16:30 #startmeeting 16:30 Meeting started Mon Aug 29 16:30:56 2016 UTC. The chair is tyhicks. Information about MeetBot at http://wiki.ubuntu.com/meetingology. 16:30 16:30 Available commands: action commands idea info link nick 16:31 The meeting agenda can be found at: 16:31 [LINK] https://wiki.ubuntu.com/SecurityTeam/Meeting 16:31 [TOPIC] Weekly stand-up report 16:31 jdstrand: you're up 16:31 hi 16:31 short week this week (off friday) 16:31 last week had a few unplanned items that caused things to be pushed back a bit: discussed the shared mount for snap implementation, bunch of apparmor-easyprof-ubuntu merges, discussions where others landed the branches in silos 16:31 the apparmor-easyprof-ubuntu silos had yakkety failures in qrt and autopkgtests due to yakkety changes, so I investigated those. The qrt test faillures were due to dropping 13.10 frameworks. autopkgtests were from a click bug that others are working on 16:31 I did finish the lxd-support interface and finished working with the desktop team on browser policy. This resulted in several additional cards being added for the review tools. Those cards are almost done and hopefully I'll finish them today 16:32 this week I'm going to work on the high priority policy bugs PR, high priority interface PR reviews (eg, udisks2/pluggable-storage, docker, fwupd, systemd interaction and serial-port) 16:32 now that the shared mount for snaps is worked out, I'll explore using 'ip netns exec' with strict mode snaps 16:32 that's it from me 16:32 sbeattie: go ahead 16:32 I'm on cve triage this week 16:33 Kernel updates are in the middle of promoted to -security, so I'll be publishing the USNs for those after the meeting. 16:33 After that, I plan to go through the list for updates. 16:33 I also have some apparmor reviews to do. 16:33 That's probably my week. tyhicks? 16:35 I'm in the happy place this week (thanks to ratliff for picking up bug triage!) 16:36 I'm attempting to bring unix domain socket AppArmor mediation support back to 14.04 + hardware enablement kernel 16:37 I'll be working on seccomp complain mode 16:37 that should keep me busy along with incoming requests throughout the week 16:37 jjohansen: go ahead 16:37 I am back from LSS and I have a few cleanup items related to that. 16:38 I'll then be crying over^W^W working on fixing stacking bugs and finishing up gsettings review wi. 16:38 And if I actually get to a point where any of that is cleared or waiting for feedback will be working on finishing up what needs to be done for upstreaming 16:39 I think that is it for me 16:39 jjohansen: can you please ensure that the fix for bug 1579135 will be included in the next SRU kernel? 16:39 bug 1579135 in apparmor (Ubuntu Yakkety) "AppArmor profile reloading causes an intermittent kernel BUG" [Critical,Incomplete] https://launchpad.net/bugs/1579135 16:40 jjohansen: we have another apparmor SRU for xenial and I'm going to hold it back until that kernel fix has been published 16:41 tyhicks: yep, that has been submitted and committed. we just need to stay ontop of the SRU process now 16:41 jjohansen: ok, thanks! 16:41 sarnold: you're up 16:41 good morning 16:41 I'm on community this week 16:42 I haven't yet looked at the backlog of reviews or updates to perform yet, so I'm not sure where the remainder of my week will be 16:42 I suspect it'ls unity8 MIRs? 16:42 yep 16:42 it'd be nice to also make progress on cboltz's huge patchset 16:43 I just now realized that that certainly falls as a 'feature', does it make sense to do a FFE for that patchset for yakkety? hrm. 16:43 sarnold: FYI, sounds like kshitij8 is working on reviewing it 16:43 yay 16:43 he knows the tools and python better than I do :) 16:44 anyway that's me 16:44 I don't know enough about that patch set to say if we need to get it into yakkety 16:44 no tab-complete for chris coulson, ratliff then? 16:44 I'm on bug triage this week. 16:44 I'll be learning the community role from sarnold this week as well. 16:45 I'm working on an update for clamav. 16:45 And poking at the Unity 8 MIRs 16:45 that's it for me, back to you tyhicks 16:45 thanks 16:45 [TOPIC] Highlighted packages 16:46 The Ubuntu Security team will highlight some community-supported packages that might be good candidates for updating and or triaging. If you would like to help Ubuntu and not sure where to start, this is a great way to do so. 16:46 See https://wiki.ubuntu.com/SecurityTeam/UpdateProcedures for details and if you have any questions, feel free to ask in #ubuntu-security. To find out other ways of helping out, please see https://wiki.ubuntu.com/SecurityTeam/GettingInvolved. 16:46 http://people.canonical.com/~ubuntu-security/cve/pkg/gamera.html 16:46 http://people.canonical.com/~ubuntu-security/cve/pkg/mbedtls.html 16:46 http://people.canonical.com/~ubuntu-security/cve/pkg/mediaelement.html 16:46 http://people.canonical.com/~ubuntu-security/cve/pkg/python-rsa.html 16:46 http://people.canonical.com/~ubuntu-security/cve/pkg/node-cli.html 16:46 [TOPIC] Miscellaneous and Questions 16:46 Does anyone have any other questions or items to discuss? 16:47 o/~ gamera is really neat gamera is full of meat o/~ 16:50 heh 16:50 jdstrand, sbeattie, jjohansen, sarnold, ratliff: Thanks! 16:50 #endmeeting