== Meeting information == * #ubuntu-meeting Meeting, 18 Sep at 16:32 — 16:50 UTC * Full logs at [[http://ubottu.com/meetingology/logs/ubuntu-meeting/2017/ubuntu-meeting.2017-09-18-16.32.log.html]] == Meeting summary == ''LINK:'' https://wiki.ubuntu.com/SecurityTeam/Meeting === Announcements === The discussion about "Announcements" started at 16:32. === Weekly stand-up report === The discussion about "Weekly stand-up report" started at 16:32. === Highlighted packages === The discussion about "Highlighted packages" started at 16:47. * ''LINK:'' https://people.canonical.com/~ubuntu-security/cve/pkg/festival.html * ''LINK:'' https://people.canonical.com/~ubuntu-security/cve/pkg/torbrowser-launcher.html * ''LINK:'' https://people.canonical.com/~ubuntu-security/cve/pkg/gosa.html * ''LINK:'' https://people.canonical.com/~ubuntu-security/cve/pkg/thrift-compiler.html * ''LINK:'' https://people.canonical.com/~ubuntu-security/cve/pkg/ceph-deploy.html === Miscellaneous and Questions === The discussion about "Miscellaneous and Questions" started at 16:48. == Vote results == == Done items == * (none) == People present (lines said) == * tyhicks (32) * sbeattie (8) * chrisccoulson (7) * jdstrand (6) * mdeslaur (5) * ratliff (5) * jjohansen (5) * sarnold (4) * leosilva (3) * meetingology (3) * ubottu (1) == Full Log == 16:32 #startmeeting 16:32 Meeting started Mon Sep 18 16:32:13 2017 UTC. The chair is tyhicks. Information about MeetBot at http://wiki.ubuntu.com/meetingology. 16:32 16:32 Available commands: action commands idea info link nick 16:32 The meeting agenda can be found at: 16:32 [LINK] https://wiki.ubuntu.com/SecurityTeam/Meeting 16:32 [TOPIC] Announcements 16:32 Ismail Belkacim provided a debdiff for xenial for phpldapadmin (LP: #1701731) 16:32 Launchpad bug 1701731 in phpldapadmin (Ubuntu) "phpLDAPadmin <= 1.2.3 'entry_chooser.php' Multiple Cross-Site Scripting" [Undecided,Triaged] https://launchpad.net/bugs/1701731 16:32 Thank you for your assistance in keeping Ubuntu users secure! :) 16:32 [TOPIC] Weekly stand-up report 16:32 jdstrand: you're up 16:32 hey 16:32 This week I plan to: 16:32 * finish the reviews surrounding snapd layouts feature PR reviews (PR 3621) 16:32 * get back to investigating device cgroup issues in snapd 16:33 * start next steps of uid/gid work in snapd 16:33 that's it for me. mdeslaur, you're up 16:33 I'm on triage this week 16:33 I'm working on apache updates 16:33 and I'm about to publish a bind9 regression fix that also contains new dnssec keys 16:33 I'll be picking up something else from the list after that 16:33 that's it, sbeattie, you're up 16:33 I'm in the happy place this week 16:33 oh, good idea bundling the two 16:34 yeah, that's a nice one 16:34 I'm working on publishing kernel USNs, as they went out this morning. 16:34 I'm also working on libxml2 updates 16:35 I'll pick up another one or two updates this week 16:35 I need to do a bit of sprint prep 16:35 and I have some apparmor reviews that have been languishing. 16:35 that's it for me. tyhicks? 16:36 I'm in the happy place this week 16:36 I just finished addressing (and retesting) feedback items that came up in my libseccomp PR 16:37 I'll be updating the PR shortly 16:37 I'm also going to prepare a very minimal libseccomp upload for artful 16:37 I have some Linux Security Summit followups 16:37 need to finish packaging/testing fscrypt 0.2.1 16:37 I'll likely have some Rally prep 16:37 and I have an embargoed issue 16:37 that's it for me 16:37 jjohansen: you're up 16:38 so I have to do a few followup items from hallway track discussions, get some pointers to things posted etc. 16:39 I have a bit of prep to do for the upcoming Ralley 16:39 I have a revision of the LSM stacking patches to get ready for the kt 16:40 and then its back to working on the revision of apparmor unix socket mediation so we can get it into the next pull request 16:40 thats it for me, sarnold you're up 16:41 I'm on community this week; I own john some apparmor patch reviews, then return to the python-pyelftools MIR, then rally prep 16:41 s/own/owe/ 16:41 I'll probably start another MIR this week so I'd appreciate a new top priority MIR pointer 16:41 that's it for me, chrisccoulson? 16:42 I've got firefox to update this week, although I'm still working through some issues with that 16:42 last week I had to spend quite a bit of time making the unity menubar patch work again, which is quite neglected now that I'm not using unity 16:43 I've got a trusty build failure to fix, which I think I've figured out just now 16:44 And there's an issue with safe browsing to figure out too (it doesn't work in our builds since mozilla switched to the new API) 16:44 Other than that, I've got chromium to test and publish 16:44 And no doubt I'll be spending more time updating rust and pulling hair out 16:44 that's me done 16:44 I'm in the happy place this week. 16:45 I will spend some time doing default install audits 16:45 I want to pull some images from the kpis to put into the weekly reports, so I will spend some time there and on other technical documentation tasks, and organizational tasks. 16:46 leosilva: you are up next 16:46 I'm bug triage this week. 16:46 I get some updates to do and will keep hunting them during this week. 16:46 that is for me, tyhicks , it's back to you 16:47 thanks 16:47 [TOPIC] Highlighted packages 16:47 The Ubuntu Security team will highlight some community-supported packages that might be good candidates for updating and or triaging. If you would like to help Ubuntu and not sure where to start, this is a great way to do so. 16:47 See https://wiki.ubuntu.com/SecurityTeam/UpdateProcedures for details and if you have any questions, feel free to ask in #ubuntu-security. To find out other ways of helping out, please see https://wiki.ubuntu.com/SecurityTeam/GettingInvolved. 16:47 https://people.canonical.com/~ubuntu-security/cve/pkg/festival.html 16:47 https://people.canonical.com/~ubuntu-security/cve/pkg/torbrowser-launcher.html 16:47 https://people.canonical.com/~ubuntu-security/cve/pkg/gosa.html 16:47 https://people.canonical.com/~ubuntu-security/cve/pkg/thrift-compiler.html 16:47 https://people.canonical.com/~ubuntu-security/cve/pkg/ceph-deploy.html 16:48 [TOPIC] Miscellaneous and Questions 16:48 Does anyone have any other questions or items to discuss? 16:50 jdstrand, mdeslaur, sbeattie, jjohansen, sarnold, ChrisCoulson, ratliff, leosilva: Thanks! 16:50 thank you, tyhicks! 16:50 #endmeeting Generated by MeetBot 0.1.5 (http://wiki.ubuntu.com/meetingology)