[Date Prev][Date Next] [Thread Prev][Thread Next] [Date Index] [Thread Index]

LTS report for June 2018 - Abhijith PA



-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA512

June 2018 was my fifth month as a Debian LTS paid contributor. I was
assigned 10 hours but I only able to do 8. Carrying rest to next month.

I have spent these hours on;

 * ansible: Marked CVE-2016-8614 and CVE-2016-8628 as not-affecting. The
   first one is reported against sub project of ansible which only
   merged to core in v2.3. Working on two new CVEs that
   just piled up.

 * enigmail: Researched on upstream commit histories for the
   CVE-2017-17688, efail.

 * phpmyadmin: There were 13 security vulnerabilities reported on
   Jessie. Backported 11 of them of which some are prepared
   before Jessie reaching LTS but couldn't upload. Rest are marked as
   not affecting. Thanks to Emilio Pozuelo for taking care of broken
   CVE-2016-6616.patch and sponsoring upload[1].


- --
Abhijith PA

[1] - https://lists.debian.org/debian-lts-announce/2018/07/msg00006.html
-----BEGIN PGP SIGNATURE-----
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=EiY/
-----END PGP SIGNATURE-----


Reply to: