/srv/irclogs.ubuntu.com/2010/09/13/#ubuntu-meeting.txt

=== yofel_ is now known as yofel
=== lag` is now known as lag
=== lag is now known as Guest58
=== easter_egg is now known as easter_egg|off
=== blackmatter is now known as test122
=== doko_ is now known as doko
=== easter_egg|off is now known as easter_egg
=== ivanka is now known as ivanka-lunch
=== oubiwann is now known as oubiwann-away
=== oubiwann-away is now known as oubiwann
=== ivanka-lunch is now known as ivanka
=== Ursinha-afk is now known as Ursinha
=== rgreening_ is now known as rgreening
=== jdstrand_ is now known as jdstrand
=== jcastro__ is now known as jcastro
=== daker__ is now known as daker
=== Technovi1ing is now known as technoviking
=== daker_ is now known as daker
keesmeetin' time?18:12
robbiew:)18:13
jdstrando/18:13
mdeslauryep18:13
keesokay, I'll start...18:14
keesthis coming week I've got a few things to publish, and I'm going to start up a kernel cycle too18:14
keesI've got openoffice on deck, and while I wait for that to build, I'm hoping to snag a few other low-hanging fruits.18:15
keesI spent a fair bit of time last week reviewing glibc issues, mainly the longjmp borkage on amd64+fortify18:15
keesbeyond that, I'm done.  mdeslaur!18:16
mdeslaurso...I have an embargoed issue I'm working on18:16
mdeslaurand then will continue php5 updates18:16
mdeslaurand am on community this week18:16
mdeslaurthat's it from me18:16
jjohansen\o18:17
* sbeattie can go next.18:17
jdstrandgo ahead18:17
jdstrandhey jjohansen18:17
jjohansensbeattie: please I didn't mean to interrupt18:17
sbeattieI've pushed a no-change rebuild of ant to the security-proposed pocket; I still need to test out building openjdk locally.18:17
sbeattieI do have a question on publishing ant, should I issue a USN for it?18:18
jdstrandsbeattie: can you remind me of the issue again?18:19
keessbeattie: we tend to be of two minds on this. I generally do not do USNs for rebuilds.18:19
jdstrand(ie, why you need t upload ant)18:19
keessbeattie: e.g. when we moved the compiler from -updates to -security, I didn't do a USN.18:19
sbeattieAnyway, the plan is once I get ant published in the security pocket, then push an openjdk SRU no-chagne rebuild to fix the regressions with building openjdk against the non-updates ant.18:19
jdstrandsbeattie: so ant isn't broken because of the new openjdk, it is that openjdk won't build because of the old ant. correct?18:20
sbeattiejdstrand: short answer is that ant/lucid got updated to fix mis-compilation with openjdk, but publishing through -security keepos reintroducing those bugs.18:21
jdstrandthen no USN imo18:21
mdeslaursbeattie: if you're going to do a openjdk SRU, why did you need to build ant in -security?18:21
jdstrandif ant was broken, then a -2 or similar18:21
sbeattiemdeslaur: for the next time we do an openjdk security update.18:21
mdeslaurah, ok18:22
mdeslaurcool18:22
sbeattiethat was what we agreed upon.18:22
mdeslaursbeattie: yeah, but I suffer from memory fragmentation issues18:22
* sbeattie is steering by advice given, not pure obstinance.18:22
sbeattiemdeslaur: don't we all.18:22
ScottKmdeslaur: I didn't think you were old enough for that.18:23
mdeslaurScottK: oh? :)18:23
jdstrandScottK: you wouldn't think so, yet... here we are18:24
jdstrand:P18:24
sbeattieanyway, other stuff: apparmor 2.5.1: fixed and pulled a few more issues, and I've finally spun a 2.5.1 rc1 candidate tarball and pushed to the launchpad page: https://launchpad.net/apparmor/+download18:24
ScottKYou being a youngster and all (or at least well preserved)18:24
sbeattieI'm aware jjohansen has at least one more patch he wants in.18:24
sbeattieI also need to announce the rc1 upload to the mail list.18:24
jdstrandsbeattie, jjohansen: how much of the rc1 official is different from what is in maverick now?18:25
jdstrand(and what else do we want to target to maverick)18:25
sbeattiejdstrand: I think it's the same except for a few changes I made to the toplevel Makefile and the common/Make.rules to support automating tarball/snapshot generation.18:26
jdstrandah cool18:26
sbeattie(I was a bad release manager, I committed those changes without signoff)18:26
jjohansensbeattie: nah it was just preacked ;)18:27
keesI'd like to see 2.5.1 in maverick (and then SRUd to lucid at some point...)18:27
jjohansenjdstrand: I have the one outstanding patch I need to finish up18:27
jdstrandkees: 2.5.1rc1 is in maverick now18:27
jjohansenmavericks kernel is newer than 2.5.118:28
* jdstrand is curious about the test suite issues he found last week18:28
jjohansenjdstrand: I've started looking and will get back to you on them18:28
sbeattiejjohansen: thanks.18:29
jdstrandjjohansen: cool. I would think that if there are userspace issues, they might be 2.5.1 candidates, or at the very least 2.5.2 and we pull into maverick18:29
jjohansenjdstrand: I am okay with that18:29
jdstrandnice18:29
sbeattieyep, makes sense.18:30
sbeattieanyway, other than that, I'm on triage this week.18:30
=== doko_ is now known as doko
sbeattieand I think that's all I've got. jdstrand?18:30
jdstrandso, as inferred, I got apparmor 2.5.1rc1 into maverick last week. I also did a lot with browser updates and published sudo18:31
jdstrandfor this week, I am working on two embargoed issues and another round of firefox/tbird testing (upstream regressions)18:32
jdstrandI'm also trying to get the chromium in lucid-proposed pushed into -security and -updates... need to followup with ubuntu-sru18:33
jdstrandkees: since you are our TB liaison, could you give a highlevel status update on what is happening with chromium and -security, etc18:33
keesjdstrand: sure, one sec18:34
* kees reviews the emails again18:35
jdstrandI forgot to mention that I wasn't able to do anything with libvirt last week due to the above, and that it looks like I may not be able to again this week18:35
jdstrandI have libvirt packages in the security ppa and I feel really good about them, but lucid's libvirt requires changes to virtinstall for sure, vmbuilder (not likely), and testing with virt-manager and eucalyptus18:36
jdstranderr, vmbuilder *is* likely18:36
jdstrandI don't think euca will be affected cause they don't use snapshots or backing stores18:37
keesjdstrand: there isn't exactly an approved approach for chromium yet. it sounds like the "just publish it" approach is the only way to move forward, though.18:37
jdstrandthe other three will likely require me to develop patches (though virtinstall upstream did just last week add the functionality required, so I might be able to just snag it)18:37
jdstrandkees: it would be nice to get that formalized. fwiw, I'd like to see an approval for whatever upstream gives us (like mozilla), with only the minimal changes to debian/ allowed for making it build on that release18:39
keesjdstrand: agreed, I'll ping about it.18:39
jdstrandkees: it has been kinda weird lately cause chromium has needed NEW packages like gyp and libvdx to even build it18:40
keesjdstrand: what was the status of upstream giving us access to pre-release code?18:40
keesyay18:40
jdstrandkees: but, only chromium needs those. another weird one is chromium-codecs-ffmpeg which needs to be part of the SRU-policy because it needs to move in step with chromium18:41
jdstrandkees: total silence18:41
jdstrandkees: nothing uses chromium-codecs-ffmpeg except chromium, so that shouldn't be a huge deal (but I wonder why we can't just put these tarballs inside chromium if *nothing* is using them)18:42
jdstrandnothing *else* that is18:42
keesyeah :(18:43
jdstrandkees: well, let me clarify my 'total silence' comment18:43
jdstrandkees: fta builds daily releases off of upstream code18:43
keesemail sent...18:44
jdstranddue to the silence from upstream, we don't have any information on if the commits are security relevant, the timing of said commits or if the fixes were even in the dailies as compared to their final release18:44
jdstrandso we are pretty much in the dark18:45
jdstrandafaics18:45
keesokay18:45
jdstrandkees: fta may have another perspective18:45
jdstrandanyhoo, that is it from mee18:46
jdstrandme18:46
jdstrandkees: thanks for following up on that :)18:46
keesokidoky. any other issues for the security team? robbiew, nxvl, jjohansen ?18:48
robbiewnope18:48
jjohansennone here18:48
keesokay, thanks everyone!18:52
robbiewthnx kees18:53
Xaphania!seen laura18:57
ubottuI have no seen command18:57
czajkowskihmm18:57
=== daker_ is now known as daker
XaphaniaHellOlAloHallOhayo.. I HI.. SALUT bonjour guten tag good morning coucou ohayo saluté hasta siempre la victoria.19:03
* Xaphania Quentin19:07
=== easter_egg|off is now known as easter_egg
=== lool- is now known as lool-webchat
=== daker_ is now known as daker
Manuelbrshola23:30
Manuelbrsalguien que me pueda ayudar con un paso q me hace falta para formar parte de ubuntu colombian team?23:31
Manuelbrsalguien aqui que pueda brindarme ayuda?23:48

Generated by irclog2html.py 2.7 by Marius Gedminas - find it at mg.pov.lt!