Page MenuHome GnuPG

Release GnuPG 2.4.6
Closed, ResolvedPublic

Description

Noteworthy changes in version 2.4.6 (2024-10-29)

  • gpg: New command --quick-set-ownertrust. [rG967678d972]
  • gpg: Indicate disabled keys in key listings and add list option "show-ownertrust". [rG2a0a706eb2]
  • gpg: Make sure a DECRYPTION_OKAY is never issued for a bad OCB tag. [T7042]
  • gpg: Do not allow to accidently set the RENC usage. [T7072]
  • gpg: Accept armored files without CRC24 checksum. [T7071]
  • gpg: New --import-option "only-pubkeys". [T7146]
  • gpg: Repurpose the AKL mechanism "ldap" to work like the keyserver mechnism but only for LDAP keyservers. [rG6551281ca3]
  • gpg: ADSKs are now configurable for new keys. [T6882]
  • gpg: New option --proc-all-sigs. [T7261]
  • gpg: Fix a wrong decryption failed status for signed and OCB encrypted messages without a signature verification key. [T7042]
  • gpg: Make --no-literal work again for -c and --store. [T5852]
  • gpg: Fix getting key by IPGP. [T7288]
  • gpg: Validate the trustdb after the import of a trusted key. [T7200]
  • gpg: Exclude expired trusted keys from the key validation process. [T7200]
  • gpgsm: New option --assert-signer. [T7286]
  • gpgsm: Emit user IDs with an empty Subject also in colon mode. [T7171]
  • keyboxd: Fix a race condition on the database handle. [T7294]
  • agent: Consider an empty pattern file as valid. [rGc27534de95]
  • agent: Fix error handling of READKEY. [T6012]
  • agent: Avoid random errors when storing key in ephemeral mode. [T7129, rG19d93a239d]
  • agent: Make "SCD DEVINFO --watch" more robust. [T7151]
  • agent: Fix detection of the yet unused trustflag de-vs. [T5079]
  • scd: Improve KDF data object handling for OpenPGP cards. [T7058]
  • scd: Avoid buffer overrun with more than 16 PC/SC readers. [T7129, rG524e3a9345]
  • scd: Fix how the scdaemon on its pipe connection finishes. [T7160]
  • gpgconf: Check readability of some files with -X and change its output format. [rG759adb2493]
  • gpg-mail-tube: New tool to apply PGP/MIME encryption to a mail. [rGa564a9f66c]
  • Fix a race condition in creating the socket directory. [T7332]
  • Fix some uninitialized variables and double frees in error code paths. [T7129]

(prev: T6960 next: T7353)

Related Objects

Mentioned In
T7353: Release GnuPG 2.4.7
T6960: Release GnuPG 2.4.5
Mentioned Here
T7200: Trustdb not updated on import of extended certificate
T7332: Kleopatra: Initial keylisting sometimes fails or hangs for some seconds
T7353: Release GnuPG 2.4.7
rGc27534de9553: gpg-check-pattern: Consider an empty pattern file as valid
rG759adb249310: gpgconf: Check readability of some files with -X
rG967678d9728c: gpg: New command --quick-set-ownertrust.
rG2a0a706eb213: gpg: Mark disabled keys and add show-ownertrust list option.
rG19d93a239dc5: agent: Make sure to return success in ephemeral store mode.
rG524e3a934568: scd: Avoid buffer overrun with more than 16 PC/SC readers.
rGa564a9f66ca3: gpg-mail-tube: New utility.
rG6551281ca320: gpg: Implement the LDAP AKL method.
T5079: Add compliance flag to trustlist.txt
T5852: Use iobuf_copy where instead of manual iobuf_get/iobuf_put or iobuf_read/iobuf_write loops
T6012: gpg-agent: Add --format=ssh option for READKEY
T6882: Make ADSK configurable for new keys
T7042: AEAD mode does not properly handle modified cipher text
T7058: KDF-DO is not properly implemented
T7071: gpg: Support of No CRC in ASCII armor
T7072: addkey "set your own capabilities" silently sets Restricted Encryption capability
T7129: Fix static reports by static analyser in gnugp
T7146: gpg: Add import option "no-seckeys"
T7151: graceful shutdown: DEVINFO should be a gpg-agent command: also watching input close
T7160: scd: pipe server shutdown
T7171: Allow for empty Subject in X.509
T7261: Option to process all signatures in --batch mode
T7286: Add --assert-signer also to gpgsm
T7288: gpg is not properly handling IPGP entries
T7294: keyboxd: Possible race conditions (and clean up)
T6960: Release GnuPG 2.4.5

Event Timeline

werner created this task.
werner created this object with edit policy "Administrators".
werner claimed this task.
werner updated the task description. (Show Details)
werner moved this task from WiP to 2.4.6 on the gnupg24 board.
werner edited projects, added gnupg24 (2.4.6); removed gnupg24.