Package: release.debian.org Severity: normal User: release.debian....@packages.debian.org Usertags: rm
Hi Stable Release Managers, libnsbmp recently got two CVEs assigned, CVE-2015-7507 and CVE-2015-7508. There was only one NMU after the initial release in 2009 and the library is unused in Debian itself (netsurf though has an embedded copy). Can you please remove libnsbmp in the next Jessie point release? Regards, Salvatore