====================================================================================================== #fedora-meeting: Security Team Meeting - Agenda: https://fedoraproject.org/wiki/Security_Team_meetings ====================================================================================================== Meeting started by Sparks at 14:00:43 UTC. The full logs are available at http://meetbot.fedoraproject.org/fedora-meeting/2015-05-28/fedora_security_team.2015-05-28-14.00.log.html . Meeting summary --------------- * Roll Call (Sparks, 14:00:51) * Participants are reminded to make liberal use of #info #link #help in order to make the minutes "more better" (Sparks, 14:05:41) * Follow up on last week's tasks (Sparks, 14:05:48) * ACTION: jsmith to patch rubygem-activesupport as provenpackager (BZ 905374) (Sparks, 14:08:04) * jsmith to push the fix today (Sparks, 14:08:40) * 90-Day Challenge (Sparks, 14:10:39) * LINK: https://ethercalc.org/90-day-challenge (Sparks, 14:10:47) * 90-Day Challenge has a goal to close all 2014 and prior Important CVEs in Fedora (Sparks, 14:10:52) * As of 2015-05-28, of the 38 target bugs 14 have been closed, 1 is On_QA, and 23 are Open (Sparks, 14:11:02) * ACTION: Sparks to blog about the challenge at 2/3 the way through. (Sparks, 14:12:22) * ACTION: Sparks to remove FST owners from 90-day challenge tickets that are stagnant (from a FST point of view) (Sparks, 14:14:24) * Outstanding BZ Tickets (Sparks, 14:15:33) * Thursday's numbers: Critical 1, Important 41 (+1), Moderate 376 (+6), Low 163 (+3), Total 585, Trend +10 (Sparks, 14:15:38) * Current tickets owned: 108 (~19%) (Sparks, 14:15:42) * Tickets closed: 318 (+3) (Sparks, 14:15:49) * New Meeting Time (Sparks, 14:17:44) * Looking for a potential new meeting time (Sparks, 14:17:53) * LINK: http://whenisgood.net/98rtz7p (Sparks, 14:17:58) * LINK: http://whenisgood.net/98rtz7p/results/eyz7qkh (Sparks, 14:18:04) * Open floor discussion/questions/comments (Sparks, 14:24:37) * Reporting security issues to FST (Sparks, 14:28:13) * Nonresponsive maintainer (Sparks, 14:48:32) * Open floor discussion/questions/comments (Sparks, 14:57:19) * ACTION: FabioOlive will propose automated non-responsive maintainer process on the FST list. (FabioOlive, 14:57:49) * ACTION: Sparks to follow up with nirik regarding security-private@l.fp.o. (Sparks, 14:59:22) Meeting ended at 15:00:32 UTC. Action Items ------------ * jsmith to patch rubygem-activesupport as provenpackager (BZ 905374) * Sparks to blog about the challenge at 2/3 the way through. * Sparks to remove FST owners from 90-day challenge tickets that are stagnant (from a FST point of view) * FabioOlive will propose automated non-responsive maintainer process on the FST list. * Sparks to follow up with nirik regarding security-private@l.fp.o. Action Items, by person ----------------------- * FabioOlive * FabioOlive will propose automated non-responsive maintainer process on the FST list. * jsmith * jsmith to patch rubygem-activesupport as provenpackager (BZ 905374) * nirik * Sparks to follow up with nirik regarding security-private@l.fp.o. * Sparks * Sparks to blog about the challenge at 2/3 the way through. * Sparks to remove FST owners from 90-day challenge tickets that are stagnant (from a FST point of view) * Sparks to follow up with nirik regarding security-private@l.fp.o. * **UNASSIGNED** * (none) People Present (lines said) --------------------------- * Sparks (95) * pjp (53) * FabioOlive (17) * d-caf (14) * jsmith (9) * zodbot (5) * nirik (2) * lnxslck (1) Generated by `MeetBot`_ 0.1.4 .. _`MeetBot`: http://wiki.debian.org/MeetBot