* sbeattie waves16:36
Meeting started Mon Apr 13 16:37:03 2015 UTC.  The chair is tyhicks.
tyhicksThe meeting agenda can be found at:16:37
tyhicks[LINK] https://wiki.ubuntu.com/SecurityTeam/Meeting16:37
tyhicks[TOPIC] Announcements16:37
tyhicksJohan Van de Wauw (johanvdw) provided debdiffs for trusty-vivid for freexl (LP: #1437087)16:38
ubottuLaunchpad bug 1437087 in freexl (Ubuntu) "Multiple vulnerabilities in freexl 1.0.0" [Undecided,Fix released] https://launchpad.net/bugs/143708716:38
tyhicksThomas Ward (teward) provided a debdiff for utopic for wireshark (LP: #1440202)16:38
ubottuLaunchpad bug 1440202 in wireshark (Ubuntu Trusty) "[Security] April 3 2015 - 6 New CVEs affect Wireshark" [Medium,Confirmed] https://launchpad.net/bugs/144020216:38
tyhicksStefan Bader (smb) provided debdiffs for trusty and utopic for xen16:38
tyhicksYour work is very much appreciated and will keep Ubuntu users secure. Great job! :)16:38
tyhicks[TOPIC] Weekly stand-up report16:38
tyhicksjdstrand: I think you're busy right now so we're going to skip ahead to mdeslaur16:39
mdeslaurI'm on triage this week16:39
mdeslaurand I have a half-day off on wednesay16:39
mdeslaurI just published some tasty and delicious ntp updates16:39
mdeslaurand I'm currently testing a bunch of libx11-related updates16:39
mdeslaurI have an embargoed issue to release tomorrow also16:40
mdeslaurand a few more things to work on after that16:40
mdeslaurthat's about it, sbeattie, you're up16:40
sbeattieI'm in the happy place this week16:40
sbeattieI'm trying to review apparmor patches and pull things together for a trusty SRU and 2.9.2 release (to base the python utils in the SRU off of)16:41
tyhicksvery nice16:42
sbeattieI've also again got gcc pie on my plate16:42
sbeattiethat's the plan for this week. tyhicks?16:42
tyhickssbeattie: all that is left for the gcc pie work is to benchmark a number of programs before the next dev release archive opens?16:43
sbeattieI still want to do a bit more test builds against it to look for build breakages.16:44
sbeattie(as well as the benchmarking, that is)16:44
tyhickssbeattie: ok - those are two pretty important items so let me know if anything unexpected pops up this week16:45
tyhickssbeattie: we'll try to find someone else to handle any distractions :)16:46
tyhicksI'm handling the community role this week16:46
tyhicksmy planned work looks quite a bit like last week16:47
tyhicksVivid systemd/sbuild/schroot bugs (LP: #1427264) (LP: #1438942)16:47
ubottuLaunchpad bug 1427264 in click (Ubuntu) "using ecryptfs, creating frameworks fail to bind mount issues" [High,Triaged] https://launchpad.net/bugs/142726416:47
ubottuLaunchpad bug 1438942 in schroot (Ubuntu) "Host's /dev/shm is mounted over when entering 14.10 and older sbuild schroots" [High,Confirmed] https://launchpad.net/bugs/143894216:47
tyhicksRestart work on AppArmor kernel keyring mediation for user data encryption16:47
tyhicksSend out the patches to fix bug #143053216:47
ubottubug 1430532 in AppArmor "libapparmor needs a public function to break a context into a label and mode" [Medium,In progress] https://launchpad.net/bugs/143053216:47
tyhicksI worked on those ^ patches yesterday and I hope to send them out shortly16:47
tyhicksthat's it for me16:48
tyhicksjjohansen: you're up16:48
jdstrandtyhicks: fyi, I can give an update16:48
tyhicksjjohansen: hang on a sec16:48
tyhicksjdstrand: go ahead :)16:49
jdstrandI'm sprinting with the ubuntu core team this week16:49
jdstrandfocusing on snappy, specifically seccomp and review tools16:49
jdstrandI think that is it from me16:49
tyhicksjdstrand: thanks! no need to stick around here - get back to the sprint :)16:50
tyhicksjjohansen: go ahead16:50
jdstrandhehe, thanks! :)16:50
jjohansenI'll be getting back to apparmor upstream cleanup again this week. I also have some stuff to do to get ready for the monthly apparmor meeting tomorrow, and an embargoed issue16:51
jjohansenthat is it from me sarnold you're up16:53
sarnoldI'm on bug triage this week; I'm working on the python-cryptography MIR; perhaps the conntrac MIR, perhaps the outstanding openstack update tests. I may also do some smallish apparmor patch reviews as focus/attention span permits16:53
sarnoldthat's it for me, chrisccoulson?16:54
chrisccoulsonI've got Oxide updates to do this week. I'll also be handling an embargoed issue16:54
chrisccoulsonI'm going to spend some time getting Firefox on precise in shape, ready for the next release in a few weeks16:55
chrisccoulsonother than that, I'll be working though Oxide bugs as usual16:55
tyhickschrisccoulson: have you had a chance to get FF building in precise yet? (I don't think you've had much time to work on it)16:56
chrisccoulsontyhicks, I've got it building fine, but without the hardening flags (hardening-wrapper doesn't work, as the new compiler is installed in /usr/lib/gcc-mozilla/bin/g++)16:56
tyhickssounds like nice progress :)16:57
tyhicks[TOPIC] Highlighted packages16:57
=== meetingology changed the topic of #ubuntu-meeting to: Highlighted packages
tyhicksThe Ubuntu Security team will highlight some community-supported packages that might be good candidates for updating and or triaging. If you would like to help Ubuntu and not sure where to start, this is a great way to do so.16:57
tyhicksSee https://wiki.ubuntu.com/SecurityTeam/UpdateProcedures for details and if you have any questions, feel free to ask in #ubuntu-security. To find out other ways of helping out, please see https://wiki.ubuntu.com/SecurityTeam/GettingInvolved.16:58
tyhicks[TOPIC] Miscellaneous and Questions16:58
=== meetingology changed the topic of #ubuntu-meeting to: Miscellaneous and Questions
tyhicksDoes anyone have any other questions or items to discuss?16:58
tyhicksmdeslaur, sbeattie, jjohansen, sarnold, ChrisCoulson: Thanks!17:00
Meeting ended Mon Apr 13 17:00:11 2015 UTC.
meetingologyMinutes:        http://ubottu.com/meetingology/logs/ubuntu-meeting/2015/ubuntu-meeting.2015-04-13-16.37.moin.txt17:00
jjohansenthanks tyhicks17:00
mdeslaurthanks tyhicks!17:00
sbeattietyhicks: thanks17:00
sarnoldthanks tyhicks!17:00
twilerAnyone there?20:50
PaulW2Uhello twiler, were you looking for anything in particular?21:03

