Page MenuHome GnuPG
Feed All Stories

May 15 2018

EvaSDK created T3982: libgcrypt.m4 is not multilib friendly.
May 15 2018, 12:15 PM · libgcrypt, Bug Report
kristianf added a member for Gentoo: mgorny.
May 15 2018, 12:11 PM
kristianf added a member for Gentoo: alonbl.
May 15 2018, 12:11 PM
kristianf added a member for Gentoo: EvaSDK.
May 15 2018, 12:11 PM
andrewgdotcom created T3981: MDC failures should always trigger fatal error.
May 15 2018, 10:56 AM · Bug Report
Breach added a comment to T3973: GpgOL causes Outlook 2016 crash with specific message.

Thanks. Confirmed - no crash with the beta5 dll.

May 15 2018, 10:38 AM · gpg4win, gpgol, Bug Report
aheinecke committed rOb22996a01b8c: Add Dutch translation (authored by Erwin Bronkhorst <erwinbronkhorst@gmail.com>).
Add Dutch translation
May 15 2018, 9:22 AM
aheinecke changed the status of T3973: GpgOL causes Outlook 2016 crash with specific message from Open to Testing.

Argh! From the log it looks very much like another incarnation of the issue fixed in T3960 (Same underlying reason)

May 15 2018, 9:19 AM · gpg4win, gpgol, Bug Report
BenM committed rMbb8153269b3f: meta: .gitignore (authored by BenM).
meta: .gitignore
May 15 2018, 8:57 AM
ktalik added a comment to T3972: 100% CPU usage endles loop of gpg --list-keys.

Good idea, but I've already tried it. Tried once again and freeze still occurs.

May 15 2018, 8:29 AM · gnupg (gpg22)
BenM added a comment to T3977: GPGME Python Bindings HOWTO org-babel examples losing indenting.

Webhelp version of the Python bindings HOWTO is currently available here:

May 15 2018, 7:33 AM · Python, gpgme
BenM committed rMaa4875bd06f1: docs: python howto DITA (authored by BenM).
docs: python howto DITA
May 15 2018, 6:47 AM
Breach added a comment to T3973: GpgOL causes Outlook 2016 crash with specific message.

Hi and thanks. Yes, I consistently reproduce. Here's the log file.

May 15 2018, 6:38 AM · gpg4win, gpgol, Bug Report
BenM committed rMf64d259e1d2a: docs: python bindings howto (authored by BenM).
docs: python bindings howto
May 15 2018, 5:52 AM
BenM added a comment to T3977: GPGME Python Bindings HOWTO org-babel examples losing indenting.

As a work-around for this bug I've ported the HOWTO from org-mode to DITA XML and will generate a webhelp-responsive (i.e. searchable) version to put on another website (an Amazon S3 bucket since it will be reliable and cheap) in the interim.

May 15 2018, 5:25 AM · Python, gpgme
BenM committed rMf0063afa71bc: docs: python bindings HOWTO - DITA XML version (authored by BenM).
docs: python bindings HOWTO - DITA XML version
May 15 2018, 5:22 AM

May 14 2018

gouttegd added a comment to T3972: 100% CPU usage endles loop of gpg --list-keys.

Okay, so maybe this has nothing to do with T3748 then…

May 14 2018, 11:30 PM · gnupg (gpg22)
werner triaged T3980: gpg-agent: error allocating thread attributes when starting as daemon as High priority.

That comes directly from pthread_attr_init - need to check what's special on HP/UX here.

May 14 2018, 10:10 PM · npth, Bug Report
jhirsch created T3980: gpg-agent: error allocating thread attributes when starting as daemon.
May 14 2018, 9:29 PM · npth, Bug Report
werner added a comment to T3979: GPGSM: Authenticated encryption.

Do you have any other implementation to test against?

May 14 2018, 7:59 PM · S/MIME
mkrambach committed rM6b4caee039af: js: Testing lare messages (authored by mkrambach).
js: Testing lare messages
May 14 2018, 7:08 PM
mkrambach committed rM987b31746809: js: Tests and improvements for openpgp mode (authored by mkrambach).
js: Tests and improvements for openpgp mode
May 14 2018, 4:41 PM
mkrambach committed rMd1ca90ef75aa: js: remove non-browser tests (authored by mkrambach).
js: remove non-browser tests
May 14 2018, 4:41 PM
gniibe committed rG61b1508281cd: po: Fix Swedish and Turkish translations. (authored by gniibe).
po: Fix Swedish and Turkish translations.
May 14 2018, 3:40 PM
gniibe committed rG49bbbd9dc5e1: po: Fix Danish translation. (authored by gniibe).
po: Fix Danish translation.
May 14 2018, 3:22 PM
aheinecke created T3979: GPGSM: Authenticated encryption.
May 14 2018, 2:42 PM · S/MIME
ktalik added a comment to T3972: 100% CPU usage endles loop of gpg --list-keys.

Above command freezes with 100% CPU, too.

May 14 2018, 11:17 AM · gnupg (gpg22)
aheinecke triaged T3973: GpgOL causes Outlook 2016 crash with specific message as Normal priority.

Thanks for your report!

May 14 2018, 9:00 AM · gpg4win, gpgol, Bug Report
werner triaged T3976: Add possibility to execute external command on (smart card) usage as Low priority.

A smartcard may do several dozen operations per second and thus spawning a tool each time is not the best option. A generic notification scheme would be better. OTOH, notifications about secret key operations may accidentally create an oracle - which is not good.

May 14 2018, 8:43 AM · Feature Request
aheinecke created T3978: GpgOL: Problem with automatic resolution of ambigous keys.
May 14 2018, 8:36 AM · Bug Report, gpgol
BenM changed the visibility for T3977: GPGME Python Bindings HOWTO org-babel examples losing indenting.
May 14 2018, 5:33 AM · Python, gpgme
BenM added a comment to T3977: GPGME Python Bindings HOWTO org-babel examples losing indenting.

Org-Mode was updated to today's release and further testing was conducted.

May 14 2018, 5:31 AM · Python, gpgme

May 13 2018

BenM changed the visibility for T3977: GPGME Python Bindings HOWTO org-babel examples losing indenting.
May 13 2018, 8:37 PM · Python, gpgme
damadmai created T3976: Add possibility to execute external command on (smart card) usage.
May 13 2018, 3:09 PM · Feature Request
werner committed rG7b7576637ddf: Merge branch 'STABLE-BRANCH-2-2' into master (authored by werner).
Merge branch 'STABLE-BRANCH-2-2' into master
May 13 2018, 1:40 PM
werner committed rG68ba4e0308a9: doc: Include release info for 2.2.7 (authored by werner).
doc: Include release info for 2.2.7
May 13 2018, 1:40 PM
werner committed rG1ced88edf4ce: doc: Fix URL in NEWS. (authored by werner).
doc: Fix URL in NEWS.
May 13 2018, 1:30 PM
damadmai reopened T3970: Change capabilities / usage flags in edit-key as "Open".

cross-sign is also missing.

May 13 2018, 12:01 PM · Feature Request

May 12 2018

Breach added a project to T3973: GpgOL causes Outlook 2016 crash with specific message: gpg4win.
May 12 2018, 6:40 PM · gpg4win, gpgol, Bug Report
BenM committed rDc8a74117ce7a: docs: OpenPGP over Activity Streams 2.0 (authored by BenM).
docs: OpenPGP over Activity Streams 2.0
May 12 2018, 6:47 AM

May 11 2018

baluui updated the task description for T3975: Special characters not displayed anymore in Outlook.
May 11 2018, 9:14 PM · gpgol, Bug Report
baluui created T3975: Special characters not displayed anymore in Outlook.
May 11 2018, 9:12 PM · gpgol, Bug Report
gouttegd added a comment to T3972: 100% CPU usage endles loop of gpg --list-keys.

If you never explicitly changed the default trust model, then I would expect you are not using TOFU, but the presence of a tofu.db file strongly suggests that you are indeed using it.

May 11 2018, 4:06 PM · gnupg (gpg22)
ktalik added a comment to T3972: 100% CPU usage endles loop of gpg --list-keys.

I'm not sure. How to check it? In man gpg I only see instructions on how to change the trust model. ~/.gnupg/gpg.conf does not have any trust model related entry. I have ~/.gnupg/tofu.db file however.

May 11 2018, 3:24 PM · gnupg (gpg22)
gouttegd added a comment to T3972: 100% CPU usage endles loop of gpg --list-keys.

This looks reminiscent of a bug previously seen in GPA (T3748).

May 11 2018, 1:22 PM · gnupg (gpg22)
werner added a comment to T3971: gpgme-1.11.1 fails to build: cJSON.c:45:20: fatal error: gpgrt.h: Datei oder Verzeichnis nicht gefunden.

It seems that Debian does not install te required libgpg-error correctl.

May 11 2018, 11:23 AM · Debian, Bug Report, gpgme
aheinecke closed T3974: jabber.quux.de certificate ran out 2018-05-09 as Resolved.

Zertifikat erneuert.

May 11 2018, 11:03 AM
aheinecke claimed T3974: jabber.quux.de certificate ran out 2018-05-09.

I've already sent jens a mail this morning.

May 11 2018, 9:49 AM
bernhard created T3974: jabber.quux.de certificate ran out 2018-05-09 in the S1 Public space.
May 11 2018, 9:44 AM
aheinecke changed the status of T3964: Response to signed mail just shows the original signed part of the mail in Outlook after verification from Open to Testing.
May 11 2018, 9:37 AM · Bug Report, gpg4win
aheinecke committed rO8539f6bc595d: Stop prasing on non whitepspace before PGP Message (authored by aheinecke).
Stop prasing on non whitepspace before PGP Message
May 11 2018, 9:31 AM
Breach created T3973: GpgOL causes Outlook 2016 crash with specific message.
May 11 2018, 9:22 AM · gpg4win, gpgol, Bug Report
aheinecke triaged T3964: Response to signed mail just shows the original signed part of the mail in Outlook after verification as High priority.

I understand the Problem. Your recipient formatted the reply in such a way that GpgOL does not detect that the original message is Quoted, verifies it and shows only the verified part.

May 11 2018, 9:02 AM · Bug Report, gpg4win

May 10 2018

damadmai added a comment to T3970: Change capabilities / usage flags in edit-key.

Great! I did not notice this feature!
Is it on purpose that this is not shown by hitting TAB in the --edit-key command prompt (and auto-completion)?

May 10 2018, 4:46 PM · Feature Request
ktalik created T3972: 100% CPU usage endles loop of gpg --list-keys.
May 10 2018, 3:51 PM · gnupg (gpg22)
Elan added a project to T3971: gpgme-1.11.1 fails to build: cJSON.c:45:20: fatal error: gpgrt.h: Datei oder Verzeichnis nicht gefunden: Debian.
May 10 2018, 11:01 AM · Debian, Bug Report, gpgme
Elan added a project to T3971: gpgme-1.11.1 fails to build: cJSON.c:45:20: fatal error: gpgrt.h: Datei oder Verzeichnis nicht gefunden: Bug Report.
May 10 2018, 10:59 AM · Debian, Bug Report, gpgme
Elan created T3971: gpgme-1.11.1 fails to build: cJSON.c:45:20: fatal error: gpgrt.h: Datei oder Verzeichnis nicht gefunden in the S1 Public space.
May 10 2018, 10:55 AM · Debian, Bug Report, gpgme
werner closed T3969: Support uid specification for quick-add-key as in quick-add-uid as Wontfix.

The fingerprint is required because that is the unique identifier for a key. Without that we would need to presetn a menu to select between keys. This would make scripting complicated again. On the command line c+p is easy enough to hget the fingerprint. c+P is also the reason why we print the fingerprint by default without spaces.

May 10 2018, 10:52 AM · Feature Request
werner closed T3970: Change capabilities / usage flags in edit-key as Resolved.

You are lucky. This has been possible for quite some time and since 2.2.6 it is an official part of the API. See T3816

May 10 2018, 10:49 AM · Feature Request

May 9 2018

mkrambach committed rMc92326cc257c: js: more testing of nativeMessaging connection (authored by mkrambach).
js: more testing of nativeMessaging connection
May 9 2018, 7:44 PM
mkrambach committed rM5f5bf024a836: Merge branch 'master' into javascript-binding (authored by mkrambach).
Merge branch 'master' into javascript-binding
May 9 2018, 7:44 PM
damadmai created T3970: Change capabilities / usage flags in edit-key.
May 9 2018, 6:19 PM · Feature Request
damadmai created T3969: Support uid specification for quick-add-key as in quick-add-uid.
May 9 2018, 5:44 PM · Feature Request
werner committed rMe54b110aec31: json: Improve auto-base64 encoding to not split UTF-8 chars. (authored by werner).
json: Improve auto-base64 encoding to not split UTF-8 chars.
May 9 2018, 4:50 PM
werner committed rMe2a8a87bf9cf: core: Make the status-fd monitor work for all gpgsm commands. (authored by werner).
core: Make the status-fd monitor work for all gpgsm commands.
May 9 2018, 4:50 PM
aheinecke committed rWe5948435dbc2: doc: Fix claws mentions and supported ini entries (authored by aheinecke).
doc: Fix claws mentions and supported ini entries
May 9 2018, 12:26 PM

May 8 2018

aheinecke created T3968: Kleopatra: Local comments on keys.
May 8 2018, 7:33 PM · gpg4win, kleopatra
aheinecke added a comment to T3953: GPGSM: Treat EXPKEYSIG as error.

But why is that the case for OpenPGP Signatures, then? The difference does not make sense to me.

May 8 2018, 7:20 PM · Bug Report, S/MIME, gnupg
mkrambach committed rMcca40627b0af: js: more testing (authored by mkrambach).
js: more testing
May 8 2018, 6:35 PM
werner closed T3953: GPGSM: Treat EXPKEYSIG as error as Invalid.

The key receives fully trust and thus we get the "green" flag plus the "expired" flag. In my test with OpenPGP the key was not trysted and thus we did not got only the "expired" flag. At some distant past we agreed on these rules.

May 8 2018, 6:16 PM · Bug Report, S/MIME, gnupg
werner closed T3953: GPGSM: Treat EXPKEYSIG as error, a subtask of T3948: GPGSM: Multiple issues reported to KMail, as Invalid.
May 8 2018, 6:16 PM · gnupg, S/MIME
werner added a comment to T3953: GPGSM: Treat EXPKEYSIG as error.

gpgsm behaves exactly as gpg and as explain in doc/DETAILS. VALIDSIG is issues even for signatures done by an expired certificate. Let me check whey GPGME claims "green" here while it does not not an expired OpenPGP signature.

May 8 2018, 5:27 PM · Bug Report, S/MIME, gnupg
aheinecke claimed T3967: dirmngr: "flush" does not flush in memory CRL's.

Wait. Users should not have the ability in the GUI to mess with the CRL cache. That is internal / private stuff. And something for developers, so this should be removed from the GUI altogether.

May 8 2018, 4:40 PM · kleopatra, S/MIME, gnupg
aheinecke added a parent task for T3967: dirmngr: "flush" does not flush in memory CRL's: T3948: GPGSM: Multiple issues reported to KMail.
May 8 2018, 4:35 PM · kleopatra, S/MIME, gnupg
aheinecke added a subtask for T3948: GPGSM: Multiple issues reported to KMail: T3967: dirmngr: "flush" does not flush in memory CRL's.
May 8 2018, 4:35 PM · gnupg, S/MIME
aheinecke created T3967: dirmngr: "flush" does not flush in memory CRL's.
May 8 2018, 4:35 PM · kleopatra, S/MIME, gnupg
aheinecke assigned T3953: GPGSM: Treat EXPKEYSIG as error to werner.

I think this issue is important as GPGME should not report "Green" / Everything OK in that case and only have the EXPKEYSIG in details.

May 8 2018, 4:00 PM · Bug Report, S/MIME, gnupg
Herr_SchneiderM added a comment to T3964: Response to signed mail just shows the original signed part of the mail in Outlook after verification.
  1. Create Mail and sign with PGP/inline activated
  2. Send mail to someone else who does not use gpg etc.
  3. Get a response including full quote of your email
May 8 2018, 8:53 AM · Bug Report, gpg4win
gniibe lowered the priority of T3731: gcry_pk_genkey() segfaults for ecdsa 384 from High to Normal.

I changed the priority to 'Normal'. The problem now is not the libssh usage, but how we can assume use of secure memory by random generator(s).

May 8 2018, 2:07 AM · libgcrypt, Bug Report
gniibe added a comment to T3731: gcry_pk_genkey() segfaults for ecdsa 384.

By libssh upstream, the problem has been fixed: commit-72f6b34

May 8 2018, 2:01 AM · libgcrypt, Bug Report

May 7 2018

mkrambach committed rM8f3d83e5f090: js: fixing errors found by testing: encrypt/decrypt (authored by mkrambach).
js: fixing errors found by testing: encrypt/decrypt
May 7 2018, 6:33 PM
aheinecke triaged T3956: O2010: Encrypted junk-mails can't be moved to inbox as Normal priority.

Thanks for your report. Are you sure that "Allow HTML" makes the difference?

May 7 2018, 2:43 PM · gpgol, Bug Report
aheinecke added a comment to T3459: GPGOL Moving mails is not possible if the decrypted / verified content is loaded.

As I link this Ticket often when talking about this limitation. Here is a short animation to show what is meant by moving but not opening a mail:

May 7 2018, 2:41 PM · gpg4win, gpgol, Bug Report
aheinecke added a comment to T3964: Response to signed mail just shows the original signed part of the mail in Outlook after verification.

I'm not sure I understand your Problem. For me it works as it should.

May 7 2018, 2:37 PM · Bug Report, gpg4win
aheinecke created T3966: Dirmngr: no suitable certificate found to verify the OCSP response.
May 7 2018, 1:59 PM · gpg4win, dirmngr, S/MIME
aheinecke created T3965: Kleopatra: Subkey editing.
May 7 2018, 1:44 PM · gpg4win, kleopatra
Herr_SchneiderM created T3964: Response to signed mail just shows the original signed part of the mail in Outlook after verification.
May 7 2018, 11:12 AM · Bug Report, gpg4win
gniibe added a comment to T3731: gcry_pk_genkey() segfaults for ecdsa 384.

Here is the function:
https://git.libssh.org/projects/libssh.git/tree/src/dh.c#n227

May 7 2018, 9:18 AM · libgcrypt, Bug Report
werner committed rGed12a1dabaf9: doc: Update description of displayed trust values. (authored by Ineiev <ineiev@gnu.org>).
doc: Update description of displayed trust values.
May 7 2018, 8:37 AM
werner added a comment to T3731: gcry_pk_genkey() segfaults for ecdsa 384.

Am I right to assume that the test suite is terminating and restarting libgcrypt? Although we have features for this, I am still not convinced that this is a proper use of libgcrypt. There are just too many cases how this can fail. Unix is not designed to use shared libraries in so-called "plugins". I need to look closer at the libssh code.

May 7 2018, 8:27 AM · libgcrypt, Bug Report
gniibe added a comment to T3731: gcry_pk_genkey() segfaults for ecdsa 384.

It would be better not to require gcry_control(GCRYCTL_CLOSE_RANDOM_DEVICE). Automatic handling through gcry_control(GCRYCTL_TERM_SECMEM) would be better.

May 7 2018, 2:32 AM · libgcrypt, Bug Report
gniibe added a comment to T3731: gcry_pk_genkey() segfaults for ecdsa 384.

The patch D461 makes gcry_control(GCRYCTL_CLOSE_RANDOM_DEVICE) free the allocated secure memory.

May 7 2018, 1:53 AM · libgcrypt, Bug Report
gniibe added a comment to T3731: gcry_pk_genkey() segfaults for ecdsa 384.

It assumes a change of libssh like:

May 7 2018, 1:52 AM · libgcrypt, Bug Report
gniibe added a comment to T3731: gcry_pk_genkey() segfaults for ecdsa 384.

Here is my patch: D461: jent random requires finalizer to deallocate secure memory

May 7 2018, 1:51 AM · libgcrypt, Bug Report
gniibe created D461: jent random requires finalizer to deallocate secure memory.
May 7 2018, 1:51 AM

May 6 2018

dcialdella added a comment to T3963: Invalid Crypto Engine - ( Xubuntu 18.04 ) version of GPG4USB 0.3.3.2 & 0.3.3.1 .

I downloaded it and I' m using it.
Nice feature the "notepad".... easier for encrypt/sign.

May 6 2018, 7:40 PM · gpgme, Bug Report
aheinecke added a comment to T3963: Invalid Crypto Engine - ( Xubuntu 18.04 ) version of GPG4USB 0.3.3.2 & 0.3.3.1 .

The latest Version of Kleopatra has a "Notepad" View that should do what you want. E.g. If you decrypt something in there it preselects the keys the message was encrypted to when you encrypt it again.

May 6 2018, 7:29 PM · gpgme, Bug Report
dcialdella added a comment to T3963: Invalid Crypto Engine - ( Xubuntu 18.04 ) version of GPG4USB 0.3.3.2 & 0.3.3.1 .

OOooh yeee.
Ok. Didn't know how bad gpg4usb really is.
I looked into it. Gpg4usb distributes their own binary GPGME version https://github.com/gpg4usb/gpg4usb/tree/master/linbuild/lib I don't even know which version that is. They are in violation of the GPL as they don't offer the source code of that GPGME version.

So, don't use it please what they do is horrible from a security standpoint. Try using Kleopatra (which I personally maintain). And if it does not work for your use case please let us know what your use case is and we can try to make it better for you. :-)

But indeed for gpg4usb you can't expect help here. They are very likely shipping a horribly outdated version with bugs that have since been fixed.

May 6 2018, 7:20 PM · gpgme, Bug Report
DamienCassou added a comment to T3942: Can't unregister a non-existent private key.

Workaround is to click cancel so that the next key is tried; right?

May 6 2018, 9:56 AM · gnupg (gpg22), Bug Report