16:31 <tyhicks> #startmeeting
16:31 <mdeslaur> \o
16:31 <tyhicks> The meeting agenda can be found at:
16:31 <tyhicks> [LINK] https://wiki.ubuntu.com/SecurityTeam/Meeting
16:31 <tyhicks> [TOPIC] Weekly stand-up report
16:31 <tyhicks> jdstrand: you're up
16:31 <jdstrand> hi
16:32 <jdstrand> last week I got through several review tools updates
16:33 <jdstrand> I helped with various high priority snappy issues: namespace sharing, browser-support updates, snap run/snap-confine/snap-exec failures, discussions on snap declaratons, etc
16:34 <jdstrand> this week I plan to pick up the docker interface work, continue helping with namespace sharing and then pickup dbus-app again
16:34 <jdstrand> I suspect that will consume my week, but if not, I'll move down the list
16:34 <jdstrand> that's it from me
16:35 <mdeslaur> I'm in the happy place this week
16:35 <mdeslaur> I have to play email ketchup today
16:35 <mdeslaur> I'm working on a webkit2gtk update
16:35 <mdeslaur> since the update I prepared before going on vacation had a regression
16:35 <mdeslaur> (I didn't have time to release it)
16:36 <mdeslaur> I'm also working on mysql updates
16:36 <mdeslaur> and will go down the CVE list, as usual
16:36 <mdeslaur> that's it, sbeattie, you're up
16:36 <sbeattie> I'm on community this week
16:36 <sbeattie> I'm finishing up openjdk-6 testing
16:37 <sbeattie> I need to comment on the kernel team's proposed livepatch announcement template
16:37 <sbeattie> I need to do some apparmor review
16:37 <sbeattie> And I'll pick up another update this week
16:38 <sbeattie> that's probably my week. tyhicks?
16:38 <tyhicks> sbeattie: can we consider the PIE work to be done?
16:38 <sbeattie> Yeah, mostly.
16:38 <tyhicks> \o/
16:38 <tyhicks> I'm in the happy place this week
16:38 <tyhicks> I've been working on some snap-confine PR reviews
16:39 <tyhicks> then I need to get back to bringing unix domain socket mediation to 14.04 for snappy
16:39 <tyhicks> that's it for me
16:39 <tyhicks> jjohansen: you're up
16:39 <tyhicks> he may not be around yet
16:39 <tyhicks> sarnold: go ahead
16:40 <sarnold> I'm on cve triage this week
16:40 <sarnold> also doing MIR reviews
16:41 <sarnold> it'd be nice to not starve apparmor reviews too, but .. the patch series there is huge. :/ I just got to thinking that cboltz's huge rule patchset cleanujp would be nice to have in yaketty, what with him being our best bet for tools support..
16:42 <tyhicks> it would be a nice thing to have but I don't think it'll end up happening
16:42 <sarnold> but the ffe and so on doesn't really sound like fun either, assuming that the patches look good
16:42 <tyhicks> those are a lot of patches to land and, as you point out, the ffe won't be trivial
16:42 <sarnold> is it worth branching off apparmor -now-?
16:43 <tyhicks> cutting a release?
16:43 <sarnold> yeah
16:43 <tyhicks> tomorrow is the monthly apparmor meeting, right?
16:43 <sarnold> it doesn't have to be decided now, it's mostly hypothetical until we review the 40-ish patches :)
16:44 <sarnold> anyway that's me
16:44 <tyhicks> the meeting should be tomorrow so I think we ought to discuss it there
16:44 <tyhicks> thanks sarnold
16:44 <tyhicks> Chris is out
16:44 <tyhicks> go ahead, ratliff
16:45 <ratliff> I prepared updates for gdk-pixbuf and python-imaging last week and got them to the 1 yard line.
16:45 <ratliff> Now I need to push them over the goal.
16:46 <ratliff> I am also doing some sprint planning work and need to follow up on a percona task from the last sprint.
16:46 <ratliff> I'll do bug triage this week.
16:46 <ratliff> and back to you tyhicks
16:46 <tyhicks> oh, ha
16:47 <tyhicks> I said that I'm in the happy place for some reason
16:47 <tyhicks> I'm on bug triage this week
16:47 <sarnold> wishful thinking? :)
16:47 <tyhicks> very much so
16:47 <ratliff> I'm fine with swapping if you want
16:47 <tyhicks> :)
16:47 <tyhicks> ratliff: no need to swap, I think the sprint planning will help me out more than bug triage
16:48 <tyhicks> jjohansen: hey - go ahead now
16:48 <jjohansen> oky
16:49 <jjohansen> so I have a few more revisions for little things on the stacking kernel to make, but its looking good and I haven't heard back any complaints.
16:49 <tyhicks> great to hear :)
16:49 <jjohansen> I need to finish up with the 4.8 port for the kt
16:49 <jjohansen> I then can get back to finishing up with gconf
16:50 <tyhicks> sounds like a nice week
16:50 <jjohansen> and it seems something to do with an upstream apparmor meeting
16:50 <jjohansen> :)
16:50 <tyhicks> :)
16:50 <jjohansen> that will eat the whole week so I won't even pretend I am going to get to the upstreaming work
16:50 <tyhicks> [TOPIC] Highlighted packages
16:50 <tyhicks> The Ubuntu Security team will highlight some community-supported packages that might be good candidates for updating and or triaging. If you would like to help Ubuntu and not sure where to start, this is a great way to do so.
16:51 <tyhicks> See https://wiki.ubuntu.com/SecurityTeam/UpdateProcedures for details and if you have any questions, feel free to ask in #ubuntu-security. To find out other ways of helping out, please see https://wiki.ubuntu.com/SecurityTeam/GettingInvolved.
16:51 <tyhicks> http://people.canonical.com/~ubuntu-security/cve/pkg/blueman.html
16:51 <tyhicks> http://people.canonical.com/~ubuntu-security/cve/pkg/liblivemedia.html
16:51 <tyhicks> http://people.canonical.com/~ubuntu-security/cve/pkg/svn-workbench.html
16:51 <tyhicks> [TOPIC] Miscellaneous and Questions
16:51 <tyhicks> http://people.canonical.com/~ubuntu-security/cve/pkg/ruby-rest-client.html
16:51 <tyhicks> http://people.canonical.com/~ubuntu-security/cve/pkg/efl.html
16:51 <tyhicks> Does anyone have any other questions or items to discuss?
16:53 <tyhicks> jdstrand, mdeslaur, sbeattie, jjohansen, sarnold, ratliff: Thanks!
16:53 <tyhicks> #endmeeting