gallery2 outstanding security bugs -- Abondoned by Berninger?

Jon Ciesla limb at jcomserv.net
Thu Dec 18 18:23:39 UTC 2008


> Jon Ciesla wrote:
>>> "Jon Ciesla" <limb at jcomserv.net> writes:
>>>>> (Yes, I know libjpeg upstream is kinda moribund, but if you want new
>>>>> features in it you should be trying to revive upstream development,
>>>>> not strongarm the Fedora package maintainer to take over
>>>>> development.)
>>>> I agree strongly with that principle.  Two questions:
>>>> A. What has been done thusfar WTR reviving upstream development?
>>> Well, at one point I had more or less formally blessed Guido Vollbeding
>>> as the new lead maintainer, but if he's actually put out a release I
>>> haven't heard about it :-(.  You could try bugging the people
>>> associated
>>> with the sourceforge libjpeg project.
>>
>> CCing them.  libjpeg SourceForge team, what is the current status of
>> libjpeg development?
>
> Jon,
>
> I have heard nothing in some time from Guido, and I'm not aware of him
> producing any sort of libjpeg release.
>
> I find the situation somewhat frustrating.

Agreed.  So what's next?  Is there a plan for further action, a new
primary maintainer, etc?

I think WRT gallery2, I'll see about patching the -crop call out of that
plugin.

> Best regards,
> --
> ---------------------------------------+--------------------------------------
> I set the clouds in motion - turn up   | Frank Warmerdam,
> warmerdam at pobox.com
> light and sound - activate the windows | http://pobox.com/~warmerdam
> and watch the world go round - Rush    | Geospatial Programmer for Rent
>


-- 
in your fear, speak only peace
in your fear, seek only love

-d. bowie




More information about the fedora-devel-list mailing list