09:00:00 #startmeeting CIP IRC weekly meeting 09:00:00 Meeting started Thu Jun 11 09:00:00 2020 UTC and is due to finish in 60 minutes. The chair is masashi910. Information about MeetBot at http://wiki.debian.org/MeetBot. 09:00:00 Useful Commands: #action #agreed #help #info #idea #link #topic #startvote. 09:00:00 The meeting name has been set to 'cip_irc_weekly_meeting' 09:00:05 #topic rollcall 09:00:13 please say hi if you're around 09:00:17 hi 09:00:20 hi 09:00:23 hi 09:00:28 hi 09:00:37 hello 09:00:55 hi 09:01:00 #topic AI review 09:01:09 1. Combine root filesystem with kselftest binary - Iwamatsu-san 09:01:19 hi 09:01:42 no update 09:01:52 iwamatsu: Noted. Thanks. 09:02:03 2. Strengthen sustainable process to backport patches from Mainline/LTS - Kernel Team 09:02:12 Just for your information, but LTS4.19 was decided to be maintained for 6 years. 09:02:19 https://www.kernel.org/category/releases.html 09:02:28 3. Upload a guideline for reference hardware platform addition - masashi910 09:02:34 No updates this week. 09:02:40 4. Post LTP results to KernelCI - patersonc 09:02:53 I'm discussing how to go about this with KernelCI now 09:03:32 patersonc: That's great! Please let us know how the discussion goes. 09:03:49 5. Ask board owners to review reference platform configs to optimize backporting - masashi910 09:03:58 Regarding "XDP sockets enabled for Hitachi cyclonev", I confirmed that Hitachi does not use XDP on cyclonev at the latest TSC call. 09:04:08 So far, I haven't received any backporting requests relating to "CVE related to KVM SVM on x86". 09:04:17 Regarding a request to review the current configs to optimize backporting, I sent the following email to cip-dev. Due date is June 25th. 09:04:26 https://lore.kernel.org/cip-dev/TY2PR01MB497253E7217AED2CA0952E47A0850@TY2PR01MB4972.jpnprd01.prod.outlook.com/ 09:04:49 6. Check CVE and Patch, Bluetooth BAIS attack (CVE-2020-10135) - Iwamatsu-san 09:05:17 No update for this. 09:05:31 iwamatsu: Thanks. 09:05:42 any other topics? 09:05:49 3 09:05:52 2 09:05:54 1 09:05:55 #topic Kernel maintenance updates 09:06:04 I found some POCs and patches for older kernels, but I haven't verified them yet. 09:07:03 four CVEs this week, two fixed, two need backporting 09:07:04 I reviewed v4.4.227. and I sent some patches for 4.4.y kernel. 09:07:35 CVE-2019-20810 is memory leak in some ALSA driver 09:07:56 wens: does any member enable ALSA? 09:08:07 CVE-2020-10757 is mm / DAX related and needs backport to 4.9 and 4.14 09:08:28 szlin: I haven't check that, but it's some odd device, chances are it isn't used 09:10:09 20810 is go7007 device issue. 09:10:34 This device is USB sound controller. 09:10:45 wens: thanks, I guess no member needs it. 09:10:52 looks like no member enables the driver. I will update our records 09:11:51 DAX is enabled for a few x86 members 09:12:48 but cip branches are already covered 09:12:57 I seriously doubt they're using it though (that means NVDIMMs) 09:13:44 depends on what their servers are I suppose 09:14:00 another thing to add to the kconfig checklist :) 09:14:29 iwamatsu, wens, szlin, bwh: Thanks for your works and discussions. 09:14:46 wens: I will add this. :) 09:14:53 there's also the recent Intel issue, not included in this weeks updates, but patches are already on stable ML 09:15:20 those will be part of next week's update :) 09:15:39 wens: could you show the CVE number? 09:15:50 I haven't checked 09:16:00 wens: I see. Thanks. 09:16:11 any other topics? 09:16:18 it's CVE-2020-0543, according to Intel. # https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00320.html 09:16:27 wens: Oh, thanks! 09:17:17 any other topics? 09:17:30 3 09:17:33 2 09:17:35 1 09:17:38 #topic Kernel testing 09:17:44 patersonc: the floor is yours. 09:18:01 Thanks 09:18:40 I merged changes into linux-cip-pipelines that allow the maintainers to compare -rebase branches to check that their content is identical to the normal branches 09:19:14 That's about it for changes since Tuesday 09:19:34 patersonc: Thanks for your update! 09:19:35 pave1: have you been using the RT tests? 09:20:08 patersonc: I doubt Pavel-san is here. 09:20:41 okay 09:20:59 any other topics or queries? 09:21:09 3 09:21:12 2 09:21:13 1 09:21:16 #topic Software update 09:21:26 Hello. 09:21:32 I don't have major updates this week. 09:21:39 An external script cip-sw-update-demo repository uses has been changed and its build is now failing. So I'm fixing it. 09:21:48 After that, I'll work on the task which is to add a safe update demo to cip-sw-updates-demo repository: https://gitlab.com/cip-project/cip-sw-updates/cip-sw-updates-tasks/-/issues/4 09:21:54 That's it from me. 09:22:11 suzuki: Thanks for your updates. 09:22:26 I've fixed autopkgtest issue, and merged version 2020.04-1 on swupdate 09:22:34 #info https://salsa.debian.org/debian/swupdate 09:22:49 szlin: Thanks! 09:22:58 iwamatsu: there're some issues need to fix 09:23:37 copyright correction and salsa CI testing. 09:23:50 szlin; oh, sorry. I did not check it. I will check.. 09:24:03 iwamatsu: no worry 09:24:37 I'm swamped with work recently, feel free to fix it if you're available 09:24:58 Let me add this to AI. :) 09:24:58 OK 09:25:03 #info https://salsa.debian.org/debian/swupdate/pipelines/145007 09:25:30 any other topics? 09:25:41 3 09:25:44 2 09:25:48 1 09:25:51 #topic CIP Security 09:26:00 yoshidak[m]: the floor is yours. 09:26:51 Ah, sorry, but he already reported. 09:27:16 masashi910: Sorry, but I cannot attend the meeting today. 09:27:17 From security wg, the following is report from me this week: 09:27:17 The proposal that the security wg will create a public repository on gitlab have been approved, thus I'll share the test report on it. I'll announce it via cip-dev ML after done. 09:27:34 any other topics? 09:27:43 3 09:27:46 2 09:27:48 1 09:27:51 #topic AOB 09:28:53 Are there any business matters to discuss? 09:29:04 3 09:29:07 2 09:29:11 1 09:29:13 #endmeeting