Page MenuHome GnuPG
Feed All Stories

Oct 30 2017

bernhard added a comment to T3442: S/MIME - Encrypt Option produces broken Mails in Sent Folder and leads to crash of GpgOL.

When receiving an S/MIME mail that is encrypted, the successful log looks like:

Oct 30 2017, 5:49 PM · gpg4win, gpgol, Bug Report
bjmgeek created T3474: gpg: Note: '--list-options' is not considered an option.
Oct 30 2017, 3:32 PM · Bug Report
gniibe added a comment to T3276: the calibrate_get_time() function depends on a system that has a non-tickless kernel.

clock returns CPU time on POSIX, wall clock time on Windows. For threads, I don't know.

Oct 30 2017, 12:52 PM · Bug Report
annmuor created T3473: gnupg agent configurable backlog for sockets.
Oct 30 2017, 12:23 PM · gpgagent, Feature Request
bernhard added a comment to T3442: S/MIME - Encrypt Option produces broken Mails in Sent Folder and leads to crash of GpgOL.

Comparing the gpgol.log files in the case of OpenPGP decryption (successful) and S/MIME decryption in send folder (failing).

Oct 30 2017, 11:24 AM · gpg4win, gpgol, Bug Report
bernhard added a comment to T3459: GPGOL Moving mails is not possible if the decrypted / verified content is loaded.

Here is the link to the wald report by John Mrkva:
https://wald.intevation.org/forum/forum.php?thread_id=1785&forum_id=21&group_id=11

Oct 30 2017, 9:42 AM · gpg4win, gpgol, Bug Report
gniibe committed rGd63b7966cdd7: g10: Simplify "factory-reset" procedure. (authored by gniibe).
g10: Simplify "factory-reset" procedure.
Oct 30 2017, 6:23 AM
gniibe closed T3286: card: Yubikey factory-reset failure as Resolved.

D441 applied. Closed.

Oct 30 2017, 6:20 AM · gnupg (gpg22), scd
gniibe abandoned D441: card: Yubikey factory-reset failure.

Applied.

Oct 30 2017, 6:19 AM
gniibe added a comment to T3276: the calibrate_get_time() function depends on a system that has a non-tickless kernel.

Thanks for testing and proposing new patch.

Oct 30 2017, 3:17 AM · Bug Report

Oct 29 2017

pkoevesdi added a comment to T3459: GPGOL Moving mails is not possible if the decrypted / verified content is loaded.

Same here: I can confirm the bug. I can move an email, if i unselect it before an then use its context menu to move it.
This behaviour is already mentioned in the readme:
c:\Program Files (x86)\Gpg4win\share\gpg4win\README.en.txt

Oct 29 2017, 8:55 PM · gpg4win, gpgol, Bug Report
hefee added a comment to T3471: gpgme decryptverify indicating wrongly an error..

Oh sorry i mixed my explanation. I create a normal encrypted file with gpg --encrypt and this file can be decrypted successfully with "gpg -d".
But if I give that encrypted file to gpgme i get the described error, instead of GpgME::Error(0 (Success))).

Oct 29 2017, 3:04 PM · Not A Bug, gnupg, Bug Report
gouttegd added a comment to T3276: the calibrate_get_time() function depends on a system that has a non-tickless kernel.

OK, the problem with D450 lies in the way the value obtained from clock_gettime(2) is used.

Oct 29 2017, 12:57 PM · Bug Report
gouttegd created D451: agent: Fix S2K calibration..
Oct 29 2017, 12:52 PM

Oct 28 2017

vext01 added a comment to T3472: gpgme-1.9.0 test suite hangs on OpenBSD.

Here are a couple of traces of the hanging t-protect test under the VM. I just let it run for a bit under gdb and pressed ctrl+c on a couple of occasions:

Oct 28 2017, 9:14 PM · gpgagent, gnupg (gpg22), gpgme
vext01 added a comment to T3472: gpgme-1.9.0 test suite hangs on OpenBSD.

I've been experimenting.

Oct 28 2017, 8:47 PM · gpgagent, gnupg (gpg22), gpgme
dkg added a comment to T3464: successful decryption with session key reports failure if public key is unknown.

agreed, generically changing this check to log_info doesn't make sense. However, in *this circumstance*, gpg actually has no error.

Oct 28 2017, 2:12 PM · gpgme, Bug Report
Nillth added a comment to T3470: Issue with the Sign and Encrypt Explorer Context Menu option.

Hi,
I have tried this on Windows 10 (1511,1703,1709&RS4TP)
Gpg4win Version 3.0.0
Regards

Oct 28 2017, 3:46 AM · gpg4win, Windows, gpgex, Bug Report
cuenta added a comment to T3470: Issue with the Sign and Encrypt Explorer Context Menu option.

Hi,
I was using Windows 7 Professional.
The last version that worked was gpg4win 2.3.4 (I didn't try any beta or rc), and encryption/decryption works fine for single files.

Oct 28 2017, 12:40 AM · gpg4win, Windows, gpgex, Bug Report
gouttegd added a comment to T3276: the calibrate_get_time() function depends on a system that has a non-tickless kernel.

It turns out I cannot reproduce the bug with a 4.13.2 kernel. Whatever happened to times in slightly older kernels when VIRT_CPU_ACCOUNTING_GEN was enabled seems to have been fixed in newer kernels.

Oct 28 2017, 12:40 AM · Bug Report

Oct 27 2017

werner added a comment to T3471: gpgme decryptverify indicating wrongly an error..

"gpg -d" decrypts data why do you think you can decrypt or verify it again?

Oct 27 2017, 11:02 PM · Not A Bug, gnupg, Bug Report
vext01 created T3472: gpgme-1.9.0 test suite hangs on OpenBSD in the S1 Public space.
Oct 27 2017, 7:06 PM · gpgagent, gnupg (gpg22), gpgme
JUB added a comment to T3467: Wrong installation directory for GnuPG.

Why I shouldn't do that? Sorry, but I can't see a reason to pin the installation directory to a predefined value ("well known location").
Then, why can I still change the installation directory for gpg4win?

Oct 27 2017, 3:08 PM · Bug Report, gpg4win
hefee created T3471: gpgme decryptverify indicating wrongly an error..
Oct 27 2017, 2:16 PM · Not A Bug, gnupg, Bug Report
werner committed rGf6ab97fd9620: Merge branch 'STABLE-BRANCH-2-2' into master (authored by werner).
Merge branch 'STABLE-BRANCH-2-2' into master
Oct 27 2017, 2:15 PM
werner added a comment to T3467: Wrong installation directory for GnuPG.

You can't and you shall not.

Oct 27 2017, 1:34 PM · Bug Report, gpg4win
bernhard updated subscribers of T3470: Issue with the Sign and Encrypt Explorer Context Menu option.
Oct 27 2017, 10:56 AM · gpg4win, Windows, gpgex, Bug Report
bernhard added projects to T3470: Issue with the Sign and Encrypt Explorer Context Menu option: Windows, gpg4win.
Oct 27 2017, 10:54 AM · gpg4win, Windows, gpgex, Bug Report
bernhard added a comment to T3470: Issue with the Sign and Encrypt Explorer Context Menu option.

Hi, thanks for the report.

Oct 27 2017, 10:53 AM · gpg4win, Windows, gpgex, Bug Report
cuenta added a comment to T3470: Issue with the Sign and Encrypt Explorer Context Menu option.

I have also experience the same bug and reported it on:
https://bugs.kde.org/show_bug.cgi?id=385390

Oct 27 2017, 10:38 AM · gpg4win, Windows, gpgex, Bug Report
werner added a comment to T3464: successful decryption with session key reports failure if public key is unknown.
$ gpg --homedir /notexistent -dv <1.msg --override-session-key 7:D6E1027D58A0CB047C41EA881A137197 --status-fd 2 
gpg: keyblock resource '/notexistent/pubring.kbx': No such file or directory
[GNUPG:] ERROR add_keyblock_resource 33587281
gpg: public key is 7F3B7ED4319BCCA8
[GNUPG:] ENC_TO 7F3B7ED4319BCCA8 18 0
[GNUPG:] ERROR keydb_search 33554445
gpg: encrypted with ECDH key, ID 7F3B7ED4319BCCA8

Indeed, this makes gpg return 2. The reason is that the first error message uses log_error which sets a flag to have gpg return 2. Now, changing this to log_info may produce problems for applications which expect that gpg errors out for a bad homedir.

Oct 27 2017, 9:52 AM · gpgme, Bug Report
werner accepted rGfb7828676cc2: agent: Clean up pinentry access locking..
Oct 27 2017, 9:41 AM
werner added a comment to T3190: Recursive call of pinentry.

Oh I see you did the Right Thing which back then I was too lazy to do. Thanks.

Oct 27 2017, 9:36 AM · gnupg (gpg22)
werner removed 2 auditor(s) for rD6021eb85de1a: web: Fix bitcoin address.: kai, aa.
Oct 27 2017, 9:34 AM
werner added a comment to rD6021eb85de1a: web: Fix bitcoin address..

1 - How that key pair was seeded ? For Instance.

Oct 27 2017, 9:33 AM
dkg added a comment to T3464: successful decryption with session key reports failure if public key is unknown.

can you try it with --homedir /does/not/exist

Oct 27 2017, 8:28 AM · gpgme, Bug Report
gniibe committed rGfb7828676cc2: agent: Clean up pinentry access locking. (authored by gniibe).
agent: Clean up pinentry access locking.
Oct 27 2017, 3:22 AM
Nillth updated the task description for T3470: Issue with the Sign and Encrypt Explorer Context Menu option.
Oct 27 2017, 2:45 AM · gpg4win, Windows, gpgex, Bug Report
Nillth created T3470: Issue with the Sign and Encrypt Explorer Context Menu option.
Oct 27 2017, 2:43 AM · gpg4win, Windows, gpgex, Bug Report
gniibe added a comment to rG3b66a256e376: agent: Allow recursive use of pinentry..

The code can be changed like:

  • ENTRY_LOCK for mutual exclusion for ENTRY_CTX and pinentry communication
  • Add ENTRY_OWNER_LOCK for mutual exclusion for accessing ENTRY_OWNER and ENTRY_LEVEL.
Oct 27 2017, 2:25 AM
gniibe added a comment to rG3b66a256e376: agent: Allow recursive use of pinentry..

I'm going to change the code a bit.

Oct 27 2017, 1:52 AM

Oct 26 2017

cipherpunks added a comment to T3469: gpg: decryption failed: No secret key <= after debian upgrade from Jessie to Stretch.

I got it working.. turns out I had to force a migration by doing an rm ~/.gnupg/.gpg-v21-migrated.

Oct 26 2017, 7:51 PM · Support, Documentation
cipherpunks created T3469: gpg: decryption failed: No secret key <= after debian upgrade from Jessie to Stretch.
Oct 26 2017, 7:34 PM · Support, Documentation
cipherpunks added a comment to T3439: error "This key is not certified with a trusted signature!" despite fully trusted key.

Thanks!

Oct 26 2017, 7:23 PM · Bug Report
gouttegd added a comment to T3276: the calibrate_get_time() function depends on a system that has a non-tickless kernel.

The Linux specific solution in /D450 looks like a good solution but it needs some testing.

Oct 26 2017, 6:20 PM · Bug Report
aa added a comment to T3286: card: Yubikey factory-reset failure .
Oct 26 2017, 5:19 PM · gnupg (gpg22), scd
werner edited projects for T3277: decrypting data symmetrically doesn't reliably convey confidentiality property, added: Feature Request; removed Bug Report.

I would consider this feature request. Right now you can do this by providing an empty keyring.

Oct 26 2017, 5:09 PM · Feature Request, gnupg (gpg22)
werner added a comment to T3286: card: Yubikey factory-reset failure .

I am pretty sure that older cards required this behaviour. It might have been a workaround for a bug in scdaemon, though - I am not sure. So we should test this with all available card versions.

Oct 26 2017, 4:58 PM · gnupg (gpg22), scd
werner created T3468: Admin for Phrabicator needed.
Oct 26 2017, 4:53 PM · dev.gnupg.org
JUB added a comment to T3467: Wrong installation directory for GnuPG.

But how can I influence the target directory for GnuPG during an automatic installation? We are not using the default directories.

Oct 26 2017, 4:51 PM · Bug Report, gpg4win
werner assigned T3422: Latest gpg4win-3.0.0 does not show nor create Gp4Win start menu, no doc available after install (Win7-64) to JochenSaalfeld.
Oct 26 2017, 4:43 PM · gpg4win, Bug Report
werner closed T3467: Wrong installation directory for GnuPG as Invalid.

Right, this differs. GnuPG is now installed at a well known location. Actually the Gpg4win installer includes the standard GnuPG installer and it is possible to update just GnuPG without a need to update the entire gpg4win.
This avoid multiple installs of GnuPG with all its problems.

Oct 26 2017, 4:41 PM · Bug Report, gpg4win
JUB created T3467: Wrong installation directory for GnuPG.
Oct 26 2017, 3:15 PM · Bug Report, gpg4win
JUB added a comment to T3422: Latest gpg4win-3.0.0 does not show nor create Gp4Win start menu, no doc available after install (Win7-64).

Hello all together,

Oct 26 2017, 2:55 PM · gpg4win, Bug Report
werner renamed T3287: Improve http proxy support by honoring SRV RRs. from Improve http proxy support to Improve http proxy support by honoring SRV RRs..
Oct 26 2017, 1:10 PM · gnupg, dirmngr
werner closed T2423: configure: error: Sorry, the current implemenation requires mmap. due to empty CFLAGS (missing -fPIC) as Resolved.

I close this for now. If you run into problems with 2.2.2 again, please re-open this bug.

Oct 26 2017, 1:09 PM · gnupg (gpg22), Bug Report, gnupg
werner added a project to T3065: dirmngr: proxy issues with dnslookup causing failure: Info Needed.
Oct 26 2017, 1:05 PM · gnupg (gpg22), dns, dirmngr
werner added a comment to T3283: Set 'mym4_revision' to 0 if not a git repo.

Thanks for the list

Oct 26 2017, 1:01 PM · libgcrypt, Bug Report
werner claimed T3283: Set 'mym4_revision' to 0 if not a git repo.
Oct 26 2017, 12:59 PM · libgcrypt, Bug Report
werner added inline comments to rG3b66a256e376: agent: Allow recursive use of pinentry..
Oct 26 2017, 12:57 PM
werner raised the priority of T3276: the calibrate_get_time() function depends on a system that has a non-tickless kernel from Normal to High.
Oct 26 2017, 12:40 PM · Bug Report
werner added a comment to T3276: the calibrate_get_time() function depends on a system that has a non-tickless kernel.

Using an npth function is not good because we want to come up with a reasonable iteration count. Allowing npth to switch threads would not be good. The Linux specific solution in /D450 looks like a good solution but it needs some testing.

Oct 26 2017, 12:39 PM · Bug Report
werner added a reviewer for D450: clock_gettime if CLOCK_THREAD_CPUTIME_ID is available.: peter_tux.
Oct 26 2017, 12:35 PM
bernhard added a comment to T3442: S/MIME - Encrypt Option produces broken Mails in Sent Folder and leads to crash of GpgOL.

Yesterday I could reproduce that emails in the "send" folder cannot be decrypted anymore.

Oct 26 2017, 9:39 AM · gpg4win, gpgol, Bug Report
gniibe claimed T3276: the calibrate_get_time() function depends on a system that has a non-tickless kernel.

How about D450: clock_gettime if CLOCK_THREAD_CPUTIME_ID is available.?

Oct 26 2017, 9:08 AM · Bug Report
gniibe created D450: clock_gettime if CLOCK_THREAD_CPUTIME_ID is available..
Oct 26 2017, 9:07 AM
gniibe added projects to T3283: Set 'mym4_revision' to 0 if not a git repo: libgcrypt, libassuan, ntbtls, gpgme.

Here is the list:

  • libgcrypt
  • libassuan
  • ntbtls
  • gpgme : autogen.sh is ready
  • npth
Oct 26 2017, 8:28 AM · libgcrypt, Bug Report
gniibe added a comment to T3190: Recursive call of pinentry.

rG3b66a256e376: agent: Allow recursive use of pinentry. fixes the test case above.
I wish it doesn't cause any other issues.

Oct 26 2017, 7:45 AM · gnupg (gpg22)
gniibe committed rG3b66a256e376: agent: Allow recursive use of pinentry. (authored by gniibe).
agent: Allow recursive use of pinentry.
Oct 26 2017, 7:44 AM
gniibe added a comment to T3190: Recursive call of pinentry.

OK, I can make reproducible error case:

Oct 26 2017, 7:40 AM · gnupg (gpg22)
gniibe claimed T3190: Recursive call of pinentry.
Oct 26 2017, 7:10 AM · gnupg (gpg22)
gniibe closed T2167: Unplugging USB Smartcard/Yubikey causes problems with scdaemon as Resolved.
Oct 26 2017, 5:50 AM · gnupg (gpg22), Restricted Project, patch, Windows 64, scd, Windows, Windows 32, Bug Report
gniibe closed T3384: general ipc error building libassuan on cygwin as Resolved.
Oct 26 2017, 4:45 AM · Windows, libassuan, Bug Report
gniibe closed T3316: test failures in gnupg 2.1.22 when using configure --disable-scdaemon as Resolved.

Applied to 2.2 branch.

Oct 26 2017, 4:42 AM · Tests, Bug Report
gniibe committed rG05cb87276c21: agent, tests: Support --disable-scdaemon build case. (authored by gniibe).
agent, tests: Support --disable-scdaemon build case.
Oct 26 2017, 4:41 AM
gniibe committed rGb13972dfbf72: Fix comment of configure. (authored by gniibe).
Fix comment of configure.
Oct 26 2017, 4:41 AM
gniibe committed rGbf26c08b9538: agent, tests: Support --disable-scdaemon build case. (authored by gniibe).
agent, tests: Support --disable-scdaemon build case.
Oct 26 2017, 4:29 AM
gniibe committed rG3549dce4f5a7: Fix comment of configure. (authored by gniibe).
Fix comment of configure.
Oct 26 2017, 4:29 AM
gniibe claimed T3316: test failures in gnupg 2.1.22 when using configure --disable-scdaemon.

I fixed for master.
It will be into 2.2.

Oct 26 2017, 4:29 AM · Tests, Bug Report

Oct 25 2017

ikke added a comment to T3280: Cannot add subkeys to key stored on card.

Verified that the fix works, I can create subkeys now.

Oct 25 2017, 6:27 PM · gnupg (gpg22)
bernhard claimed T3442: S/MIME - Encrypt Option produces broken Mails in Sent Folder and leads to crash of GpgOL.

This week I'm trying to make progress with this issue.

Oct 25 2017, 2:43 PM · gpg4win, gpgol, Bug Report
bernhard updated the task description for T3442: S/MIME - Encrypt Option produces broken Mails in Sent Folder and leads to crash of GpgOL.
Oct 25 2017, 2:40 PM · gpg4win, gpgol, Bug Report
cdeibert added a comment to T3419: GpgOL 2.0.1 doesn't recognize plain PGP messages as encrypted.

Confirmed, this is the exact same problem!

Oct 25 2017, 11:58 AM · gpg4win, gpgol, Bug Report
werner triaged T3466: Add tool to convert a card backup key to a regular secret key as Normal priority.
Oct 25 2017, 8:02 AM · gnupg (gpg23), Feature Request
werner created T3466: Add tool to convert a card backup key to a regular secret key.
Oct 25 2017, 8:02 AM · gnupg (gpg23), Feature Request
gniibe closed T3454: Hash SM3 support as Resolved.

Thanks for the information.
Closing, as I pushed rC94b84360ca55: Add OID information for SM3..

Oct 25 2017, 5:26 AM · libgcrypt, Feature Request
gniibe committed rC94b84360ca55: Add OID information for SM3. (authored by gniibe).
Add OID information for SM3.
Oct 25 2017, 5:07 AM
jiazhang added a comment to T3454: Hash SM3 support.

CESI also publishes a complete white pager documenting OID assignment in details. See http://www.cesi.cn/201612/1688.html and download the pdf. Search "10197" and I see the following info:

Oct 25 2017, 4:14 AM · libgcrypt, Feature Request
gniibe added a comment to T3454: Hash SM3 support.

OK, I found: http://www.oidchina.cn/oid/release/1.2.156.10197.
站点: 国家OID注册中心
数字OID: 10197
中文OID:
英文OID: sca10197
应用范围: 密码标准化技术委员会

Oct 25 2017, 4:00 AM · libgcrypt, Feature Request
gniibe added a comment to T3454: Hash SM3 support.

I use: 1.2.156.10197.1.401

Oct 25 2017, 3:49 AM · libgcrypt, Feature Request
jcross added a comment to T3463: UI says “Secret key is available.” in gpg when it is not.

Thanks!

Oct 25 2017, 1:12 AM · Bug Report, gnupg (gpg22)
jcross awarded T3463: UI says “Secret key is available.” in gpg when it is not a Love token.
Oct 25 2017, 1:10 AM · Bug Report, gnupg (gpg22)

Oct 24 2017

werner added a comment to T3190: Recursive call of pinentry.

The obvious fix to unlock and relock the pinentry during the callback would have the problem that instead of the confirmation request a pinentry from another connection may pop up. That would be quite confusing.

Oct 24 2017, 9:58 PM · gnupg (gpg22)
werner closed T3397: gpg: --refresh-keys became extremely verbose and complaining as Resolved.

I moved most of the output to the debug category. Everything elese does not make much sense. I also fixed the stats printed for each reordered/fixed key to be prefixed with the keyid so all info is on one line. -q should fully silence them.

Oct 24 2017, 9:26 PM · gnupg (gpg22)
werner committed rG84af859e391a: gpg: Avoid superfluous sig check info during import. (authored by werner).
gpg: Avoid superfluous sig check info during import.
Oct 24 2017, 9:23 PM
werner committed rG812fe29bff42: build: New configure option --enable-werror (authored by werner).
build: New configure option --enable-werror
Oct 24 2017, 7:15 PM
werner committed rGe417aaf69817: build: Do not mess with CFLAGS in configure. (authored by werner).
build: Do not mess with CFLAGS in configure.
Oct 24 2017, 7:15 PM
werner closed T3255: Trust model direct does not respect local signatures as Invalid.

The trust-model=direct does not care about signatures or user ids. It simply checks the user assigned _ownertrust_ to decide whether a key is valid:

Oct 24 2017, 6:00 PM · gnupg (gpg22)
werner closed T1644: Do not expect KeyIDs to be unique as Resolved.
Oct 24 2017, 5:51 PM · gnupg (gpg22), S/MIME, Bug Report
werner committed rG1067403c8a7f: sm: Do not expect X.509 keyids to be unique (authored by perske).
sm: Do not expect X.509 keyids to be unique
Oct 24 2017, 5:50 PM