Page MenuHome GnuPG
Feed All Stories

Nov 25 2019

werner closed T4755: WoT forgeries using SHA-1 as Resolved.
Nov 25 2019, 10:11 PM · CVE, gnupg
werner closed T4684: Release GnuPG 2.2.18 as Resolved.
Nov 25 2019, 10:11 PM · Release Info, gnupg (gpg22)
werner committed rG80971adbc1ed: Post release updates (authored by werner).
Post release updates
Nov 25 2019, 9:51 PM
werner committed rG82b9e1bdbdd7: Release 2.2.18 (authored by werner).
Release 2.2.18
Nov 25 2019, 9:51 PM
werner committed rG253fadbf88a3: po: auto-update (authored by werner).
po: auto-update
Nov 25 2019, 9:51 PM
dkg created T4757: gpgsm --import --quiet is not quiet.
Nov 25 2019, 8:43 PM · S/MIME, Bug Report
werner committed rGf29a9ed9d0a0: speedo: Tell makensis the used charset of the script. (authored by aheinecke).
speedo: Tell makensis the used charset of the script.
Nov 25 2019, 8:22 PM
dkg created T4756: gpgsm --list-keys behaves differently than gpg when --passphrase is supplied.
Nov 25 2019, 7:06 PM · Feature Request, S/MIME
werner committed rG8e49fc7f43ec: tests: Adjust for now invalid SHA-1 key signatures. (authored by werner).
tests: Adjust for now invalid SHA-1 key signatures.
Nov 25 2019, 4:31 PM
werner committed rGf027c2d5be96: po: Update German translation (authored by werner).
po: Update German translation
Nov 25 2019, 4:31 PM
dkg added a comment to T4735: Please provide an option to make --verify accept only signatures from specific trusted UID.

To be clear, i believe @mgorny means that he wants the User ID containing the e-mail address to be considered *valid* (that is, full or ultimate validity). I don't think this operation should care about ownertrust.

Nov 25 2019, 4:30 PM · gnupg (gpg23), Feature Request
werner committed rG96c4943a5bd0: agent: Improve --debug-pinentry diagnostics (authored by werner).
agent: Improve --debug-pinentry diagnostics
Nov 25 2019, 11:41 AM
werner committed rGc8783b3a204b: agent: Improve --debug-pinentry diagnostics (authored by werner).
agent: Improve --debug-pinentry diagnostics
Nov 25 2019, 11:41 AM

Nov 24 2019

Laurent Montel <montel@kde.org> committed rKLEOPATRA9fc4669cfb06: GIT_SILENT: Increase version (authored by Laurent Montel <montel@kde.org>).
GIT_SILENT: Increase version
Nov 24 2019, 9:31 PM
Laurent Montel <montel@kde.org> committed rLIBKLEO553f0cee2627: GIT_SILENT: Prepare 5.13.0rc (authored by Laurent Montel <montel@kde.org>).
GIT_SILENT: Prepare 5.13.0rc
Nov 24 2019, 9:00 PM
Laurent Montel <montel@kde.org> committed rLIBKLEOb5cdccbaf301: GIT_SILENT: Increase version (authored by Laurent Montel <montel@kde.org>).
GIT_SILENT: Increase version
Nov 24 2019, 9:00 PM
werner committed rG10168a103b63: doc: Prepare a NEWS file for the next release. (authored by werner).
doc: Prepare a NEWS file for the next release.
Nov 24 2019, 8:44 PM
werner created T4755: WoT forgeries using SHA-1.
Nov 24 2019, 8:26 PM · CVE, gnupg

Nov 23 2019

werner closed T4547: improve error message ("Not enabled") when using Tor network and standard resolver as Resolved.

The manual states that --standard-resolver is mostly for debugging. The reason you get an "not enabled" is that we can't allow direct DNS queries in Tor mode which would happen with the system (standard) DNS resolver.

Nov 23 2019, 8:32 PM · dirmngr, gnupg (gpg22), Bug Report
werner committed rGdd373d4a2758: doc,dirmngr: Clarify --standard-resolver. (authored by werner).
doc,dirmngr: Clarify --standard-resolver.
Nov 23 2019, 8:30 PM
werner committed rGc21267e1c7aa: doc,dirmngr: Clarify --standard-resolver. (authored by werner).
doc,dirmngr: Clarify --standard-resolver.
Nov 23 2019, 8:30 PM
werner moved T4726: auto-key-locate only works with raw e-mail addresses (not angle-brackets) from Backlog to For next release on the gnupg (gpg22) board.
Nov 23 2019, 8:24 PM · gnupg (gpg22), wkd, Bug Report
ringelkrat added a comment to T4726: auto-key-locate only works with raw e-mail addresses (not angle-brackets).

Given that the the angle brackets are elsewhere used to indicate a search by mail address, it would be okay to allow for them in this case too (that is dkg's second example).
[...]
To answer your question: With the exception of case two this is desired behaviour also in the future,

Nov 23 2019, 6:53 PM · gnupg (gpg22), wkd, Bug Report
werner closed T4753: gpg-wks-client should install a default policy file as Resolved.

Done for 2.2 and master.

Nov 23 2019, 1:52 PM · gnupg (gpg22)
werner committed rG6e893061b54d: wkd: Let --install-key write a template policy file. (authored by werner).
wkd: Let --install-key write a template policy file.
Nov 23 2019, 1:52 PM
werner committed rG50cd1a58f3a6: wkd: Let --install-key write a template policy file. (authored by werner).
wkd: Let --install-key write a template policy file.
Nov 23 2019, 1:51 PM
geier created T4754: Please add a signature import filter "key in local keyring" in the S1 Public space.
Nov 23 2019, 12:15 PM · gnupg

Nov 22 2019

werner closed T4752: compile GnuPG v2.3.0 GPG_ERR_NO_SERVICE as Invalid.

Please no bug reports for the development branch. You need to have a recent libgpg-error. We do not update the requirements checked by configure for master immediately. It is better to report this to gnupg-devel if you are sure that you have the latest versions of all libraries.

Nov 22 2019, 3:23 PM · Bug Report
werner created T4753: gpg-wks-client should install a default policy file .
Nov 22 2019, 3:19 PM · gnupg (gpg22)
pow created T4752: compile GnuPG v2.3.0 GPG_ERR_NO_SERVICE.
Nov 22 2019, 12:44 PM · Bug Report
gniibe committed rGf6c55b7df5cc: gpg: Fix for the condition calling gpg_sos_write. (authored by gniibe).
gpg: Fix for the condition calling gpg_sos_write.
Nov 22 2019, 8:25 AM
gniibe committed rGbdb666fa3b25: gpg: Use opaque MPI for shared point. (authored by gniibe).
gpg: Use opaque MPI for shared point.
Nov 22 2019, 8:04 AM
gniibe committed rG4b06fb3c4f87: Merge branch 'master' into gniibe/sos (authored by gniibe).
Merge branch 'master' into gniibe/sos
Nov 22 2019, 7:17 AM
gniibe committed rG1de2382a98c5: gpg: Implement the fix-up of zero for SOS. (authored by gniibe).
gpg: Implement the fix-up of zero for SOS.
Nov 22 2019, 6:59 AM

Nov 21 2019

jukivili committed rCe5c4cf0efb8f: gost28147: inline gost_val function to speed up code (authored by lumag).
gost28147: inline gost_val function to speed up code
Nov 21 2019, 5:45 PM
jukivili committed rCf9894240bed3: gost28147: do not use GOST28147_CONTEXT outside of GOST 28147 calculation (authored by lumag).
gost28147: do not use GOST28147_CONTEXT outside of GOST 28147 calculation
Nov 21 2019, 5:45 PM
jukivili committed rC8f573a67d12e: gostr3411-94: small speedup (authored by lumag).
gostr3411-94: small speedup
Nov 21 2019, 5:45 PM
jukivili committed rCd164a8e7f682: gost28147: simplify internal code (authored by lumag).
gost28147: simplify internal code
Nov 21 2019, 5:45 PM
werner committed rD142f49603f45: misc: Upload g10 Code financial statemet for 2018 (authored by werner).
misc: Upload g10 Code financial statemet for 2018
Nov 21 2019, 10:34 AM
gniibe committed rG40b8626a9572: gpg: Use opaque MPI for ECDH. (authored by gniibe).
gpg: Use opaque MPI for ECDH.
Nov 21 2019, 8:13 AM
werner triaged T4751: gpgsm unable to import a PKCS12 file with a NULL password as Normal priority.
Nov 21 2019, 8:13 AM · gnupg, Feature Request, S/MIME
dkg created T4751: gpgsm unable to import a PKCS12 file with a NULL password.
Nov 21 2019, 4:22 AM · gnupg, Feature Request, S/MIME

Nov 20 2019

gniibe committed rGa53446175344: gpg: Use GCRYMPI_FLAG_USER2 for SOS, and hash_public_key with that. (authored by gniibe).
gpg: Use GCRYMPI_FLAG_USER2 for SOS, and hash_public_key with that.
Nov 20 2019, 11:10 PM
werner committed rWb71c9e800571: Fix support page - there are only two companies. (authored by werner).
Fix support page - there are only two companies.
Nov 20 2019, 11:33 AM
werner committed rC1650004c42d1: doc: Add DCO for Paul Wolneykien (authored by werner).
doc: Add DCO for Paul Wolneykien
Nov 20 2019, 9:27 AM
werner raised the priority of T4684: Release GnuPG 2.2.18 from Normal to High.
Nov 20 2019, 9:00 AM · Release Info, gnupg (gpg22)
werner lowered the priority of T4628: new import-clean default for keys from keyservers modifies the local keyring when anything is returned from Normal to Wishlist.
Nov 20 2019, 8:58 AM · Keyserver, gnupg (gpg22), Bug Report

Nov 19 2019

jason updated the summary of D496: Improve the quality of the example "scd-event" script.
Nov 19 2019, 7:59 PM
jason created D496: Improve the quality of the example "scd-event" script.
Nov 19 2019, 7:58 PM
werner committed rD0915f3e5c7ab: web: More donation charts. (authored by werner).
web: More donation charts.
Nov 19 2019, 3:18 PM
werner committed rDd15b67e9406f: web: Add a chart with the individual donations. (authored by werner).
web: Add a chart with the individual donations.
Nov 19 2019, 2:41 PM
werner committed rD8dcb0be66b95: web: Update the donations stats. (authored by werner).
web: Update the donations stats.
Nov 19 2019, 12:58 PM
gniibe committed rG236c4b347092: po: Update po/POTFIES.in (authored by gniibe).
po: Update po/POTFIES.in
Nov 19 2019, 11:08 AM
gniibe committed rG7dbddc584901: Add sos_read. (authored by gniibe).
Add sos_read.
Nov 19 2019, 11:08 AM
gniibe committed rG116dfb20013b: po: Apply removal of dirmngr/ldap-wrapper-ce.c. (authored by gniibe).
po: Apply removal of dirmngr/ldap-wrapper-ce.c.
Nov 19 2019, 10:47 AM

Nov 18 2019

werner committed rCa3a866f63e7a: ecc: update GOST2012 curves (authored by Paul Wolneykien <manowar@altlinux.org>).
ecc: update GOST2012 curves
Nov 18 2019, 10:25 PM
werner committed rCafffa9139f59: tests: Fix number of implemented curves. (authored by werner).
tests: Fix number of implemented curves.
Nov 18 2019, 10:25 PM
werner closed T4750: --log-file usage problem with gpg as Resolved.

Done. Thanks.

Nov 18 2019, 6:52 PM
werner committed rG499cd4d2ebe4: doc: Clarify how to use --log-file in gpg. (authored by werner).
doc: Clarify how to use --log-file in gpg.
Nov 18 2019, 6:51 PM
werner committed rGd9c793518848: dirmngr,gpg: Better diagnostic in case of bad TLS certificates. (authored by werner).
dirmngr,gpg: Better diagnostic in case of bad TLS certificates.
Nov 18 2019, 6:46 PM
werner committed rG3efc94f1eb17: dirmngr,gpg: Better diagnostic in case of bad TLS certificates. (authored by werner).
dirmngr,gpg: Better diagnostic in case of bad TLS certificates.
Nov 18 2019, 6:46 PM
werner committed rG5967cfcc71e7: dirmngr: Fixed typo in recently added diagnostic. (authored by werner).
dirmngr: Fixed typo in recently added diagnostic.
Nov 18 2019, 6:46 PM
werner committed rGae9acb8745c1: dirmngr: Forward http redirect warnings to gpg. (authored by werner).
dirmngr: Forward http redirect warnings to gpg.
Nov 18 2019, 6:46 PM
werner committed rG466bdf7c07f4: dirmngr: Factor some prototypes out to dirmngr-status.h. (authored by werner).
dirmngr: Factor some prototypes out to dirmngr-status.h.
Nov 18 2019, 6:46 PM
werner committed rG0f37727fcab2: dirmngr: Fixed typo in recently added diagnostic. (authored by werner).
dirmngr: Fixed typo in recently added diagnostic.
Nov 18 2019, 6:46 PM
werner committed rG4dd509912524: dirmngr: Forward http redirect warnings to gpg. (authored by werner).
dirmngr: Forward http redirect warnings to gpg.
Nov 18 2019, 6:46 PM
werner committed rD1e7b47bf3cbc: drafts,openpgp-webkey-service: Publish revision -09 (authored by werner).
drafts,openpgp-webkey-service: Publish revision -09
Nov 18 2019, 11:40 AM
bernhard added a comment to T4750: --log-file usage problem with gpg.

Okay, maybe this should just be added to the 2.2.x docs.

Nov 18 2019, 11:35 AM
bernhard added a comment to T4750: --log-file usage problem with gpg.

Thanks for your comments. It would have been cool if this restriction would have been noted
in the gpg options documentation. (Where is was missing at least where I was looking.)

Nov 18 2019, 11:31 AM
werner added a comment to T4750: --log-file usage problem with gpg.

You may want to use a recent version of GnuPG ;-)

Nov 18 2019, 11:26 AM
gniibe added a comment to T4750: --log-file usage problem with gpg.

Here is my understanding:
--log-file option is valid for for background task like gpg-agent, dirmngr and scdaemon.
For gpg, it only works with --batch or --server.

Nov 18 2019, 10:44 AM
bernhard updated the task description for T4750: --log-file usage problem with gpg.
Nov 18 2019, 10:26 AM
bernhard created T4750: --log-file usage problem with gpg.
Nov 18 2019, 10:26 AM
gniibe closed T4654: Gemalto Ezio Shield (CT710): CCID command failed: Parameter error at offset 7 as Resolved.

This will be in 2.2.18, closing.

Nov 18 2019, 9:37 AM · scd, Restricted Project, Bug Report
gniibe committed rG360d64dbf601: gpg: Use opaque byte MPI interface for ECC key. (authored by gniibe).
gpg: Use opaque byte MPI interface for ECC key.
Nov 18 2019, 8:48 AM
gniibe committed rG348e14474c40: gpg: Introduce SOS (Simply Octet String) support. (authored by gniibe).
gpg: Introduce SOS (Simply Octet String) support.
Nov 18 2019, 8:48 AM
gniibe added a comment to T4744: Password is _never_ prompted in an X session but is in a bare tty.

In my own opinion, it will be good when desktop environments support GnuPG as one of first class citizens, to protect user's data.
For example, currently, libscret stores secret data (such as WiFi shared secret, etc.) by its own cipher preference and method (and it is symmetric cipher by user's password). I don't think it is secure enough.
For me, it will be good if it is protected by user's gpg key using asymmetric crypto.

Nov 18 2019, 8:35 AM · Bug Report
l10n daemon script <scripty@kde.org> committed rLIBKLEOa5925cc20a72: SVN_SILENT made messages (.desktop file) - always resolve ours (authored by l10n daemon script <scripty@kde.org>).
SVN_SILENT made messages (.desktop file) - always resolve ours
Nov 18 2019, 5:49 AM
dkg added a comment to T4393: GnuPG should always accept key updates even if the update does not contain UIDs.

it's been almost a quarter year since my last nudge on this supplied patch. It's not clear to me why it hasn't been merged in master. I'm trying to not be a nag, but:

Nov 18 2019, 4:03 AM · gnupg (gpg23), Feature Request

Nov 17 2019

l10n daemon script <scripty@kde.org> committed rKLEOPATRAdb9aa2336098: GIT_SILENT made messages (after extraction) (authored by l10n daemon script <scripty@kde.org>).
GIT_SILENT made messages (after extraction)
Nov 17 2019, 3:13 AM

Nov 16 2019

werner closed T4400: GnuPG fails to parse algorithm preferences (and presumably features) from direct key signatures as Wontfix.

UserIDs are mandatory and do not see any reason to change this except maybe by specialized application in the embedded field.

Nov 16 2019, 10:22 AM · Bug Report
werner triaged T4726: auto-key-locate only works with raw e-mail addresses (not angle-brackets) as Normal priority.
Nov 16 2019, 10:18 AM · gnupg (gpg22), wkd, Bug Report
werner added a comment to T4726: auto-key-locate only works with raw e-mail addresses (not angle-brackets).

Given that the the angle brackets are elsewhere used to indicate a search by mail address, it would be okay to allow for them in this case too (that is dkg's second example). The risk of a regression in that case is pretty low.

Nov 16 2019, 10:18 AM · gnupg (gpg22), wkd, Bug Report

Nov 15 2019

werner committed rD5743aa49979c: web: Cleaned up the list of GnuPG hacker (authored by werner).
web: Cleaned up the list of GnuPG hacker
Nov 15 2019, 9:29 AM
werner closed T4725: Dubious filename in literal data packet when encrypting with GPGME/GnuPGv1.4.23 as Wontfix.

it is just that we won't fix that for gpg 1.4.

Nov 15 2019, 9:18 AM · gpgme, Bug Report
doronbehar added a comment to T4744: Password is _never_ prompted in an X session but is in a bare tty.

Wow thanks for the great explanation! I've always wondered what is the relationship between gnupg and other secrets services. Personally, although Gnome's / KDE's secrets services offer better UX out of the box, I've always preferred gpg's agent because I can control it better from the command line and hence customize it's behavior. The only use I have for gnome-secrets service is for a few passwords I always want them to be cached (because I obtain them in systemd timers+services). Do you think Gnome / KDE will ever plan to _use_ gpg-agent, instead of reimplementing it?

Nov 15 2019, 8:57 AM · Bug Report
werner added a project to T4738: GpgOL deletes message body in S/Mime signed mails if Outlook is configured for .txt: gpgol.
Nov 15 2019, 8:50 AM · gpgol, Bug Report
gniibe committed rG9b41f58c8a54: scd,ccid: Add support of GEMPC_EZIO. (authored by gniibe).
scd,ccid: Add support of GEMPC_EZIO.
Nov 15 2019, 7:52 AM
gniibe committed rG1cb9a831f6ee: scd,ccid: Fix detection of supported readers with pinpad. (authored by gniibe).
scd,ccid: Fix detection of supported readers with pinpad.
Nov 15 2019, 7:48 AM
gniibe added a comment to T4744: Password is _never_ prompted in an X session but is in a bare tty.

Sorry in advance for long explanation. :-) Well, let me show my stand point at first (to avoid confusion): I don't like the concept of "desktop integration" when it makes difficult for a user to control his environment.

Nov 15 2019, 12:48 AM · Bug Report

Nov 14 2019

doronbehar closed T4744: Password is _never_ prompted in an X session but is in a bare tty as Resolved.

Works! I still wonder though: How come my system / gpg agent has all of a sudden started using the external cache? Is this a new feature of gpg-agent? And what is the meaning of this message:

Nov 14 2019, 11:25 PM · Bug Report
aheinecke committed rO79cac7c840d5: Auto update po files (authored by aheinecke).
Auto update po files
Nov 14 2019, 12:33 PM
aheinecke committed rOead43db95ac4: Update german translation (authored by aheinecke).
Update german translation
Nov 14 2019, 12:33 PM
werner committed rP02a4f2fa0d8c: core: Allow to query info about the emacn integration. (authored by werner).
core: Allow to query info about the emacn integration.
Nov 14 2019, 12:02 PM
werner committed rP248e1e79231f: gtk: Fix compiler warning. (authored by werner).
gtk: Fix compiler warning.
Nov 14 2019, 12:02 PM
werner committed rPf4b896ab75ba: emacs: Handle options before trying to conenct to emacs. (authored by werner).
emacs: Handle options before trying to conenct to emacs.
Nov 14 2019, 12:02 PM
werner triaged T4743: Kleopatra: Verify from Signature in Clipboard as Normal priority.
Nov 14 2019, 10:50 AM · Feature Request, kleopatra
werner closed T4749: --passphrase-fd 0 not working from command line as Invalid.

This is a bug tracker and not a general help line. You are better off asking on the gnupg-uisers mailing list.

Nov 14 2019, 10:49 AM · FAQ, gnupg
gniibe added a comment to T4744: Password is _never_ prompted in an X session but is in a bare tty.

Could you try to put no-allow-external-cache in your gpg-agent.conf?
If it changes the behavior, it is your desktop environment which caches your input, I suppose.

Nov 14 2019, 9:34 AM · Bug Report
l10n daemon script <scripty@kde.org> committed rKLEOPATRA3a868de821cc: SVN_SILENT made messages (.desktop file) - always resolve ours (authored by l10n daemon script <scripty@kde.org>).
SVN_SILENT made messages (.desktop file) - always resolve ours
Nov 14 2019, 9:25 AM