Skip to content

[FEATURE REQUEST] Consider dropping/replacing ffmpeg-python dependency because of future transitive dependency #292

@xgqt

Description

@xgqt

Feature Request

Checklist

  • I've searched the bugtracker for similar feature requests including closed ones.
  • I will add the enhancement label to the issue.

Description

Please consider dropping ffmpeg-python depending on the future library.

There is a fix to patch ffmpeg-python to remove the dependency but
the repo did not see any PR merged since 2022, so I am sceptic that it will receive the fix.

See also: kkroening/ffmpeg-python#795

Citing the Gentoo bugreport for future:

Unmaintained with last release in 2019.  We already patched it to work
with Python 3.9+.  The upstream code is also vulnerable
to CVE-2022-40899.  Above all, this library is completely redundant
to packages not supporting Python 2 anymore.

Please see: https://bugs.gentoo.org/888271

Metadata

Metadata

Assignees

No one assigned

    Labels

    enhancementNew feature or request

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions