Recommended update for ipxe

Announcement ID: SUSE-RU-2023:4640-1
Rating: moderate
References:
Affected Products:
  • HPC Module 15-SP5
  • openSUSE Leap 15.5
  • SUSE Linux Enterprise High Performance Computing 15 SP5

An update that contains one feature can now be installed.

Description:

This update for ipxe fixes the following issues:

  • Enabled HTTPS downloads (jsc#PED-5536)

  • Updated to version 1.21.1+git20231006.ff0f8604 with the following changes:

  • [arm] Support building as a Linux userspace binary for AArch64
  • [crypto] Add support for PKCS#8 private key format
  • [dhcp] Ignore DHCPNAK unless originating from the selected DHCP server
  • [dhcp] Request NTP server option
  • [eap] Define a supplicant model for EAP and EAPoL
  • [eapol] Send EAPoL-Start packets to trigger EAP authentication
  • [efi] Accept a command line passed to an iPXE image via LoadOptions
  • [efi] Add support for executing images via a shim
  • [efi] Allow autoexec script to be located alongside iPXE binary
  • [efi] Enable NET_PROTO_LLDP by default
  • [efi] Provide read-only access to EFI variables via settings mechanism
  • [efi] Support the initrd autodetection mechanism in newer Linux kernels
  • [efi] Update to current EDK2 headers
  • [golan] Add new PCI ID for NVIDIA BlueField-3 network device
  • [image] Generalise concept of selected image
  • [libc] Use wall clock time as seed for the (non-cryptographic) RNG
  • [loong64] Add initial support for LoongArch64
  • [ntp] Define NTP server setting
  • [params] Allow for arbitrary HTTP request headers to be specified
  • [rng] Allow entropy source to be selected at runtime
  • [tls] Handle fragmented handshake records (jsc#PED-5536)
  • [xen] Update to current Xen headers

  • Added floppy disk image

Patch Instructions:

To install this SUSE update use the SUSE recommended installation methods like YaST online_update or "zypper patch".
Alternatively you can run the command listed for your product:

  • openSUSE Leap 15.5
    zypper in -t patch SUSE-2023-4640=1 openSUSE-SLE-15.5-2023-4640=1
  • HPC Module 15-SP5
    zypper in -t patch SUSE-SLE-Module-HPC-15-SP5-2023-4640=1

Package List:

  • openSUSE Leap 15.5 (aarch64 ppc64le x86_64 i586)
    • ipxe-bootimgs-1.21.1+git20231006.ff0f8604-150500.3.3.1
  • HPC Module 15-SP5 (aarch64 x86_64)
    • ipxe-bootimgs-1.21.1+git20231006.ff0f8604-150500.3.3.1

References: