Security Project Meeting 2008-07-14 19:00 UTC
1.
Agenda
- Project status
- Short overview of the current status of the Gentoo Security Project
- Recruitment
- What can be done to improve the current situation?
- Delays in bug resolution/GLSA publication
- Where are the delays located and what can be done about them?
- GLSA related issues
- New date format in GLSAs
- Slot support
- Handling of CVE identifiers in bugs
- Define a way/ways to specify CVE ids in bugs (title/alias/...).
- Documentation is needed on how to search for CVE ids.
- CVE Compatibility
- Possible changes to the Vulnerability Policy
- Insecure creation of temporary files
- SQL Injection
- Security support for games
- Should games be fully security-supported or be handled in a different way than other packages?
- Any other topic
2.
Summary and log
|
|