Page MenuHome GnuPG
Feed All Stories

Apr 10 2018

aheinecke added a comment to T3882: gpgol does not decrypt mails send by Evolution.

I've got an example mail. The problem is that the mail itself is "Content-Type: multipart/mixed; boundary="_003_DB4PR08MB01092D175DE8C1861B5D0BC197BF0DB4PR08MB0109eurp_"
"

Apr 10 2018, 4:10 PM · gpgol, Bug Report
aheinecke committed rO7cb3feaf64d3: Make S/MIME compatible with Exchange 2016 patched (authored by aheinecke).
Make S/MIME compatible with Exchange 2016 patched
Apr 10 2018, 4:08 PM
aheinecke committed rO11ed13c4ee60: Improve acceptance of the parser (authored by aheinecke).
Improve acceptance of the parser
Apr 10 2018, 4:08 PM
aheinecke committed rObe8a7af4db06: Handle error in mapi update (authored by aheinecke).
Handle error in mapi update
Apr 10 2018, 4:08 PM
aheinecke committed rO6219c5bb703e: Sleep a bit before bringing window to front (authored by aheinecke).
Sleep a bit before bringing window to front
Apr 10 2018, 4:08 PM
4tmuelle added a comment to T3892: python: Fix crash by leaving struct members intact.

dunno how to attach a patch here... trying to copy it verbatim

Apr 10 2018, 3:32 PM · gpgme, Bug Report
4tmuelle added a comment to T3892: python: Fix crash by leaving struct members intact.

reproducer

Apr 10 2018, 3:31 PM · gpgme, Bug Report
4tmuelle created T3892: python: Fix crash by leaving struct members intact.
Apr 10 2018, 3:30 PM · gpgme, Bug Report
Arnaud added a subtask for T3152: KDF DO support in OpenPGP card: T3891: kdf-setup does not set admin and user PIN codes.
Apr 10 2018, 2:41 PM · scd
Arnaud added parent tasks for T3891: kdf-setup does not set admin and user PIN codes: T3152: KDF DO support in OpenPGP card, T3823: gpg frontend support to setup KDF DO.
Apr 10 2018, 2:41 PM · Restricted Project, scd, Bug Report
Arnaud added a subtask for T3823: gpg frontend support to setup KDF DO: T3891: kdf-setup does not set admin and user PIN codes.
Apr 10 2018, 2:41 PM · scd
Arnaud created T3891: kdf-setup does not set admin and user PIN codes.
Apr 10 2018, 2:41 PM · Restricted Project, scd, Bug Report
Laurent Montel <montel@kde.org> committed rKLEOPATRA10ee7f7c2787: GIT_SILENT: Prepare 5.8.0 (authored by Laurent Montel <montel@kde.org>).
GIT_SILENT: Prepare 5.8.0
Apr 10 2018, 1:52 PM
werner added a comment to T3381: dirmngr won't start on Windows 10 with admin level account.

--debug-wait 3

Apr 10 2018, 1:51 PM · libassuan, Restricted Project, gpg4win, dirmngr, Windows, Bug Report
tinkerwolf added a comment to T3381: dirmngr won't start on Windows 10 with admin level account.

@werner here's the only output I get:

Apr 10 2018, 10:53 AM · libassuan, Restricted Project, gpg4win, dirmngr, Windows, Bug Report
werner triaged T3381: dirmngr won't start on Windows 10 with admin level account as Normal priority.

Please kill all existing dirmngr instances and don't run any programs which will trigger it to be started (e.g. Kleopatra). Then run in a _standard_ shell (cmd.exe):

Apr 10 2018, 10:48 AM · libassuan, Restricted Project, gpg4win, dirmngr, Windows, Bug Report
werner committed rG1793f2c46a1a: doc: Include release info from 2.2.6 (authored by werner).
doc: Include release info from 2.2.6
Apr 10 2018, 10:38 AM
werner committed rG36373798c095: Merge branch 'STABLE-BRANCH-2-2' into master (authored by werner).
Merge branch 'STABLE-BRANCH-2-2' into master
Apr 10 2018, 10:38 AM
aheinecke created T3890: Gpg4win: p7s and p7m not properly registered as double click handled for GPA or Kleo on Windows 7.
Apr 10 2018, 10:28 AM · Bug Report, gpg4win
aheinecke created T3889: GpgOL: Window management does not work well in OL 2010.
Apr 10 2018, 10:26 AM · Bug Report, gpg4win, gpgol
aheinecke created T3888: Kleopatra: S/MIME trees in keylist are minimized on refresh.
Apr 10 2018, 10:07 AM · Bug Report, gpg4win, kleopatra
aheinecke created T3887: Kleopatra: Not finishing commands.
Apr 10 2018, 10:05 AM · Bug Report, gpg4win, kleopatra
tinkerwolf added a comment to T3381: dirmngr won't start on Windows 10 with admin level account.

I, too, have this problem. I have Windows 10 Pro 64-bit with BitDefender Total Security. My first reaction when this wasn't working was to disable all functions on BitDefender. That didn't help, so I ran dirmngr as admin in cmd (I despise PowerShell) without any luck. I created a non-admin user and ran it in there, again without luck. I've come up dry. No logs, no output, and no answers. Is there anything shy of downgrading dirmngr that will make this work? Has there been any progress as to figuring this out?

Apr 10 2018, 10:05 AM · libassuan, Restricted Project, gpg4win, dirmngr, Windows, Bug Report
aheinecke committed rWf5a1565d0e40: Use released gpgex 1.0.6 version (authored by aheinecke).
Use released gpgex 1.0.6 version
Apr 10 2018, 9:55 AM
aheinecke committed rX9cd9389fc4bd: Post release version bump (authored by aheinecke).
Post release version bump
Apr 10 2018, 9:55 AM
aheinecke committed rX5baafc20c890: Update NEWS for todays release (authored by aheinecke).
Update NEWS for todays release
Apr 10 2018, 9:55 AM
aheinecke committed rDdc9ddd844590: swdb: Release GpgEX 1.0.6 (authored by aheinecke).
swdb: Release GpgEX 1.0.6
Apr 10 2018, 9:44 AM
aheinecke claimed T3886: attachments can't be removed.

I'll go for a warning / error for now and see if I can fix the renumbering.

Apr 10 2018, 8:24 AM · gpgol, Bug Report, gpg4win
werner added a comment to T3883: Add Win32-OpenSSH support to gpg-agent's ssh-agent.

Rhat's for the client, right. I never used it. We used to run a Windows 8 instance in a VM to run tests via ssh on it. That worked most not really stable. For obvious reasons I am more interested in the server part ;-)

Apr 10 2018, 8:15 AM · Not A Bug, workaround, gnupg24, Windows, ssh
werner changed the status of T3880: gpg-agent's ssh-agent does not handle flags in signing requests properly from Open to Testing.

Thanks. I took these patches and simplified them. Not test tested, though,.

Apr 10 2018, 8:08 AM · ssh, gpgagent, Bug Report
werner committed rG9f69dbeb902a: agent: Improve the unknown ssh flag detection. (authored by werner).
agent: Improve the unknown ssh flag detection.
Apr 10 2018, 8:07 AM
gniibe added a comment to T3877: not all malloc performed in libgcrypt covered by gcry_set_allocation_handler.

Note:
When we change the allocation, hmac256.c will not be standalone any more (as commented in the head of the file), and we will need to change the compile-command line to include libgpg-error.

Apr 10 2018, 7:09 AM · libgcrypt, Bug Report
gniibe committed rC0de2a22fcf66: random: Protect another use of jent_rng_collector. (authored by gniibe).
random: Protect another use of jent_rng_collector.
Apr 10 2018, 4:21 AM
gniibe added a comment to T3731: gcry_pk_genkey() segfaults for ecdsa 384.

I check this report again.
The test is single thread, IIUC.

Apr 10 2018, 3:08 AM · libgcrypt, Bug Report
ccharabaruk added a comment to T3883: Add Win32-OpenSSH support to gpg-agent's ssh-agent.

I would argue that the Windows port of OpenSSH is not unstable at this point, especially given that Microsoft is even providing it as an installable feature in the next regular Windows 10 release. The fact that the port is now using actual OpenSSH version numbers instead of their own 0.x versions lends credence to this as well.

Apr 10 2018, 2:19 AM · Not A Bug, workaround, gnupg24, Windows, ssh
dkg reopened T3880: gpg-agent's ssh-agent does not handle flags in signing requests properly as "Open".

Thanks for the fix! however, the fix only addresses the two flags we currently know about. I've pushed a branch T3880-fix that tries to implement the If the agent does not support the requested flags […] It must reply with a SSH_AGENT_FAILURE message part of the spec.

Apr 10 2018, 12:14 AM · ssh, gpgagent, Bug Report
dkg committed rG381c46818ffa: agent: unknown flags on ssh signing requests cause an error. (authored by dkg).
agent: unknown flags on ssh signing requests cause an error.
Apr 10 2018, 12:12 AM
dkg committed rG55435cdd4fe4: agent: change documentation reference for ssh-agent protocol. (authored by dkg).
agent: change documentation reference for ssh-agent protocol.
Apr 10 2018, 12:12 AM

Apr 9 2018

werner committed rD2094fc1631ac: swdb: Release GnuPG 2.2.6 (authored by werner).
swdb: Release GnuPG 2.2.6
Apr 9 2018, 11:06 PM
werner closed T3880: gpg-agent's ssh-agent does not handle flags in signing requests properly as Resolved.

It is in 2.2.6

Apr 9 2018, 10:46 PM · ssh, gpgagent, Bug Report
werner edited projects for T3755: TLS hostname verification using hostname from DNS instead of supplied hostname, added: gnupg (gpg22); removed gnupg.

That slipped my attention due to the missing gpg22 tag I should have added. Sorry.

Apr 9 2018, 10:45 PM · gnupg (gpg22), dns, dirmngr
werner committed rG30081d2851e0: Post release updates (authored by werner).
Post release updates
Apr 9 2018, 10:32 PM
werner committed rGf1f072c501cd: po: Auto-update. (authored by werner).
po: Auto-update.
Apr 9 2018, 10:32 PM
werner committed rG6fbe2ddbaf51: Release 2.2.6 (authored by werner).
Release 2.2.6
Apr 9 2018, 10:32 PM
werner committed rGb46b14392540: po: Update German translation (authored by werner).
po: Update German translation
Apr 9 2018, 10:32 PM
werner committed rG7fa6f1481454: doc: Typo fix in gpg.texi (authored by werner).
doc: Typo fix in gpg.texi
Apr 9 2018, 7:55 PM
werner closed T3720: Crashes on Windows if homedir is a windows drive letter as Resolved.
Apr 9 2018, 2:55 PM · gnupg (gpg22), Windows
werner committed rG6da7aa1e7c80: gpg,w32: Fix empty homedir when only a drive letter is used. (authored by werner).
gpg,w32: Fix empty homedir when only a drive letter is used.
Apr 9 2018, 2:55 PM
werner added a comment to T3720: Crashes on Windows if homedir is a windows drive letter.

Yes. However, I have tested a fix for the empty value.

Apr 9 2018, 2:45 PM · gnupg (gpg22), Windows
twforeman added a comment to T3755: TLS hostname verification using hostname from DNS instead of supplied hostname.

Is there any ETA for when this might get fixed? We are having the same issue with our keyserver since it's behind a cname.

Apr 9 2018, 2:43 PM · gnupg (gpg22), dns, dirmngr
JJworx added a comment to T3886: attachments can't be removed.

In fact, renumbering of attachments happens also by just viewing them repeatedly. This likely causes multiple copies somewhere, reducing disk space.

Apr 9 2018, 2:07 PM · gpgol, Bug Report, gpg4win
JJworx created T3886: attachments can't be removed.
Apr 9 2018, 1:54 PM · gpgol, Bug Report, gpg4win
aheinecke added a comment to T3720: Crashes on Windows if homedir is a windows drive letter.

Have you tried it multiple times? If it's unintialized memory access maybe you got lucky?

Apr 9 2018, 1:30 PM · gnupg (gpg22), Windows
werner added a comment to T3720: Crashes on Windows if homedir is a windows drive letter.

I still can't reproduce the crash (on Vista).

Apr 9 2018, 1:26 PM · gnupg (gpg22), Windows
aheinecke added a subtask for T3742: Gpg4win 3.1.0: T3885: GpgOL: Malformed S/MIME mails when Exchange 2016 is used.
Apr 9 2018, 11:55 AM · gpg4win
aheinecke added a parent task for T3885: GpgOL: Malformed S/MIME mails when Exchange 2016 is used: T3742: Gpg4win 3.1.0.
Apr 9 2018, 11:55 AM · gpg4win, gpgol
aheinecke added a subtask for T3742: Gpg4win 3.1.0: T3884: Erroneous warning message when re-sending signed message + sending fails and locks GpgOL.
Apr 9 2018, 11:55 AM · gpg4win
aheinecke added a parent task for T3884: Erroneous warning message when re-sending signed message + sending fails and locks GpgOL: T3742: Gpg4win 3.1.0.
Apr 9 2018, 11:55 AM · gpgol, Bug Report, gpg4win
aheinecke claimed T3884: Erroneous warning message when re-sending signed message + sending fails and locks GpgOL.

Thanks for the report and the spelling fixes :-)

Apr 9 2018, 11:54 AM · gpgol, Bug Report, gpg4win
aheinecke created T3885: GpgOL: Malformed S/MIME mails when Exchange 2016 is used.
Apr 9 2018, 11:40 AM · gpg4win, gpgol
JJworx created T3884: Erroneous warning message when re-sending signed message + sending fails and locks GpgOL.
Apr 9 2018, 11:40 AM · gpgol, Bug Report, gpg4win
werner closed T3816: please expose "change-usage" subcommand for --edit-key as Resolved.

Will be in 2.2.6.

Apr 9 2018, 10:59 AM · gnupg (gpg22), Feature Request
werner committed rG519e4560e821: doc: Add an example for --default-new-key-algo (authored by werner).
doc: Add an example for --default-new-key-algo
Apr 9 2018, 10:59 AM
werner committed rGa4e26f2ee852: doc: Document --key-edit:change-usage (authored by werner).
doc: Document --key-edit:change-usage
Apr 9 2018, 10:59 AM
werner committed rG1a5d95e7319e: gpg: Check that a key may do certifications. (authored by werner).
gpg: Check that a key may do certifications.
Apr 9 2018, 10:33 AM
werner triaged T3881: Window sizing issue as Normal priority.
Apr 9 2018, 10:26 AM · gpa, Bug Report
werner triaged T3883: Add Win32-OpenSSH support to gpg-agent's ssh-agent as Normal priority.

Thanks for the pointer. But as long as the Windows ssh server is that instable I see no urgent need to add this to GnuPG.

Apr 9 2018, 10:25 AM · Not A Bug, workaround, gnupg24, Windows, ssh
werner closed T3832: Encrypting to a specifc recipient also encrypts to an unwanted one as Invalid.

Oh, you used a single dash and not a double dash in --armor. That is obviously the problem. As per Unix history all option characters may be combined unless they take an option arg; in that case the arg for the option may go directly after the option letter. We can't change that because lots of people and scripts use -rRECIPIENT.

Apr 9 2018, 10:22 AM · gnupg (gpg22), Bug Report
aheinecke triaged T3882: gpgol does not decrypt mails send by Evolution as Normal priority.

Thanks for the report.

Apr 9 2018, 8:55 AM · gpgol, Bug Report
Laurent Montel <montel@kde.org> committed rKLEOPATRAd4d421d90cb9: Fix some warnings (authored by Laurent Montel <montel@kde.org>).
Fix some warnings
Apr 9 2018, 8:17 AM
gniibe closed T3299: scd: support key algorithm attribute change UI as Resolved.
Apr 9 2018, 7:27 AM · gnupg (gpg23)
gniibe added a comment to T3299: scd: support key algorithm attribute change UI.

Fixed for forthcoming 2.2.6. Because of T3781: ECC encryption key on-card generation broken.
rG820380335a20: g10: Add "key-attr" command for --card-edit.

Apr 9 2018, 7:27 AM · gnupg (gpg23)
gniibe added a comment to T3844: Able to certify public keys without a certify key present when using smartcard..

I see. Got it.

Apr 9 2018, 1:20 AM · gnupg (gpg22), Bug Report

Apr 7 2018

ccharabaruk created T3883: Add Win32-OpenSSH support to gpg-agent's ssh-agent.
Apr 7 2018, 12:59 AM · Not A Bug, workaround, gnupg24, Windows, ssh

Apr 6 2018

werner closed T3872: Invalid --sender option does not produce parseable output as Resolved.

To be released with 2.26 next week

Apr 6 2018, 5:43 PM · gnupg (gpg22), Bug Report
werner committed rG0336e5d1a7b9: gpg: Emit FAILURE stati now in almost all cases. (authored by werner).
gpg: Emit FAILURE stati now in almost all cases.
Apr 6 2018, 5:42 PM
werner triaged T3804: --export-options export-minimal,export-clean includes multiple subkey binding signatures when only one is necessary as Normal priority.
Apr 6 2018, 4:39 PM · gnupg (gpg22)
werner added a comment to T3844: Able to certify public keys without a certify key present when using smartcard..

Right with (2) (1) will not occur if the key has been created with GnuPG. However, we have caches in the code path and further rogue software may create creates, interesting keys (tm). Thus I consider it better to explicitly request keys with cert flag set.

Apr 6 2018, 4:38 PM · gnupg (gpg22), Bug Report
gniibe added a comment to T3844: Able to certify public keys without a certify key present when using smartcard..

The patch has two parts; (1) detecting signature by incapable key and (2) limiting key with relevant capability.
I think that (1) is enough. I wonder with (2), (1) would not occur.

Apr 6 2018, 1:34 PM · gnupg (gpg22), Bug Report
Fgp created T3882: gpgol does not decrypt mails send by Evolution.
Apr 6 2018, 11:57 AM · gpgol, Bug Report
werner added a comment to T3844: Able to certify public keys without a certify key present when using smartcard..

Forget my former comment. We only need to check subkeys becuase the primary key can always certify.
Here is a new revision of the patch:

Apr 6 2018, 11:32 AM · gnupg (gpg22), Bug Report
werner added a comment to T3844: Able to certify public keys without a certify key present when using smartcard..

I have another patch proposal to check the key usage. However, there is a catch-22. We get the usage flags from the key signatures and thus we can only check them after we checked the key signature.

Apr 6 2018, 11:16 AM · gnupg (gpg22), Bug Report
werner committed rGcfd07798087f: doc: Add a code comment about back signatures. (authored by werner).
doc: Add a code comment about back signatures.
Apr 6 2018, 11:08 AM
werner committed rG5ba74a134db4: gpg: Re-indent sig-check.c and use signature class macros. (authored by werner).
gpg: Re-indent sig-check.c and use signature class macros.
Apr 6 2018, 10:25 AM
werner closed T1828: card-edit/fetch assumes signing key is master key and fails if not as Resolved.
Apr 6 2018, 9:37 AM · Bug Report, gnupg
werner edited projects for T3844: Able to certify public keys without a certify key present when using smartcard., added: gnupg (gpg22); removed gnupg (gpg20).

The gpg20 tag was a typo.

Apr 6 2018, 9:26 AM · gnupg (gpg22), Bug Report
gniibe added a comment to T3844: Able to certify public keys without a certify key present when using smartcard..

Sorry, the patch above is completely wrong, since pk->pubkey_usage is not the right key to check.

Apr 6 2018, 8:55 AM · gnupg (gpg22), Bug Report
gniibe created D460: Make sure the key for signature has capable for CERT.
Apr 6 2018, 8:53 AM
gniibe changed the status of T3880: gpg-agent's ssh-agent does not handle flags in signing requests properly from Open to Testing.
Apr 6 2018, 8:51 AM · ssh, gpgagent, Bug Report
gniibe committed rG80b775bdbb85: agent: Support SSH signature flags. (authored by gniibe).
agent: Support SSH signature flags.
Apr 6 2018, 8:08 AM
gniibe added a comment to T3844: Able to certify public keys without a certify key present when using smartcard..

If someone claims this is a kind of vulnerability, I think that what we need to fix is signature checking side:


Speaking about this, similar patch would be required to gpg1.4.

Apr 6 2018, 2:28 AM · gnupg (gpg22), Bug Report
thwaller created T3881: Window sizing issue.
Apr 6 2018, 2:02 AM · gpa, Bug Report
mideal added a comment to T3879: passphrase dialogue: "mismatch" message not deleted during next try.

Installed pinentry version is:

Apr 6 2018, 1:35 AM · pinentry, Bug Report
gniibe added a comment to T3844: Able to certify public keys without a certify key present when using smartcard..

The bug is specific to 2.2, which may select available key on card. When such a selection, checking the PK->REQ_USAGE was missed.

Apr 6 2018, 1:09 AM · gnupg (gpg22), Bug Report

Apr 5 2018

bcl added a comment to T3844: Able to certify public keys without a certify key present when using smartcard..

Shouldn't this also be applied to STABLE-BRANCH-1-4?

Apr 5 2018, 6:18 PM · gnupg (gpg22), Bug Report
dkg created T3880: gpg-agent's ssh-agent does not handle flags in signing requests properly.
Apr 5 2018, 5:43 PM · ssh, gpgagent, Bug Report
werner added projects to T3843: Unable to generate RSA4096 keys on Yubikey 4 on OSX Sierra: scd, yubikey.
Apr 5 2018, 5:22 PM · Info Needed, MacOS, yubikey, scd, Bug Report
werner committed rGd27417d3a571: gpg: Add new OpenPGP card vendor. (authored by werner).
gpg: Add new OpenPGP card vendor.
Apr 5 2018, 3:32 PM
aheinecke changed the status of T3853: GpgOL: S/MIME + Exchange 2016 Can lead to 550 5.6.0 M2MCVT.StorageError.Exeption , a subtask of T3742: Gpg4win 3.1.0, from Open to Testing.
Apr 5 2018, 3:17 PM · gpg4win
aheinecke changed the status of T3853: GpgOL: S/MIME + Exchange 2016 Can lead to 550 5.6.0 M2MCVT.StorageError.Exeption from Open to Testing.
Apr 5 2018, 3:17 PM · gpgol