=== JanC is now known as Guest58454 === JanC_ is now known as JanC [16:30] \o [16:30] hello [16:30] #startmeeting [16:30] Meeting started Mon Oct 2 16:30:57 2017 UTC. The chair is tyhicks. Information about MeetBot at http://wiki.ubuntu.com/meetingology. [16:30] Available commands: action commands idea info link nick [16:31] The meeting agenda can be found at: [16:31] [LINK] https://wiki.ubuntu.com/SecurityTeam/Meeting [16:31] [TOPIC] Announcements === meetingology changed the topic of #ubuntu-meeting to: Announcements [16:31] Simon Quigley (tsimonq2) provided debdiffs for trusty-zesty for jython (LP: #1714728) [16:31] Launchpad bug 1714728 in jython (Ubuntu Zesty) "[CVEs] Creates executables class files with wrong permissions, Unsafe deserialization leads to code execution" [High,Fix released] https://launchpad.net/bugs/1714728 [16:31] Thank you for your assistance in keeping Ubuntu users secure! :) [16:31] [TOPIC] Weekly stand-up report === meetingology changed the topic of #ubuntu-meeting to: Weekly stand-up report [16:31] jdstrand: you're up [16:31] hi [16:31] This week I plan to work on: [16:31] * PR reviews for layouts (snappy team), per user mounts (desktop team) and other PRs as needed [16:31] * continue uid/gid work [16:31] that's it from me [16:31] * prepare for sprint [16:32] mdeslaur: you're up [16:33] I'm on community this week... [16:33] just published a few updates [16:33] I have to see what else to work on [16:33] that's about it, sbeattie, you're up [16:33] I'm on bug triage this week [16:34] I have some tasks from the sprint to finish up: finishing some conversions from bzr to git, and some other process things to look at. [16:34] I'm working on a perl update, and will look at other updates for this week [16:35] will have the usual kernel triage to do [16:35] that's it for me. tyhicks? [16:35] I'm on CVE triage [16:36] I may try to make some changes to the CVE triage utilities to match a new workflow that we identified/discussed at the rally last week [16:36] oh I forget one: [16:36] I'm about to test my new fscrypt package that contains the pam module and other new work [16:36] * miscellaneous policy updates based on last week's sprint feedback [16:37] I need to work on a one-off CVE reporting script [16:37] I'll finalize and prepare a PR against snapd for dynamic seccomp logging features [16:37] I think that's it [16:37] jjohansen: you're up [16:38] well I am working on the 4.15 pull request, so that is type splitting and unix domain sockets revisions [16:39] but I am also going to spend some time helping jdstrand with some sprint prep (a demo) [16:40] oh, am I demo'ing that? [16:40] I also need to spend some time reviewing mjg's patches, get the latest revision of the LSM stacking patches to the kt, and clean up said LSM stacking patches and kick them back to Casey for his feedback [16:40] I thought I was going to help you get a demo together for someone to demo :P [16:41] jdstrand: uh well that is what I thought was going to happen, /me certainly isn't [16:41] that can be discussed elsewhere [16:41] okay, the /me revises to help jdstrand get a demo together for some brave soul to demo [16:42] thats it for /me, sarnold isn't around today so back to you tyhicks [16:42] chrisccoulson: you're up [16:43] I've got firefox and chromium updates to test and publish, as well as a thunderbird update to do [16:43] I need to get cargo updated to 0.20 - hoping that will go ok [16:43] and then I'll be working on the apparmor audit change we discussed last week [16:44] oh, I need to prepare a mock up of the start page for will, but that shouldn't take long [16:44] that's me done [16:44] fingers crossed my laptop doesn't die :) [16:44] I'm in the happy place this week. [16:44] I will complete the release audits [16:45] I have a high priority internal task and a few tasks to complete as part of sprint prep. [16:45] on to you, leosilva [16:45] I'm in the happy place this week. [16:46] I'll do the usual hunting pkgs to update, as well I have a dnsmasq to try to update (old code it seems, cross fingers( [16:46] that's it from me. [16:46] tyhicks: it's back to you [16:46] thanks [16:46] [TOPIC] Highlighted packages === meetingology changed the topic of #ubuntu-meeting to: Highlighted packages [16:46] The Ubuntu Security team will highlight some community-supported packages that might be good candidates for updating and or triaging. If you would like to help Ubuntu and not sure where to start, this is a great way to do so. [16:46] See https://wiki.ubuntu.com/SecurityTeam/UpdateProcedures for details and if you have any questions, feel free to ask in #ubuntu-security. To find out other ways of helping out, please see https://wiki.ubuntu.com/SecurityTeam/GettingInvolved. [16:46] https://people.canonical.com/~ubuntu-security/cve/pkg/not-yet-commons-ssl.html [16:46] https://people.canonical.com/~ubuntu-security/cve/pkg/blueman.html [16:46] https://people.canonical.com/~ubuntu-security/cve/pkg/pycsw.html [16:46] https://people.canonical.com/~ubuntu-security/cve/pkg/yaml-cpp0.3.html [16:47] https://people.canonical.com/~ubuntu-security/cve/pkg/openttd.html [16:47] [TOPIC] Miscellaneous and Questions === meetingology changed the topic of #ubuntu-meeting to: Miscellaneous and Questions [16:47] Does anyone have any other questions or items to discuss? [16:47] the next meeting will be in two weeks (Oct 16th) [16:48] jdstrand, mdeslaur, sbeattie, jjohansen, ChrisCoulson, ratliff, leosilva: Thanks! [16:48] #endmeeting === meetingology changed the topic of #ubuntu-meeting to: Ubuntu Meeting Grounds: Please leave swords by the door | Calendar/Scheduled meetings: http://fridge.ubuntu.com/calendars | Logs: https://wiki.ubuntu.com/MeetingLogs | Meetingology documentation: https://wiki.ubuntu.com/meetingology [16:48] Meeting ended Mon Oct 2 16:48:22 2017 UTC. [16:48] Minutes: http://ubottu.com/meetingology/logs/ubuntu-meeting/2017/ubuntu-meeting.2017-10-02-16.30.moin.txt [16:48] tyhicks: thanks! [16:48] thanks tyhicks [16:48] thank you tyhicks! [16:48] thanks tyhicks [16:48] tks tyhicks ! [16:52] tyhicks: I guess we should add that I'll be helping jj to my todo list [21:55] tyhicks: Thanks for the ping :D [21:55] blueman is on my radar