Security Team Weekly Summary, 2009-11-30

Robbie Williamson robbie.williamson at canonical.com
Sat Dec 5 07:15:15 GMT 2009


= Jamie Strandboge =
On vacation for week of Nov 23 - Nov 29


= Kees Cook =
Short week, due to Turkey-day and holiday.

Weekly Role: happy-place

== Issue Tracking ==
 * helping stefanlsd with CVE parsing.
 * advised mdeslaur on how to handle configfile updates during USNs.

== Technology Development ==
 * prioritized Lucid security blueprints.

== Auditing ==
 * started searches for doko on ARM assembly that could break with
Thumb2.
 * resubmitted fix for launchpadlib safe-directory-creation branch.

== Community ==
 * security team meeting
 * DMB meeting


= Marc Deslauriers =
Weekly role: triage

Short week as I had Friday off.

== Issue Tracking ==
 * CVE triage
 * massive security bug triage

== Updates ==
 * Worked on, tested and released USN-861-1: libvorbis vulnerabilities
 * Worked on, tested and released USN-862-1: PHP vulnerabilities
 * Investigated and worked on bind9 issue

== Technology development ==
 * qa-regression-testing:
   - updated test-libvorbis.py testing script
   - updated test-php5.py testing script
 * Added whiteboard info to blueprints


-- 
Robbie Williamson                                      robbie at canonical.com 
Canonical, Ltd.                                   robbiew[irc.freenode.net]                               

"You can't be lucky all the time, but you can be smart everyday" 
 -Mos Def

"Arrogance is thinking you are better than everyone else, while
Confidence is knowing no one else is better than you." -Me ;)
                                     

-- 
Robbie Williamson                                     robbie at cubuntu.com
Ubuntu                                         robbiew[irc.freenode.net]                               

"You can't be lucky all the time, but you can be smart everyday" 
 -Mos Def

"Arrogance is thinking you are better than everyone else, while
Confidence is knowing no one else is better than you." -Me ;)




More information about the ubuntu-devel mailing list