====================================================================================================== #fedora-meeting: Security Team Meeting - Agenda: https://fedoraproject.org/wiki/Security_Team_meetings ====================================================================================================== Meeting started by Sparks at 14:00:48 UTC. The full logs are available at http://meetbot.fedoraproject.org/fedora-meeting/2015-09-17/fedora_security_team.2015-09-17-14.00.log.html . Meeting summary --------------- * Roll Call (Sparks, 14:00:58) * Participants are reminded to make liberal use of #info #link #help in order to make the minutes "more better" (Sparks, 14:04:51) * Major's article (Sparks, 14:05:02) * LINK: http://i.imgur.com/reMiI9p.png (Sparks, 14:05:15) * ACTION: mhayden to work with Ryan to get the article published (Sparks, 14:11:31) * AGREED: The article is ready to go. (Sparks, 14:11:41) * security@ email address (Sparks, 14:11:55) * security@fp.o redirects to security-private@l.fp.o (Sparks, 14:12:12) * Right now embargoed issues typically get reported to Red Hat Product Security. Those issues get worked on internally and then information flows to Fedora once the embargo is lifted/expires. (Sparks, 14:30:05) * LINK: https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2014-7188 <-- embargo example (mhayden, 14:31:03) * IDEA: We establish a trusted relationship with Red Hat to get embargo notice on Fedora-only shipped packages. (Sparks, 14:41:34) * ACTION: FabioOlive to write up a summary of the embargo discussion and send it to the security team list. (Sparks, 14:47:37) * LINK: https://fedoraproject.org/wiki/Legal:Main#Legal (d-caf, 14:48:13) * LINK: https://www.redhat.com/en/technologies/linux-platforms/articles/relationship-between-fedora-and-rhel (d-caf, 14:48:22) * Outstanding BZ Tickets (Sparks, 14:50:42) * Thursday's numbers: Critical 0 (0), Important 44 (+5), Moderate 402 (0), Low 156 (0), Total 558 (Sparks, 14:50:47) * Current tickets owned: 82 (~15%) (Sparks, 14:50:51) * Tickets closed: 372 (0) (Sparks, 14:50:58) * Open floor discussion/questions/comments (Sparks, 14:53:30) Meeting ended at 14:59:50 UTC. Action Items ------------ * mhayden to work with Ryan to get the article published * FabioOlive to write up a summary of the embargo discussion and send it to the security team list. Action Items, by person ----------------------- * FabioOlive * FabioOlive to write up a summary of the embargo discussion and send it to the security team list. * mhayden * mhayden to work with Ryan to get the article published * **UNASSIGNED** * (none) People Present (lines said) --------------------------- * Sparks (91) * mhayden (38) * d-caf (32) * FabioOlive (18) * fweimer (12) * Astradeus (11) * zodbot (6) * bress (4) * zoglesby (3) * pjones (1) Generated by `MeetBot`_ 0.1.4 .. _`MeetBot`: http://wiki.debian.org/MeetBot