/srv/irclogs.ubuntu.com/2015/03/23/#ubuntu-meeting.txt

=== dholbach_ is now known as dholbach
=== doko_ is now known as doko
=== MooDoo is now known as MooDooni
=== MooDooni is now known as MooDoo
mdeslaur\o16:35
tyhickshello16:35
jdstrandhi!16:36
tyhicks#startmeeting16:36
meetingologyMeeting started Mon Mar 23 16:36:17 2015 UTC.  The chair is tyhicks. Information about MeetBot at http://wiki.ubuntu.com/meetingology.16:36
meetingologyAvailable commands: action commands idea info link nick16:36
tyhicksThe meeting agenda can be found at:16:36
tyhicks[LINK] https://wiki.ubuntu.com/SecurityTeam/Meeting16:36
tyhicks[TOPIC] Announcements16:36
=== meetingology changed the topic of #ubuntu-meeting to: Announcements
tyhicksArtur Rona (ari-tczew) provided a debdiff for jakarta-taglibs-standard in vivid (LP: #1433365)16:36
ubottuLaunchpad bug 1433365 in jakarta-taglibs-standard (Ubuntu) "Merge jakarta-taglibs-standard 1.1.2-3 (main) from Debian unstable (main)" [Medium,Fix released] https://launchpad.net/bugs/143336516:36
tyhicksArtur's work is very much appreciated and will keep Ubuntu users secure. Great job! :)16:36
tyhicks[TOPIC] Weekly stand-up report16:36
=== meetingology changed the topic of #ubuntu-meeting to: Weekly stand-up report
tyhicksjdstrand: You're up16:36
jdstrandI was happy last week to finally get the frameworks rfc to the snappy list16:37
jdstrandI'll be nailing that down this week16:37
jdstrandalso working with mvo, et al on seccomp in the snappy launcher16:37
jdstrandwe also defined the snappy security yamllast week, so updating docs/trello cards for that16:38
jdstrandbeyond snappy I have one embargoed item16:38
jdstrandmdeslaur: you're up16:38
mdeslaurhey!16:39
mdeslaurI'm on bug triage this week16:39
mdeslaurand I have a few updates that I'm currently testing16:39
mdeslaurI should be publishing them this afternoon or tomorrow morning16:39
mdeslaurafter that, I've got more in the pipeline16:39
mdeslaurthat's about it16:39
mdeslaursbeattie: you're up!16:39
sbeattieI'm on cve triage this week16:39
sbeattieI've got some apparmor patch review to do as well as pulling in fixes to the apparmor package16:40
sbeattieI need to continue testing my gcc-5 pie-on-amd64 packages16:40
sbeattiethat's pretty much it for me16:41
sbeattietyhicks: you're up16:41
tyhicksI'm in the happy place this week16:41
tyhicksWrap up security review of the python-bcrypt MIR (LP: #1427861)16:42
ubottuLaunchpad bug 1427861 in python-bcrypt (Ubuntu) "[MIR] python-bcrypt (b-d of python-django)" [Undecided,New] https://launchpad.net/bugs/142786116:42
tyhicksReview the initial snappy launcher code16:42
tyhicksLand the libapparmor policy cache API changes16:42
tyhicks(a few more patches need to be reviewed but I think they're all from jjohansen and are ones that I can review/ack)16:42
tyhicksRestart work on AppArmor kernel keyring mediation for user data encryption16:43
tyhicksFinish up the patches to fix bug #1430532 and send them out for review16:43
ubottubug 1430532 in AppArmor "libapparmor needs a public function to break a context into a label and mode" [Medium,In progress] https://launchpad.net/bugs/143053216:43
tyhicksEmbargoed item16:43
tyhicksthat's it for me16:44
tyhicksjj is out16:44
tyhickssarnold: you're up16:44
sarnoldI'm on community this week16:45
sarnoldI'm working on the backlog of openstack security fixes, I've made less progress than I had hoped with the serverstack testing framework, but wow is it nice to run a few commands and ahve two dozen machines come into existence and do my bidding16:46
tyhicksnice16:46
sarnoldmy first plan for specifying per-service package sources didn't work out, the updated packages weren't being installed, but beis ner suggested a small change that seems likely to succeed16:46
sarnoldI'm also repsonding to some last-minute MIR questions, it'd be nice to get all the needed ones moved forward for everyone, but that would probably require openstack to behave a bit more friendly for me.16:47
sarnoldthat's it for me, chrisccoulson?16:48
chrisccoulsonHi :)16:48
chrisccoulsonThis week, I plan to finish https://code.launchpad.net/~chrisccoulson/oxide/arale-fixes and get it merged in to trunk. It's running ok at the moment, and appears to fix the crashing. I've also found some future opportunities for optimising the new compositing path too16:49
chrisccoulsonI also plan to make a start on bug 142875416:49
ubottubug 1428754 in Oxide "Persist permission request decisions for a session" [High,Triaged] https://launchpad.net/bugs/142875416:49
chrisccoulsonWhich will mean no more popup every single time you go to Google on the phone16:50
chrisccoulsonAnd it's also needed to unblock https://code.launchpad.net/~zaspire/oxide/web-notifications/+merge/25159816:50
chrisccoulsonI think that's me done16:52
tyhickschrisccoulson: Thanks for taking time out of your weekend to prepare, test, and publish the firefox updates16:54
chrisccoulsonsure, no problem :)16:54
tyhicks:)16:54
tyhicks[TOPIC] Highlighted packages16:55
=== meetingology changed the topic of #ubuntu-meeting to: Highlighted packages
tyhicksThe Ubuntu Security team will highlight some community-supported packages that might be good candidates for updating and or triaging. If you would like to help Ubuntu and not sure where to start, this is a great way to do so.16:55
tyhicksSee https://wiki.ubuntu.com/SecurityTeam/UpdateProcedures for details and if you have any questions, feel free to ask in #ubuntu-security. To find out other ways of helping out, please see https://wiki.ubuntu.com/SecurityTeam/GettingInvolved.16:55
tyhickshttp://people.canonical.com/~ubuntu-security/cve/pkg/pam-pgsql.html16:55
tyhickshttp://people.canonical.com/~ubuntu-security/cve/pkg/libextlib-ruby.html16:55
tyhickshttp://people.canonical.com/~ubuntu-security/cve/pkg/spice-gtk.html16:55
tyhicksDoes anyone have any other questions or items to discuss?16:55
tyhickshttp://people.canonical.com/~ubuntu-security/cve/pkg/smb4k.html16:55
tyhickshttp://people.canonical.com/~ubuntu-security/cve/pkg/nsd3.html16:55
tyhicks[TOPIC] Miscellaneous and Questions16:55
=== meetingology changed the topic of #ubuntu-meeting to: Miscellaneous and Questions
tyhicksjdstrand, mdeslaur, sbeattie, sarnold, chriscoulson: Thanks!16:57
tyhicks#endmeeting16:57
=== meetingology changed the topic of #ubuntu-meeting to: Ubuntu Meeting Grounds | Calendar/Scheduled meetings: http://fridge.ubuntu.com/calendar | Logs: https://wiki.ubuntu.com/MeetingLogs | Meetingology documentation: https://wiki.ubuntu.com/meetingology
meetingologyMeeting ended Mon Mar 23 16:57:40 2015 UTC.16:57
meetingologyMinutes:        http://ubottu.com/meetingology/logs/ubuntu-meeting/2015/ubuntu-meeting.2015-03-23-16.36.moin.txt16:57
tewardtyhicks: #ubuntu-security forwards to -hardened, right...?  (+if on the channel, hence my asking)16:58
sarnoldthanks tyhicks!16:58
sbeattietyhicks: thanks!16:58
tyhicksteward: I'm not sure about that16:59
chrisccoulsontyhicks, oh, I forgot to mention one other thing - I need to get firefox buildable again in 12.04 (since Mozilla bumped the GCC requirement to 4.7)16:59
tyhicksmdeslaur: do you know the answer to teward's question? ^16:59
chrisccoulsonso I'll also be looking at that during this week16:59
tewardtyhicks: i can find out, easy as joining a test client up to freenode and join -security16:59
mdeslaurteward: yes, it forwards16:59
tyhicksteward: I just tried and couldn't join16:59
mdeslaurfor hyste^Horical heasons17:00
tewardtyhicks: I have +Q on so it won't let me join -security, and you and I are already in the target so.. :)17:00
tewardand confirmed with a test client17:00
teward:)17:00
tewardmdeslaur: thanks17:00
tyhickschrisccoulson: ah, right17:00
=== DJones is now known as Guest85183
=== rww is now known as rwwbuntu
=== rwwbuntu is now known as rww

Generated by irclog2html.py 2.7 by Marius Gedminas - find it at mg.pov.lt!