Page MenuHome GnuPG
Feed All Stories

Mar 10 2015

werner closed T1887: assuan-buffer.c: dereference of null pointer as Resolved.
Mar 10 2015, 9:15 AM · Mistaken, Bug Report, libassuan
werner added a project to T1887: assuan-buffer.c: dereference of null pointer: Mistaken.
Mar 10 2015, 9:15 AM · Mistaken, Bug Report, libassuan
werner added a comment to T1893: The ABI of passing union with long double has changed in GCC 4.4.

Please STOP posting all warnings you see to the bugtracker. Use gnupg-devel is
you have questions. Thanks.

Mar 10 2015, 9:15 AM · Mistaken, gpgrt
werner added a project to T1893: The ABI of passing union with long double has changed in GCC 4.4: Mistaken.
Mar 10 2015, 9:15 AM · Mistaken, gpgrt
werner added a project to T1865: Cannot test nPth library: Info Needed.
Mar 10 2015, 9:10 AM · Bug Report, npth
werner added a comment to T1865: Cannot test nPth library.

We need more information to triage this bug.

Mar 10 2015, 9:10 AM · Bug Report, npth
werner added a comment to T1878: wipememory relies upon volatile qualifier.

So what is the bug here? See also the long discussions every few years on
cryptography regading disabling of optimization.

Mar 10 2015, 9:08 AM · Info Needed, Bug Report
werner added a comment to T1914: http.c: potential buffer overflow.

The first warning: The function is pretty short:

  void
  http_start_data (http_t hd)
  {
    if (!hd->in_data)
      {
        es_fputs ("\r\n", hd->fp_write);
        es_fflush (hd->fp_write);
        hd->in_data = 1;
      }
    else
      es_fflush (hd->fp_write);
  }

I do not understand how your analzyer gets to the conclusion that hd == NULL?

Mar 10 2015, 8:51 AM · Not A Bug, Bug Report, gnupg
werner added a comment to T1914: http.c: potential buffer overflow.

On the second warning:

Please view that in context:

  /* Append a new header. */
  h = xtrymalloc (sizeof *h + strlen (line));
  if (!h)
    return gpg_err_code_from_syserror ();
  strcpy (h->name, line);

How should that overflow a buffer? It has just been allocated - also check the
definition of the struct used for h.

Mar 10 2015, 8:46 AM · Not A Bug, Bug Report, gnupg

Mar 9 2015

bjmgeek added projects to T1920: build failure on cygwin with speedo: gpgrt, Bug Report.
Mar 9 2015, 8:46 PM · Info Needed, Bug Report, gpgrt
bjmgeek set Version to gnupg-2.1.2 on T1920: build failure on cygwin with speedo.
Mar 9 2015, 8:46 PM · Info Needed, Bug Report, gpgrt
bjmgeek added a comment to T1920: build failure on cygwin with speedo.

Mar 9 2015, 8:46 PM · Info Needed, Bug Report, gpgrt
aheinecke added projects to T1919: Libgcrypt in Gpg4Win has AES-NI support disabled: gpg4win, Feature Request, libgcrypt.
Mar 9 2015, 6:41 PM · libgcrypt, Feature Request, gpg4win
aheinecke updated subscribers of T1919: Libgcrypt in Gpg4Win has AES-NI support disabled.
Mar 9 2015, 6:41 PM · libgcrypt, Feature Request, gpg4win
aheinecke closed T1746: Bug report - GPG a folder to *.tar.gpg loss all files! as Resolved.
Mar 9 2015, 9:33 AM · Bug Report, gnupg, gpg4win
aheinecke removed a project from T1746: Bug report - GPG a folder to *.tar.gpg loss all files!: Restricted Project.
Mar 9 2015, 9:33 AM · Bug Report, gnupg, gpg4win
aheinecke added a comment to T1746: Bug report - GPG a folder to *.tar.gpg loss all files!.

Patch still needs to be applied upstream but this is tracked in another issue.
-> Resolved

Mar 9 2015, 9:33 AM · Bug Report, gnupg, gpg4win

Mar 6 2015

werner added projects to T1918: Pinentry requires an emulation for getopt_long: pinentry, Bug Report.
Mar 6 2015, 7:01 PM · Bug Report, pinentry
npcole added projects to T1917: Provide a way to determine available ECC Curves: Feature Request, gnupg.
Mar 6 2015, 1:13 PM · gnupg, Feature Request
npcole set Version to 2.1 on T1917: Provide a way to determine available ECC Curves.
Mar 6 2015, 1:13 PM · gnupg, Feature Request
JW added a comment to T1915: Building static GnuPG 2.1.2 fails due to multiply defined symbols..

Changed status to 'unread'. I'm not chatting.

Mar 6 2015, 11:36 AM · Bug Report, gnupg
JW added a comment to T1915: Building static GnuPG 2.1.2 fails due to multiply defined symbols..

I was able to duplicate Bug 1862: Building static GnuPG 2.1.2 fails due to
multiply defined symbols.


/home/jwalton/Desktop/gcrypt-2.0-analyze/libgpg-error-1.18/src/visibility.c:46:
multiple definition of `gpg_err_code_from_errno'
t-support.o:/home/jwalton/Desktop/gcrypt-2.0-analyze/gnupg-2.1.2/common/t-support.c:137:
first defined here
/home/jwalton/gpg-analyze/lib/libgpg-error.a(libgpg_error_la-visibility.o): In
function `gpg_err_code_from_syserror':
/home/jwalton/Desktop/gcrypt-2.0-analyze/libgpg-error-1.18/src/visibility.c:58:
multiple definition of `gpg_err_code_from_syserror'
t-support.o:/home/jwalton/Desktop/gcrypt-2.0-analyze/gnupg-2.1.2/common/t-support.c:151:
first defined here
collect2: error: ld returned 1 exit status
make[3]: * [t-stringhelp] Error 1
make[3]: Leaving directory
`/home/jwalton/Desktop/gcrypt-2.0-analyze/gnupg-2.1.2/common'
make[2]:
* [all] Error 2
make[2]: Leaving directory
`/home/jwalton/Desktop/gcrypt-2.0-analyze/gnupg-2.1.2/common'
make[1]: * [all-recursive] Error 1
make[1]: Leaving directory `/home/jwalton/Desktop/gcrypt-2.0-analyze/gnupg-2.1.2'
make:
* [all] Error 2


LIBRARY=gnupg
VERSION=2.1.2
FILE="$LIBRARY-$VERSION"

export PREFIX=/usr/local

cd "$FILE"
./configure --enable-static --disable-shared
--with-libgpg-error-prefix="$PREFIX" --with-libassuan-prefix="$PREFIX"
--with-ksba-prefix="$PREFIX" --with-npth-prefix="$PREFIX"
--with-libgcrypt-prefix="$PREFIX" --prefix="$PREFIX"

make

Mar 6 2015, 11:35 AM · Bug Report, gnupg
JW set Version to 1.6.3 on T1916: fipsdrv.c: potential race condition due to the use of access(1).
Mar 6 2015, 10:13 AM · Bug Report, libgcrypt
JW added projects to T1916: fipsdrv.c: potential race condition due to the use of access(1): libgcrypt, Bug Report.
Mar 6 2015, 10:13 AM · Bug Report, libgcrypt
JW added a comment to T1881: Undefined behavior when running `make check` under Clang sanitizers.

Changed status to 'unread'. I am not chatting.

Mar 6 2015, 10:06 AM · Bug Report, libgcrypt
JW added a comment to T1881: Undefined behavior when running `make check` under Clang sanitizers.

Also see "Is a misaligned load due to a cast undefined behavior?"
(http://stackoverflow.com/q/28893303) on Stack Overflow.

I wanted to verify it was in fact undefined behavior.

Mar 6 2015, 10:06 AM · Bug Report, libgcrypt
JW set Version to 2.1.2 on T1915: Building static GnuPG 2.1.2 fails due to multiply defined symbols..
Mar 6 2015, 9:54 AM · Bug Report, gnupg
JW added projects to T1915: Building static GnuPG 2.1.2 fails due to multiply defined symbols.: gnupg, Bug Report.
Mar 6 2015, 9:54 AM · Bug Report, gnupg
JW set Version to 2.1.2 on T1914: http.c: potential buffer overflow.
Mar 6 2015, 9:38 AM · Not A Bug, Bug Report, gnupg
JW added projects to T1914: http.c: potential buffer overflow: gnupg, Bug Report.
Mar 6 2015, 9:38 AM · Not A Bug, Bug Report, gnupg
JW added projects to T1913: signal.c: ignoring write failures in signal handler, continuing as if everything is OK.: gnupg, Bug Report.
Mar 6 2015, 9:34 AM · Bug Report, gnupg
JW set Version to 2.1.2 on T1913: signal.c: ignoring write failures in signal handler, continuing as if everything is OK..
Mar 6 2015, 9:34 AM · Bug Report, gnupg
JW set Version to 2.1.2 on T1912: iobuf.c: potential buffer overflows.
Mar 6 2015, 9:25 AM · Not A Bug, Bug Report, gnupg
JW added projects to T1912: iobuf.c: potential buffer overflows: gnupg, Bug Report.
Mar 6 2015, 9:25 AM · Not A Bug, Bug Report, gnupg
JW set Version to 2.1.2 on T1911: dotlock.c: ignoring return value of ‘link’, declared with attribute warn_unused_result.
Mar 6 2015, 9:22 AM · Bug Report, gnupg
JW added projects to T1911: dotlock.c: ignoring return value of ‘link’, declared with attribute warn_unused_result: gnupg, Bug Report.
Mar 6 2015, 9:22 AM · Bug Report, gnupg
JW set Version to 1.6.3 on T1910: fipsdrv.c: dereference of null pointer.
Mar 6 2015, 9:19 AM · Mistaken, Bug Report, libgcrypt
JW added projects to T1910: fipsdrv.c: dereference of null pointer: libgcrypt, Bug Report.
Mar 6 2015, 9:19 AM · Mistaken, Bug Report, libgcrypt
JW set Version to 1.6.3 on T1909: bench-slope.c: potential buffer overflows.
Mar 6 2015, 9:16 AM · Mistaken, Bug Report, libgcrypt
JW added projects to T1909: bench-slope.c: potential buffer overflows: libgcrypt, Bug Report.
Mar 6 2015, 9:16 AM · Mistaken, Bug Report, libgcrypt
JW added projects to T1908: t-ed25519.c: dereference of null pointer: libgcrypt, Bug Report.
Mar 6 2015, 9:14 AM · Mistaken, Bug Report, libgcrypt
JW set Version to 1.6.3 on T1908: t-ed25519.c: dereference of null pointer.
Mar 6 2015, 9:14 AM · Mistaken, Bug Report, libgcrypt
JW added projects to T1907: basic.c: function call argument is an uninitialized value: libgcrypt, Bug Report.
Mar 6 2015, 9:12 AM · Mistaken, Bug Report, libgcrypt
JW set Version to 1.6.3 on T1907: basic.c: function call argument is an uninitialized value.
Mar 6 2015, 9:12 AM · Mistaken, Bug Report, libgcrypt
JW added projects to T1906: tsexp.c: null pointer passed as an argument to a 'nonnull' parameter: libgcrypt, Bug Report.
Mar 6 2015, 9:10 AM · Mistaken, Bug Report, libgcrypt
JW set Version to 1.6.3 on T1906: tsexp.c: null pointer passed as an argument to a 'nonnull' parameter.
Mar 6 2015, 9:10 AM · Mistaken, Bug Report, libgcrypt
JW set Version to 1.6.3 on T1905: hmac256.c: use of memory after it is freed (redux).
Mar 6 2015, 9:09 AM · Mistaken, Bug Report, libgcrypt
JW added projects to T1905: hmac256.c: use of memory after it is freed (redux): libgcrypt, Bug Report.
Mar 6 2015, 9:09 AM · Mistaken, Bug Report, libgcrypt
JW added projects to T1904: hmac256.c: use of memory after it is freed: libgcrypt, Bug Report.
Mar 6 2015, 9:04 AM · Mistaken, Bug Report, libgcrypt
JW set Version to 1.6.3 on T1904: hmac256.c: use of memory after it is freed.
Mar 6 2015, 9:04 AM · Mistaken, Bug Report, libgcrypt
JW added projects to T1903: ecc-eddsa.c: function call argument is an uninitialized value: libgcrypt, Bug Report.
Mar 6 2015, 9:03 AM · Mistaken, Bug Report, libgcrypt
JW set Version to 1.6.3 on T1903: ecc-eddsa.c: function call argument is an uninitialized value.
Mar 6 2015, 9:03 AM · Mistaken, Bug Report, libgcrypt
JW added projects to T1902: ecc-curves.c: dereference of null pointer: gpgrt, Bug Report.
Mar 6 2015, 9:02 AM · Mistaken, Bug Report, gpgrt
JW set Version to 1.6.3 on T1902: ecc-curves.c: dereference of null pointer.
Mar 6 2015, 9:02 AM · Mistaken, Bug Report, gpgrt
JW added a project to T1901: seed.c: the right operand of '^' is a garbage value: libgcrypt.
Mar 6 2015, 9:00 AM · Won't Fix, libgcrypt
JW set Version to 1.6.3 on T1901: seed.c: the right operand of '^' is a garbage value.
Mar 6 2015, 9:00 AM · Won't Fix, libgcrypt
JW set Version to 1.6.3 on T1900: des.c: the right operand of '^' is a garbage value.
Mar 6 2015, 8:58 AM · Mistaken, libgcrypt
JW added a project to T1900: des.c: the right operand of '^' is a garbage value: libgcrypt.
Mar 6 2015, 8:58 AM · Mistaken, libgcrypt
JW set Version to 1.6.3 on T1899: primegen.c: uses is_locked, which appears to suffer a race.
Mar 6 2015, 8:54 AM · Not A Bug, libgcrypt
JW added a project to T1899: primegen.c: uses is_locked, which appears to suffer a race: libgcrypt.
Mar 6 2015, 8:54 AM · Not A Bug, libgcrypt
JW set Version to 1.6.3 on T1898: md.c: null pointer passed as an argument to a 'nonnull' parameter.
Mar 6 2015, 8:50 AM · Mistaken, Bug Report, libgcrypt
JW added projects to T1898: md.c: null pointer passed as an argument to a 'nonnull' parameter: libgcrypt, Bug Report.
Mar 6 2015, 8:50 AM · Mistaken, Bug Report, libgcrypt
JW added projects to T1897: cipher.c: null pointer passed as an argument to a 'nonnull' parameter: libgcrypt, Bug Report.
Mar 6 2015, 8:48 AM · Mistaken, Bug Report, libgcrypt
JW set Version to 1.6.3 on T1897: cipher.c: null pointer passed as an argument to a 'nonnull' parameter.
Mar 6 2015, 8:48 AM · Mistaken, Bug Report, libgcrypt
JW set Version to 1.6.3 on T1896: mpiutil.c: potential null pointer dereferences.
Mar 6 2015, 8:47 AM · Mistaken, Bug Report, libgcrypt
JW added projects to T1896: mpiutil.c: potential null pointer dereferences: libgcrypt, Bug Report.
Mar 6 2015, 8:47 AM · Mistaken, Bug Report, libgcrypt
JW added projects to T1895: mpicoder.c: null pointer dereference: libgcrypt, Bug Report.
Mar 6 2015, 8:43 AM · Mistaken, Bug Report, libgcrypt
JW set Version to 1.6.3 on T1895: mpicoder.c: null pointer dereference.
Mar 6 2015, 8:43 AM · Mistaken, Bug Report, libgcrypt
JW renamed T1885: yat2m.c: null pointer passed as an argument to a 'nonnull' parameter from Null pointer passed as an argument to a 'nonnull' parameter to yat2m.c: null pointer passed as an argument to a 'nonnull' parameter.
Mar 6 2015, 8:37 AM · Bug Report, gpgrt
JW renamed T1886: yat2m.c: null pointer passed as an argument to a 'nonnull' parameter from Null pointer passed as an argument to a 'nonnull' parameter to yat2m.c: null pointer passed as an argument to a 'nonnull' parameter.
Mar 6 2015, 8:36 AM · Mistaken, Bug Report, gpgrt
JW renamed T1887: assuan-buffer.c: dereference of null pointer from Dereference of null pointer to assuan-buffer.c: dereference of null pointer.
Mar 6 2015, 8:36 AM · Mistaken, Bug Report, libassuan
JW renamed T1888: der-encoder.c: dereference of null pointer from Dereference of a null pointer to der-encoder.c: dereference of null pointer.
Mar 6 2015, 8:36 AM · Mistaken, Bug Report, libksba
JW renamed T1889: ocsp.c: null pointer passed as an argument to a 'nonnull' parameter from Null pointer passed as an argument to a 'nonnull' parameter to ocsp.c: null pointer passed as an argument to a 'nonnull' parameter.
Mar 6 2015, 8:35 AM · Mistaken, Bug Report, libksba
JW renamed T1890: ocsp.c: dereference of null pointer from Dereference of a null pointer to ocsp.c: dereference of null pointer.
Mar 6 2015, 8:35 AM · Mistaken, Bug Report, libksba
JW renamed T1891: name.c: dereference of null pointer from Dereference of null pointer to name.c: dereference of null pointer.
Mar 6 2015, 8:35 AM · Mistaken, Bug Report, libksba
JW renamed T1892: dn.c: function call argument is an uninitialized value from Function call argument is an uninitialized value to dn.c: function call argument is an uninitialized value.
Mar 6 2015, 8:34 AM · Mistaken, Bug Report, libksba
JW set Version to 1.6.3 on T1894: mpi-bit: numerous potential null pointer dereferences.
Mar 6 2015, 8:31 AM · Mistaken, libgcrypt
JW added a project to T1894: mpi-bit: numerous potential null pointer dereferences: libgcrypt.
Mar 6 2015, 8:31 AM · Mistaken, libgcrypt
JW set Version to 1.18 on T1893: The ABI of passing union with long double has changed in GCC 4.4.
Mar 6 2015, 8:05 AM · Mistaken, gpgrt
JW added a project to T1893: The ABI of passing union with long double has changed in GCC 4.4: gpgrt.
Mar 6 2015, 8:05 AM · Mistaken, gpgrt
JW added projects to T1892: dn.c: function call argument is an uninitialized value: libksba, Bug Report.
Mar 6 2015, 7:54 AM · Mistaken, Bug Report, libksba
JW set Version to 1.3.2 on T1892: dn.c: function call argument is an uninitialized value.
Mar 6 2015, 7:54 AM · Mistaken, Bug Report, libksba
JW set Version to 1.3.2 on T1891: name.c: dereference of null pointer.
Mar 6 2015, 7:53 AM · Mistaken, Bug Report, libksba
JW added projects to T1891: name.c: dereference of null pointer: libksba, Bug Report.
Mar 6 2015, 7:53 AM · Mistaken, Bug Report, libksba
JW set Version to 1.3.2 on T1890: ocsp.c: dereference of null pointer.
Mar 6 2015, 7:52 AM · Mistaken, Bug Report, libksba
JW added projects to T1890: ocsp.c: dereference of null pointer: libksba, Bug Report.
Mar 6 2015, 7:52 AM · Mistaken, Bug Report, libksba
JW set Version to 1.3.2 on T1889: ocsp.c: null pointer passed as an argument to a 'nonnull' parameter.
Mar 6 2015, 7:51 AM · Mistaken, Bug Report, libksba
JW added projects to T1889: ocsp.c: null pointer passed as an argument to a 'nonnull' parameter: libksba, Bug Report.
Mar 6 2015, 7:51 AM · Mistaken, Bug Report, libksba
JW set Version to 1.3.2 on T1888: der-encoder.c: dereference of null pointer.
Mar 6 2015, 7:49 AM · Mistaken, Bug Report, libksba
JW added projects to T1888: der-encoder.c: dereference of null pointer: libksba, Bug Report.
Mar 6 2015, 7:49 AM · Mistaken, Bug Report, libksba
JW added projects to T1887: assuan-buffer.c: dereference of null pointer: libassuan, Bug Report.
Mar 6 2015, 7:46 AM · Mistaken, Bug Report, libassuan
JW set Version to 2.2.0 on T1887: assuan-buffer.c: dereference of null pointer.
Mar 6 2015, 7:46 AM · Mistaken, Bug Report, libassuan
JW set Version to 1.18 on T1886: yat2m.c: null pointer passed as an argument to a 'nonnull' parameter.
Mar 6 2015, 7:44 AM · Mistaken, Bug Report, gpgrt
JW added projects to T1886: yat2m.c: null pointer passed as an argument to a 'nonnull' parameter: gpgrt, Bug Report.
Mar 6 2015, 7:44 AM · Mistaken, Bug Report, gpgrt
JW added projects to T1885: yat2m.c: null pointer passed as an argument to a 'nonnull' parameter: gpgrt, Bug Report.
Mar 6 2015, 7:43 AM · Bug Report, gpgrt
JW set Version to 1.18 on T1885: yat2m.c: null pointer passed as an argument to a 'nonnull' parameter.
Mar 6 2015, 7:43 AM · Bug Report, gpgrt
JW added projects to T1884: malloc for 0 bytes: gpgrt, Bug Report.
Mar 6 2015, 7:42 AM · Not A Bug, Bug Report, gpgrt
JW set Version to 1.18 on T1884: malloc for 0 bytes.
Mar 6 2015, 7:42 AM · Not A Bug, Bug Report, gpgrt
JW added a comment to T1864: Can't compile libgcrypt with some configure options.

Changed status to 'unread'. I'm not chatting.

Mar 6 2015, 6:39 AM · Info Needed, Bug Report, libgcrypt
JW added a comment to T1883: missing test case for buf_cpy.

Changed status to 'unread'. I'm not chatting.

Mar 6 2015, 6:17 AM · Info Needed, Feature Request, libgcrypt