My Debian Activities in February 2019

FTP master

The freeze is approaching, so I only accepted 149 packages and rejected 5 uploads. The overall number of packages that got accepted this month was 229.

Debian LTS

This was my fifty sixth month that I did some work for the Debian LTS initiative, started by Raphael Hertzog at Freexian.

This month my all in all workload has been 19.5h. During that time I did LTS uploads or prepared security uploads of:

  • [DLA 1682-1] uriparser security update for one CVE
  • [DLA 1689-1] elfutils security update for 12 CVEs
  • [DLA 1691-1] exiv2 security update for five CVEs
  • [DLA 1693-1] gpac security update for five CVEs
  • [DLA 1697-1] bind9 security update two CVEs

I started to work on another round of wireshark CVEs and php5 and libraw.

Last but not least I did some days of frontdesk duties.

Debian ELTS

This month was the ninth ELTS month.

During my allocated time I uploaded:

  • ELA-85-1 of elfutils for 12 CVEs
  • ELA-86-1 of php5 for three CVEs
  • ELA-87-1 of bind9 for two CVEs

As like in LTS, I also did some days of frontdesk duties.

Other stuff

I improved packaging of …

I uploaded new upstream versions of …

Thanks a lot to Andreas Beckmann for patiently filing new bugs after I broke things.

I uploaded new packages …

  • cpptest, which is a unit testing framework for C++
  • pollen, which is a Entropy-as-a-Service web server
  • pollinate, can seed the pseudo random number generator

Recently I had a look at prometheus but was not really pleased about the graphs it can create. So I decided to bring back a more recent version of grafana into Debian and entered a dependency hell. Up to now I uploaded the following golang modules:
golang-github-cactus-go-statsd-client, golang-github-codahale-hdrhistogram, golang-github-crossdock-crossdock-go, golang-github-facebookgo-structtag, golang-github-go-xorm-core, golang-github-rs-zerolog, golang-github-teris-io-shortid, golang-github-thcyron-uiprogress, golang-github-uber-go-atomic, golang-github-vividcortex-mysqlerr, golang-github-yudai-golcs, golang-gopkg-stretchr-testify.v1
There is more to come and thanks a lot to Chris for marking all those for ACCEPT.

Last but not least I sponsored uploads of …

My Debian Activities in December 2018

FTP master

This month I accepted 276 packages, which is bit more than two months before. On the other side I rejected 34 uploads, which is the same as last month. The overall number of packages that got accepted this month was 442.

Debian LTS

This was my fifty fourth month that I did some work for the Debian LTS initiative, started by Raphael Hertzog at Freexian.

This month my all in all workload has been 30h. This was the first month were I did not upload any package, but only prepared a wireshark package for testing. It is available at people.d.o and contains patches for 31 CVEs. As lots of dissectors are affected, I would be very glad if others could have a look at it.

I also started to work on CVEs of exiv2 and krb5.

Last but not least I did some days of frontdesk duties.

Debian ELTS

This month was the seventh ELTS month.

During my allocated time I prepared a wireshark package for testing. It is also available at people.d.o and contains patches for 26 CVEs. As with the LTS version I would be very glad if others could have a look at it.

I also started to work on CVEs of krb5.

As like in LTS, I also did some days of frontdesk duties.

Other stuff

I improved packaging of …

I uploaded new upstream versions of …

Thanks to all the people that tested the meep and mpb packages and filed bugs. I am now trying to clean up the mess :-). At least my packages no longer depend on guile-2.0!

I didn’t have to sponsor package for Nicolas Mora anymore. He finally became a DM and I gave him upload rights for his packages. So now he can take care of his stuff on his own :-).
The next sponsee is Tommi Höynälänmaa. Initially he wanted to have theme-d and theme-d-gnome in Debian. Due to dependencies being orphaned and RC buggy he now has to take care of …

He is really doing a nice job.

The Debian Med Advent Calendar was again really successful this year. There was no new record, but with 81, a fair number of bugs could have been closed.

year number of bugs closed
2011 63
2012 28
2013 73
2014 5
2015 150
2016 95
2017 105
2018 81

Well done everybody who participated, especially Andreas Tille who closed by far the most bugs!

My Debian Activities in August 2018

FTP master

This month was again dominated by warm weather and spending time outside is more enjoyable than spending time in NEW. So I only accepted 177 packages and rejected 2 uploads. The overall number of packages that got accepted this month was 400. Unfortunately it is becoming cold outside, so expect more REJECTS!

Debian LTS

This was my fiftieth month that I did some work for the Debian LTS initiative, started by Raphael Hertzog at Freexian.

This month my all in all workload has been 23.75h. During that time I did LTS uploads of:

    [DLA 1468-1] fuse security update one CVE
    [DLA 1471-1] kamailio security update one CVE
    [DLA 1477-1] libgit2 security update three CVEs
    [DLA 1485-1] bind9 security update one CVE
    [DLA 1487-1] libtirpc security update one CVE

I also sent a debdiff for libgit2 in Stretch to the security team, which was not yet processed.

This month it was not that hard to understand the patches, but I had to struggle with different testing frameworks. One always crashed due to API changes and one made funny things when run as root. Nevertheless I am still glad about software that does at least some kind of testing!

Anyway, I also started looking at the CVEs of suricata and symfony and I am afraid it is not going to be easier …

Last but not least I did some days of frontdesk duties.

Debian ELTS

This month was the third ELTS month.

During my allocated time I uploaded:

  • ELA-25-1 for libcgroup
  • ELA-26-1 for libxcursor
  • ELA-31-1 for bind9
  • ELA-33-1 for libtirpc

As like in LTS, I also did some days of frontdesk duties.

Other stuff

I uploaded a new upstream version of …

.. and fixed a lot of bugs.

I improved packaging of …

The DOPOM (Debian Orphaned Package Of the Month) of this month has been mdns-scan. As it was abandoned by upstream, I intend to become that as well.

My Debian Activities in June 2018

FTP master

This month I accepted 166 packages and rejected only 7 uploads. The overall number of packages that got accepted this month was 216.

Debian LTS

This was my forty eighth month that I did some work for the Debian LTS initiative, started by Raphael Hertzog at Freexian.

This month my all in all workload has been 23.75h. During that time I did LTS uploads of:

  • [DLA 1404-1] lava-server security update for one CVE
  • [DLA 1403-1] zendframework security update for one CVE
  • [DLA 1409-1] mosquitto security update for two CVE
  • [DLA 1408-1] simplesamlphp security update for two CVE

I also prepared a test package for slurm-llnl but got no feadback yet *hint* *hint*.

This month has been the end of Wheezy LTS and the beginning of Jessie LTS. After asking Ansgar, I did the reconfiguration of the upload queues on seger to remove the embargoed queue for Jessie and reduce the number of supported architectures.

Further I started to work on opencv.

Unfortunately the normal locking mechanism for work on packages by claiming the package in dla-needed.txt did not really work during the transition. As a result I worked on libidn and mercurial parallel to others. There seems to be room for improvement for the next transition.

Last but not least I did one week of frontdesk duties.

Debian ELTS

This month was the first ELTS month.

During my allocated time I made the first CVE triage in my week of frontdesk duties, extended the check-syntax part in the ELTS security tracker and uploaded:

  • ELA-3-1 for file
  • ELA-4-1 for openssl

Other stuff

During June I continued the libosmocore transition but could not finish it. I hope I can upload all missing packages in July.

Further I continued to sponsor some glewlwyd packages for Nicolas Mora.

The DOPOM package for this month was dvbstream.

I also upload a new upstream version of …