Page MenuHome GnuPG
Feed Advanced Search

Jun 16 2015

gniibe added a comment to T1846: gpg2.1 keytocard removes secret key.

Fixed in 2.1.3.

Jun 16 2015, 6:25 AM · Bug Report, gnupg
gniibe added a comment to T1930: PATCH: Be more flexible on PC/SC reader selection.

Fixed in 2.0.28 (and in 2.1.x).

Jun 16 2015, 6:22 AM · gnupg, Feature Request, scd

Jun 15 2015

gniibe added a comment to T1675: gpg --verify has race conditions when used concurrently.

Fixed in master which was released as 2.1.5.
Fixed in the repo of 1.4 and 2.0.

Jun 15 2015, 7:49 AM · gnupg, Bug Report

Jun 12 2015

neal added a comment to T1945: pin entry prompt should include more structured metadata.

This feature has landed in the latest 2.0 and 2.1 branches and support has been
added in pinentry. I'm closing this now.

Jun 12 2015, 4:03 PM · gnupg, Feature Request

Jun 11 2015

gniibe added a project to T1936: FreeBSD 10.1: mpi alignment error during compile: Restricted Project.
Jun 11 2015, 9:36 AM · Bug Report, libgcrypt
gniibe added a project to T1974: libgcrypt: build fails on Gentoo/FreeBSD 10.0 or later (x86-fbsd): Restricted Project.
Jun 11 2015, 9:35 AM · Duplicate, Gentoo, libgcrypt, Bug Report
gniibe added a comment to T1974: libgcrypt: build fails on Gentoo/FreeBSD 10.0 or later (x86-fbsd).

Thank you, patch applied to master and 1.6 branch.

Jun 11 2015, 9:35 AM · Duplicate, Gentoo, libgcrypt, Bug Report
gniibe claimed T1974: libgcrypt: build fails on Gentoo/FreeBSD 10.0 or later (x86-fbsd).
Jun 11 2015, 9:35 AM · Duplicate, Gentoo, libgcrypt, Bug Report

Jun 9 2015

werner added a project to T1661: Gnupg directories not variable in the documentation: Restricted Project.
Jun 9 2015, 9:33 PM · Feature Request, Debian, gnupg
werner added a project to T1842: dirmngr crashes if DIR.txt is empty: Restricted Project.
Jun 9 2015, 11:34 AM · gnupg, Bug Report, dirmngr
werner removed Due Date on T1842: dirmngr crashes if DIR.txt is empty.
Jun 9 2015, 11:34 AM · gnupg, Bug Report, dirmngr
werner added a comment to T1842: dirmngr crashes if DIR.txt is empty.

Fixed with commit 255dadd.

Jun 9 2015, 11:34 AM · gnupg, Bug Report, dirmngr

Jun 8 2015

werner closed T1795: gpgme-1.5.3 and gnupg-2 (gpgsm) incompatible? as Resolved.
Jun 8 2015, 7:56 PM · gnupg (gpg20), gpgme, Bug Report
werner added a comment to T1795: gpgme-1.5.3 and gnupg-2 (gpgsm) incompatible?.

1.5.5 has been released.

Jun 8 2015, 7:56 PM · gnupg (gpg20), gpgme, Bug Report
werner added a project to T1929: GPGME_SIGSUM_KEY_REVOKED not set on revoked key: Restricted Project.
Jun 8 2015, 7:56 PM · gpgme, Bug Report
werner closed T1997: Segmentation fault in gpgme when searching keyservers for some keywords as Resolved.
Jun 8 2015, 7:55 PM · gpgme, Bug Report, KDE
werner added a comment to T1997: Segmentation fault in gpgme when searching keyservers for some keywords.

1.5.5 has been released. Closing.

Jun 8 2015, 7:55 PM · gpgme, Bug Report, KDE
werner added a project to T1795: gpgme-1.5.3 and gnupg-2 (gpgsm) incompatible?: Restricted Project.
Jun 8 2015, 12:28 PM · gnupg (gpg20), gpgme, Bug Report
werner removed a project from T1795: gpgme-1.5.3 and gnupg-2 (gpgsm) incompatible?: Not A Bug.
Jun 8 2015, 12:28 PM · gnupg (gpg20), gpgme, Bug Report

Jun 5 2015

werner set Version to <= 1.5.4 on T1997: Segmentation fault in gpgme when searching keyservers for some keywords.
Jun 5 2015, 2:33 PM · gpgme, Bug Report, KDE
werner added a project to T1997: Segmentation fault in gpgme when searching keyservers for some keywords: Restricted Project.
Jun 5 2015, 2:29 PM · gpgme, Bug Report, KDE
werner added a comment to T1997: Segmentation fault in gpgme when searching keyservers for some keywords.

Oops. Long standing bug.

Fix in commit
0d28a696163677d6b34a802b6beddecd805d0fc7

Jun 5 2015, 2:29 PM · gpgme, Bug Report, KDE

Jun 3 2015

dan_gpg added a project to T1995: Error on include order: Restricted Project.
Jun 3 2015, 5:30 PM · Not A Bug, Bug Report, gnupg, MacOS

May 25 2015

gniibe added a project to T1675: gpg --verify has race conditions when used concurrently: Restricted Project.
May 25 2015, 7:38 AM · gnupg, Bug Report

May 22 2015

werner added a project to T1778: t-exechelp-posix get_max_fds returns MAX_INT32 rather than something sensible: Restricted Project.
May 22 2015, 9:49 AM · gnupg, Bug Report
werner added a comment to T1778: t-exechelp-posix get_max_fds returns MAX_INT32 rather than something sensible.

The change is in gnupg 2.1.4.

May 22 2015, 9:49 AM · gnupg, Bug Report

May 18 2015

gniibe added a comment to T1947: [smartcard] Decryption fails and breaks smartcard reader (Alcor Micro).

It was fixed in 2.1.4.

May 18 2015, 4:01 AM · Bug Report, gnupg, gnupg (gpg21), scd
gniibe closed T1947: [smartcard] Decryption fails and breaks smartcard reader (Alcor Micro) as Resolved.
May 18 2015, 4:01 AM · Bug Report, gnupg, gnupg (gpg21), scd

May 16 2015

neal closed T1949: git head compilation without ldap fails as Resolved.
May 16 2015, 4:17 PM · dirmngr, Bug Report
neal added a project to T1949: git head compilation without ldap fails: dirmngr.
May 16 2015, 4:17 PM · dirmngr, Bug Report

May 13 2015

js added a comment to T1811: Own key's validity gets set from ultimate to undef when signing a key that signed you.

Yes, this is fixed. Sorry for forgetting to update this bug. Already noticed your
commits are signed - unfortunately, your commit signing key isn't signed by any other
of your keys, though.

May 13 2015, 9:56 PM · gnupg, Bug Report

May 11 2015

werner added a comment to T1811: Own key's validity gets set from ultimate to undef when signing a key that signed you.

May I assume this problem has been fixed?

(BTW, I sign my commits now)

May 11 2015, 7:48 PM · gnupg, Bug Report
werner added a project to T1841: gpg-connect-agent: percent+ function doesn't encode '+': Restricted Project.
May 11 2015, 7:42 PM · Debian, Bug Report, gnupg
werner added a project to T1463: pinentry-curses crashes with SIGSEGV if can't find terminfo: Restricted Project.
May 11 2015, 1:15 PM · Gentoo, Bug Report, pinentry

Apr 25 2015

perske added a comment to T1862: Building static GnuPG 2.1.2 fails due to multiply defined symbols..

That's it! Setting

+ export LDFLAGS=-lrt

and then running the build process as described in my original report and in
msg6216, compilation is successful.

Thank you very, very much!

Apr 25 2015, 1:25 PM · Bug Report, gnupg
gniibe added a comment to T1862: Building static GnuPG 2.1.2 fails due to multiply defined symbols..

Thanks. No, you don't need to create another issue, since it's known simple issue.

Old system has clock_gettime function in librt. Please link with -lrt.
It would be good for npth's configure script to detect this for its build time.
I'll consider about that.

Apr 25 2015, 2:02 AM · Bug Report, gnupg

Apr 24 2015

perske added a comment to T1862: Building static GnuPG 2.1.2 fails due to multiply defined symbols..

A big step forward :-)

With the command sequence

+ [... for building prerequisites see original bug report ...]
+ tar jvxf ../gnupg-2.1.2.tar.bz2
+ cd gnupg-2.1.2
+ /bin/cp -i common/Makefile.am common/Makefile.am.orig </dev/null || true
+ /bin/cp -i common/Makefile.in common/Makefile.in.orig </dev/null || true
+ s1='s|^t_jnlib_src = t-support\.c t-support\.h$|t_jnlib_src = t-support.h|'
+ s2='s|^amobjects_18 = t-support\.\$(OBJEXT)$|amobjects_18 =|'
+ /bin/sed "$s1" <common/Makefile.am.orig >common/Makefile.am
+ /bin/sed "$s1;$s2" <common/Makefile.in.orig >common/Makefile.in
+ ./configure --prefix=/PREFIX --with-gpg-error-prefix=/PREFIX
--with-npth-prefix=/PREFIX --with-libassuan-prefix=/PREFIX
--with-libgcrypt-prefix=/PREFIX --with-ksba-prefix=/PREFIX
--with-pinentry-pgm=/PREFIX/bin/pinentrywrapper
+ make

the build process fails later:

[...]
make[2]: Leaving directory `/root/devel/rpgpg/work/gnupg-2.1.2/sm'
Making all in agent
make[2]: Entering directory `/root/devel/rpgpg/work/gnupg-2.1.2/agent'
[...]
gcc -I/PREFIX/include -I/PREFIX/include -I/PREFIX/include -I/PREFIX/include -g
-O2 -Wall -Wno-pointer-sign -Wpointer-arith -o gpg-agent gpg_agent-gpg-agent.o
gpg_agent-command.o gpg_agent-command-ssh.o gpg_agent-call-pinentry.o
gpg_agent-cache.o gpg_agent-trans.o gpg_agent-findkey.o gpg_agent-pksign.o
gpg_agent-pkdecrypt.o gpg_agent-genkey.o gpg_agent-protect.o
gpg_agent-trustlist.o gpg_agent-divert-scd.o gpg_agent-cvt-openpgp.o
gpg_agent-call-scd.o gpg_agent-learncard.o ../common/libcommonpth.a
-L/PREFIX/lib -lgcrypt -lgpg-error -lassuan -L/PREFIX/lib -lgpg-error
-L/PREFIX/lib -lnpth -lpthread -L/PREFIX/lib -lgpg-error
/PREFIX/lib/libnpth.a(npth.o): In function `npth_clock_gettime':
/root/devel/rpgpg/work/npth-1.1/src/npth.c:699: undefined reference to
`clock_gettime'
collect2: ld returned 1 exit status
make[2]: * [gpg-agent] Error 1
make[2]: Leaving directory `/root/devel/rpgpg/work/gnupg-2.1.2/agent'
make[1]:
* [all-recursive] Error 1
make[1]: Leaving directory `/root/devel/rpgpg/work/gnupg-2.1.2'
make: *** [all] Error 2

Shall we keep in this issue or open a new one?

Apr 24 2015, 12:40 PM · Bug Report, gnupg
gniibe added a comment to T1862: Building static GnuPG 2.1.2 fails due to multiply defined symbols..

I mean, when you manually edit common/Makefile.in, you need to edit the variable
am__objects_18, so that it won't include the object generated by t-support.c.

Apr 24 2015, 10:37 AM · Bug Report, gnupg

Apr 23 2015

perske added a comment to T1862: Building static GnuPG 2.1.2 fails due to multiply defined symbols..

See the description of my build steps in my original report: After

+ tar jvxf ../gnupg-2.1.2.tar.bz2
+ cd gnupg-2.1.2

I manually changed both common/Makefile.am and common/Makefile.in and then
continued with

+ ./configure --prefix=/PREFIX --with-gpg-error-prefix=/PREFIX
--with-npth-prefix=/PREFIX --with-libassuan-prefix=/PREFIX
--with-libgcrypt-prefix=/PREFIX --with-ksba-prefix=/PREFIX
--with-pinentry-pgm=/PREFIX/bin/pinentrywrapper
+ make

Apr 23 2015, 1:08 PM · Bug Report, gnupg
gniibe added a comment to T1862: Building static GnuPG 2.1.2 fails due to multiply defined symbols..

On 04/23/2015 05:20 PM, Rainer Perske via BTS wrote:

no change: I had already tried installing from scratch working in an empty
directory.

Apr 23 2015, 12:51 PM · Bug Report, gnupg
perske added a comment to T1862: Building static GnuPG 2.1.2 fails due to multiply defined symbols..

no change: I had already tried installing from scratch working in an empty
directory.

Apr 23 2015, 10:20 AM · Bug Report, gnupg
gniibe added a comment to T1862: Building static GnuPG 2.1.2 fails due to multiply defined symbols..

Umm... Could you try 'make distclean', then 'configure && make'? t-support.o is
not the target to build any more by the patch,
so, it should not be linked to t-stringhelp.
When you change common/Makefile.am and common/Makefile.in, common/Makefile
should be generated again,
but it would not be generated, perhaps.

Apr 23 2015, 1:35 AM · Bug Report, gnupg

Apr 22 2015

perske added a comment to T1862: Building static GnuPG 2.1.2 fails due to multiply defined symbols..

Thank you, but I regret, the patch does not change anything.
(I have made the corresponding change in common/Makefile.in, too,
with same result.)

Apr 22 2015, 3:23 PM · Bug Report, gnupg
gniibe added a project to T1862: Building static GnuPG 2.1.2 fails due to multiply defined symbols.: Restricted Project.
Apr 22 2015, 4:50 AM · Bug Report, gnupg

Apr 21 2015

werner added a project to T1786: dirmngr ignores honor-http-proxy and http-proxy options: Restricted Project.
Apr 21 2015, 8:35 PM · gnupg, Bug Report, dirmngr
gniibe added a comment to T1930: PATCH: Be more flexible on PC/SC reader selection.

D291: 599_gpg2-scd-issue-1930-patch.diff

Apr 21 2015, 8:21 AM · gnupg, Feature Request, scd
gniibe added a project to T1930: PATCH: Be more flexible on PC/SC reader selection: Restricted Project.
Apr 21 2015, 8:21 AM · gnupg, Feature Request, scd

Apr 16 2015

werner added a project to T1453: pinentry-gtk2: ESC not handled: Restricted Project.
Apr 16 2015, 11:39 AM · Bug Report, pinentry

Apr 14 2015

werner added a project to T1945: pin entry prompt should include more structured metadata: Restricted Project.
Apr 14 2015, 7:39 PM · gnupg, Feature Request
dkg closed T1927: search by e-mail address should find e-mail-only User IDs. as Resolved.
Apr 14 2015, 3:34 PM · Bug Report, gnupg
dkg added a comment to T1927: search by e-mail address should find e-mail-only User IDs..

I can confirm that this is resolved in 2.1.3 with .kbx files. Thanks for the fix!

Apr 14 2015, 3:34 PM · Bug Report, gnupg
gniibe added a project to T1947: [smartcard] Decryption fails and breaks smartcard reader (Alcor Micro): Restricted Project.
Apr 14 2015, 7:25 AM · Bug Report, gnupg, gnupg (gpg21), scd

Apr 13 2015

neal added a project to T1949: git head compilation without ldap fails: Restricted Project.
Apr 13 2015, 12:04 PM · dirmngr, Bug Report
neal added a comment to T1949: git head compilation without ldap fails.

This should be fixed in 5cde5bf. I tested building with LDAP and without. I
also ran some basic queries in the LDAP case and everything seemed ok. If I
don't hear about any further issues, I'll close this in the next few days.

Apr 13 2015, 12:04 PM · dirmngr, Bug Report

Apr 4 2015

werner added a project to T1932: GnuPG 2.1 (gpgsm):set default of 'hash-algo' from sha1 to sha256: Feature Request.
Apr 4 2015, 11:15 AM · Feature Request, gnupg, gnupg (gpg21), S/MIME
werner lowered the priority of T1932: GnuPG 2.1 (gpgsm):set default of 'hash-algo' from sha1 to sha256 from High to Normal.
Apr 4 2015, 11:15 AM · Feature Request, gnupg, gnupg (gpg21), S/MIME
werner removed a project from T1932: GnuPG 2.1 (gpgsm):set default of 'hash-algo' from sha1 to sha256: Bug Report.
Apr 4 2015, 11:15 AM · Feature Request, gnupg, gnupg (gpg21), S/MIME

Apr 3 2015

gniibe added a project to T1846: gpg2.1 keytocard removes secret key: Restricted Project.
Apr 3 2015, 11:05 AM · Bug Report, gnupg
gniibe added a comment to T1846: gpg2.1 keytocard removes secret key.

It is fixed by the commit: f82c4a6d0d76e716b6a7b22ca964fa2da1f962a0
This is not a perfect solution (it updates key storage by "learn --force" command
of gpg-agent), but it works fine usually.

Apr 3 2015, 11:05 AM · Bug Report, gnupg

Mar 25 2015

werner added a comment to T1932: GnuPG 2.1 (gpgsm):set default of 'hash-algo' from sha1 to sha256.

Never mind. Just pushed the changes for the 2.0 branch.

Mar 25 2015, 10:30 AM · Feature Request, gnupg, gnupg (gpg21), S/MIME
emanuel added a comment to T1932: GnuPG 2.1 (gpgsm):set default of 'hash-algo' from sha1 to sha256.

Thanks!

Is there a need to backport it to 2.0 ?

No

Mar 25 2015, 10:23 AM · Feature Request, gnupg, gnupg (gpg21), S/MIME
werner added a project to T1932: GnuPG 2.1 (gpgsm):set default of 'hash-algo' from sha1 to sha256: Restricted Project.
Mar 25 2015, 10:18 AM · Feature Request, gnupg, gnupg (gpg21), S/MIME

Mar 24 2015

werner renamed T1546: Windows command line prepends homedir to --keyring= path specification from Winodws command line prepends homedir to --keyring= path specification to Windows command line prepends homedir to --keyring= path specification.
Mar 24 2015, 1:34 PM · Windows 32, Windows, Bug Report, gnupg
werner added a project to T1546: Windows command line prepends homedir to --keyring= path specification: Restricted Project.
Mar 24 2015, 1:34 PM · Windows 32, Windows, Bug Report, gnupg

Mar 20 2015

werner added a project to T1927: search by e-mail address should find e-mail-only User IDs.: Restricted Project.
Mar 20 2015, 3:49 PM · Bug Report, gnupg

Mar 19 2015

werner added a project to T1853: ecdh/ecdsa private key export, MPI encoding oddity: Restricted Project.
Mar 19 2015, 6:09 PM · Bug Report, gnupg, gnupg (gpg21)
werner added projects to T1792: hkps: Hostname verification uses the wrong hostname: Restricted Project, gnupg.
Mar 19 2015, 3:40 PM · gnupg, Bug Report, Debian, dirmngr

Mar 16 2015

werner closed T1684: Messages with compression algorithm "0"/"Uncompressed" fail to decrypt as Resolved.
Mar 16 2015, 3:14 PM · Bug Report, gnupg

Mar 9 2015

aheinecke closed T1746: Bug report - GPG a folder to *.tar.gpg loss all files! as Resolved.
Mar 9 2015, 9:33 AM · Bug Report, gnupg, gpg4win
aheinecke added a comment to T1746: Bug report - GPG a folder to *.tar.gpg loss all files!.

Patch still needs to be applied upstream but this is tracked in another issue.
-> Resolved

Mar 9 2015, 9:33 AM · Bug Report, gnupg, gpg4win

Mar 1 2015

johnny added a comment to T1746: Bug report - GPG a folder to *.tar.gpg loss all files!.

I have verified that the bug have been solved in version 2.2.3. Thank you very much.

Mar 1 2015, 1:24 PM · Bug Report, gnupg, gpg4win

Jan 26 2015

werner added a comment to T1811: Own key's validity gets set from ultimate to undef when signing a key that signed you.

All release tags are signed.

Signed commits are a bit cumbersome becuase I would have to insert the smartcard
for all commits. Signing with my on-disk standard key would be possible, though.

Jan 26 2015, 8:59 AM · gnupg, Bug Report

Jan 23 2015

js added a comment to T1811: Own key's validity gets set from ultimate to undef when signing a key that signed you.

Ok, I'll give it a try with 09e8f35d3808d6e49f891360c341aae3869e8650 this weekend.

Regarding https: Yes, this is more security, even though only slightly as you will have
to trust CAs. Without it, an attacker could just give you a different repo and you'd
never notice if you don't compare commit checksums with someone else. Then again, that
someone else could also get the wrong repo, because your government decided that
everybody should get a backdoor'd GPG. With https, you also need to get a valid
certificate that's in the CAs. That's not helping against a government wanting to
backdoor GPG, but it at least helps against script kiddies and the like.

Speaking about signed commits and tags: Why not do that? I tried it with git and it
works great.

Jan 23 2015, 10:02 AM · gnupg, Bug Report

Jan 22 2015

werner added a comment to T1816: Corrupted pubring causes long loop in gnupg (keydb_search failed: Invalid packet).

s/GPG-2/PGP-2/ of course

Jan 22 2015, 5:23 PM · Bug Report, gnupg
werner added a comment to T1816: Corrupted pubring causes long loop in gnupg (keydb_search failed: Invalid packet).

Tt is not really corrupted. There are just GPG-2 keys at the wrong place.

Well, some keys are duplicated but I do not think that this created the test case.
The reason for the duplication might be 1.4.12 which may not include the latest
locking code.

Jan 22 2015, 5:23 PM · Bug Report, gnupg
werner added a comment to T1811: Own key's validity gets set from ultimate to undef when signing a key that signed you.

Regarding git: An https:// access is not in any way safer - it only hides what
you are doing on the remote repo. The security from git is due to the chain of
hashes. Thus if you see a full commit id you can be sure that we are talking
about the very same code.

Right, I could have given the full commit id, but that won't help either because
you should not trust this bug tracker. The only reliabale task is by starting
from a signed commit or tag and review all code up to there.
Fortunately any tmapering with git.gnupg.org would soon trigger a lot of
complains from people pulling updates and checking commit ids.

Jan 22 2015, 5:17 PM · gnupg, Bug Report
werner added a comment to T1811: Own key's validity gets set from ultimate to undef when signing a key that signed you.

Okay, I was able to replicate your test case with an older gpg version. I am not
sure which version that was, though. I would need to bisect to find it.

However, with the latest version (commit 09e8f35d3808d6e49f891360c341aae3869e8650)
the problem has gone.

Jan 22 2015, 5:12 PM · gnupg, Bug Report
aheinecke claimed T1816: Corrupted pubring causes long loop in gnupg (keydb_search failed: Invalid packet).
Jan 22 2015, 4:46 PM · Bug Report, gnupg
aheinecke added a comment to T1816: Corrupted pubring causes long loop in gnupg (keydb_search failed: Invalid packet).

Thanks!
I'll test it. Any idea what could have caused this corruption in the first place?

Jan 22 2015, 4:46 PM · Bug Report, gnupg
werner added a project to T1816: Corrupted pubring causes long loop in gnupg (keydb_search failed: Invalid packet): Restricted Project.
Jan 22 2015, 4:45 PM · Bug Report, gnupg
werner removed a project from T1816: Corrupted pubring causes long loop in gnupg (keydb_search failed: Invalid packet): In Progress.
Jan 22 2015, 4:45 PM · Bug Report, gnupg
js added a comment to T1811: Own key's validity gets set from ultimate to undef when signing a key that signed you.

Here's how to reproduce it:

$ mkdir 1 2
$ chmod 700 1 2
$ cp ~/.gnupg/gpg-agent.conf 1
$ cp ~/.gnupg/gpg-agent.conf 2
$ gpg2 --homedir 1 --yes --quick-gen-key "Test User 1"
gpg: keybox '1/pubring.kbx' created
We need to generate a lot of random bytes. It is a good idea to perform
some other action (type on the keyboard, move the mouse, utilize the
disks) during the prime generation; this gives the random number
generator a better chance to gain enough entropy.
We need to generate a lot of random bytes. It is a good idea to perform
some other action (type on the keyboard, move the mouse, utilize the
disks) during the prime generation; this gives the random number
generator a better chance to gain enough entropy.
gpg: 1/trustdb.gpg: trustdb created
gpg: key E2D6B58A marked as ultimately trusted
gpg: directory '1/openpgp-revocs.d' created
public and secret key created and signed.

gpg: checking the trustdb
gpg: 3 marginal(s) needed, 1 complete(s) needed, PGP trust model
gpg: depth: 0 valid: 1 signed: 0 trust: 0-, 0q, 0n, 0m, 0f, 1u
pub rsa2048/E2D6B58A 2015-01-22

Key fingerprint = E618 DF9C A599 A3A5 D5B2  B8FE 57C0 450E E2D6 B58A

uid [ultimate] Test User 1
sub rsa2048/C3D1C503 2015-01-22

$ gpg2 --homedir 2 --yes --quick-gen-key "Test User 2"
gpg: keybox '2/pubring.kbx' created
We need to generate a lot of random bytes. It is a good idea to perform
some other action (type on the keyboard, move the mouse, utilize the
disks) during the prime generation; this gives the random number
generator a better chance to gain enough entropy.
We need to generate a lot of random bytes. It is a good idea to perform
some other action (type on the keyboard, move the mouse, utilize the
disks) during the prime generation; this gives the random number
generator a better chance to gain enough entropy.
gpg: 2/trustdb.gpg: trustdb created
gpg: key C767617A marked as ultimately trusted
gpg: directory '2/openpgp-revocs.d' created
public and secret key created and signed.

gpg: checking the trustdb
gpg: 3 marginal(s) needed, 1 complete(s) needed, PGP trust model
gpg: depth: 0 valid: 1 signed: 0 trust: 0-, 0q, 0n, 0m, 0f, 1u
pub rsa2048/C767617A 2015-01-22

Key fingerprint = 4741 1B55 ADF9 4000 DFE9  60CF DDF2 7707 C767 617A

uid [ultimate] Test User 2
sub rsa2048/BFC45B68 2015-01-22

$ gpg2 --homedir 1 --export | gpg2 --homedir 2 --import
gpg: key E2D6B58A: public key "Test User 1" imported
gpg: Total number processed: 1
gpg: imported: 1
$ gpg2 --homedir 2 --sign-key E2D6B58A

pub rsa2048/E2D6B58A

created: 2015-01-22  expires: never       usage: SC  
trust: unknown       validity: unknown

sub rsa2048/C3D1C503

created: 2015-01-22  expires: never       usage: E

[ unknown] (1). Test User 1

pub rsa2048/E2D6B58A

created: 2015-01-22  expires: never       usage: SC  
trust: unknown       validity: unknown

Primary key fingerprint: E618 DF9C A599 A3A5 D5B2 B8FE 57C0 450E E2D6 B58A

     Test User 1

Are you sure that you want to sign this key with your
key "Test User 2" (C767617A)

Really sign? (y/N) y

$ gpg2 --homedir 2 --export | gpg2 --homedir 1 --import
gpg: key C767617A: public key "Test User 2" imported
gpg: key E2D6B58A: "Test User 1" 1 new signature
gpg: Total number processed: 2
gpg: imported: 1
gpg: new signatures: 1
gpg: 3 marginal(s) needed, 1 complete(s) needed, PGP trust model
gpg: depth: 0 valid: 1 signed: 0 trust: 0-, 0q, 0n, 0m, 0f, 1u
$ gpg2 --homedir 1 --list-keys

1/pubring.kbx

pub rsa2048/E2D6B58A 2015-01-22
uid [ultimate] Test User 1
sub rsa2048/C3D1C503 2015-01-22

pub rsa2048/C767617A 2015-01-22
uid [ unknown] Test User 2
sub rsa2048/BFC45B68 2015-01-22

$ # Still ok!
$ gpg2 --homedir 1 --sign-key C767617A

pub rsa2048/C767617A

created: 2015-01-22  expires: never       usage: SC  
trust: unknown       validity: unknown

sub rsa2048/BFC45B68

created: 2015-01-22  expires: never       usage: E

[ unknown] (1). Test User 2

pub rsa2048/C767617A

created: 2015-01-22  expires: never       usage: SC  
trust: unknown       validity: unknown

Primary key fingerprint: 4741 1B55 ADF9 4000 DFE9 60CF DDF2 7707 C767 617A

     Test User 2

Are you sure that you want to sign this key with your
key "Test User 1" (E2D6B58A)

Really sign? (y/N) y

$ gpg2 --homedir 1 --list-keys
gpg: checking the trustdb
gpg: 3 marginal(s) needed, 1 complete(s) needed, PGP trust model
gpg: depth: 0 valid: 1 signed: 1 trust: 0-, 0q, 0n, 0m, 0f, 1u
gpg: depth: 1 valid: 1 signed: 1 trust: 1-, 0q, 0n, 0m, 0f, 0u

1/pubring.kbx

pub rsa2048/E2D6B58A 2015-01-22
uid [ undef ] Test User 1
sub rsa2048/C3D1C503 2015-01-22

pub rsa2048/C767617A 2015-01-22
uid [ full ] Test User 2
sub rsa2048/BFC45B68 2015-01-22

$ # Broken!

Jan 22 2015, 10:10 AM · gnupg, Bug Report
js added a comment to T1811: Own key's validity gets set from ultimate to undef when signing a key that signed you.

I applied c595659 manually to 2.1.1, this doesn't change anything.

I'd try it with the latest git master, however I don't see any way to securely check it
out as it is only offered via the insecure git:// protocol.

Jan 22 2015, 9:40 AM · gnupg, Bug Report
werner added a project to T1811: Own key's validity gets set from ultimate to undef when signing a key that signed you: Restricted Project.
Jan 22 2015, 8:32 AM · gnupg, Bug Report
werner added a comment to T1811: Own key's validity gets set from ultimate to undef when signing a key that signed you.

I am not able to repeat that with the latest git version.
This is probably due to the fix by commit c595659.

Jan 22 2015, 8:32 AM · gnupg, Bug Report

Jan 19 2015

werner added a comment to T1794: Ultimate ownertrust does not (always) imply ultimate validity in default trust model.

A patch has been submitted, which should fix the problem. commit c595659

Jan 19 2015, 3:50 PM · Bug Report, gnupg
werner added a project to T1794: Ultimate ownertrust does not (always) imply ultimate validity in default trust model: Restricted Project.
Jan 19 2015, 3:50 PM · Bug Report, gnupg

Jan 8 2015

bernhard added a comment to T1746: Bug report - GPG a folder to *.tar.gpg loss all files!.

Jonny, can you confirm that the problem is gone with 2.2.3?

Jan 8 2015, 12:02 PM · Bug Report, gnupg, gpg4win

Jan 5 2015

werner added a project to T1702: file descriptor warning fixes for NetBSD when set*id: Restricted Project.
Jan 5 2015, 7:39 PM · Bug Report, libgcrypt
werner added a project to T1705: Resource leak in file "cipher/primegen.c" at line 676 , 1215 and at 1221: Restricted Project.
Jan 5 2015, 7:00 PM · Bug Report, libgcrypt
werner added a comment to T1705: Resource leak in file "cipher/primegen.c" at line 676 , 1215 and at 1221.

Sorry for the long delay. Fixed with commit 8c5eee5 for 1.7.

I won't backport it to 1.6 because the leak is only triggered by wrong usage of
the functions.

Jan 5 2015, 7:00 PM · Bug Report, libgcrypt

Dec 19 2014

aheinecke added a comment to T1571: gpg --multifile and wildcards problem on Windows.

Windows does not allow file names with a '*'. I'm not sure on what level but Its
ok not to handle this case.
I don't expect any problems for internal usage. Keep in mind that this is a
regression, we had wildcard expansion before we made the switch to mingw-w64.

We also don't need this in gpgwrap as gpgwrap just passes the argument on and it
will be expanded in the process itself.

But I actually like the idea to do the wildcard expansion in kleowrap / gpgwrap.
This way it would be contained in Gpg4win and we catch all our "user exposed"
processes. Ok?

Dec 19 2014, 4:32 PM · Bug Report, Windows 32, gpg4win, Windows
werner added a comment to T1571: gpg --multifile and wildcards problem on Windows.

I won't do that just for gpg - this would be inconsistent. The wrapper we put
into the PATH directory needs this as well. What about gtk and qt libraries -
they run exe files internally - will the quoting continue to work? A single '*'
in a file name would likely break Enigmail.

Dec 19 2014, 4:17 PM · Bug Report, Windows 32, gpg4win, Windows
aheinecke added a comment to T1571: gpg --multifile and wildcards problem on Windows.

Well just gpg would be enough imho as this is by far the most prominent command
line tool.

On the other hand it might be more prudent for us to hack / patch it just in the
gpg4win build to have it enabled globally for all tools we ship so that it is
more consistent. This would mean patching the compiler tough which we tried to
avoid so far.

I would be fine with moving this patch to the version independet gnupg2 patches
in gpg4win as it is kind of a "distribution" option forced upon gpg4win by the
compiler we are currently using.

Werner: If you agree please give a short ping here and I'll move the patch /
close the issue.

Dec 19 2014, 11:00 AM · Bug Report, Windows 32, gpg4win, Windows
werner added a comment to T1571: gpg --multifile and wildcards problem on Windows.

Now, shall I add this to gnupg 2.1? To which tools? All or just gpg?

Dec 19 2014, 8:59 AM · Bug Report, Windows 32, gpg4win, Windows
werner added a comment to T1708: Unable to cross compile libgcrypt on x86_64.

Does the patch work for you?

Dec 19 2014, 8:54 AM · Bug Report, libgcrypt
werner added a comment to T1676: libgcrypt segfaults on x32 ABI.

1.6.2 with the fix was released in August

Dec 19 2014, 8:51 AM · Bug Report, libgcrypt
werner closed T1676: libgcrypt segfaults on x32 ABI as Resolved.
Dec 19 2014, 8:51 AM · Bug Report, libgcrypt
werner closed T1616: libgcrypt 1.6.0 incorrectly determines CPU on PowerPC Mac as Resolved.
Dec 19 2014, 8:49 AM · Bug Report, libgcrypt
werner closed T1659: segmentation fault in gpg --gen-key on AIX 6.1 as Resolved.
Dec 19 2014, 8:46 AM · libassuan, Bug Report