=== RoAkSoAx_ is now known as andreserl === yofel_ is now known as yofel === andreserl is now known as RoAkSoAx === ogasawara_ is now known as ogasawara === ian_brasil_ is now known as ian_brasil === oubiwann is now known as oubiwann_ === pgraner is now known as pgraner-afk === JamieBen1ett is now known as JamieBennett === pgraner-afk is now known as pgraner [18:03] security team meeting is a go? [18:04] sure [18:05] mdeslaur: you ready too? [18:05] kees: yep! [18:05] close meeting? [18:05] okay, so, last was UDS. I'll be re-checking the specs and trying to hammer out workitems. after that, publishing xorg-server update, and checking kernel builds [18:06] jdstrand: you're up. my list is short. :) [18:06] I too plan to do the spec/workitems thing [18:06] I plan to get back to koffice [18:06] I am triager [18:07] and will start poking at the (new) chromium apparmor profile I started on over the weekend [18:07] that's it from me [18:07] mdeslaur: you're up [18:07] I published some community security updates [18:07] and will be doing the spec_workitems stuff [18:08] and will go down the CVE list [18:08] there's a lot of security bugs to research, if you want to pass some of those to me, jdstrand, feel free [18:09] I didn't do any of it last week, so this morning I got rid of the low hanging fruit [18:09] well, we'll see [18:09] oh, and I'll be looking at nxvl's openssl merge [18:09] that's it from me [18:10] cool. jjohansen, sbeattie, other folks got anything to bring up? [18:10] i will be giving mdeslaur a lot of work :D [18:11] nxvl: oh? in what form? [18:11] kees: he is community :D [18:11] kees: hrmm, not atm [18:11] oh, and I'll also be preparing my packaging training session for next week [18:11] i've going trough d2u list and doing some merges [18:11] ah-ha, excellent. [18:12] plus i found a 'bug' that i already reported to stefanlsd yesterday, will trying to look at the source of that [18:12] bug in d2u [18:13] okay, thanks everyone! [18:13] I'm thinking about own work on chromium-browser CVEs [18:15] ari-tczew: cool! [18:15] ari-tczew, nxvl: thanks for your universe security update contributions this week [18:15] mdeslaur: kadu hardy waiting for sponsorship ;p [18:16] ari-tczew: I published it this morning [18:16] ari-tczew: read your bug mail :) [18:17] * ari-tczew looking.. maybe in spam? [18:19] mdeslaur: that's right! your mail was published in my spambox ;p [18:19] and right now I got a mail from Ubuntu Installer [18:20] security team: what do you think about expand Ubuntu CVE Tracker by option to choice a release version? e.g. get CVEs for karmic (only) [18:20] ari-tczew: hmm...so I guess I'm considered spam :) [18:21] if not, would be nice to got an option to get open CVEs on current development cycle (like merges and syncs - active during dev cycle) [18:24] ari-tczew: the tracker already tracks per-release. what specifically did you feel was missing? [18:41] kees: I love looking on clear situation. I'd like to see CVEs only open on devel release [18:42] current cve tracker's homepage have an option: (and without devel release) [18:42] I'd like to got (only devel release) [18:42] ari-tczew: you can use "scripts/ubuntu-table" from the tracker to do that -- just display the last column [18:42] explanation: we should give users a good, very safety linux system === pgraner is now known as pgraner-afk === yofel_ is now known as yofel