Re: May Report

2018-06-10 Thread Hugo Lefeuvre
> > Contact security team and prepare Jessie update 3.99.5+repack1-7+deb8u2 > > together with Fabian Greffrath, test it and submit it to the security > > team. Still waiting for their approval for upload. > > We _clearly_ told you that this point is negligable and not worth a DSA, so > I hav

Re: May Report

2018-06-10 Thread Moritz Mühlenhoff
On Sun, Jun 10, 2018 at 02:45:41PM +0200, Moritz Mühlenhoff wrote: > On Sat, Jun 09, 2018 at 08:38:15PM -0400, Hugo Lefeuvre wrote: > > Contact security team and prepare Jessie update 3.99.5+repack1-7+deb8u2 > > together with Fabian Greffrath, test it and submit it to the security > > team. S

Re: May Report

2018-06-10 Thread Moritz Mühlenhoff
On Sat, Jun 09, 2018 at 08:38:15PM -0400, Hugo Lefeuvre wrote: > Contact security team and prepare Jessie update 3.99.5+repack1-7+deb8u2 > together with Fabian Greffrath, test it and submit it to the security > team. Still waiting for their approval for upload. We _clearly_ told you that thi

May Report

2018-06-09 Thread Hugo Lefeuvre
Hi, May 2018 was my 21th month as a payed Debian LTS contributor. I was allocated 24.25 hours. I have spent all of them in the following tasks: * Continue my tiff work: Continue investigations on CVE-2018-8905. Prepare a patch draft, but in the end upstream published its own patch before I

May Report

2017-06-02 Thread Hugo Lefeuvre
Hi, May 2017 was my tenth month as a payed Debian LTS contributor. I was allocated 15 hours. I spent all of them doing the following tasks: * Investigate CVE-2016-8686 in potrace. We finally decided to let this issue no-dsa (low importance issue, hich patch complexity) (https://lists.debian.

May Report

2017-05-24 Thread Brian May
In May I spent all my 10 hours on the following tasks: * Fix broken chroots, that had a broken /dev/ptmx symlink pointing to /dev/pts/ptmx - which has the wrong permissions and was causing problems with some packages. Was worried that broken chroot might be reason Heimdal was failing to buil