LTS report 2018-06-01 to 2018-06-30

This time period I used 10 hours.

LTS Infrastructure

For the project LTS Infrastructure, I used 7 hours and 30 minutes in the following tasks:

  • security tracker / embedded-code-copies

security tracker / embedded-code-copies

  • Look at script to rename packages.
  • Review PR#4 <https://salsa.debian.org/security-tracker-team/security-tracker/merge_requests/4/diffs>_.
  • Review issue#2 <https://salsa.debian.org/security-tracker-team/security-tracker/issues/2>_.
  • Look at addressing feedback.
  • Create pull requests.
  • Review PR#7 <https://salsa.debian.org/security-tracker-team/security-tracker/merge_requests/7/diffs>_.
  • Review PR#8 <https://salsa.debian.org/security-tracker-team/security-tracker/merge_requests/8/diffs>_.
  • Update PR#7 <https://salsa.debian.org/security-tracker-team/security-tracker/merge_requests/7/diffs>_.

Jessie Package Support

For the project Jessie Package Support, I used 2 hours and 30 minutes in the following tasks:

  • firebird2.5
  • git

firebird2.5

  • Build, test, and propose patch for Jessie.

git

  • Investigate CVE-2017-15298 and CVE-2018-1000021 in git.
  • Issues are minor, no upstream fix available yet.
  • CVE-2018-1000021: Escape codes to terminal could cause problems.
  • CVE-2017-15298: Potential for archive to cause DOS.