{"id":10545,"date":"2019-07-11T22:32:12","date_gmt":"2019-07-11T20:32:12","guid":{"rendered":"https:\/\/gambaru.de\/blog\/?p=10545"},"modified":"2019-07-11T22:32:12","modified_gmt":"2019-07-11T20:32:12","slug":"my-free-software-activities-in-june-2019","status":"publish","type":"post","link":"https:\/\/gambaru.de\/blog\/2019\/07\/11\/my-free-software-activities-in-june-2019\/","title":{"rendered":"My Free Software Activities in June 2019"},"content":{"rendered":"<p>Welcome to gambaru.de. Here is my monthly report that covers what I have been doing for Debian. If you're interested in Java, Games and LTS topics, this might be interesting for you.<br \/>\nFirst of all I want to thank Debian's Release Team. Whenever there was something to unblock for Buster, I always got feedback within hours and in almost all cases the package could just migrate to testing. Good communication and clear rules helped a lot to make the whole freeze a great experience.<\/p>\n<h2>Debian Games<\/h2>\n<ul>\n<li>I reviewed and sponsored a couple of packages again this month.<\/li>\n<li>Reiner Herrmann provided a complete overhaul of <a href=\"https:\/\/tracker.debian.org\/pkg\/xbill\">xbill<\/a>, so that we all can fight those Wingdows Viruses again.<\/li>\n<li>He also prepared a new upstream release of <a href=\"https:\/\/tracker.debian.org\/pkg\/supertuxkart\">Supertuxkart<\/a>, which is currently sitting in experimental but will hopefully be uploaded to unstable within the next days.<\/li>\n<li>Bernhard \u00dcbelacker fixed two annoying bugs in <a href=\"https:\/\/tracker.debian.org\/pkg\/freeorion\">Freeorion<\/a> (<a href=\"https:\/\/bugs.debian.org\/cgi-bin\/bugreport.cgi?bug=930417\">#930417<\/a>) and <a href=\"https:\/\/tracker.debian.org\/pkg\/warzone2100\">Warzone2100<\/a> (<a href=\"https:\/\/bugs.debian.org\/cgi-bin\/bugreport.cgi?bug=930942\">#930942<\/a>).\u00a0 Unfortunately it was too late to include the fixes for Debian 10 in time but I will prepare an update for the next point release.<\/li>\n<li>Well, the freeze is over now (hooray) and I intend to upgrade a couple of games in the warm\u00a0(if you live in the northern hemisphere) month of July again .<\/li>\n<\/ul>\n<h2>Debian Java<\/h2>\n<ul>\n<li>I prepared another security update for <a href=\"https:\/\/tracker.debian.org\/pkg\/jackson-databind\">jackson-databind<\/a> to fix CVE-2019-12814 and CVE-2019-12384 (<a href=\"https:\/\/bugs.debian.org\/cgi-bin\/bugreport.cgi?bug=930750\">#930750<\/a>).<\/li>\n<li>I worked on a security update for <a href=\"https:\/\/tracker.debian.org\/pkg\/tomcat8\">Tomcat 8<\/a> but have not finished it yet.<\/li>\n<\/ul>\n<h2>Debian LTS<\/h2>\n<p>This was my fortieth month as a paid contributor and I have been paid to work 17 hours on <a href=\"https:\/\/wiki.debian.org\/LTS\/\">Debian LTS<\/a>, a project started by <a href=\"https:\/\/raphaelhertzog.com\">Rapha\u00ebl Hertzog<\/a>. In that time I did the following:<\/p>\n<ul>\n<li>From 10.06.2019 until 16.06.2019 and from 24.06.2019 until 30.06.2019 I was in charge of our LTS frontdesk. I investigated and triaged CVE in wordpress, ansible, libqb, radare2, lemonldap-ng, irssi, libapache2-mod-auth-mellon and openjpeg2.<\/li>\n<li><a href=\"https:\/\/lists.debian.org\/debian-lts-announce\/2019\/06\/msg00014.html\">DLA-1827-1<\/a>. Issued a security update for gvfs fixing 1 CVE.<\/li>\n<li><a href=\"https:\/\/lists.debian.org\/debian-lts-announce\/2019\/06\/msg00019.html\">DLA-1831-1<\/a>. Issued a security update for jackson-databind fixing 2 CVE.<\/li>\n<li><a href=\"https:\/\/lists.debian.org\/debian-lts-announce\/2019\/06\/msg00007.html\">DLA-1822-1<\/a>. Issued a security update for php-horde-form fixing 1 CVE.<\/li>\n<li><a href=\"https:\/\/lists.debian.org\/debian-lts-announce\/2019\/06\/msg00028.html\">DLA-1839-1<\/a>. Issued a security update for expat fixing 1 CVE.<\/li>\n<li><a href=\"https:\/\/lists.debian.org\/debian-lts-announce\/2019\/07\/msg00004.html\">DLA-1845-1<\/a>.\u00a0 Issued a security update for dosbox fixing 2 CVE.<\/li>\n<li><a href=\"https:\/\/lists.debian.org\/debian-lts-announce\/2019\/07\/msg00005.html\">DLA-1846-1<\/a>.\u00a0 Issued a security update for unzip fixing 1 CVE.<\/li>\n<li><a href=\"https:\/\/lists.debian.org\/debian-lts-announce\/2019\/07\/msg00010.html\">DLA-1851-1<\/a>. Issued a security update for openjpeg2 fixing 2 CVE.<\/li>\n<\/ul>\n<h2>ELTS<\/h2>\n<p>Extended Long Term Support (<a href=\"https:\/\/wiki.debian.org\/LTS\/Extended\">ELTS<\/a>) is a project led by <a href=\"https:\/\/www.freexian.com\/\">Freexian<\/a> to further extend the lifetime of Debian releases. It is not an official Debian project but all Debian users benefit from it without cost. The current ELTS release is Debian 7 \"Wheezy\". This was my thirteenth month and I have been paid to work 22 hours on ELTS (15 hours were allocated + 7 hours from last month).<\/p>\n<ul>\n<li><a href=\"https:\/\/deb.freexian.com\/extended-lts\/updates\/ela-133-1-linux\/\">ELA-133-1<\/a>. Issued a security update for linux fixing 9 CVE.<\/li>\n<li><a href=\"https:\/\/deb.freexian.com\/extended-lts\/updates\/ela-137-1-libvirt\/\">ELA-137-1<\/a>. Issued a security update for libvirt fixing 1 CVE.<\/li>\n<li><a href=\"https:\/\/deb.freexian.com\/extended-lts\/updates\/ela-139-1-bash\/\">ELA-139-1<\/a>. Issued a security update for bash fixing 1 CVE.<\/li>\n<li><a href=\"https:\/\/deb.freexian.com\/extended-lts\/updates\/ela-140-1-glib2.0\/\">ELA-140-1<\/a>. Issued a security update for glib2.0 fixing 3 CVE.<\/li>\n<li><a href=\"https:\/\/deb.freexian.com\/extended-lts\/updates\/ela-141-1-unzip\/\">ELA-141-1<\/a>. Issued a security update for unzip fixing 1 CVE.<\/li>\n<li><a href=\"https:\/\/deb.freexian.com\/extended-lts\/updates\/ela-142-1-libxslt\/\">ELA-142-1<\/a>. Issued a security update for libxslt fixing 2 CVE.<\/li>\n<\/ul>\n<p>Thanks for reading and see you next time.<\/p>\n","protected":false},"excerpt":{"rendered":"<p>Welcome to gambaru.de. Here is my monthly report that covers what I have been doing for Debian. If you&#8217;re interested in Java, Games and LTS topics, this might be interesting for you. First of all I want to thank Debian&#8217;s Release Team. Whenever there was something to unblock for Buster, I always got feedback within &hellip; <\/p>\n<p class=\"link-more\"><a href=\"https:\/\/gambaru.de\/blog\/2019\/07\/11\/my-free-software-activities-in-june-2019\/\" class=\"more-link\"><span class=\"screen-reader-text\">\u201eMy Free Software Activities in June 2019\u201c<\/span> weiterlesen<\/a><\/p>\n","protected":false},"author":1,"featured_media":0,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":[],"categories":[4],"tags":[53,68,155],"_links":{"self":[{"href":"https:\/\/gambaru.de\/blog\/wp-json\/wp\/v2\/posts\/10545"}],"collection":[{"href":"https:\/\/gambaru.de\/blog\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/gambaru.de\/blog\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/gambaru.de\/blog\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/gambaru.de\/blog\/wp-json\/wp\/v2\/comments?post=10545"}],"version-history":[{"count":0,"href":"https:\/\/gambaru.de\/blog\/wp-json\/wp\/v2\/posts\/10545\/revisions"}],"wp:attachment":[{"href":"https:\/\/gambaru.de\/blog\/wp-json\/wp\/v2\/media?parent=10545"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/gambaru.de\/blog\/wp-json\/wp\/v2\/categories?post=10545"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/gambaru.de\/blog\/wp-json\/wp\/v2\/tags?post=10545"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}