Discussion
Loading...

Post

  • About
  • Code of conduct
  • Privacy
  • Users
  • Instances
  • About Bonfire
jbz
@jbz@indieweb.social  ·  activity timestamp last week

👊🏻 FFmpeg to Google: Fund Us or Stop Sending Bugs

「 Many in the FFmpeg community argue, with reason, that it is unreasonable for a trillion-dollar corporation like Google, which heavily relies on FFmpeg in its products, to shift the workload of fixing vulnerabilities to unpaid volunteers. They believe Google should either provide patches with vulnerability reports or directly support the project’s maintenance 」

https://thenewstack.io/ffmpeg-to-google-fund-us-or-stop-sending-bugs/

#ffmpeg #opensource #cybersecurity

The New Stack

FFmpeg to Google: Fund Us or Stop Sending Bugs

A lively discussion about open source, security, and who pays the bills has erupted on Twitter. 
  • Copy link
  • Flag this post
  • Block
Tod Beardsley
@todb@infosec.exchange replied  ·  activity timestamp last week

@jbz filing vulnerability reports is the bare minimum. So yes, Google can afford to do a little better than that.

  • Copy link
  • Flag this comment
  • Block
Log in

bonfire.cafe

A space for Bonfire maintainers and contributors to communicate

bonfire.cafe: About · Code of conduct · Privacy · Users · Instances
Bonfire social · 1.0.0 no JS en
Automatic federation enabled
  • Explore
  • About
  • Members
  • Code of Conduct
Home
Login