Comment Re:Isn't this the idea? (Score 1) 113
If ffmpeg allows known and published vulnerabilities to languish, the risk here is that organizations that use their code will simply stop using it and will look for other solutions.
Oh noes! In order to avoid spending a little bit of money to help ffmpeg maintain a quality codebase, they'll instead spend a *lot* more money switching to something else... and still be faced with the same "maintenance isn't free" problem when they continue to freeload off of someone else's work.
(And that's putting aside the basic problem that there isn't really "something else" that itself isn't built on top off ffmpeg, which drives up the costs of switching even more. Of course, there may be commercial products that do this stuff already, but