Bug#987926: RM: gimp-dcraw, upstream gone, possible security flaws

2021-05-02 Thread Haowen Liu

Package: gimp-dcraw
Version: 1.32-1
Severity: serious

The gimp-dcraw plugin has not been updated for 13 years, with the 
upstream completely gone. This would mean possible unaddressed security 
flaws.


Compare this to gimp-ufraw, which is a more fully featured version of 
gimp-dcraw. gimp-ufraw is removed in 2019 due to "upstream gone, 
possible security issues" [1]. If gimp-ufraw should be considered 
insecure (last updated 2015), gimp-dcraw should as well (last updated 2008).


Further, as Chris mentioned in bug #987443 [2], its functionality is 
superseded by gimp native functionalities is no longer useful.


[1] https://tracker.debian.org/news/1046384/removed-022-4-from-unstable/
[2] https://bugs.debian.org/cgi-bin/bugreport.cgi?bug=987443



Bug#305622: gimp-dcraw: Cannot process filenames with single quotes

2021-04-21 Thread Haowen Liu

> Tagging newcomer; this bug should be quite easy to fix.

Is this bug still existent / relevant? This is my first time 
contributing to Debian. Should I look into this?


Haowen