Review: rust-mp4parse 0.17.0-1
New Package Report
.changes
| Version | 0.17.0-1 |
|---|---|
| Changed-By | Jeremy Bícha |
| Architecture | source amd64 |
| Distribution | experimental |
| Date | Thu, 25 Sep 2025 16:52:56 -0400 |
| Source | rust-mp4parse |
.dsc
| Section | rust |
|---|---|
| Priority | optional |
| Component | main |
| Package-List | librust-mp4parse-dev deb rust optional arch=any |
debian/copyright
Format: https://www.debian.org/doc/packaging-manuals/copyright-format/1.0/ Upstream-Name: mp4parse Upstream-Contact: Ralph Giles <giles@mozilla.com> Matthew Gregan <kinetik@flim.org> Alfredo Yang <ayang@mozilla.com> Jon Bauman <jbauman@mozilla.com> Bryce Seager van Dyk <bvandyk@mozilla.com> Source: https://github.com/mozilla/mp4parse-rust Files: * Copyright: 2016-2018 Ralph Giles <giles@mozilla.com> 2016-2025 Matthew Gregan <kinetik@flim.org> 2020-2022 Jon Bauman <jbauman@mozilla.com> 2018-2020 Bryce Seager van Dyk <bvandyk@mozilla.com> Alfredo Yang <ayang@mozilla.com> License: MPL-2.0 Files: debian/* Copyright: 2025 Debian Rust Maintainers <pkg-rust-maintainers@alioth-lists.debian.net> 2025 Jeremy Bícha <jbicha@ubuntu.com> License: MPL-2.0 License: MPL-2.0 Debian systems provide the MPL 2.0 in /usr/share/common-licenses/MPL-2.0
Review Information
rejected — allocated to siretart 1 month, 15 days ago, started 1 month, 15 days ago, completed 1 month, 13 days ago.
Final Comment
In the archive ./tests/corrupt/invalid-avif-colr-multiple.zip I found two files that appear to be Copyright Apple Inc., 2015.
I couldn't find where they are coming from and am concerned that they may have been copied in an unauthrized manner. Please clarify the licensing situation with upstream and document the findings in Debian/copyright. In the mean time, I'd recommend removing those test files before uploading to Debian.