Skip to content

ujust upgrade stuck (since this morning) #3398

@krakerz

Description

@krakerz

Describe the bug

when i try ujust upgrade i got gnome 47 EOL message and the process stuck there

==== AUTHENTICATION COMPLETE ====
Pulling manifest: ostree-image-signed:docker://ghcr.io/ublue-os/bazzite-deck-gnome:stable
No upgrade available.

── 09:10:55 - Firmware upgrades ────────────────────────────────────────────────
Metadata is up to date; use --force to refresh again.
Devices with no available firmware updates:
• Micron 2500 MTFDKBA1T0QGN
• System Firmware
• KEK CA
• Windows UEFI CA
Devices with the latest available firmware version:
• UEFI CA
Micro-Star International Co., Ltd. Claw A8 BZ2EM

└─UEFI dbx:
│ Device ID: 362301da643102b9f38477387e2193e57abaa590
│ Summary: UEFI revocation database
│ Current version: 20241101
│ Minimum Version: 20241101
│ Vendor: UEFI:Microsoft
│ Install Duration: 1 second
│ GUIDs: f8ba2887-9411-5c36-9cee-88995bb39731 ← UEFI\CRT_A1117F516A32CEFCBA3F2D1ACE10A87972FD6BBE8FE0D0B996E09E65D802A503&ARCH_X64
│ d07ff664-b0e1-5f4e-a723-d7fbcbfcb94f ← UEFI\CRT_3CD3F0309EDAE228767A976DD40D9F4AFFC4FBD5218F2E8CC3C9DD97E8AC6F9D&ARCH_X64
│ Device Flags: • Internal device
│ • Updatable
│ • Supported on remote server
│ • Needs a reboot after installation
│ • Device is usable for the duration of the update
│ • Only version upgrades are allowed
│ • Signed Payload
│ • Can tag for emulation

├─Secure Boot dbx Configuration Update:
│ New version: 20250902
│ Remote ID: lvfs
│ Release ID: 130035
│ Summary: UEFI Secure Boot Forbidden Signature Database
│ Variant: x64
│ License: Proprietary
│ Size: 24.1 kB
│ Created: 2025-09-02 00:00:00
│ Urgency: High
│ Tested: 2025-10-17 00:00:00
│ Distribution: fedora 42 (workstation)
│ Old version: 20250507
│ Version[fwupd]: 2.0.17
│ Vendor: Linux Foundation
│ Duration: 1 second
│ Release Flags: • Trusted metadata
│ • Is upgrade
│ • Tested by trusted vendor
│ Description:
│ This updates the list of forbidden signatures (the "dbx") to the latest release from Microsoft.

│ Some insecure versions of the IGEL bootloader were added, due to a security vulnerability that allowed an attacker to bypass UEFI Secure Boot.
│ Issue: CVE-2025-47827
│ Checksum: 7178302fa23fcb875e7540900e299fb30a76758663efb7e1c56edc25cd3f316a

└─Secure Boot dbx Configuration Update:
New version: 20250507
Remote ID: lvfs
Release ID: 115586
Summary: UEFI Secure Boot Forbidden Signature Database
Variant: x64
License: Proprietary
Size: 24.0 kB
Created: 2025-01-17 00:00:00
Urgency: High
Tested: 2025-10-17 00:00:00
Distribution: fedora 42 (workstation)
Old version: 20230501
Version[fwupd]: 2.0.16
Tested: 2025-06-11 00:00:00
Distribution: fedora 42 (workstation)
Old version: 20241101
Version[fwupd]: 2.0.11
Vendor: Linux Foundation
Duration: 1 second
Release Flags: • Trusted metadata
• Is upgrade
• Tested by trusted vendor
Description:
This updates the list of forbidden signatures (the "dbx") to the latest release from Microsoft.

    Some insecure versions of BiosFlashShell and Dtbios by DT Research Inc were added, due to a security vulnerability that allowed an attacker to bypass UEFI Secure Boot.
    Issues:           806555
                      CVE-2025-3052
    Checksum:         40d3a4630619b83026f66bc64d97a582bbd9223ad53aa3f519ff5e2121d11ca6

── 09:10:55 - Flatpak User Packages ────────────────────────────────────────────
Looking for updates…

Info: (pinned) runtime org.gnome.Platform branch 47 is end-of-life, with reason:
The GNOME 47 runtime is no longer supported as of October 15, 2025. Please ask your application developer to migrate to a supported platform.

Nothing to do.

What did you expect to happen?

ujust upgrade working without issue?

Session Logs

https://paste.centos.org/view/21dcb649

Hardware

MSI Claw A8
Z2 Extreme
24GB RAM

Extra information or context

i'm in the middle resetting my steam, because i got another bug (i didnt report it yet) that i cant enter the desktop mode after reboot, and when trying to ujust upgrade i got stuck ._. (via ssh remote)

Metadata

Metadata

Assignees

No one assigned

    Labels

    No labels
    No labels

    Type

    No type

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions