> 01256bc72578b55a13a802849c425fd1 /boot/efi/EFI/ubuntu/MokManager.efi > 7095619324a9fb786422d7427c056405 /boot/efi/EFI/ubuntu/shimx64.efi
These are the correct md5sums for the signed binaries in the shim-signed package. > 2e4db13c97729c18490b5534dc30019e /boot/efi/EFI/ubuntu/grubx64.efi This is not the correct signature for the signed binary in the grub-efi-amd64-signed package, for either version 1.34.3 (the current version in trusty) or version 1.34.2 (the version that was current in trusty-updates at the time you encountered this error). $ md5sum /usr/lib/grub/x86_64-efi-signed/grubx64.efi.signed b5c6ea334fc8262942ab722ce9fda7c8 /usr/lib/grub/x86_64-efi-signed/grubx64.efi.signed $ So the runtime behavior of shim is correct on your system - it *should* refuse to boot this binary. The question is, why is this the binary that's installed as /boot/efi/EFI/ubuntu/grubx64.efi on your system? Could you please attach /boot/efi/EFI/ubuntu/grubx64.efi from your system to this bug report? Then please run 'grub-install' and check whether this file has been updated on your system. -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.launchpad.net/bugs/1455754 Title: Wrong signature on EFI Bios after dist-upgrade To manage notifications about this bug go to: https://bugs.launchpad.net/ubuntu/+source/shim/+bug/1455754/+subscriptions -- ubuntu-bugs mailing list ubuntu-bugs@lists.ubuntu.com https://lists.ubuntu.com/mailman/listinfo/ubuntu-bugs