16:32 #startmeeting 16:32 Meeting started Mon Jun 17 16:32:56 2013 UTC. The chair is jdstrand. Information about MeetBot at http://wiki.ubuntu.com/meetingology. 16:32 16:32 Available commands: #accept #accepted #action #agree #agreed #chair #commands #endmeeting #endvote #halp #help #idea #info #link #lurk #meetingname #meetingtopic #nick #progress #rejected #replay #restrictlogs #save #startmeeting #subtopic #topic #unchair #undo #unlurk #vote #voters #votesrequired 16:32 The meeting agenda can be found at: 16:33 [LINK] https://wiki.ubuntu.com/SecurityTeam/Meeting 16:33 [TOPIC] Announcements 16:33 Stefan Bader (smb) provided debdiffs for precise-raring for xen. Your work is very much appreciated and will keep Ubuntu users secure. Thanks! 16:33 [TOPIC] Weekly stand-up report 16:33 hi 16:33 I'll go first 16:34 I'm on triage this week 16:34 I will finish the preliminary install audit of the phablet image this week 16:34 I have some pending updates 16:35 and need to review sbeattie's deliverables for the month and plan for getting them finished since he is on holiday 16:35 mdeslaur: you're up 16:35 I'm on community this week 16:35 am currently testing an embargoed issue 16:35 and will write a test for libraw 16:36 will go down the list of updates after that 16:36 that's pretty much it 16:36 uh...who's usually after steve... tyhicks? 16:36 yep 16:37 I'm currently drafting an email to the apparmor list to push the dbus syntax discussions along 16:37 I hope that we can come to a decision on that and I can make the parser changes for that this week 16:38 * sarnold dons asbestos .. 16:39 so 16:39 with sbeattie out, I wonder if we can actually take a decision 16:39 I'll also be going through my todo list of trivial things that needs to be fixed/improved in the dbus and apparmor packages as we get closer to upstreaming those and sticking them in the archive 16:39 jdstrand: I expected more people to chime into your question on proposal 3 vs 4 16:40 me too :\ 16:40 jdstrand: but, I feel like there's still a lean towards 3 16:40 which is sbeattie's proposal 16:41 That's it for me 16:41 jjohansen: you're up 16:41 because that didn't happen and steve is on vacation, I don't think we can take a decision and complete that work item 16:41 wait 16:41 ah 16:41 sorry 16:41 before we get to jjohansen 16:41 jjohansen: opinion? ^ 16:42 jdstrand: well likely not, but we will see how things go. I don't think steve cares so much about 3 vs 4 16:42 huh, 4 seems so radically different I would think there would be an opinion 16:43 but if we are leaning towards 3 and since it is his proposal modified, maybe 16:43 but I don't want to stall out for weeks either 16:43 my feeling is that as upstream, we shouldn't take the decision 16:43 jdstrand: don't worry I can throw enough fuel on the fire 16:43 jjohansen: I'm afraid of said fuel :P 16:44 my feeling is that as upstream, we shouldn't take the decision without steve 16:44 but, for Ubuntu I think we should revise our stance on pushing a syntax that may change 16:45 I think that we will just have to push something that may change 16:45 but lets get it to where it likely won't 16:45 in others words, let's get as far as we can on the syntax as we can without steve (like tyhicks said), then push that into the archive (or at least the ppa) so that these code bits are in before feature freeze and getting some testing 16:46 I think that makes sense 16:46 then when he gets back, we can see what he objects to (if anything), then adjust before committing upstream. then after committing to upstream, do another upload to ubuntu 16:47 that's reasonable 16:47 mdeslaur, jjohansen: what do you think? 16:48 jdstrand: I think its the only thing we can reasonable do given the circumstance 16:48 I didn't follow what the issue was, so I have no current opinion 16:48 ok, then let's plan on that 16:48 tyhicks: thanks 16:48 jjohansen: you're up 16:48 I'll be working on backporting apparmor for the phablet kernels, an email to push the syntax discussion along (or at least ignite the arguing again), hopefully release 2.8.2 and then back to working ipc 16:49 s/working/working on/ 16:49 * jjohansen just wishes it was all working 16:51 \o/ phablet kernels 16:52 thats it for me sarnold your up 16:53 I'm in my happy place this week, though I've got some leftover packages from community to finish: stunnel4 (I want another two manual tests before shipping) and ruby-openid (no idea how to test, asking ckuerst for ideas..) 16:54 the patch for ruby-openid looked simpled enough, it's probably fine even without a test, but just 'it loads' is a little unsatisfying. 16:55 I'm looking forward t othrowing rocks at hornets's nests^W^W^W^W the upcoming dbus responses... I'm mostly happy with #3 but want to make sure that we're not missing something better. 16:55 I'm hopeful for some patch review from jjohansen or tyhicks this week, but if not, I'll pick up an update 16:56 I think that's it for me; chrisccoulson, you're up :) 16:56 w00t 16:57 so, last week we got a flash update, and i did some more work on our chromium API 16:57 i've scheduled a meeting tomorrow afternoon to discuss that btw :) 16:57 i shall be doing more work on that this week, and we'll likely get chromium published too (yay!) 16:57 sarnold: regarding options against #3-- not to worry, I'll be happy to shoot those down too 16:57 sarnold: :P (j/k ;) 16:57 jdstrand: woo :) 16:58 * jdstrand hugs sarnold 16:58 chrisccoulson: oh man, that's awesome. :) 16:58 chrisccoulson: chromium updates! /me rubs his eyes 16:58 also, i'll get builds for next weeks firefox update before the end of the week 16:58 * jdstrand hugs chrisccoulson too :) 16:58 so it's going to be a fun end to the week ;) 16:58 thanks :) 16:58 i think that's me done 16:59 [TOPIC] Highlighted packages 16:59 The Ubuntu Security team will highlight some community-supported packages that might be good candidates for updating and or triaging. If you would like to help Ubuntu and not sure where to start, this is a great way to do so. 16:59 See https://wiki.ubuntu.com/SecurityTeam/UpdateProcedures for details and if you have any questions, feel free to ask in #ubuntu-security. To find out other ways of helping out, please see https://wiki.ubuntu.com/SecurityTeam/GettingInvolved. 16:59 http://people.canonical.com/~ubuntu-security/cve/pkg/lib3ds.html 16:59 http://people.canonical.com/~ubuntu-security/cve/pkg/tryton-server.html 16:59 http://people.canonical.com/~ubuntu-security/cve/pkg/libphp-jpgraph.html 16:59 http://people.canonical.com/~ubuntu-security/cve/pkg/osc.html 17:00 http://people.canonical.com/~ubuntu-security/cve/pkg/magics++.html 17:00 [TOPIC] Miscellaneous and Questions 17:00 Does anyone have any other questions or items to discuss? 17:05 mdeslaur, tyhicks, jjohansen, sarnold, chrisccoulson: thanks! 17:05 #endmeeting