/srv/irclogs.ubuntu.com/2024/06/17/#ubuntu-security.txt

=== chris14_ is now known as chris14
=== cpaelzer_ is now known as cpaelzer
tsimonq2Hi, I'm thinking we might want the fix for https://bugs.launchpad.net/ubuntu/noble/+source/plasma-workspace/+bug/2067742 in noble-security.15:54
-ubottu:#ubuntu-security- Launchpad bug 2067742 in plasma-workspace (Ubuntu Noble) "[SRU] CVE-2024-36041 Fix ksmserver: Unauthorized users can access session manager" [Undecided, New]15:54
tsimonq2CVE-2024-3604115:55
-ubottu:#ubuntu-security- ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided. <https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2024-36041>15:55
tsimonq2Thoughts?15:55
ahasenackgeorgiag: hi, apparmor question. If I have a profile loaded into the kernel already, let's say, called containers-default-0.57.4. And a bunch of containers are running already, and confined by it16:47
ahasenackwhat happens if I replace that profile, i.e., load it again into the kernel, same name, different contents? That will dynamically apply to the containers that are already running and confined by it, right?16:48
georgiagahasenack: right, apparmor does support live replacement of policy17:04
tewardtsimonq2: i think that's a prime security update candidate, but not sure what others think - mdeslaur among others, thoughts?17:09
mdeslaur_tsimonq2, teward yeah, that should be fixed in all our stable releases...providing debdiffs and subscribing ubuntu-security-sponsors would be the way forward (it's in universe)17:15
tewardtsimonq2: looks like you got voluntold to provide diffs xD17:18
UnivrslSuprBoxDid someone accidentally reverse the ordering on https://ubuntu.com/security/notices? USN-1-1 is first in the list22:15
tsimonq2mdeslaur_: https://bugs.launchpad.net/ubuntu/noble/+source/plasma-workspace/+bug/2067742 here you are :)22:38
-ubottu:#ubuntu-security- Launchpad bug 2067742 in plasma-workspace (Ubuntu Noble) "[SRU] CVE-2024-36041 Fix ksmserver: Unauthorized users can access session manager" [High, In Progress]22:38
tsimonq2Test builds are going now in https://launchpad.net/~tsimonq2/+archive/ubuntu/cve-2024-36041/+packages22:38
-ubottu:#ubuntu-security- ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided. <https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2024-36041>22:38
mdeslaur_tsimonq2: w00t23:45

Generated by irclog2html.py 2.7 by Marius Gedminas - find it at mg.pov.lt!