*** rajm has joined #cip | 04:32 | |
*** monstr has joined #cip | 06:59 | |
*** monstr has quit IRC | 07:17 | |
*** samwilson_ has joined #cip | 07:28 | |
*** masashi910 has joined #cip | 08:04 | |
*** tpollard has joined #cip | 08:24 | |
*** fujita has joined #cip | 08:55 | |
*** pave1 has joined #cip | 08:59 | |
masashi910 | #startmeeting CIP IRC weekly meeting | 09:00 |
---|---|---|
brlogger` | Meeting started Thu Sep 17 09:00:00 2020 UTC and is due to finish in 60 minutes. The chair is masashi910. Information about MeetBot at http://wiki.debian.org/MeetBot. | 09:00 |
brlogger` | Useful Commands: #action #agreed #help #info #idea #link #topic #startvote. | 09:00 |
brlogger` | The meeting name has been set to 'cip_irc_weekly_meeting' | 09:00 |
*** brlogger` changes topic to " (Meeting topic: CIP IRC weekly meeting)" | 09:00 | |
masashi910 | #topic rollcall | 09:00 |
*** brlogger` changes topic to "rollcall (Meeting topic: CIP IRC weekly meeting)" | 09:00 | |
masashi910 | please say hi if you're around | 09:00 |
patersonc | Mornin | 09:00 |
wens | hi | 09:00 |
iwamatsu | hi | 09:00 |
samwilson_ | hi | 09:00 |
masashi910 | #topic AI review | 09:00 |
*** brlogger` changes topic to "AI review (Meeting topic: CIP IRC weekly meeting)" | 09:01 | |
masashi910 | 1. Combine root filesystem with kselftest binary - iwamatsu | 09:01 |
iwamatsu | no update about this, sorry | 09:01 |
pave1 | hi | 09:01 |
masashi910 | iwamatsu: Noted. Thanks. | 09:01 |
masashi910 | 2. Post LTP results to KernelCI - patersonc | 09:01 |
masashi910 | Per Chris-san's request, this AI is closed. This is in Chris-san's backlog, but will not be addressed in the near future. | 09:01 |
masashi910 | any other topics? | 09:01 |
patersonc | Thanks | 09:01 |
masashi910 | patersonc: Sure. :) | 09:02 |
masashi910 | 3 | 09:02 |
masashi910 | 2 | 09:02 |
masashi910 | 1 | 09:02 |
masashi910 | #topic Kernel maintenance updates | 09:02 |
*** brlogger` changes topic to "Kernel maintenance updates (Meeting topic: CIP IRC weekly meeting)" | 09:02 | |
pave1 | I have reviewed patches for 4.19.145 and .146. | 09:02 |
wens | nine new CVEs this week, most are fixed # https://gitlab.com/cip-project/cip-kernel/cip-kernel-sec/-/merge_requests/71 | 09:03 |
pave1 | In .146, functionality is removed (scrollback on fbcon). I believe that is bad idea as scrollback is quite important for kernel debugging on PCs. | 09:03 |
iwamatsu | I reviewed v4.4.236 and 237-rc1 | 09:03 |
wens | pave1: having spent time in datacenters with VGA consoles, I agree | 09:03 |
*** rajm has quit IRC | 09:04 | |
wens | CVE-2020-25284 is in rbd ( Ceph block device ). Siemens has this built as a module in their 4.4-rt x86 config, but not their 4.19 one | 09:05 |
wens | masashi910: Could you reach out to them to clarify if they use it or not? | 09:06 |
wens | if they do, we'll need to backport the fix to 4.4 | 09:06 |
masashi910 | wens: CVE-2020-25284, sure, I will. | 09:06 |
masashi910 | wens: if they need, backport to 4.4-rt is needed, is it correct? | 09:07 |
wens | masashi910: correct. currently it is only fixed for v4.19 and later stable kernels | 09:07 |
masashi910 | pave1, wens, iwamatsu: Thanks for your works. | 09:08 |
masashi910 | wens: sure. | 09:08 |
masashi910 | Any other topics? | 09:08 |
masashi910 | 3 | 09:08 |
masashi910 | 2 | 09:08 |
masashi910 | 1 | 09:09 |
wens | hmm | 09:09 |
masashi910 | #topic Kernel testing | 09:09 |
*** brlogger` changes topic to "Kernel testing (Meeting topic: CIP IRC weekly meeting)" | 09:09 | |
patersonc | Nothing extra to report from me since the TSC on Tuesday | 09:09 |
masashi910 | patersonc: Thanks. | 09:09 |
masashi910 | Any other topics? | 09:09 |
masashi910 | 3 | 09:10 |
masashi910 | 2 | 09:10 |
masashi910 | 1 | 09:10 |
masashi910 | #topic Software update | 09:10 |
*** brlogger` changes topic to "Software update (Meeting topic: CIP IRC weekly meeting)" | 09:10 | |
masashi910 | Quote from Suzuki-san "SW Updates WG don't have any updates this week." | 09:10 |
masashi910 | any other topics? | 09:10 |
masashi910 | 3 | 09:10 |
masashi910 | 2 | 09:10 |
masashi910 | 1 | 09:10 |
masashi910 | #topic CIP Security | 09:10 |
*** brlogger` changes topic to "CIP Security (Meeting topic: CIP IRC weekly meeting)" | 09:10 | |
masashi910 | Yoshida-san or Dinesh-san, are you around? | 09:10 |
yoshidak[m] | hi | 09:10 |
masashi910 | yoshidak[m]: the floor is yours. | 09:11 |
yoshidak[m] | We are trying to backport duplicity from bullseye to buster since current buster version depends on previous python (2.x). | 09:12 |
masashi910 | yoshidak[m]: Do you have any updates? | 09:12 |
yoshidak[m] | Now, we have done to backport implementation and tesing. | 09:12 |
yoshidak[m] | That's all from me today | 09:12 |
masashi910 | yoshidak[m]: Thanks for your report. | 09:13 |
masashi910 | any other topics? | 09:13 |
masashi910 | 3 | 09:13 |
masashi910 | 2 | 09:13 |
masashi910 | 1 | 09:13 |
masashi910 | #topic AOB | 09:13 |
*** brlogger` changes topic to "AOB (Meeting topic: CIP IRC weekly meeting)" | 09:13 | |
masashi910 | Any business to discuss? | 09:13 |
wens | CVE-2020-12888 is related to MMIO access from VM guest to host | 09:13 |
pave1 | wens: Yes, I have seen that in 4.19. | 09:14 |
pave1 | wens: Basically... you are giving your VM access to your hardware. | 09:14 |
wens | I doubt CIP members use this. Fix is missing from v4.4 (was backported to 4.9 and 4.14 though). | 09:14 |
pave1 | wens: ...that means your VM can do "fun" stuff with your hardware. | 09:14 |
pave1 | wens: ...simply don't do that. Or don't be surprised. | 09:14 |
wens | lol | 09:14 |
pave1 | :-) | 09:15 |
wens | in other news, about MOXA's request to backport TPM support to v4.4 | 09:15 |
wens | I believe they require TPM-TIS-SPI and TPM 2.0 support. | 09:16 |
pave1 | (If someone needs CVE-2020-12888 to be fixed, we can do that, but... it is quite a corner case). | 09:16 |
wens | I will dig through git history to see what is needed. | 09:16 |
masashi910 | wens, pave1: Shall I ask CIP members whether they need backporting of CVE-2020-12888? | 09:16 |
pave1 | masashi910: I don't think that's needed. | 09:17 |
masashi910 | pave1: OK, thanks! | 09:18 |
wens | Looks like Siemens (x86) and Renesas (arm64) have it enabled. | 09:18 |
wens | nothing else on my end. | 09:19 |
masashi910 | wens, pave1: Thanks for your following up discussions. | 09:19 |
masashi910 | any other business? | 09:19 |
masashi910 | If there are no other topics, let's close the meeting. | 09:20 |
masashi910 | #endmeeting | 09:20 |
brlogger` | Meeting ended Thu Sep 17 09:20:11 2020 UTC. Information about MeetBot at http://wiki.debian.org/MeetBot . (v 0.1.4) | 09:20 |
brlogger` | Minutes: https://irclogs.baserock.org/meetings/cip/2020/09/cip.2020-09-17-09.00.html | 09:20 |
brlogger` | Minutes (text): https://irclogs.baserock.org/meetings/cip/2020/09/cip.2020-09-17-09.00.txt | 09:20 |
brlogger` | Log: https://irclogs.baserock.org/meetings/cip/2020/09/cip.2020-09-17-09.00.log.html | 09:20 |
*** brlogger` changes topic to "Civil Infrastructure Platform Project. Find the logs at https://irclogs.baserock.org/cip/" | 09:20 | |
pave1 | Thank you! | 09:20 |
patersonc | SLTS kernel choice meeting in 10 mins... | 09:20 |
masashi910 | Thanks, see you soon! | 09:20 |
wens | Thank you! | 09:20 |
pave1 | See you in 10 minutes :-). | 09:20 |
wens | bwh: if you see this, could you look at the debian CVE tracker? It seems recent updates have the "bug" field showing just the bug number, instead of the full bug tracker URL. | 09:22 |
wens | bwh: If this is the new format, then I will update the import script to accommodate it. | 09:22 |
*** fujita has quit IRC | 09:29 | |
patersonc | masashi910: I think I'm stuck in a lobby? | 09:33 |
*** tpollard has quit IRC | 09:48 | |
*** CTtpollard has joined #cip | 09:48 | |
*** pave1 has quit IRC | 10:35 | |
*** samwilson_ has quit IRC | 11:11 | |
*** samwilson_ has joined #cip | 11:11 | |
*** masashi910 has quit IRC | 11:24 | |
*** rajm has joined #cip | 11:53 | |
*** samwilson_ has quit IRC | 12:27 | |
*** samwilson_ has joined #cip | 12:56 | |
sashal | wens: the scrollback code got dumped because of multiple security issues reported against it. We could of course fix those issues, but no one stepped up to maintain that code in the future so we wanted to avoid leaving dodgy rotting code in the kernel/stable trees | 13:28 |
sashal | If anyone cares enough about it and wants to maintain it, we can bring the functionality back in | 13:28 |
sashal | But right now we just don't want known-bad code in stable trees | 13:28 |
wens | sashal: I understand | 13:29 |
bwh | wens: I will query the bug format, but in a Debian context I think it is reasonable to use just a number, and import_debian could fix that up. | 13:30 |
wens | bwh: right, I'd just like to know if it was a one-off thing | 13:34 |
*** cp- has quit IRC | 15:04 | |
*** cp- has joined #cip | 15:09 | |
*** CTtpollard has quit IRC | 16:29 | |
*** samwilson_ has quit IRC | 17:01 | |
*** rajm has quit IRC | 22:09 |
Generated by irclog2html.py 2.15.3 by Marius Gedminas - find it at mg.pov.lt!