In function 'efi_main': oid.c:112:43: warning: pointer targets in initialization of 'const unsigned char *' from 'char *' differ in signedness [-Wpointer-sign] 112 | { 0x0E, 0, 0, 8, "sha224WithRSAEncryption" }, /* 99 */ | ^~~~~~~~~~~~~~~~~~~~~~~~~ oid.c:112:43: note: (near initialization for 'oid_names[99].name') -ShimReplace.c:51:37: warning: passing argument 2 of 'execute' discards 'const' qualifier from pointer target type [-Wdiscarded-qualifiers] - 51 | efi_status = execute(image, loader); - | ^~~~~~ -In file included from ShimReplace.c:17: -/build/reproducible-path/efitools-1.9.2/include/execute.h:5:35: note: expected 'CHAR16 *' {aka 'short unsigned int *'} but argument is of type 'const CHAR16 *' {aka 'const short unsigned int *'} - 5 | execute(EFI_HANDLE image, CHAR16 *name); - | ~~~~~~~~^~~~ oid.c:113:43: warning: pointer targets in initialization of 'const unsigned char *' from 'char *' differ in signedness [-Wpointer-sign] 113 | { 0x05, 105, 1, 7, "PKCS-5" }, /* 100 */ | ^~~~~~~~ @@ -1024,15 +1065,9 @@ 114 | { 0x03, 102, 0, 8, "pbeWithMD5AndDES-CBC" }, /* 101 */ | ^~~~~~~~~~~~~~~~~~~~~~ oid.c:114:43: note: (near initialization for 'oid_names[101].name') -ShimReplace.c:57:37: warning: passing argument 2 of 'execute' discards 'const' qualifier from pointer target type [-Wdiscarded-qualifiers] - 57 | efi_status = execute(image, fallback); - | ^~~~~~~~ oid.c:115:43: warning: pointer targets in initialization of 'const unsigned char *' from 'char *' differ in signedness [-Wpointer-sign] 115 | { 0x0A, 103, 0, 8, "pbeWithSHA1AndDES-CBC" }, /* 102 */ | ^~~~~~~~~~~~~~~~~~~~~~~ -/build/reproducible-path/efitools-1.9.2/include/execute.h:5:35: note: expected 'CHAR16 *' {aka 'short unsigned int *'} but argument is of type 'const CHAR16 *' {aka 'const short unsigned int *'} - 5 | execute(EFI_HANDLE image, CHAR16 *name); - | ~~~~~~~~^~~~ oid.c:115:43: note: (near initialization for 'oid_names[102].name') oid.c:116:43: warning: pointer targets in initialization of 'const unsigned char *' from 'char *' differ in signedness [-Wpointer-sign] 116 | { 0x0C, 104, 0, 8, "id-PBKDF2" }, /* 103 */ @@ -1634,6 +1669,7 @@ 265 | { 0x02, 253, 0, 5, "ecSignWithripemd160" }, /* 252 */ | ^~~~~~~~~~~~~~~~~~~~~ oid.c:265:43: note: (near initialization for 'oid_names[252].name') +cc -I/build/reproducible-path/efitools-1.9.2/include/ -I/usr/include/efi -I/usr/include/efi/x86_64 -I/usr/include/efi/protocol -O2 -g -fno-stack-protector -fpic -Wall -fshort-wchar -fno-strict-aliasing -fno-merge-constants -D_XOPEN_SOURCE=700 -DGNU_EFI_USE_MS_ABI -DEFI_FUNCTION_WRAPPER -mno-red-zone -DCONFIG_x86_64 -c sig-list-to-certs.c -o sig-list-to-certs.o oid.c:266:43: warning: pointer targets in initialization of 'const unsigned char *' from 'char *' differ in signedness [-Wpointer-sign] 266 | { 0x03, 254, 0, 5, "ecSignWithmd2" }, /* 253 */ | ^~~~~~~~~~~~~~~ @@ -2130,9 +2166,6 @@ 389 | { 0x0F, 0, 0, 4, "tcg-at-tpmIdLabel" } /* 376 */ | ^~~~~~~~~~~~~~~~~~~ oid.c:389:43: note: (near initialization for 'oid_names[376].name') -cc -I/build/reproducible-path/efitools-1.9.2/include/ -I/usr/include/efi -I/usr/include/efi/x86_64 -I/usr/include/efi/protocol -O2 -g -fno-stack-protector -fpic -Wall -fshort-wchar -fno-strict-aliasing -fno-merge-constants -D_XOPEN_SOURCE=700 -DGNU_EFI_USE_MS_ABI -DEFI_FUNCTION_WRAPPER -mno-red-zone -DCONFIG_x86_64 -c shim_protocol.c -o shim_protocol.o -cc -I/build/reproducible-path/efitools-1.9.2/include/ -I/usr/include/efi -I/usr/include/efi/x86_64 -I/usr/include/efi/protocol -O2 -g -fno-stack-protector -fpic -Wall -fshort-wchar -fno-strict-aliasing -fno-merge-constants -D_XOPEN_SOURCE=700 -DGNU_EFI_USE_MS_ABI -DEFI_FUNCTION_WRAPPER -mno-red-zone -DCONFIG_x86_64 -c hash-to-efi-sig-list.c -o hash-to-efi-sig-list.o -cc -I/build/reproducible-path/efitools-1.9.2/include/ -I/usr/include/efi -I/usr/include/efi/x86_64 -I/usr/include/efi/protocol -O2 -g -fno-stack-protector -fpic -Wall -fshort-wchar -fno-strict-aliasing -fno-merge-constants -D_XOPEN_SOURCE=700 -DGNU_EFI_USE_MS_ABI -DEFI_FUNCTION_WRAPPER -mno-red-zone -DCONFIG_x86_64 -fno-toplevel-reorder -DBUILD_EFI -c x509.c -o x509.efi.o In file included from identification.c:18: chunk.h: In function 'chunk_equals': chunk.h:139:50: warning: pointer targets in passing argument 1 of 'strncmpa' differ in signedness [-Wpointer-sign] @@ -2162,6 +2195,7 @@ | ^~~~~ /usr/include/efi/efilib.h:414:24: note: expected 'const CHAR8 *' {aka 'const char *'} but argument is of type 'u_char *' {aka 'unsigned char *'} 414 | IN CONST CHAR8 *s2, +cc -I/build/reproducible-path/efitools-1.9.2/include/ -I/usr/include/efi -I/usr/include/efi/x86_64 -I/usr/include/efi/protocol -O2 -g -fno-stack-protector -fpic -Wall -fshort-wchar -fno-strict-aliasing -fno-merge-constants -D_XOPEN_SOURCE=700 -DGNU_EFI_USE_MS_ABI -DEFI_FUNCTION_WRAPPER -mno-red-zone -DCONFIG_x86_64 -fno-toplevel-reorder -DBUILD_EFI -c x509.c -o x509.efi.o identification.c: At top level: identification.c:34:10: warning: pointer targets in initialization of 'const u_char *' {aka 'const unsigned char *'} from 'char *' differ in signedness [-Wpointer-sign] 34 | {"ND", OID_NAME_DISTINGUISHER, ASN1_PRINTABLESTRING}, @@ -2282,10 +2316,8 @@ identification.c:33:24: warning: 'x501rdns' defined but not used [-Wunused-const-variable=] 33 | static const x501rdn_t x501rdns[] = { | ^~~~~~~~ -cc -I/build/reproducible-path/efitools-1.9.2/include/ -I/usr/include/efi -I/usr/include/efi/x86_64 -I/usr/include/efi/protocol -O2 -g -fno-stack-protector -fpic -Wall -fshort-wchar -fno-strict-aliasing -fno-merge-constants -D_XOPEN_SOURCE=700 -DGNU_EFI_USE_MS_ABI -DEFI_FUNCTION_WRAPPER -mno-red-zone -DCONFIG_x86_64 -c efi-readvar.c -o efi-readvar.o -cc -I/build/reproducible-path/efitools-1.9.2/include/ -I/usr/include/efi -I/usr/include/efi/x86_64 -I/usr/include/efi/protocol -O2 -g -fno-stack-protector -fpic -Wall -fshort-wchar -fno-strict-aliasing -fno-merge-constants -D_XOPEN_SOURCE=700 -DGNU_EFI_USE_MS_ABI -DEFI_FUNCTION_WRAPPER -mno-red-zone -DCONFIG_x86_64 -c efi-updatevar.c -o efi-updatevar.o -cc -I/build/reproducible-path/efitools-1.9.2/include/ -I/usr/include/efi -I/usr/include/efi/x86_64 -I/usr/include/efi/protocol -O2 -g -fno-stack-protector -fpic -Wall -fshort-wchar -fno-strict-aliasing -fno-merge-constants -D_XOPEN_SOURCE=700 -DGNU_EFI_USE_MS_ABI -DEFI_FUNCTION_WRAPPER -mno-red-zone -DCONFIG_x86_64 -c pkcs7verify.c -o pkcs7verify.o -cc -I/build/reproducible-path/efitools-1.9.2/include/ -I/usr/include/efi -I/usr/include/efi/x86_64 -I/usr/include/efi/protocol -O2 -g -fno-stack-protector -fpic -Wall -fshort-wchar -fno-strict-aliasing -fno-merge-constants -D_XOPEN_SOURCE=700 -DGNU_EFI_USE_MS_ABI -DEFI_FUNCTION_WRAPPER -mno-red-zone -DCONFIG_x86_64 -c cert-to-efi-hash-list.c -o cert-to-efi-hash-list.o +cc -I/build/reproducible-path/efitools-1.9.2/include/ -I/usr/include/efi -I/usr/include/efi/x86_64 -I/usr/include/efi/protocol -O2 -g -fno-stack-protector -fpic -Wall -fshort-wchar -fno-strict-aliasing -fno-merge-constants -D_XOPEN_SOURCE=700 -DGNU_EFI_USE_MS_ABI -DEFI_FUNCTION_WRAPPER -mno-red-zone -DCONFIG_x86_64 -c shim_protocol.c -o shim_protocol.o +cc -I/build/reproducible-path/efitools-1.9.2/include/ -I/usr/include/efi -I/usr/include/efi/x86_64 -I/usr/include/efi/protocol -O2 -g -fno-stack-protector -fpic -Wall -fshort-wchar -fno-strict-aliasing -fno-merge-constants -D_XOPEN_SOURCE=700 -DGNU_EFI_USE_MS_ABI -DEFI_FUNCTION_WRAPPER -mno-red-zone -DCONFIG_x86_64 -c hash-to-efi-sig-list.c -o hash-to-efi-sig-list.o In file included from x509.c:1: chunk.h: In function 'chunk_equals': chunk.h:139:50: warning: pointer targets in passing argument 1 of 'strncmpa' differ in signedness [-Wpointer-sign] @@ -2424,7 +2456,9 @@ 35 | { 0, "exit", ASN1_EOC, ASN1_EXIT } | ^~~~~~ x509.c:35:14: note: (near initialization for 'x509_certObjects[26].name') -cc -I/build/reproducible-path/efitools-1.9.2/include/ -I/usr/include/efi -I/usr/include/efi/x86_64 -I/usr/include/efi/protocol -O2 -g -fno-stack-protector -fpic -Wall -fshort-wchar -fno-strict-aliasing -fno-merge-constants -D_XOPEN_SOURCE=700 -DGNU_EFI_USE_MS_ABI -DEFI_FUNCTION_WRAPPER -mno-red-zone -DCONFIG_x86_64 -c flash-var.c -o flash-var.o +cc -I/build/reproducible-path/efitools-1.9.2/include/ -I/usr/include/efi -I/usr/include/efi/x86_64 -I/usr/include/efi/protocol -O2 -g -fno-stack-protector -fpic -Wall -fshort-wchar -fno-strict-aliasing -fno-merge-constants -D_XOPEN_SOURCE=700 -DGNU_EFI_USE_MS_ABI -DEFI_FUNCTION_WRAPPER -mno-red-zone -DCONFIG_x86_64 -c efi-readvar.c -o efi-readvar.o +cc -I/build/reproducible-path/efitools-1.9.2/include/ -I/usr/include/efi -I/usr/include/efi/x86_64 -I/usr/include/efi/protocol -O2 -g -fno-stack-protector -fpic -Wall -fshort-wchar -fno-strict-aliasing -fno-merge-constants -D_XOPEN_SOURCE=700 -DGNU_EFI_USE_MS_ABI -DEFI_FUNCTION_WRAPPER -mno-red-zone -DCONFIG_x86_64 -c pkcs7verify.c -o pkcs7verify.o +ar rcv libasn1-efi.a asn1.efi.o asn1_parser.efi.o enumerator.efi.o chunk.efi.o oid.efi.o identification.efi.o x509.efi.o hash-to-efi-sig-list.c: In function 'main': hash-to-efi-sig-list.c:96:60: warning: format '%d' expects argument of type 'int', but argument 3 has type 'EFI_STATUS' {aka 'long unsigned int'} [-Wformat=] 96 | printf("Failed to get hash of %s: %d\n", argv[i+1], @@ -2436,22 +2470,7 @@ | ~~~~~~ | | | EFI_STATUS {aka long unsigned int} -> noPK.esl -openssl req -new -x509 -newkey rsa:2048 -subj "/CN=DB1/" -keyout DB1.key -out DB1.crt -days 3650 -nodes -sha256 -...+..................+...+...........+....+...........+....+..+.......+...+..+............+++++++++++++++++++++++++++++++++++++++*.+...+..+....+.....+....+......+.........+...+.........+.....+.+..+.+++++++++++++++++++++++++++++++++++++++*.........+..+......+....+..............+.........+...+.........................+..+...+...+.+.....+.........+.+......+........+......+....+..............+...+...................+...+...+..+.+......+.....+....+..+....+...+..+...+......+.+.....+.+............+...+.....+.......+..+...+......+.+......+...+............+........+..........+.....+.+......+....................+.......+..+....+..+.........+......+...+....+.....+......+......+.+..................+..+.......+.................+.+.....+.............+..+.......+.....+......+.+...............+.....+...+.+............+...+..+...+.+.....+...+............+....+.........+...+..+................+.....+....+......+.....+......+....+......+.....+...+...+.......+.....+......+....+..+.+.....+...+.........+..........+..+...+..........+............+......+..+............+...+......+....+...............+......+.....+....+..+.+.....+.......+......+.....................+.....+.+...............+...+.........+.....+...+...+cc -I/build/reproducible-path/efitools-1.9.2/include/ -I/usr/include/efi -I/usr/include/efi/x86_64 -I/usr/include/efi/protocol -O2 -g -fno-stack-protector -fpic -Wall -fshort-wchar -fno-strict-aliasing -fno-merge-constants -D_XOPEN_SOURCE=700 -DGNU_EFI_USE_MS_ABI -DEFI_FUNCTION_WRAPPER -mno-red-zone -DCONFIG_x86_64 -c kernel_efivars.c -o kernel_efivars.o -..........openssl req -new -x509 -newkey rsa:2048 -subj "/CN=DB2/" -keyout DB2.key -out DB2.crt -days 3650 -nodes -sha256 -+.....+............+....+...............+......+..+............+.+........+......+................+..+...+...+......+.+........+cert-to-efi-hash-list.c:9:9: warning: "_XOPEN_SOURCE" redefined - 9 | #define _XOPEN_SOURCE - | ^~~~~~~~~~~~~ -: note: this is the location of the previous definition -....+......+...............+......+...+.....+.+.....++++++ -..........+.....+.........+.+++++++++++++++++++++++++++++++++++++++*.+.....+...+++++++++++++++++++++++++++++++++++++++*.+..........+......+...+..+...+...+.........+.+.....+.......+..+......+.......+..+....+..+............+...+.+..+......+....+..+.+++++++++++++++++++.+....+.++++++++++++++++...++..+*...+++++++++++++++....+.....+++++++++++++++++...+....+..+++++++*..+...............+...+...+..+.........................+.+...+.....+..+.......+.......+.................++.......+....+.............++..........++.........++.........++..........++.........++.......++.........+..+...................++............++.........++......++.................++.........+.+.......+.................+...+....+..+...+......+.....+........+ar rcv libasn1-efi.a asn1.efi.o asn1_parser.efi.o enumerator.efi.o chunk.efi.o oid.efi.o identification.efi.o x509.efi.o -.....+......++.........+......+.......+.....+..+.....++.......+................+...+.+......+.........+.+..........++......++..........+..+.+.................+..+...+..........+.+.+.++....++......+++ -..+...+..........++++++++++++++++++++++++++++++++++++++++*.....+.+.....+...+...................+......+......+...+.....+......+...+.+.....+......+++++++++++++++++++++++++++.+.+.+++++++++++*....+..+...................+...+...+...++..............+.+..+.........+....++..............++....++ld -nostdlib -shared -Bsymbolic /lib/crt0-efi-x86_64.o -L /lib -L /usr/lib -L /usr/lib64 -T elf_x86_64_efi.lds SetNull.o -o SetNull.so -lefi -lgnuefi /usr/lib/gcc/x86_64-linux-gnu/14/libgcc.a -.............++.................++...+..+...........++.........++.......................++.....+....+................++........+........+.............+.......+.............++..++.....++..+.+............+........+......+.......+.......+........+..............+...+.........++..++....+.+.................+..+...+......+................+..........+......+............+.....+..++...........+......+..+.+......++.....+.............+...++.........+.........+........+.......+.......+...............+......+...........+.......++..........++..........++.........++........+..........+..............+.........+.........++.........++..........++..................+....+........++...++............++................++.....+.....+......++....................+...................+....+..+.+...+...+...............+.........................+..+..+....................++......++...+..+......................+.+.........+......+......+..........++.............+++.....++......++ -....+.........+......+..+...+.......+...+......+........+......................+......+..+...+...+....+...+.....+...+.........+.+......++++++ -cc -I/build/reproducible-path/efitools-1.9.2/include/ -I/usr/include/efi -I/usr/include/efi/x86_64 -I/usr/include/efi/protocol -O2 -g -fno-stack-protector -fpic -Wall -fshort-wchar -fno-strict-aliasing -fno-merge-constants -D_XOPEN_SOURCE=700 -DGNU_EFI_USE_MS_ABI -DEFI_FUNCTION_WRAPPER -mno-red-zone -DCONFIG_x86_64 -c openssl_sign.c -o openssl_sign.o ------ +cc -I/build/reproducible-path/efitools-1.9.2/include/ -I/usr/include/efi -I/usr/include/efi/x86_64 -I/usr/include/efi/protocol -O2 -g -fno-stack-protector -fpic -Wall -fshort-wchar -fno-strict-aliasing -fno-merge-constants -D_XOPEN_SOURCE=700 -DGNU_EFI_USE_MS_ABI -DEFI_FUNCTION_WRAPPER -mno-red-zone -DCONFIG_x86_64 -c efi-updatevar.c -o efi-updatevar.o a - asn1.efi.o a - asn1_parser.efi.o a - enumerator.efi.o @@ -2459,18 +2478,15 @@ a - oid.efi.o a - identification.efi.o a - x509.efi.o ------ make[2]: Leaving directory '/build/reproducible-path/efitools-1.9.2/lib/asn1' -# check we have no undefined symbols -nm -D SetNull.so | grep ' U ' && exit 1 || exit 0 -objcopy -j .text -j .sdata -j .data -j .dynamic -j .dynsym \ - -j .rel -j .rela -j .rel.* -j .rela.* -j .rel* -j .rela* \ - -j .reloc --target=efi-app-x86_64 SetNull.so SetNull.efi -flash-var.c: In function 'main': -flash-var.c:185:9: warning: 'memset' offset [0, 56] is out of the bounds [0, 0] [-Warray-bounds=] - 185 | memset(vh, 0, sizeof(*vh)); - | ^~~~~~~~~~~~~~~~~~~~~~~~~~ -sbsign --key DB.key --cert DB.crt --output SetNull-signed.efi SetNull.efi +cc -I/build/reproducible-path/efitools-1.9.2/include/ -I/usr/include/efi -I/usr/include/efi/x86_64 -I/usr/include/efi/protocol -O2 -g -fno-stack-protector -fpic -Wall -fshort-wchar -fno-strict-aliasing -fno-merge-constants -D_XOPEN_SOURCE=700 -DGNU_EFI_USE_MS_ABI -DEFI_FUNCTION_WRAPPER -mno-red-zone -DCONFIG_x86_64 -c kernel_efivars.c -o kernel_efivars.o +cc -I/build/reproducible-path/efitools-1.9.2/include/ -I/usr/include/efi -I/usr/include/efi/x86_64 -I/usr/include/efi/protocol -O2 -g -fno-stack-protector -fpic -Wall -fshort-wchar -fno-strict-aliasing -fno-merge-constants -D_XOPEN_SOURCE=700 -DGNU_EFI_USE_MS_ABI -DEFI_FUNCTION_WRAPPER -mno-red-zone -DCONFIG_x86_64 -c cert-to-efi-hash-list.c -o cert-to-efi-hash-list.o +cc -I/build/reproducible-path/efitools-1.9.2/include/ -I/usr/include/efi -I/usr/include/efi/x86_64 -I/usr/include/efi/protocol -O2 -g -fno-stack-protector -fpic -Wall -fshort-wchar -fno-strict-aliasing -fno-merge-constants -D_XOPEN_SOURCE=700 -DGNU_EFI_USE_MS_ABI -DEFI_FUNCTION_WRAPPER -mno-red-zone -DCONFIG_x86_64 -c openssl_sign.c -o openssl_sign.o +cert-to-efi-hash-list.c:9:9: warning: "_XOPEN_SOURCE" redefined + 9 | #define _XOPEN_SOURCE + | ^~~~~~~~~~~~~ +: note: this is the location of the previous definition +cc -I/build/reproducible-path/efitools-1.9.2/include/ -I/usr/include/efi -I/usr/include/efi/x86_64 -I/usr/include/efi/protocol -O2 -g -fno-stack-protector -fpic -Wall -fshort-wchar -fno-strict-aliasing -fno-merge-constants -D_XOPEN_SOURCE=700 -DGNU_EFI_USE_MS_ABI -DEFI_FUNCTION_WRAPPER -mno-red-zone -DCONFIG_x86_64 -c flash-var.c -o flash-var.o openssl_sign.c: In function 'read_engine_private_key': openssl_sign.c:118:9: warning: 'ENGINE_load_builtin_engines' is deprecated: Since OpenSSL 3.0 [-Wdeprecated-declarations] 118 | ENGINE_load_builtin_engines(); @@ -2509,11 +2525,48 @@ /usr/include/openssl/engine.h:493:27: note: declared here 493 | OSSL_DEPRECATEDIN_3_0 int ENGINE_free(ENGINE *e); | ^~~~~~~~~~~ +> noPK.esl +flash-var.c: In function 'main': +flash-var.c:185:9: warning: 'memset' offset [0, 56] is out of the bounds [0, 0] [-Warray-bounds=] + 185 | memset(vh, 0, sizeof(*vh)); + | ^~~~~~~~~~~~~~~~~~~~~~~~~~ +openssl req -new -x509 -newkey rsa:2048 -subj "/CN=DB1/" -keyout DB1.key -out DB1.crt -days 3650 -nodes -sha256 +openssl req -new -x509 -newkey rsa:2048 -subj "/CN=DB2/" -keyout DB2.key -out DB2.crt -days 3650 -nodes -sha256 +.+.......+..+++++++++++++++++++++++++++++++++++++++*.+...........+...+............+++++++++++++++++++++++++++++++++++++++*........+....+..+....+......+.....................+.....+...+.........+.+...........+...+.+.....+......+...+.......+.........+..+.............+..+....+.........+..+...+.+..............+.........+............+....+.....+....+..+.............+......+.........+..+.+.........+..............+.+........+...+....++++++ +.+++++++++++++++++++++++++++++++++++++++*..+......+...+.+..+...+++++++++++++++++++++++++++++++++++++++*.....+...+..+....+...+........+....+..............+.+....................+.+..+......+....+...........+....+.................+....+......+..............+.......+..+.+......+...+..+.+...+...........++++++ +....+.....+++++++++++++++++++++++++++++++++++++++*.........+..+.+..+...+......+......+..........+..............+...+.......+...+........+...+...................+...+........+.+.....+.+.....+...+.+...+........+....+.....+....+..+...+....+..+...+............+....+..+...+.+++++++++++++++++++++++++++++++++++++++*............+.....+.++++++----- + +.......+++++++++++++++++++++++++++++++++++++++*....+...............+......+.......................+.+..+....+.....+..........+.....+++++++++++++++++++++++++++++++++++++++*............+...................+......+..............+.+.....+...+....+..+.+.....+...+.......+...+..............+...+...................+......+..+.+..+....+...+.....+.......+.....+.+...+..+....+...+.....+......++++++ +----- +ld -nostdlib -shared -Bsymbolic /lib/crt0-efi-x86_64.o -L /lib -L /usr/lib -L /usr/lib64 -T elf_x86_64_efi.lds SetNull.o -o SetNull.so -lefi -lgnuefi /usr/lib/gcc/x86_64-linux-gnu/14/libgcc.a +# check we have no undefined symbols +nm -D SetNull.so | grep ' U ' && exit 1 || exit 0 +objcopy -j .text -j .sdata -j .data -j .dynamic -j .dynsym \ + -j .rel -j .rela -j .rel.* -j .rela.* -j .rel* -j .rela* \ + -j .reloc --target=efi-app-x86_64 SetNull.so SetNull.efi +ar rcv lib-efi.a simple_file.efi.o pecoff.efi.o guid.efi.o sha256.efi.o console.efi.o execute.efi.o configtable.efi.o shell.efi.o security_policy.efi.o shim_protocol.efi.o pkcs7verify.efi.o variables.o +sbsign --key DB.key --cert DB.crt --output SetNull-signed.efi SetNull.efi +a - simple_file.efi.o +a - pecoff.efi.o +a - guid.efi.o +a - sha256.efi.o +a - console.efi.o +a - execute.efi.o +a - configtable.efi.o +a - shell.efi.o +a - security_policy.efi.o +a - shim_protocol.efi.o +a - pkcs7verify.efi.o +a - variables.o +make[2]: Leaving directory '/build/reproducible-path/efitools-1.9.2/lib' warning: data remaining[35840 vs 45097]: gaps between PE/COFF sections? warning: data remaining[35840 vs 45104]: gaps between PE/COFF sections? Signing Unsigned original image +ld -nostdlib -shared -Bsymbolic /lib/crt0-efi-x86_64.o -L /lib -L /usr/lib -L /usr/lib64 -T elf_x86_64_efi.lds ShimReplace.o lib/lib-efi.a -o ShimReplace.so -lefi -lgnuefi /usr/lib/gcc/x86_64-linux-gnu/14/libgcc.a +# check we have no undefined symbols +nm -D ShimReplace.so | grep ' U ' && exit 1 || exit 0 ar rcv lib.a simple_file.o pecoff.o guid.o sha256.o console.o execute.o configtable.o shell.o security_policy.o shim_protocol.o pkcs7verify.o kernel_efivars.o openssl_sign.o -ar rcv lib-efi.a simple_file.efi.o pecoff.efi.o guid.efi.o sha256.efi.o console.efi.o execute.efi.o configtable.efi.o shell.efi.o security_policy.efi.o shim_protocol.efi.o pkcs7verify.efi.o variables.o +ld -nostdlib -shared -Bsymbolic /lib/crt0-efi-x86_64.o -L /lib -L /usr/lib -L /usr/lib64 -T elf_x86_64_efi.lds HelloWorld.o lib/lib-efi.a -o HelloWorld.so -lefi -lgnuefi /usr/lib/gcc/x86_64-linux-gnu/14/libgcc.a a - simple_file.o a - pecoff.o a - guid.o @@ -2527,25 +2580,13 @@ a - pkcs7verify.o a - kernel_efivars.o a - openssl_sign.o -a - simple_file.efi.o -a - pecoff.efi.o -a - guid.efi.o -a - sha256.efi.o -a - console.efi.o -a - execute.efi.o -a - configtable.efi.o -a - shell.efi.o -a - security_policy.efi.o -a - shim_protocol.efi.o -a - pkcs7verify.efi.o -a - variables.o make[2]: Leaving directory '/build/reproducible-path/efitools-1.9.2/lib' -make[2]: Leaving directory '/build/reproducible-path/efitools-1.9.2/lib' -ld -nostdlib -shared -Bsymbolic /lib/crt0-efi-x86_64.o -L /lib -L /usr/lib -L /usr/lib64 -T elf_x86_64_efi.lds HelloWorld.o lib/lib-efi.a -o HelloWorld.so -lefi -lgnuefi /usr/lib/gcc/x86_64-linux-gnu/14/libgcc.a cc -o cert-to-efi-sig-list cert-to-efi-sig-list.o -g -O2 -Werror=implicit-function-declaration -ffile-prefix-map=/build/reproducible-path/efitools-1.9.2=. -fstack-protector-strong -fstack-clash-protection -Wformat -Werror=format-security -fcf-protection -Wl,-z,relro lib/lib.a -lcrypto # check we have no undefined symbols nm -D HelloWorld.so | grep ' U ' && exit 1 || exit 0 cc -o sign-efi-sig-list sign-efi-sig-list.o -g -O2 -Werror=implicit-function-declaration -ffile-prefix-map=/build/reproducible-path/efitools-1.9.2=. -fstack-protector-strong -fstack-clash-protection -Wformat -Werror=format-security -fcf-protection -Wl,-z,relro lib/lib.a -lcrypto +./cert-to-efi-sig-list -g 11111111-2222-3333-4444-123456789abc KEK.crt KEK.esl +./cert-to-efi-sig-list -g 11111111-2222-3333-4444-123456789abc DB.crt DB.esl ld -nostdlib -shared -Bsymbolic /lib/crt0-efi-x86_64.o -L /lib -L /usr/lib -L /usr/lib64 -T elf_x86_64_efi.lds Loader.o lib/lib-efi.a -o Loader.so -lefi -lgnuefi /usr/lib/gcc/x86_64-linux-gnu/14/libgcc.a # check we have no undefined symbols nm -D Loader.so | grep ' U ' && exit 1 || exit 0 @@ -2561,10 +2602,10 @@ ld -nostdlib -shared -Bsymbolic /lib/crt0-efi-x86_64.o -L /lib -L /usr/lib -L /usr/lib64 -T elf_x86_64_efi.lds HashTool.o lib/lib-efi.a -o HashTool.so -lefi -lgnuefi /usr/lib/gcc/x86_64-linux-gnu/14/libgcc.a # check we have no undefined symbols nm -D HashTool.so | grep ' U ' && exit 1 || exit 0 -ld -nostdlib -shared -Bsymbolic /lib/crt0-efi-x86_64.o -L /lib -L /usr/lib -L /usr/lib64 -T elf_x86_64_efi.lds ShimReplace.o lib/lib-efi.a -o ShimReplace.so -lefi -lgnuefi /usr/lib/gcc/x86_64-linux-gnu/14/libgcc.a +objcopy -j .text -j .sdata -j .data -j .dynamic -j .dynsym \ + -j .rel -j .rela -j .rel.* -j .rela.* -j .rel* -j .rela* \ + -j .reloc --target=efi-app-x86_64 ShimReplace.so ShimReplace.efi cc -o sig-list-to-certs sig-list-to-certs.o -g -O2 -Werror=implicit-function-declaration -ffile-prefix-map=/build/reproducible-path/efitools-1.9.2=. -fstack-protector-strong -fstack-clash-protection -Wformat -Werror=format-security -fcf-protection -Wl,-z,relro lib/lib.a -lcrypto -# check we have no undefined symbols -nm -D ShimReplace.so | grep ' U ' && exit 1 || exit 0 cc -o hash-to-efi-sig-list hash-to-efi-sig-list.o -g -O2 -Werror=implicit-function-declaration -ffile-prefix-map=/build/reproducible-path/efitools-1.9.2=. -fstack-protector-strong -fstack-clash-protection -Wformat -Werror=format-security -fcf-protection -Wl,-z,relro lib/lib.a cc -o efi-readvar efi-readvar.o -g -O2 -Werror=implicit-function-declaration -ffile-prefix-map=/build/reproducible-path/efitools-1.9.2=. -fstack-protector-strong -fstack-clash-protection -Wformat -Werror=format-security -fcf-protection -Wl,-z,relro lib/lib.a -lcrypto cc -o efi-updatevar efi-updatevar.o -g -O2 -Werror=implicit-function-declaration -ffile-prefix-map=/build/reproducible-path/efitools-1.9.2=. -fstack-protector-strong -fstack-clash-protection -Wformat -Werror=format-security -fcf-protection -Wl,-z,relro lib/lib.a -lcrypto @@ -2576,15 +2617,25 @@ help2man --no-info -i doc/hash-to-efi-sig-list.1.in -o doc/hash-to-efi-sig-list.1 ./hash-to-efi-sig-list help2man --no-info -i doc/sig-list-to-certs.1.in -o doc/sig-list-to-certs.1 ./sig-list-to-certs help2man --no-info -i doc/sign-efi-sig-list.1.in -o doc/sign-efi-sig-list.1 ./sign-efi-sig-list -./sign-efi-sig-list -t "2026-04-18 00:57:26" -c PK.crt -k PK.key PK noPK.esl noPK.auth +./sign-efi-sig-list -t "2025-03-15 18:37:08" -c PK.crt -k PK.key PK noPK.esl noPK.auth ./cert-to-efi-sig-list -g 11111111-2222-3333-4444-123456789abc DB1.crt DB1.esl -Timestamp is 2026-4-18 00:57:26 +Timestamp is 2025-3-15 18:37:08 Authentication Payload size 40 Signature of size 1148 Signature at: 40 ./cert-to-efi-sig-list -g 11111111-2222-3333-4444-123456789abc DB2.crt DB2.esl ./cert-to-efi-sig-list -g 77FA9ABD-0359-4D32-BD60-28F4E78F784B ms-uefi.crt ms-uefi.esl ./cert-to-efi-sig-list -g 77FA9ABD-0359-4D32-BD60-28F4E78F784B ms-kek.crt ms-kek.esl +./sign-efi-sig-list -a -c PK.crt -k PK.key KEK KEK.esl KEK-update.auth +Timestamp is 0-0-0 00:00:00 +Authentication Payload size 855 +Signature of size 1148 +Signature at: 40 +./sign-efi-sig-list -a -c KEK.crt -k KEK.key db DB.esl DB-update.auth +Timestamp is 0-0-0 00:00:00 +Authentication Payload size 851 +Signature of size 1151 +Signature at: 40 ./sign-efi-sig-list -a -c KEK.crt -k KEK.key db DB1.esl DB1-update.auth Timestamp is 0-0-0 00:00:00 Authentication Payload size 853 @@ -2605,6 +2656,16 @@ Authentication Payload size 1600 Signature of size 1151 Signature at: 40 +./sign-efi-sig-list -a -c PK.crt -k PK.key KEK KEK.esl KEK-pkupdate.auth +Timestamp is 0-0-0 00:00:00 +Authentication Payload size 855 +Signature of size 1148 +Signature at: 40 +./sign-efi-sig-list -a -c PK.crt -k PK.key db DB.esl DB-pkupdate.auth +Timestamp is 0-0-0 00:00:00 +Authentication Payload size 851 +Signature of size 1148 +Signature at: 40 ./sign-efi-sig-list -a -c PK.crt -k PK.key db DB1.esl DB1-pkupdate.auth Timestamp is 0-0-0 00:00:00 Authentication Payload size 853 @@ -2643,15 +2704,23 @@ TimeOfRevocation is 0-0-0 00:00:00 ./cert-to-efi-hash-list ms-uefi.crt ms-uefi-hash-blacklist.esl TimeOfRevocation is 0-0-0 00:00:00 -./cert-to-efi-hash-list ms-kek.crt ms-kek-hash-blacklist.esl TimeOfRevocation is 0-0-0 00:00:00 +./cert-to-efi-hash-list ms-kek.crt ms-kek-hash-blacklist.esl TimeOfRevocation is 0-0-0 00:00:00 objcopy -j .text -j .sdata -j .data -j .dynamic -j .dynsym \ -j .rel -j .rela -j .rel.* -j .rela.* -j .rel* -j .rela* \ -j .reloc --target=efi-app-x86_64 HelloWorld.so HelloWorld.efi ./cert-to-efi-sig-list -g 11111111-2222-3333-4444-123456789abc PK.crt PK.esl -./cert-to-efi-sig-list -g 11111111-2222-3333-4444-123456789abc KEK.crt KEK.esl -./cert-to-efi-sig-list -g 11111111-2222-3333-4444-123456789abc DB.crt DB.esl +./sign-efi-sig-list -c PK.crt -k PK.key KEK KEK.esl KEK.auth +Timestamp is 2025-3-15 18:37:30 +Authentication Payload size 855 +Signature of size 1148 +Signature at: 40 +./sign-efi-sig-list -c KEK.crt -k KEK.key db DB.esl DB.auth +Timestamp is 2025-3-15 18:37:32 +Authentication Payload size 851 +Signature of size 1151 +Signature at: 40 objcopy -j .text -j .sdata -j .data -j .dynamic -j .dynsym \ -j .rel -j .rela -j .rel.* -j .rela.* -j .rel* -j .rela* \ -j .reloc --target=efi-app-x86_64 Loader.so Loader.efi @@ -2667,56 +2736,37 @@ objcopy -j .text -j .sdata -j .data -j .dynamic -j .dynsym \ -j .rel -j .rela -j .rel.* -j .rela.* -j .rel* -j .rela* \ -j .reloc --target=efi-app-x86_64 HashTool.so HashTool.efi -objcopy -j .text -j .sdata -j .data -j .dynamic -j .dynsym \ - -j .rel -j .rela -j .rel.* -j .rela.* -j .rel* -j .rela* \ - -j .reloc --target=efi-app-x86_64 ShimReplace.so ShimReplace.efi +sbsign --key DB.key --cert DB.crt --output ShimReplace-signed.efi ShimReplace.efi help2man --no-info -i doc/cert-to-efi-hash-list.1.in -o doc/cert-to-efi-hash-list.1 ./cert-to-efi-hash-list +warning: data remaining[78848 vs 91343]: gaps between PE/COFF sections? +warning: data remaining[78848 vs 91344]: gaps between PE/COFF sections? +Signing Unsigned original image ./sign-efi-sig-list -c KEK.crt -k KEK.key db DB1.esl DB1.auth -Timestamp is 2026-4-18 00:57:26 +Timestamp is 2025-3-15 18:37:36 Authentication Payload size 853 Signature of size 1151 Signature at: 40 ./sign-efi-sig-list -c KEK.crt -k KEK.key db DB2.esl DB2.auth -Timestamp is 2026-4-18 00:57:26 +Timestamp is 2025-3-15 18:37:37 Authentication Payload size 853 Signature of size 1151 Signature at: 40 ./sign-efi-sig-list -c KEK.crt -k KEK.key db ms-uefi.esl ms-uefi.auth -./sign-efi-sig-list -c KEK.crt -k KEK.key db ms-kek.esl ms-kek.auth -Timestamp is 2026-4-18 00:57:26 +Timestamp is 2025-3-15 18:37:38 Authentication Payload size 1640 Signature of size 1151 Signature at: 40 -Timestamp is 2026-4-18 00:57:26 +./sign-efi-sig-list -c KEK.crt -k KEK.key db ms-kek.esl ms-kek.auth +Timestamp is 2025-3-15 18:37:40 Authentication Payload size 1600 Signature of size 1151 Signature at: 40 ./sign-efi-sig-list -a -c PK.crt -k PK.key PK PK.esl PK-update.auth -./sign-efi-sig-list -a -c PK.crt -k PK.key KEK KEK.esl KEK-update.auth Timestamp is 0-0-0 00:00:00 Authentication Payload size 851 Signature of size 1148 Signature at: 40 -Timestamp is 0-0-0 00:00:00 -Authentication Payload size 855 -Signature of size 1148 -Signature at: 40 -./sign-efi-sig-list -a -c KEK.crt -k KEK.key db DB.esl DB-update.auth -Timestamp is 0-0-0 00:00:00 -Authentication Payload size 851 -Signature of size 1151 -Signature at: 40 ./sign-efi-sig-list -a -c PK.crt -k PK.key PK PK.esl PK-pkupdate.auth -Timestamp is 0-0-0 00:00:00 -Authentication Payload size 851 -Signature of size 1148 -Signature at: 40 -./sign-efi-sig-list -a -c PK.crt -k PK.key KEK KEK.esl KEK-pkupdate.auth -Timestamp is 0-0-0 00:00:00 -Authentication Payload size 855 -Signature of size 1148 -Signature at: 40 -./sign-efi-sig-list -a -c PK.crt -k PK.key db DB.esl DB-pkupdate.auth ./sign-efi-sig-list -a -c KEK.crt -k KEK.key dbx PK-blacklist.esl PK-blacklist.auth Timestamp is 0-0-0 00:00:00 Authentication Payload size 851 @@ -2748,21 +2798,21 @@ Signature of size 1151 Signature at: 40 ./sign-efi-sig-list -a -c KEK.crt -k KEK.key dbx ms-kek-blacklist.esl ms-kek-blacklist.auth -./sign-efi-sig-list -a -c KEK.crt -k KEK.key dbx PK-hash-blacklist.esl PK-hash-blacklist.auth Timestamp is 0-0-0 00:00:00 Authentication Payload size 1642 Signature of size 1151 Signature at: 40 -./sign-efi-sig-list -a -c KEK.crt -k KEK.key dbx KEK-hash-blacklist.esl KEK-hash-blacklist.auth +./sign-efi-sig-list -a -c KEK.crt -k KEK.key dbx PK-hash-blacklist.esl PK-hash-blacklist.auth Timestamp is 0-0-0 00:00:00 Authentication Payload size 1602 Signature of size 1151 Signature at: 40 -./sign-efi-sig-list -a -c KEK.crt -k KEK.key dbx DB-hash-blacklist.esl DB-hash-blacklist.auth +./sign-efi-sig-list -a -c KEK.crt -k KEK.key dbx KEK-hash-blacklist.esl KEK-hash-blacklist.auth Timestamp is 0-0-0 00:00:00 Authentication Payload size 134 Signature of size 1151 Signature at: 40 +./sign-efi-sig-list -a -c KEK.crt -k KEK.key dbx DB-hash-blacklist.esl DB-hash-blacklist.auth Timestamp is 0-0-0 00:00:00 Authentication Payload size 134 Signature of size 1151 @@ -2796,21 +2846,13 @@ warning: data remaining[41472 vs 51216]: gaps between PE/COFF sections? Signing Unsigned original image ./sign-efi-sig-list -c PK.crt -k PK.key PK PK.esl PK.auth -Timestamp is 2026-4-18 00:57:28 +./xxdi.pl KEK.auth > KEK.h +Timestamp is 2025-3-15 18:37:48 Authentication Payload size 851 Signature of size 1148 Signature at: 40 -./sign-efi-sig-list -c PK.crt -k PK.key KEK KEK.esl KEK.auth -Timestamp is 2026-4-18 00:57:28 -Authentication Payload size 855 -Signature of size 1148 -Signature at: 40 -./sign-efi-sig-list -c KEK.crt -k KEK.key db DB.esl DB.auth +./xxdi.pl DB.auth > DB.h sbsign --key DB.key --cert DB.crt --output Loader-signed.efi Loader.efi -Timestamp is 2026-4-18 00:57:28 -Authentication Payload size 851 -Signature of size 1151 -Signature at: 40 sbsign --key DB.key --cert DB.crt --output ReadVars-signed.efi ReadVars.efi warning: data remaining[77824 vs 89868]: gaps between PE/COFF sections? warning: data remaining[77824 vs 89872]: gaps between PE/COFF sections? @@ -2819,24 +2861,18 @@ warning: data remaining[101888 vs 114903]: gaps between PE/COFF sections? warning: data remaining[101888 vs 114904]: gaps between PE/COFF sections? Signing Unsigned original image -sbsign --key DB.key --cert DB.crt --output KeyTool-signed.efi KeyTool.efi warning: data remaining[77824 vs 89878]: gaps between PE/COFF sections? +sbsign --key DB.key --cert DB.crt --output KeyTool-signed.efi KeyTool.efi warning: data remaining[77824 vs 89880]: gaps between PE/COFF sections? Signing Unsigned original image sbsign --key DB.key --cert DB.crt --output HashTool-signed.efi HashTool.efi warning: data remaining[108544 vs 121951]: gaps between PE/COFF sections? warning: data remaining[108544 vs 121952]: gaps between PE/COFF sections? Signing Unsigned original image -sbsign --key DB.key --cert DB.crt --output ShimReplace-signed.efi ShimReplace.efi +./xxdi.pl PK.auth > PK.h warning: data remaining[78336 vs 90430]: gaps between PE/COFF sections? warning: data remaining[78336 vs 90432]: gaps between PE/COFF sections? Signing Unsigned original image -./xxdi.pl PK.auth > PK.h -warning: data remaining[78848 vs 91343]: gaps between PE/COFF sections? -warning: data remaining[78848 vs 91344]: gaps between PE/COFF sections? -Signing Unsigned original image -./xxdi.pl KEK.auth > KEK.h -./xxdi.pl DB.auth > DB.h cc -I/build/reproducible-path/efitools-1.9.2/include/ -I/usr/include/efi -I/usr/include/efi/x86_64 -I/usr/include/efi/protocol -O2 -g -fno-stack-protector -fpic -Wall -fshort-wchar -fno-strict-aliasing -fno-merge-constants -D_XOPEN_SOURCE=700 -DGNU_EFI_USE_MS_ABI -DEFI_FUNCTION_WRAPPER -mno-red-zone -DCONFIG_x86_64 -c LockDown.c -o LockDown.o ld -nostdlib -shared -Bsymbolic /lib/crt0-efi-x86_64.o -L /lib -L /usr/lib -L /usr/lib64 -T elf_x86_64_efi.lds LockDown.o lib/lib-efi.a -o LockDown.so -lefi -lgnuefi /usr/lib/gcc/x86_64-linux-gnu/14/libgcc.a # check we have no undefined symbols @@ -2859,13 +2895,13 @@ make[1]: Entering directory '/build/reproducible-path/efitools-1.9.2' dh_auto_install -- EFIDIR="debian/efitools/usr/lib/efitools/x86_64-linux-gnu" install -m0755 -d /build/reproducible-path/efitools-1.9.2/debian/efitools - make -j42 install DESTDIR=/build/reproducible-path/efitools-1.9.2/debian/efitools AM_UPDATE_INFO_DIR=no "INSTALL=install --strip-program=true" EFIDIR=debian/efitools/usr/lib/efitools/x86_64-linux-gnu + make -j20 install DESTDIR=/build/reproducible-path/efitools-1.9.2/debian/efitools AM_UPDATE_INFO_DIR=no "INSTALL=install --strip-program=true" EFIDIR=debian/efitools/usr/lib/efitools/x86_64-linux-gnu make[2]: Entering directory '/build/reproducible-path/efitools-1.9.2' make -C lib lib-efi.a +make[3]: Entering directory '/build/reproducible-path/efitools-1.9.2/lib' make -C lib lib.a make[3]: Entering directory '/build/reproducible-path/efitools-1.9.2/lib' make -C lib/asn1 libasn1-efi.a -make[3]: Entering directory '/build/reproducible-path/efitools-1.9.2/lib' make[3]: 'lib-efi.a' is up to date. make[3]: Leaving directory '/build/reproducible-path/efitools-1.9.2/lib' make[3]: Entering directory '/build/reproducible-path/efitools-1.9.2/lib/asn1' @@ -2904,27 +2940,27 @@ install -m0755 -d debian/efitools/usr/share/doc/efitools install -p -m0644 debian/.debhelper/generated/efitools/dh_installchangelogs.dch.trimmed debian/efitools/usr/share/doc/efitools/changelog.Debian dh_installman - man-recode --to-code UTF-8 --suffix .dh-new debian/efitools/usr/share/man/man1/cert-to-efi-hash-list.1 - man-recode --to-code UTF-8 --suffix .dh-new debian/efitools/usr/share/man/man1/cert-to-efi-sig-list.1 - man-recode --to-code UTF-8 --suffix .dh-new debian/efitools/usr/share/man/man1/efi-readvar.1 man-recode --to-code UTF-8 --suffix .dh-new debian/efitools/usr/share/man/man1/efi-updatevar.1 + man-recode --to-code UTF-8 --suffix .dh-new debian/efitools/usr/share/man/man1/cert-to-efi-hash-list.1 man-recode --to-code UTF-8 --suffix .dh-new debian/efitools/usr/share/man/man1/hash-to-efi-sig-list.1 - man-recode --to-code UTF-8 --suffix .dh-new debian/efitools/usr/share/man/man1/sig-list-to-certs.1 + man-recode --to-code UTF-8 --suffix .dh-new debian/efitools/usr/share/man/man1/efi-readvar.1 man-recode --to-code UTF-8 --suffix .dh-new debian/efitools/usr/share/man/man1/sign-efi-sig-list.1 - mv debian/efitools/usr/share/man/man1/cert-to-efi-sig-list.1.dh-new debian/efitools/usr/share/man/man1/cert-to-efi-sig-list.1 - chmod 0644 -- debian/efitools/usr/share/man/man1/cert-to-efi-sig-list.1 - mv debian/efitools/usr/share/man/man1/cert-to-efi-hash-list.1.dh-new debian/efitools/usr/share/man/man1/cert-to-efi-hash-list.1 - chmod 0644 -- debian/efitools/usr/share/man/man1/cert-to-efi-hash-list.1 - mv debian/efitools/usr/share/man/man1/efi-readvar.1.dh-new debian/efitools/usr/share/man/man1/efi-readvar.1 - chmod 0644 -- debian/efitools/usr/share/man/man1/efi-readvar.1 - mv debian/efitools/usr/share/man/man1/hash-to-efi-sig-list.1.dh-new debian/efitools/usr/share/man/man1/hash-to-efi-sig-list.1 - chmod 0644 -- debian/efitools/usr/share/man/man1/hash-to-efi-sig-list.1 - mv debian/efitools/usr/share/man/man1/sig-list-to-certs.1.dh-new debian/efitools/usr/share/man/man1/sig-list-to-certs.1 - chmod 0644 -- debian/efitools/usr/share/man/man1/sig-list-to-certs.1 + man-recode --to-code UTF-8 --suffix .dh-new debian/efitools/usr/share/man/man1/cert-to-efi-sig-list.1 + man-recode --to-code UTF-8 --suffix .dh-new debian/efitools/usr/share/man/man1/sig-list-to-certs.1 mv debian/efitools/usr/share/man/man1/efi-updatevar.1.dh-new debian/efitools/usr/share/man/man1/efi-updatevar.1 chmod 0644 -- debian/efitools/usr/share/man/man1/efi-updatevar.1 + mv debian/efitools/usr/share/man/man1/sig-list-to-certs.1.dh-new debian/efitools/usr/share/man/man1/sig-list-to-certs.1 + chmod 0644 -- debian/efitools/usr/share/man/man1/sig-list-to-certs.1 + mv debian/efitools/usr/share/man/man1/hash-to-efi-sig-list.1.dh-new debian/efitools/usr/share/man/man1/hash-to-efi-sig-list.1 + chmod 0644 -- debian/efitools/usr/share/man/man1/hash-to-efi-sig-list.1 + mv debian/efitools/usr/share/man/man1/cert-to-efi-sig-list.1.dh-new debian/efitools/usr/share/man/man1/cert-to-efi-sig-list.1 + chmod 0644 -- debian/efitools/usr/share/man/man1/cert-to-efi-sig-list.1 mv debian/efitools/usr/share/man/man1/sign-efi-sig-list.1.dh-new debian/efitools/usr/share/man/man1/sign-efi-sig-list.1 chmod 0644 -- debian/efitools/usr/share/man/man1/sign-efi-sig-list.1 + mv debian/efitools/usr/share/man/man1/efi-readvar.1.dh-new debian/efitools/usr/share/man/man1/efi-readvar.1 + chmod 0644 -- debian/efitools/usr/share/man/man1/efi-readvar.1 + mv debian/efitools/usr/share/man/man1/cert-to-efi-hash-list.1.dh-new debian/efitools/usr/share/man/man1/cert-to-efi-hash-list.1 + chmod 0644 -- debian/efitools/usr/share/man/man1/cert-to-efi-hash-list.1 dh_perl dh_link dh_strip_nondeterminism @@ -2948,46 +2984,46 @@ objcopy --compress-debug-sections debian/efitools/usr/lib/debug/.dwz/x86_64-linux-gnu/efitools.debug chmod 0644 -- debian/efitools/usr/lib/debug/.dwz/x86_64-linux-gnu/efitools.debug dh_strip - install -m0755 -d debian/.debhelper/efitools/dbgsym-root/usr/lib/debug/.build-id/4e - objcopy --only-keep-debug --compress-debug-sections debian/efitools/usr/bin/efi-readvar debian/.debhelper/efitools/dbgsym-root/usr/lib/debug/.build-id/4e/5e9722e363a6e511b125d36f7681972573277a.debug - chmod 0644 -- debian/.debhelper/efitools/dbgsym-root/usr/lib/debug/.build-id/4e/5e9722e363a6e511b125d36f7681972573277a.debug - strip --remove-section=.comment --remove-section=.note debian/efitools/usr/bin/efi-readvar - objcopy --add-gnu-debuglink debian/.debhelper/efitools/dbgsym-root/usr/lib/debug/.build-id/4e/5e9722e363a6e511b125d36f7681972573277a.debug debian/efitools/usr/bin/efi-readvar - install -m0755 -d debian/.debhelper/efitools/dbgsym-root/usr/lib/debug/.build-id/d3 - objcopy --only-keep-debug --compress-debug-sections debian/efitools/usr/bin/sig-list-to-certs debian/.debhelper/efitools/dbgsym-root/usr/lib/debug/.build-id/d3/3d6cb56621b543f9371723276e6c152ad1d013.debug - chmod 0644 -- debian/.debhelper/efitools/dbgsym-root/usr/lib/debug/.build-id/d3/3d6cb56621b543f9371723276e6c152ad1d013.debug - strip --remove-section=.comment --remove-section=.note debian/efitools/usr/bin/sig-list-to-certs - objcopy --add-gnu-debuglink debian/.debhelper/efitools/dbgsym-root/usr/lib/debug/.build-id/d3/3d6cb56621b543f9371723276e6c152ad1d013.debug debian/efitools/usr/bin/sig-list-to-certs - install -m0755 -d debian/.debhelper/efitools/dbgsym-root/usr/lib/debug/.build-id/52 - objcopy --only-keep-debug --compress-debug-sections debian/efitools/usr/bin/cert-to-efi-hash-list debian/.debhelper/efitools/dbgsym-root/usr/lib/debug/.build-id/52/42110ab59f916fdc43e730d6a79ec6f56a6922.debug - chmod 0644 -- debian/.debhelper/efitools/dbgsym-root/usr/lib/debug/.build-id/52/42110ab59f916fdc43e730d6a79ec6f56a6922.debug - strip --remove-section=.comment --remove-section=.note debian/efitools/usr/bin/cert-to-efi-hash-list - objcopy --add-gnu-debuglink debian/.debhelper/efitools/dbgsym-root/usr/lib/debug/.build-id/52/42110ab59f916fdc43e730d6a79ec6f56a6922.debug debian/efitools/usr/bin/cert-to-efi-hash-list install -m0755 -d debian/.debhelper/efitools/dbgsym-root/usr/lib/debug/.build-id/eb objcopy --only-keep-debug --compress-debug-sections debian/efitools/usr/bin/efi-updatevar debian/.debhelper/efitools/dbgsym-root/usr/lib/debug/.build-id/eb/893da0bc6e7cfd0f067e7b4fcdbcfa96690ecb.debug chmod 0644 -- debian/.debhelper/efitools/dbgsym-root/usr/lib/debug/.build-id/eb/893da0bc6e7cfd0f067e7b4fcdbcfa96690ecb.debug strip --remove-section=.comment --remove-section=.note debian/efitools/usr/bin/efi-updatevar objcopy --add-gnu-debuglink debian/.debhelper/efitools/dbgsym-root/usr/lib/debug/.build-id/eb/893da0bc6e7cfd0f067e7b4fcdbcfa96690ecb.debug debian/efitools/usr/bin/efi-updatevar + install -m0755 -d debian/.debhelper/efitools/dbgsym-root/usr/lib/debug/.build-id/d3 + objcopy --only-keep-debug --compress-debug-sections debian/efitools/usr/bin/cert-to-efi-sig-list debian/.debhelper/efitools/dbgsym-root/usr/lib/debug/.build-id/d3/62b4581e1795eeca14743921bdcb252fa41241.debug + chmod 0644 -- debian/.debhelper/efitools/dbgsym-root/usr/lib/debug/.build-id/d3/62b4581e1795eeca14743921bdcb252fa41241.debug + strip --remove-section=.comment --remove-section=.note debian/efitools/usr/bin/cert-to-efi-sig-list + objcopy --add-gnu-debuglink debian/.debhelper/efitools/dbgsym-root/usr/lib/debug/.build-id/d3/62b4581e1795eeca14743921bdcb252fa41241.debug debian/efitools/usr/bin/cert-to-efi-sig-list + install -m0755 -d debian/.debhelper/efitools/dbgsym-root/usr/lib/debug/.build-id/d3 + objcopy --only-keep-debug --compress-debug-sections debian/efitools/usr/bin/sig-list-to-certs debian/.debhelper/efitools/dbgsym-root/usr/lib/debug/.build-id/d3/3d6cb56621b543f9371723276e6c152ad1d013.debug + chmod 0644 -- debian/.debhelper/efitools/dbgsym-root/usr/lib/debug/.build-id/d3/3d6cb56621b543f9371723276e6c152ad1d013.debug + strip --remove-section=.comment --remove-section=.note debian/efitools/usr/bin/sig-list-to-certs + objcopy --add-gnu-debuglink debian/.debhelper/efitools/dbgsym-root/usr/lib/debug/.build-id/d3/3d6cb56621b543f9371723276e6c152ad1d013.debug debian/efitools/usr/bin/sig-list-to-certs + install -m0755 -d debian/.debhelper/efitools/dbgsym-root/usr/lib/debug/.build-id/86 + objcopy --only-keep-debug --compress-debug-sections debian/efitools/usr/bin/sign-efi-sig-list debian/.debhelper/efitools/dbgsym-root/usr/lib/debug/.build-id/86/7a3acfd5bdb3b046b96d30ce109e9ab4c05fd2.debug + chmod 0644 -- debian/.debhelper/efitools/dbgsym-root/usr/lib/debug/.build-id/86/7a3acfd5bdb3b046b96d30ce109e9ab4c05fd2.debug + strip --remove-section=.comment --remove-section=.note debian/efitools/usr/bin/sign-efi-sig-list + objcopy --add-gnu-debuglink debian/.debhelper/efitools/dbgsym-root/usr/lib/debug/.build-id/86/7a3acfd5bdb3b046b96d30ce109e9ab4c05fd2.debug debian/efitools/usr/bin/sign-efi-sig-list install -m0755 -d debian/.debhelper/efitools/dbgsym-root/usr/lib/debug/.build-id/56 objcopy --only-keep-debug --compress-debug-sections debian/efitools/usr/bin/hash-to-efi-sig-list debian/.debhelper/efitools/dbgsym-root/usr/lib/debug/.build-id/56/6d3521dd19d61b959ff882c1c51db5e12cf40a.debug chmod 0644 -- debian/.debhelper/efitools/dbgsym-root/usr/lib/debug/.build-id/56/6d3521dd19d61b959ff882c1c51db5e12cf40a.debug strip --remove-section=.comment --remove-section=.note debian/efitools/usr/bin/hash-to-efi-sig-list objcopy --add-gnu-debuglink debian/.debhelper/efitools/dbgsym-root/usr/lib/debug/.build-id/56/6d3521dd19d61b959ff882c1c51db5e12cf40a.debug debian/efitools/usr/bin/hash-to-efi-sig-list + install -m0755 -d debian/.debhelper/efitools/dbgsym-root/usr/lib/debug/.build-id/52 + objcopy --only-keep-debug --compress-debug-sections debian/efitools/usr/bin/cert-to-efi-hash-list debian/.debhelper/efitools/dbgsym-root/usr/lib/debug/.build-id/52/42110ab59f916fdc43e730d6a79ec6f56a6922.debug + chmod 0644 -- debian/.debhelper/efitools/dbgsym-root/usr/lib/debug/.build-id/52/42110ab59f916fdc43e730d6a79ec6f56a6922.debug + strip --remove-section=.comment --remove-section=.note debian/efitools/usr/bin/cert-to-efi-hash-list + objcopy --add-gnu-debuglink debian/.debhelper/efitools/dbgsym-root/usr/lib/debug/.build-id/52/42110ab59f916fdc43e730d6a79ec6f56a6922.debug debian/efitools/usr/bin/cert-to-efi-hash-list install -m0755 -d debian/.debhelper/efitools/dbgsym-root/usr/lib/debug/.build-id/ff objcopy --only-keep-debug --compress-debug-sections debian/efitools/usr/bin/flash-var debian/.debhelper/efitools/dbgsym-root/usr/lib/debug/.build-id/ff/690f13fdf357dacd07a672ca45886be176c601.debug chmod 0644 -- debian/.debhelper/efitools/dbgsym-root/usr/lib/debug/.build-id/ff/690f13fdf357dacd07a672ca45886be176c601.debug strip --remove-section=.comment --remove-section=.note debian/efitools/usr/bin/flash-var objcopy --add-gnu-debuglink debian/.debhelper/efitools/dbgsym-root/usr/lib/debug/.build-id/ff/690f13fdf357dacd07a672ca45886be176c601.debug debian/efitools/usr/bin/flash-var - install -m0755 -d debian/.debhelper/efitools/dbgsym-root/usr/lib/debug/.build-id/86 - objcopy --only-keep-debug --compress-debug-sections debian/efitools/usr/bin/sign-efi-sig-list debian/.debhelper/efitools/dbgsym-root/usr/lib/debug/.build-id/86/7a3acfd5bdb3b046b96d30ce109e9ab4c05fd2.debug - chmod 0644 -- debian/.debhelper/efitools/dbgsym-root/usr/lib/debug/.build-id/86/7a3acfd5bdb3b046b96d30ce109e9ab4c05fd2.debug - strip --remove-section=.comment --remove-section=.note debian/efitools/usr/bin/sign-efi-sig-list - objcopy --add-gnu-debuglink debian/.debhelper/efitools/dbgsym-root/usr/lib/debug/.build-id/86/7a3acfd5bdb3b046b96d30ce109e9ab4c05fd2.debug debian/efitools/usr/bin/sign-efi-sig-list - install -m0755 -d debian/.debhelper/efitools/dbgsym-root/usr/lib/debug/.build-id/d3 - objcopy --only-keep-debug --compress-debug-sections debian/efitools/usr/bin/cert-to-efi-sig-list debian/.debhelper/efitools/dbgsym-root/usr/lib/debug/.build-id/d3/62b4581e1795eeca14743921bdcb252fa41241.debug - chmod 0644 -- debian/.debhelper/efitools/dbgsym-root/usr/lib/debug/.build-id/d3/62b4581e1795eeca14743921bdcb252fa41241.debug - strip --remove-section=.comment --remove-section=.note debian/efitools/usr/bin/cert-to-efi-sig-list - objcopy --add-gnu-debuglink debian/.debhelper/efitools/dbgsym-root/usr/lib/debug/.build-id/d3/62b4581e1795eeca14743921bdcb252fa41241.debug debian/efitools/usr/bin/cert-to-efi-sig-list + install -m0755 -d debian/.debhelper/efitools/dbgsym-root/usr/lib/debug/.build-id/4e + objcopy --only-keep-debug --compress-debug-sections debian/efitools/usr/bin/efi-readvar debian/.debhelper/efitools/dbgsym-root/usr/lib/debug/.build-id/4e/5e9722e363a6e511b125d36f7681972573277a.debug + chmod 0644 -- debian/.debhelper/efitools/dbgsym-root/usr/lib/debug/.build-id/4e/5e9722e363a6e511b125d36f7681972573277a.debug + strip --remove-section=.comment --remove-section=.note debian/efitools/usr/bin/efi-readvar + objcopy --add-gnu-debuglink debian/.debhelper/efitools/dbgsym-root/usr/lib/debug/.build-id/4e/5e9722e363a6e511b125d36f7681972573277a.debug debian/efitools/usr/bin/efi-readvar install -m0755 -d debian/.debhelper/efitools/dbgsym-root/usr/lib/debug/.dwz cp --reflink=auto -a debian/efitools/usr/lib/debug/.dwz/x86_64-linux-gnu debian/.debhelper/efitools/dbgsym-root/usr/lib/debug/.dwz rm -fr debian/efitools/usr/lib/debug/.dwz @@ -2999,7 +3035,7 @@ rm -f debian/efitools/DEBIAN/shlibs dh_shlibdeps install -m0755 -d debian/efitools/DEBIAN - dpkg-shlibdeps -Tdebian/efitools.substvars debian/efitools/usr/bin/efi-readvar debian/efitools/usr/bin/sig-list-to-certs debian/efitools/usr/bin/cert-to-efi-hash-list debian/efitools/usr/bin/efi-updatevar debian/efitools/usr/bin/hash-to-efi-sig-list debian/efitools/usr/bin/flash-var debian/efitools/usr/bin/sign-efi-sig-list debian/efitools/usr/bin/cert-to-efi-sig-list + dpkg-shlibdeps -Tdebian/efitools.substvars debian/efitools/usr/bin/efi-updatevar debian/efitools/usr/bin/cert-to-efi-sig-list debian/efitools/usr/bin/sig-list-to-certs debian/efitools/usr/bin/sign-efi-sig-list debian/efitools/usr/bin/hash-to-efi-sig-list debian/efitools/usr/bin/cert-to-efi-hash-list debian/efitools/usr/bin/flash-var debian/efitools/usr/bin/efi-readvar dh_installdeb install -m0755 -d debian/efitools/DEBIAN dh_gencontrol @@ -3021,8 +3057,8 @@ dh_builddeb dpkg-deb --root-owner-group --build debian/efitools .. dpkg-deb --root-owner-group --build debian/.debhelper/efitools/dbgsym-root .. -dpkg-deb: building package 'efitools' in '../efitools_1.9.2-3.5_amd64.deb'. dpkg-deb: building package 'efitools-dbgsym' in '../efitools-dbgsym_1.9.2-3.5_amd64.deb'. +dpkg-deb: building package 'efitools' in '../efitools_1.9.2-3.5_amd64.deb'. dpkg-genbuildinfo --build=binary -O../efitools_1.9.2-3.5_amd64.buildinfo dpkg-genchanges --build=binary -O../efitools_1.9.2-3.5_amd64.changes dpkg-genchanges: info: binary-only upload (no source code included) @@ -3030,12 +3066,14 @@ dpkg-buildpackage: info: binary-only upload (no source included) dpkg-genchanges: info: not including original source code in upload I: copying local configuration +I: user script /srv/workspace/pbuilder/2938217/tmp/hooks/B01_cleanup starting +I: user script /srv/workspace/pbuilder/2938217/tmp/hooks/B01_cleanup finished I: unmounting dev/ptmx filesystem I: unmounting dev/pts filesystem I: unmounting dev/shm filesystem I: unmounting proc filesystem I: unmounting sys filesystem I: cleaning the build env -I: removing directory /srv/workspace/pbuilder/3727349 and its subdirectories -I: Current time: Fri Apr 17 12:57:35 -12 2026 -I: pbuilder-time-stamp: 1776473855 +I: removing directory /srv/workspace/pbuilder/2938217 and its subdirectories +I: Current time: Sun Mar 16 08:38:41 +14 2025 +I: pbuilder-time-stamp: 1742063921