LTS report 2019-09-01 to 2019-09-30

This time period I used 10 hours.

Jessie Package Support

For the project Jessie Package Support, I used 9 hours in the following tasks:

  • golang-go.crypto
  • ruby-mini-magick
  • ruby-nokogiri

golang-go.crypto

  • Research CVE-2019-11841.
  • Patch and test.
  • Fix infinite loop.
  • Send email debian-lts.
  • Uploaded version 0.0~hg190-1+deb8u2 to jessie-security.
  • Sent DLA-1920-1 advisory.
  • Submitted PR for DLA-1920.

ruby-mini-magick

  • Send email to debian-lts.

ruby-nokogiri

  • Relevant email.
  • Try manual patch.
  • Send email to debian-lts.
  • Upload version 1.6.3.1+ds-1+deb8u1 with fix for CVE-2019-5477 to Jessie-Security.
  • Send DLA-1933-1 to debian-lts-announce.

LTS Infrastructure

For the project LTS Infrastructure, I used 1 hour in the following tasks:

  • DLA 607-1

DLA 607-1

  • Create PR.