Here is my public monthly report.
Thanks to our sponsors for making this possible, and to Freexian for
handling the offering.
https://www.freexian.com/services/debian-lts.html#sponsors
LTS
- shadow
- rediscover and reserve CVE-2017-20002
- DLA 2596-1
https://lists.debian.org/debian-lts-announce/2021/03/msg00020.html
- golang-1.7
- DLA-2591-1
https://lists.debian.org/debian-lts-announce/2021/03/msg00014.html
- golang-1.8
- DLA-2592-1
https://lists.debian.org/debian-lts-announce/2021/03/msg00015.html
- pillow:
- global triage: reference patches, identify not-affected
- glib2.0
- global triage (all CVEs postponed)
- dnsmasq
- global triage: reference regression and patches
- DLA-2604-1
https://lists.debian.org/debian-lts-announce/2021/03/msg00027.html
ELTS
- golang
- common work with LTS
- sync CVE list in jessie
- ELA-379-1
https://deb.freexian.com/extended-lts/updates/ela-379-1-golang/
- pillow
- common work with LTS
- fix test suite
- ELA-383-1
https://deb.freexian.com/extended-lts/updates/ela-383-1-pillow/
- glib2.0
- common work with LTS
- dnsmasq
- common work with LTS
- ELA-389-1
https://deb.freexian.com/extended-lts/updates/ela-389-1-dnsmasq/
Documentation and tooling
- golang: document elements of triage decision, reference past
go-based packages rebuilds, better identify reverse dependencies
https://wiki.debian.org/LTS/TestSuites/golang
- gogoprotobuf analysis, following contributor's request
https://lists.debian.org/debian-lts/2021/03/msg00015.html
- DLA process: precisions on e-mail signatures and handling binary files
https://wiki.debian.org/LTS/Development#Announce_the_update
https://wiki.debian.org/LTS/Development#Build_the_update
- Investigate and recap 'apt changelog' issue for LTS:
https://salsa.debian.org/lts-team/lts-extra-tasks/-/issues/19
- security tracker: sort CVEs as versions, everywhere and in a cleaner way (no
feedback yet)
https://salsa.debian.org/security-tracker-team/security-tracker/-/merge_requests/81
- Internal mail about test suites
- IRC Meeting
http://meetbot.debian.net/debian-lts/2021/debian-lts.2021-03-25-14.58.html
--
Sylvain Beucler
Debian LTS Team