16:36 #startmeeting 16:36 Meeting started Mon Feb 22 16:36:18 2016 UTC. The chair is tyhicks. Information about MeetBot at http://wiki.ubuntu.com/meetingology. 16:36 16:36 Available commands: action commands idea info link nick 16:36 The meeting agenda can be found at: 16:36 [LINK] https://wiki.ubuntu.com/SecurityTeam/Meeting 16:36 [TOPIC] Announcements 16:36 Gianfranco Costamagna (locutusofborg) provided debdiffs for precise-wily for virtualbox-guest-additions-iso and a debdiff for wily for virtualbox-ext-pack (LP: #1540243) 16:36 Launchpad bug 1540243 in virtualbox-guest-additions-iso (Ubuntu Xenial) "SRU virtualbox-ext-pack, virtualbox-guest-additions-iso to match virtualbox versions" [Low,Fix released] https://launchpad.net/bugs/1540243 16:36 Vlad Orlov (monsta) provided debdiffs for precise-xenial for gtk+2.0 (LP: #1540811) 16:36 Launchpad bug 1540811 in gtk+2.0 (Debian) "[GDK] patch - avoid integer overflow when allocating a large block of memory" [Unknown,Confirmed] https://launchpad.net/bugs/1540811 16:36 Thank you for your assistance in keeping Ubuntu users secure! :) 16:36 [TOPIC] Weekly stand-up report 16:36 jdstrand: you're up 16:37 hey 16:37 last week I made come good progress on the review tools and squashfs. I'm hoping to finish that up that week, then move on to snappy skills 16:37 I also have an embargoed issue I need to get to 16:38 mdeslaur: you're up 16:38 I'm testing a cpio update, after that I want to test the new ca-certificates and related package updates in the proposed ppa for releasing this week 16:38 after that, I might start backporting the newer sudo to stable releases to finally fix the time issue 16:38 that's it from me 16:38 sbeattie: you're it 16:39 I'm on community this week 16:39 kernel updates are happening today, I think, and I have an embargoed issue 16:40 I need to finish my thoughts on the pie stuff 16:40 I also have some apparmor tasks to osrt out. 16:40 That's probably it for my week 16:40 tyhicks: you're up 16:42 I'm on bug triage this week 16:42 my focus will be on finishing the AppArmor stacking changes needed for the parser 16:42 I'll also fix the eCryptfs parallel copy file corruption bug (LP: #1543633) 16:42 Launchpad bug 1543633 in eCryptfs "Data corruption during parallel file copying with interruptions" [High,Confirmed] https://launchpad.net/bugs/1543633 16:42 that's it for me 16:42 jjohansen: you're up 16:43 oh, I don't think he's around yet 16:43 sarnold: go ahead 16:44 I'm on cve triage this week 16:45 I'm working on the zfs MIR, will probably finish that today if the cve triage isn't too deep 16:45 I think the next MIR up is fwupd, not sure what's after that but I seem to recall a pretty deep queue 16:46 oh yeah, someone wnated me to skim the new fwupdate code, that ought to be quick 16:46 I'll try to get to an apparmor patch or two along the way 16:46 that's it for me, chrisccoulson? 16:46 I've got Oxide and Thunderbird updates to get out this week 16:48 I'll also be spending some time working through convergence-related tasks. I put together a list of bugs last week (https://blueprints.launchpad.net/oxide/+spec/converged-device-support) 16:48 Other than that, I've got some embargoed stuff 16:49 That's me done 16:50 thanks! 16:51 [TOPIC] Highlighted packages 16:51 The Ubuntu Security team will highlight some community-supported packages that might be good candidates for updating and or triaging. If you would like to help Ubuntu and not sure where to start, this is a great way to do so. 16:51 See https://wiki.ubuntu.com/SecurityTeam/UpdateProcedures for details and if you have any questions, feel free to ask in #ubuntu-security. To find out other ways of helping out, please see https://wiki.ubuntu.com/SecurityTeam/GettingInvolved. 16:51 http://people.canonical.com/~ubuntu-security/cve/pkg/python-rsa.html 16:51 http://people.canonical.com/~ubuntu-security/cve/pkg/castor.html 16:51 http://people.canonical.com/~ubuntu-security/cve/pkg/xorg-server-lts-utopic.html 16:51 http://people.canonical.com/~ubuntu-security/cve/pkg/libapache-poi-java.html 16:51 http://people.canonical.com/~ubuntu-security/cve/pkg/fso-usaged.html 16:51 [TOPIC] Miscellaneous and Questions 16:51 Does anyone have any other questions or items to discuss? 16:52 "Pure Python RSA implementation" .. yikes 16:54 :) 16:54 jdstrand, mdeslaur, sbeattie, jjohansen, sarnold, ChrisCoulson: Thanks! 16:54 #endmeeting