apt-get install debian-wizard

Insider infos, master your Debian/Ubuntu distribution

  • About
    • About this blog
    • About me
    • My free software history
  • Support my work
  • Get the newsletter
  • More stuff
    • Support Debian Contributors
    • Other sites
      • My company
      • French Blog about Free Software
      • Personal Website (French)
  • Mastering Debian
  • Contributing 101
  • Packaging Tutorials
You are here: Home / Archives for LTS

My Free Software Activities in July 2017

August 7, 2017 by Raphaël Hertzog

My monthly report covers a large part of what I have been doing in the free software world. I write it for my donors (thanks to them!) but also for the wider Debian community because it can give ideas to newcomers and it’s one of the best ways to find volunteers to work with me on projects that matter to me.

Debian LTS

This month I was allocated 12 hours but I only managed to work for 7 hours (due to vacation and unanticipated customer work). I gave back the remaining hours to the pool as I didn’t want to carry them over for August which will be also short due to vacation (BTW I’m not attending Debconf). I spent my 7 hours doing CVE triaging during the week where I was in charge of the LTS frontdesk (I committed 22 updates to the security tracker). I did publish DLA-1010-1 on vorbis-tools but the package update had been prepared by Petter Reinholdtsen.

Misc Debian work

zim. I published an updated package in experimental (0.67~rc2-2) with the upstream bug fixes on the current release candidate. The final version has been released during my vacation and I will soon upload it to unstable.

Debian Handbook. I worked with Petter Reinholdtsen to finalize the paperback version of the Norwegian translation of the Debian Administrator’s Handbook (still covering Debian 8 Jessie). It’s now available.

Bug reports. I filed a few bugs related to my Kali work. #868678: autopkgtest’s setup-testbed script is not friendly to derivatives. #868749: aideinit fails with syntax errors when /etc/debian_version contains spaces.

debian-installer. I submitted a few d-i patches that I prepared for a customer who had some specific needs (using the hd-media image to boot the installer from an ISO stored in an LVM logical volume). I made changes to debian-installer-utils (#868848), debian-installer (#868852), and iso-scan (#868859, #868900).

Thanks

See you next month for a new summary of my activities.

Freexian’s report about Debian Long Term Support, June 2017

July 11, 2017 by Raphaël Hertzog

A Debian LTS logoLike each month, here comes a report about the work of paid contributors to Debian LTS.

Individual reports

In June, about 161 work hours have been dispatched among 11 paid contributors. Their reports are available:

  • Antoine Beaupré did 12h (out of 16h allocated, thus keeping 4 extra hours for July).
  • Ben Hutchings did 20 hours (out of 15h allocated + 5 extra hours).
  • Chris Lamb did 16 hours.
  • Emilio Pozuelo Monfort did 11 hours (out of 16 hours allocated + 3 hours remaining, thus keeping 8 hours for July).
  • Guido Günther did 9 hours.
  • Hugo Lefeuvre did 5 hours (out of 15h allocated, thus keeping 10 extra hours for July).
  • Markus Koschany did 16 hours.
  • Ola Lundqvist did 12 hours (out of 14h allocated, thus keeping 2 extra hours for July).
  • Raphaël Hertzog did 12 hours.
  • Roberto C. Sanchez did 6.5 hours (out of 16 hours allocated + 2.5 hour remaining, thus keeping 12 extra hours for July).
  • Thorsten Alteholz did 16 hours.

Evolution of the situation

The number of sponsored hours increased slightly with one new bronze sponsor and another silver sponsor is in the process of joining.

The security tracker currently lists 49 packages with a known CVE and the dla-needed.txt file 54. The number of open issues is close to last month.

Thanks to our sponsors

New sponsors are in bold.

  • Platinum sponsors:
    • TOSHIBA (for 21 months)
    • GitHub (for 11 months)
  • Gold sponsors:
    • The Positive Internet (for 37 months)
    • Blablacar (for 36 months)
    • Linode (for 26 months)
    • Babiel GmbH (for 15 months)
    • Plat’Home (for 14 months)
  • Silver sponsors:
    • Domeneshop AS (for 36 months)
    • Université Lille 3 (for 36 months)
    • Trollweb Solutions (for 34 months)
    • Nantes Métropole (for 30 months)
    • Dalenys (for 27 months)
    • Univention GmbH (for 22 months)
    • Université Jean Monnet de St Etienne (for 22 months)
    • Sonus Networks (for 16 months)
    • UR Communications BV (for 10 months)
    • maxcluster GmbH (for 10 months)
    • Exonet B.V. (for 6 months)
  • Bronze sponsors:
    • David Ayers – IntarS Austria (for 37 months)
    • Evolix (for 37 months)
    • Offensive Security (for 37 months)
    • Seznam.cz, a.s. (for 37 months)
    • Freeside Internet Service (for 36 months)
    • MyTux (for 36 months)
    • Linuxhotel GmbH (for 34 months)
    • Intevation GmbH (for 33 months)
    • Daevel SARL (for 32 months)
    • Bitfolk LTD (for 31 months)
    • Megaspace Internet Services GmbH (for 31 months)
    • Greenbone Networks GmbH (for 30 months)
    • NUMLOG (for 30 months)
    • WinGo AG (for 29 months)
    • Ecole Centrale de Nantes – LHEEA (for 26 months)
    • Sig-I/O (for 23 months)
    • Entr’ouvert (for 21 months)
    • Adfinis SyGroup AG (for 18 months)
    • Quarantainenet BV (for 13 months)
    • GNI MEDIA (for 12 months)
    • RHX Srl (for 10 months)
    • Bearstech (for 4 months)
    • LiHAS (for 4 months)
    • People Doc

My Free Software Activities in June 2017

July 4, 2017 by Raphaël Hertzog

My monthly report covers a large part of what I have been doing in the free software world. I write it for my donors (thanks to them!) but also for the wider Debian community because it can give ideas to newcomers and it’s one of the best ways to find volunteers to work with me on projects that matter to me.

Debian LTS

I was allocated 12 hours to work on security updates for Debian 7 Wheezy. During this time I did the following:

  • Released DLA-983-1 and DLA-984-1 on tiff3/tiff to fix 4 CVE. I also updated our patch set to get back in sync with upstream since we had our own patches for a while and upstream ended up using a slightly different approach. I checked that the upstream fix did really fix the issues with the reproducer files that were available to us.
  • Handled CVE triage for a whole week.
  • Released DLA-1006-1 on libarchive (2 CVE fixed by Markus Koschany, one by me).

Debian packaging

Django. A last-minute update to Django in stretch before the release, I uploaded python-django 1:1.10.7-2 fixing two bugs (among which one was release critical) and filed the corresponding unblock request.

schroot. I tried to prepare another last-minute update, this time for schroot. The goal was to fix the bash completion (#855283) and a problem encountered by the Debian sysadmins (#835104). Those issues are fixed in unstable/testing but my unblock request got turned into a post-release stretch update because the release managers wanted to give the package some more testing time in unstable. Even now, they are wondering whether they should accept the new systemd service file.

live-build, live-config and live-boot. On live-build, I merged a patch to add a keyboard shortcut for the advanced option menu entry (#864386). For live-config, I uploaded version 5.20170623 to fix a broken boot sequence when you have multiple partitions (#827665). For live-boot, I uploaded version 1:20170623 to fix the path to udevadm (#852570) and avoiding a file duplication in the initrd (864385).

zim. I packaged a release candidate (0.67~rc2) in Debian Experimental and started to use it. I quickly discovered two annoying regressions that I reported upstream (here and here).

logidee-tools. This is a package I authored a long time ago and that I’m no longer actively using. It does still work but I sometimes wonder if it still has real users. Anyway I wanted to quickly replace the broken dependency on pgf but I ended up converting the Subversion repository to Git and I also added autopkgtests. At least those tests will inform me when the package no longer works… otherwise I would not notice since I’m no longer using it.

Bugs filed. I filed #865531 on lintian because the new check testsuite-autopkgtest-missing is giving some bad advice and probably does its check in a bad way. I also filed #865541 on sbuild because sbuild --apt-distupgrade can under some circumstances remove build-essential and break the build chroot. I filed an upstream ticket on publican to forward the request I received in #864648.

Sponsorship. I sponsored a jessie update for php-tcpdf (#814030) and dolibarr 5.0.4+dfsg3-1 for unstable. I sponsored many other packages, but all in the context of the pkg-security team.

pkg-security work

Now that the Stretch freeze is over, the team became more active again and I have been overwhelmed with the number of packages to review and sponsor:

  • knocker
  • recon-ng
  • dsniff
  • libnids
  • rfdump
  • snoopy
  • dirb
  • wcc
  • arpwatch
  • dhcpig
  • backdoor-factory

I also updated hashcat to a new upstream release (3.6.0) and had to discuss with upstream about its weird versioning change. Looks like we will have to introduce an epoch to be able to get back in sync with upstream. 🙁 To be able to get in sync with Kali, I introduced an hashcat-meta source package (in contrib) providing hashcat-nvidia to make it easy to install hashcat for owners of NVidia hardware.

Misc stuff

Distro Tracker. I merged a small CSS fix from Aurélien Couderc (#858101) and added a missing constraint on the data model (found through an unexpected traceback that I received by email). I also updated the list of repositories shortly after the stretch release (#865070).

Salt formulas. As part of my Kali work, I did setup a build daemon on Debian stretch host and I encountered a couple of issues with my Salt rules. I reported one against salt-formula (here) and I pushed updates for debootstrap-formula, apache-formula and schroot-formula.

Thanks

See you next month for a new summary of my activities.

Freexian’s report about Debian Long Term Support, May 2017

June 13, 2017 by Raphaël Hertzog

A Debian LTS logoLike each month, here comes a report about the work of paid contributors to Debian LTS.

Individual reports

In May, about 182 work hours have been dispatched among 11 paid contributors. Their reports are available:

  • Ben Hutchings did 13 hours (out of 15h allocated + 3 extra hours, thus keeping 5 extra hours for June).
  • Brian May did 10 hours.
  • Chris Lamb did 18 hours.
  • Emilio Pozuelo Monfort did 23 hours (out of 24 hours allocated + 2 hours remaining, thus keeping 3 hours for June).
  • Guido Günther did 8 hours.
  • Hugo Lefeuvre did 15 hours.
  • Jonas Meurer gave back his remaining hours from last month.
  • Markus Koschany did 27.25 hours.
  • Ola Lundqvist did 12 hours (out of 6h allocated + 6 remaining hours).
  • Raphaël Hertzog did 12 hours.
  • Roberto C. Sanchez did 22 hours (out of 20 hours allocated + 4.5 hour remaining, thus keeping 2.5 extra hours for June).
  • Thorsten Alteholz did 27.25 hours.

Evolution of the situation

The number of sponsored hours did not change and we are thus still a little behind our objective.

The security tracker currently lists 44 packages with a known CVE and the dla-needed.txt file 42. The number of open issues is close to last month.

Thanks to our sponsors

New sponsors are in bold (none this month unfortunately).

  • Platinum sponsors:
    • TOSHIBA (for 20 months)
    • GitHub (for 11 months)
  • Gold sponsors:
    • The Positive Internet (for 36 months)
    • Blablacar (for 35 months)
    • Linode (for 25 months)
    • Babiel GmbH (for 14 months)
    • Plat’Home (for 14 months)
  • Silver sponsors:
    • Domeneshop AS (for 35 months)
    • Université Lille 3 (for 35 months)
    • Trollweb Solutions (for 33 months)
    • Nantes Métropole (for 29 months)
    • Dalenys (for 26 months)
    • Univention GmbH (for 21 months)
    • Université Jean Monnet de St Etienne (for 21 months)
    • Sonus Networks (for 15 months)
    • UR Communications BV (for 9 months)
    • maxcluster GmbH (for 9 months)
    • Exonet B.V. (for 5 months)
  • Bronze sponsors:
    • David Ayers – IntarS Austria (for 36 months)
    • Evolix (for 36 months)
    • Offensive Security (for 36 months)
    • Seznam.cz, a.s. (for 36 months)
    • Freeside Internet Service (for 35 months)
    • MyTux (for 35 months)
    • Linuxhotel GmbH (for 33 months)
    • Intevation GmbH (for 32 months)
    • Daevel SARL (for 31 months)
    • Bitfolk LTD (for 30 months)
    • Megaspace Internet Services GmbH (for 30 months)
    • Greenbone Networks GmbH (for 29 months)
    • NUMLOG (for 29 months)
    • WinGo AG (for 28 months)
    • Ecole Centrale de Nantes – LHEEA (for 25 months)
    • Sig-I/O (for 22 months)
    • Entr’ouvert (for 20 months)
    • Adfinis SyGroup AG (for 17 months)
    • Laboratoire LEGI – UMR 5519 / CNRS (for 12 months)
    • Quarantainenet BV (for 12 months)
    • GNI MEDIA (for 11 months)
    • RHX Srl (for 9 months)
    • Bearstech (for 3 months)
    • LiHAS (for 3 months)
  • « Previous Page
  • 1
  • …
  • 17
  • 18
  • 19
  • 20
  • 21
  • …
  • 36
  • Next Page »

Get the Debian Handbook

Available as paperback and as ebook.
Book cover

Email newsletter

Get updates and exclusive content by email, join the Debian Supporters Guild:

Follow me

  • Email
  • Facebook
  • GitHub
  • RSS
  • Twitter

Discover my French books

Planets

  • Planet Debian

Archives

I write software, books and documentation. I'm a Debian developer since 1998 and run my own company. I want to share my passion and knowledge of the Debian ecosystem. Read More…

Tags

3.0 (quilt) Activity summary APT aptitude Blog Book Cleanup conffile Contributing CUT d-i Debconf Debian Debian France Debian Handbook Debian Live Distro Tracker dpkg dpkg-source Flattr Flattr FOSS Freexian Funding Git GNOME GSOC HOWTO Interview LTS Me Multiarch nautilus-dropbox News Packaging pkg-security Programming PTS publican python-django Reference release rolling synaptic Ubuntu WordPress

Recent Posts

  • Freexian is looking to expand its team with more Debian contributors
  • Freexian’s report about Debian Long Term Support, July 2022
  • Freexian’s report about Debian Long Term Support, June 2022
  • Freexian’s report about Debian Long Term Support, May 2022
  • Freexian’s report about Debian Long Term Support, April 2022

Copyright © 2005-2021 Raphaël Hertzog