Source: pillow Version: 6.2.1-2 Severity: serious Justification: Policy 2.3, 4.5, 12.5
During review in binary-NEW, I found the following issues with d/copyright. Since the issues already exist in the archive I did not REJECT, but they should be fixed. Note that I am filing an identical list of problems against src:pillow-python2 as the orig.tar is now in the archive twice. - Needs "Alex Clark **and contributors**" from LICENSE - Copyright information for Tests/fonts not in d/copyright. - Google suggests that Tests/images/bmp is GPL-3 and also that the files are generated using C code. If that's right, we would need to at least include that code for generating the images in debian/missing-sources/ (and ideally regenerate them). - Tests/images/pillow3.icns looks like it contains a colour space copyright 1998 Hewlett-Packard Company; unclear how licensed. - Tests/test_file_fli.py says that Tests/images/a.fli came from the web and I cannot see any free license; probably needs to be filtered out. - Tests/test_file_mcidas.py says something similar for some other images; this should be accounted for. - Several files matching {docs/example,src/PIL}/*ImagePlugin.py and src/libImaging/BcnDecode.c are public domain/CC0. - Most files matching src/PIL/{ImageMorph,MspImagePlugin,SpiderImagePlugin,_binary}.py and src/libImaging/{Jpeg2K*,Quant*,SgiRleDecode.c,UnsharpMask.c} have different copyright holders. - src/Tk/_tkmini.h has different copyright holders and license; possibly not DFSG-free due to "GOVERNMENT USE" section. - src/libImaging/{QuantOctree.c,raqm.h,nmake.opt} have different licenses and copyright holders. -- Sean Whitton
signature.asc
Description: PGP signature