16:38 <tyhicks> #startmeeting 16:38 <meetingology> Meeting started Mon Aug 28 16:38:23 2017 UTC. The chair is tyhicks. Information about MeetBot at http://wiki.ubuntu.com/meetingology. 16:38 <meetingology> 16:38 <meetingology> Available commands: action commands idea info link nick 16:38 <tyhicks> The meeting agenda can be found at: 16:38 <tyhicks> [LINK] https://wiki.ubuntu.com/SecurityTeam/Meeting 16:38 <tyhicks> [TOPIC] Announcements 16:39 <tyhicks> Simon Quigley (tsimonq2) provided a debdiff for trusty for kdepimlibs (LP: #1630700) 16:39 <tyhicks> Simon Quigley (tsimonq2) provided a debdiff for xenial for kcoreaddons (LP: #1630700) 16:39 <tyhicks> Simon Quigley (tsimonq2) provided debdiffs for trusty-zesty for varnish (LP: #1708354) 16:39 <tyhicks> Thank you for your assistance in keeping Ubuntu users secure! :) 16:39 <tyhicks> [TOPIC] Weekly stand-up report 16:39 <sbeattie> I think I'm up... 16:39 <tyhicks> sbeattie: Marc and Jamie must coordinate vacation because, for the first time I can remember, you're up first :) 16:39 <sbeattie> heh 16:40 <sbeattie> I'm on community this week 16:40 <sbeattie> I have kernel USNs to publish today, plus the usual kernel cve triage to sort 16:40 <sbeattie> There's an embargoed issue to investigate 16:41 <sbeattie> I'll be focusing on updates while Marc is on vacation 16:41 <tyhicks> thanks for doing that 16:41 <sbeattie> I do have some QRT and apparmor bugs to investigate... 16:41 <sbeattie> and that will likely consume my week 16:41 <sbeattie> tyhicks: you're up 16:42 <tyhicks> I'm on bug triage this week although it is a short week for me and I'll need to trade some time with someone 16:42 <tyhicks> I'm off wed-fri 16:43 <sarnold> I can grab bug triage, I kinda like that one (but don't spread that around) 16:43 <tyhicks> heh 16:43 <tyhicks> good thing we're in this empty #ubuntu-meeting-2 channel ;) 16:43 <tyhicks> I hope to have some back-and-forth to do on my libseccomp PR for improved logging 16:43 <sarnold> :) 16:44 <tyhicks> I might take a crack at preparing the libseccomp-golang changes but I'm hesitant to do so until the libseccomp design is agreed upon 16:44 <tyhicks> so I'll probably put my focus on fscrypt this week 16:44 <tyhicks> that's about all I'll get to this week 16:44 <tyhicks> jj is out today 16:44 <tyhicks> sarnold: you're up 16:44 <sarnold> does jj know that? 16:45 <tyhicks> oh 16:45 <tyhicks> jjohansen: you're up 16:45 <jjohansen> I am going to be looking into some bugs, bug 1713103 is first up, cboltz reported a couple parser failures 16:46 <jjohansen> I have a few more regression test updates to do 16:46 <jjohansen> and I am going to be doing some prep for plumbers and LSS 16:47 <jjohansen> oh, and I still have some testing of LSM stacking todo 16:47 <jjohansen> thats it for /me sarnold you're up 16:48 <sarnold> I'm in the happy place this week; first up is deciding on the spice-html5 package, which is mostly javascript, and which I mostly can't judge. ratliff and I discussed linting the thing and seeing what comes back, which seemed like a good approach to me 16:49 <sarnold> I don't recall what's after that on the list but that probably won't matter until tomorrow anyway :) 16:49 <sarnold> that's it for me, is it .. ratliff next? 16:49 <ratliff> chriscoulson hasn't joined the channel so I'll go 16:49 <ratliff> I'm on CVE triage this week. 16:50 <ratliff> I am migrating the KPI tasks to lillypilly and wrapping up that item 16:50 <ratliff> I have a few internal items to focus on this week. 16:50 <ratliff> then I'll look at UC15 updates 16:50 <ratliff> your turn, leosilva 16:51 <leosilva> I'm in the happy place this week :) 16:51 <leosilva> I have some publishment to do 16:51 <leosilva> and I'll pick some pkgs to update as well hunting more of them for the same destiny 16:51 <leosilva> that's all 16:51 <leosilva> tyhicks: it's back to you 16:52 <tyhicks> thanks 16:52 <tyhicks> [TOPIC] Highlighted packages 16:52 <tyhicks> The Ubuntu Security team will highlight some community-supported packages that might be good candidates for updating and or triaging. If you would like to help Ubuntu and not sure where to start, this is a great way to do so. 16:52 <tyhicks> See https://wiki.ubuntu.com/SecurityTeam/UpdateProcedures for details and if you have any questions, feel free to ask in #ubuntu-security. To find out other ways of helping out, please see https://wiki.ubuntu.com/SecurityTeam/GettingInvolved. 16:52 <tyhicks> http://people.canonical.com/~ubuntu-security/cve/pkg/lib3ds.html 16:52 <tyhicks> http://people.canonical.com/~ubuntu-security/cve/pkg/lua50.html 16:52 <tyhicks> [TOPIC] Miscellaneous and Questions 16:52 <tyhicks> http://people.canonical.com/~ubuntu-security/cve/pkg/yaml-cpp.html 16:52 <tyhicks> Does anyone have any other questions or items to discuss? 16:52 <tyhicks> http://people.canonical.com/~ubuntu-security/cve/pkg/flightgear.html 16:52 <tyhicks> http://people.canonical.com/~ubuntu-security/cve/pkg/ganglia.html 16:53 <tyhicks> tsimonq2: hey there! before you joined this -2 channel, we thanked you for the kdepimlibs, kcoreaddons, and varnish updates 16:53 <tyhicks> tsimonq2: big thanks, once again :) 16:54 <ratliff> +1, thank you tsimonq2! 16:54 <tsimonq2> You're welcome, I have some more things in store :) 16:54 <tyhicks> great! 16:55 <tyhicks> sbeattie, jjohansen, sarnold, ratliff, leosilva: Thanks! 16:55 <tyhicks> #endmeeting