JHOSMANHello mhall119  =)14:32
mhall119hey JHOSMAN14:32
mhall119I got your ping the other day, and your email14:32
JHOSMANmhall119:  Hello, not if you reviewed your email about an issue that you have notified two months ago.14:33
mhall119JHOSMAN: what we need from you still is a detailed break-down of what that money would be spent on, so how many shirts, the cost per shirt, how much food, the cost of the food, etc14:33
JHOSMANSponsorchip for FlisolBogota14:33
JHOSMANmhall119: When I could give you this information?14:35
mhall119JHOSMAN: you can email it to us all, since you've already made a request through the form14:36
JHOSMANmhall119: ok! =)15:05
JHOSMANmhall119: It is possible that you can give a table of values and quantities of everything?15:05
mhall119JHOSMAN: if I can give it?15:16
JHOSMANYes, but would have to organize this document in a spreadsheet.15:27
mhall119JHOSMAN: we need you to provide this data, we don't know the costs for your shirts and meals15:29
JHOSMANmhall119: I take care of a person to perform this task.15:30
mhall119thanks JHOSMAN15:30
tyhicksThe meeting agenda can be found at:16:32
tyhicks[LINK] https://wiki.ubuntu.com/SecurityTeam/Meeting16:32
tyhicks[TOPIC] Weekly stand-up report16:32
tyhicksjdstrand: you're up16:32
tyhicksmdeslaur: would you mind going and then we'll swing back around to jdstrand?16:37
mdeslaurI'm on community this week16:37
mdeslaurand tomorrow I have patch piloting duties16:37
mdeslaurI'm currently working on tiff and gnupg/libgcrypt updates16:37
mdeslaurand I'll continue down the list, as usual16:37
mdeslaurthat's pretty much it, sbeattie?16:37
sbeattieI'm on bug triage this week16:37
sbeattieI'm finishing up testing apparmor for an upload to vivid today or tomorrow16:38
sbeattieI have some upstream patches to review16:38
sbeattieI also still have gcc testing on my plate16:38
sbeattiethat's the prioroities for me this week.16:39
sbeattietyhicks: you're up.16:39
tyhicksI'm on cve triage this week16:39
tyhicksI focused heavily on landing the libapparmor policy cache API changes into upstream apparmor last week16:40
tyhicksthere are a few pending improvements/fixups needed but all of those patches are out on the list except for one16:40
tyhicksI'm still working on what would be the best approach16:41
tyhicksas for the other work I plan to do this week...16:41
tyhicksReview the initial snappy launcher code16:41
tyhicksRestart work on AppArmor kernel keyring mediation for user data encryption16:41
tyhicksFinish up the patches to fix bug #1430532 and send them out for review16:41
ubottubug 1430532 in AppArmor "libapparmor needs a public function to break a context into a label and mode" [Medium,In progress] https://launchpad.net/bugs/143053216:41
tyhicksand either sarnold or myself need to pick up the python-cryptography MIR (LP: #1430082) this week16:42
ubottuLaunchpad bug 1430082 in python-cryptography (Ubuntu) "[MIR] python-cryptography, python-cffi, pycparser, enum34" [High,New] https://launchpad.net/bugs/143008216:42
tyhickswe'll discuss that later16:42
tyhicksthat's it for me16:42
tyhicksjjohansen: you're up16:42
jjohansenso I have a lot of catching up to do this week, I have all too much email to dig (who am I kidding, skim) through, several patches to review, kernel workflow to catchup on and then back to working on apparmor cleanups16:44
sarnold"undo last week" :)16:44
tyhicksjjohansen: before your vacation, you were working on finishing up fixes for bug #1431717 and bug #143054616:45
ubottubug 1431717 in AppArmor "audit qualifier does not become effective" [Undecided,Confirmed] https://launchpad.net/bugs/143171716:45
ubottubug 1430546 in linux (Ubuntu) "apparmor kernel BUG kills firefox" [Medium,Triaged] https://launchpad.net/bugs/143054616:45
* jdstrand says hello16:45
tyhicksjjohansen: do you still have work to do on those?16:45
jjohansentyhicks: yep, so I bug #1431717 has its fix checked in, and I just have a few edits to patches to the set of man page updates that fell out of that16:46
ubottubug 1431717 in AppArmor "audit qualifier does not become effective" [Undecided,Confirmed] https://launchpad.net/bugs/143171716:47
tyhicksah, that's right16:47
jjohansenand I need to check back in on  bug #1430546, which I was waiting for testing of a patched kernel on16:47
ubottubug 1430546 in linux (Ubuntu) "apparmor kernel BUG kills firefox" [Medium,Triaged] https://launchpad.net/bugs/143054616:47
tyhicksjjohansen: I see that you're still waiting on testing16:48
tyhicksjjohansen: that's something that I can help with in a day or two if the original reporter doesn't get back to you16:48
* jjohansen too16:48
jjohansenack thanks16:48
jjohansenI think that is it for me, sarnold you're up16:48
tyhicksjjohansen: one last reminder, you were also going to 'Followup with kernel team regarding the bug #1423810 and #1423810 fixes landing'16:49
ubottubug 1423810 in linux-manta (Ubuntu) "apparmor fd_inheritance regression test causes kernel to crash on touch kernel backports" [Medium,In progress] https://launchpad.net/bugs/142381016:49
tyhicks(no comment needed - just throwing it out there since it was in my notes)16:49
tyhickssarnold: go ahead :)16:49
sarnoldI'm in the happy place this week; I'm working on the server-stack automated openstack testing, which is finally feeliung some progress; I think the glance changes in the PPA broke image uploading, so it might even be paying dividends already16:50
sbeattietyhicks: FYI, 1431717 should be fixed in vivid in with the pending apparmor upload16:50
tyhicksoh nice :)16:50
sarnoldthere's also some still-outstanding MIRs to work on, conntrack, python-cryptography, ppc64-diag's dependencies.. I won't have time to get through them all, but I should be able to do one this week and probably progress on more16:51
sarnoldI also saw some SRU fixes requiring testing, I thought some of thos emight be worth working on too16:51
sarnoldI hate seeing fixes go wasted16:52
sarnoldthat's it for me, chrisccoulson?16:52
tyhickssarnold: I'd suggest python-cryptography as the first MIR to get back to16:52
chrisccoulsonThis week, I've got Mozilla updates to do16:52
chrisccoulsonI've also still got some work to do to make future firefox releases (from 38 onwards) build on precise. I have it built successfully using a standalone build of gcc 4.8 now, but it doesn't have the hardening flags atm16:53
tyhicksthat sounds like good progress16:53
chrisccoulsonI got http://bazaar.launchpad.net/~oxide-developers/oxide/oxide.trunk/revision/1017 landed last week too, which fixed the main issues with the browser on arale :)16:54
chrisccoulsonother than that, I'll be focused on bug 1428754, bug  1410996 and bug 142292016:55
tyhickschrisccoulson: is bug #1428754 still on your radar for this week?16:55
ubottubug 1428754 in Oxide "Persist permission request decisions for a session" [High,Triaged] https://launchpad.net/bugs/142875416:55
chrisccoulsonI think that's me done16:55
ubottubug 1410996 in Oxide "Add WebView.mediaAccessPermissionRequested API" [High,In progress] https://launchpad.net/bugs/141099616:55
ubottubug 1422920 in Oxide "Additions to LocationBarController API" [Medium,Triaged] https://launchpad.net/bugs/142292016:55
tyhicksnevermind :)16:55
chrisccoulsontyhicks, yeah :)16:55
tyhicksjdstrand: you're up16:56
jdstrandsorry I was late16:56
jdstrandso, I think sbeattie and I might have miscommunicated slightly on apparmor. I tested it and click-apparmor over the weekend and this morning and just publiched to the archive16:57
sbeattiejdstrand: no worries.16:57
jdstrandI know sbeattie tested previous binaries, but then I uploaded the final one over the weekend16:57
jdstrand(which didn't change his patches, but did need a recompile of course)16:58
tyhickswell that's even better since it takes something off his plate for the week16:58
jdstrandI'm now going to be reviewing mvo's framework policies branch for snappy16:58
jdstrandI have review tools updates for the week16:58
jdstrandand also looking at reviewing mvo's seccomp launcher branch16:58
jdstrandwhich means I'll be preparing seccomp policy16:59
jdstrandI also have an embargoed issue16:59
jdstrandthat's it from me16:59
tyhicksjdstrand: sorry taht I still haven't been able to review the launcher branch - is that something that both of us should do or just one of us?17:00
tyhicks(that was one of the things that I intended to get to this week, too)17:00
jdstrandtyhicks: well, I just didn't want mvo to be blocked on it. at this point I can do it but I'll ask if I need help17:02
tyhicks[TOPIC] Highlighted packages17:04
tyhicksThe Ubuntu Security team will highlight some community-supported packages that might be good candidates for updating and or triaging. If you would like to help Ubuntu and not sure where to start, this is a great way to do so.17:04
tyhicksSee https://wiki.ubuntu.com/SecurityTeam/UpdateProcedures for details and if you have any questions, feel free to ask in #ubuntu-security. To find out other ways of helping out, please see https://wiki.ubuntu.com/SecurityTeam/GettingInvolved.17:04
tyhicks[TOPIC] Miscellaneous and Questions17:06
=== meetingology changed the topic of #ubuntu-meeting to: Miscellaneous and Questions
tyhicksDoes anyone have any other questions or items to discuss?17:06
tyhicksjdstrand, mdeslaur, sbeattie, jjohansen, sarnold, chriscoulson: Thanks!17:07
sbeattietyhicks: thank you!17:07
mdeslaurthanks tyhicks!17:07
jjohansenthanks tyhicks17:08
jdstrandthanks tyhicks! :)17:08
sarnoldthanks tyhicks :)17:08
micahgAs there are no applications scheduled for the DMB meeting, we'll be skipping the meeting this week unless anyone has something to bring up19:07
JHOSMANmhall119: i send the file for your mail! =)22:44

