[Date Prev][Date Next] [Thread Prev][Thread Next] [Date Index] [Thread Index]

RM: goldedplus -- RoQA; orphaned, several vulnerabilities, license unclear



retitle 334743 RM: goldedplus -- RoQA; orphaned, several vulnerabilities, license unclear
reassign 334743 ftp.debian.org
thanks

Please remove goldedplus.

  * Orphaned for 5 months.
  * Includes a heavily modified copy of uulib 0.5.15 vulnerable to
    CVE-2004-0333 (buffer overflows) and CVE-2004-2265 (insecure
    temporary files).
  * Includes code from a non-free abandonware library.  Quoting the
    copyright file: "Parts of the Goldware Library is derived from the
    source of the old Shareware CXL 5.2 library by Mike Smedley, from
    which I bought a source license many years ago. [...] much code is
    essentially unchanged [...] I even tried to find Mike Smedley, but
    apparently he has vanished off the face of the earth [...]"
  * popcon: 13 installations, 4 votes.

Thanks,

Matej



Reply to: