Page MenuHome GnuPG
Feed Advanced Search

Apr 27 2021

gniibe committed rC060c378c050e: ecc: Check the input length for the point. (authored by gniibe).
ecc: Check the input length for the point.
Apr 27 2021, 10:30 AM

Apr 26 2021

gniibe added a comment to T1756: gpg-agent doesn't accept ssh certificates.

Update:
It looks like OpenSSH version 8 now supports ssh-agent's handling REQUEST_IDENTITIES.

Apr 26 2021, 8:32 AM · gnupg, Feature Request

Apr 23 2021

gniibe closed T5408: gpgconf should? not list disabled components as Resolved.
Apr 23 2021, 4:20 AM · Bug Report, Windows, gnupg (gpg23)
gniibe accepted D529: po: Update Simplified Chinese Translation..

Thank you.
I'll report the original message problem.
Applied and pushed.

Apr 23 2021, 4:19 AM
gniibe committed rGad7d2e6fb1b4: po: Update Simplified Chinese Translation. (authored by bobwxc).
po: Update Simplified Chinese Translation.
Apr 23 2021, 4:19 AM
gniibe committed rG97ba94e52b23: tools: Fix for --disable-tpm2d. (authored by gniibe).
tools: Fix for --disable-tpm2d.
Apr 23 2021, 4:13 AM

Apr 22 2021

gniibe added a comment to D529: po: Update Simplified Chinese Translation..

Thank you. Please confirm for one message translation. Others are all good.

Apr 22 2021, 9:02 AM

Apr 21 2021

gniibe committed rA8ec3e9f1dd88: build: Update gpg-error.m4. (authored by gniibe).
build: Update gpg-error.m4.
Apr 21 2021, 4:38 AM
gniibe added a comment to T5408: gpgconf should? not list disabled components.

If it confuses users, we can apply something like this:

diff --git a/tools/gpgconf-comp.c b/tools/gpgconf-comp.c
index 2a5087e1f..12916a64e 100644
--- a/tools/gpgconf-comp.c
+++ b/tools/gpgconf-comp.c
@@ -93,7 +93,9 @@ gc_error (int status, int errnum, const char *fmt, ...)
 /* Forward declaration.  */
 static void gpg_agent_runtime_change (int killflag);
 static void scdaemon_runtime_change (int killflag);
+#ifdef BUILD_WITH_TPM2D
 static void tpm2daemon_runtime_change (int killflag);
+#endif
 static void dirmngr_runtime_change (int killflag);
 static void keyboxd_runtime_change (int killflag);
Apr 21 2021, 4:36 AM · Bug Report, Windows, gnupg (gpg23)
gniibe updated the task description for T5408: gpgconf should? not list disabled components.
Apr 21 2021, 4:35 AM · Bug Report, Windows, gnupg (gpg23)
gniibe created T5408: gpgconf should? not list disabled components.
Apr 21 2021, 4:28 AM · Bug Report, Windows, gnupg (gpg23)
gniibe committed rK72f19cdabfb2: build: Update gpg-error.m4. (authored by gniibe).
build: Update gpg-error.m4.
Apr 21 2021, 3:52 AM
gniibe closed T5395: libksba coverity static analysis reports as Resolved.

Thank you for your confirmation. Closing.

Apr 21 2021, 2:46 AM · libksba, Bug Report
gniibe closed T3891: kdf-setup does not set admin and user PIN codes, a subtask of T3823: gpg frontend support to setup KDF DO, as Resolved.
Apr 21 2021, 2:45 AM · scd
gniibe closed T3891: kdf-setup does not set admin and user PIN codes, a subtask of T3152: KDF DO support in OpenPGP card, as Resolved.
Apr 21 2021, 2:45 AM · scd
gniibe closed T3891: kdf-setup does not set admin and user PIN codes as Resolved.
Apr 21 2021, 2:45 AM · Restricted Project, scd, Bug Report
gniibe added a project to T5297: SCM SPR332 smartcard reader support broken: gnupg (gpg22).

Fixed in GnuPG 2.3.1, so, add the tag for GnuPG 2.2.

Apr 21 2021, 2:44 AM · gnupg (gpg22), scd, Bug Report

Apr 20 2021

gniibe accepted D501: VPMSUMD accelleration for GCM mode on PPC.

It's in 1.9 already.

Apr 20 2021, 8:41 AM
gniibe abandoned D509: Yubikey supports two (or more) apps, serial number problem.
Apr 20 2021, 8:36 AM · gnupg
gniibe abandoned D510: Connection to gpg-agent/dirmngr/etc..

it's in 2.3.

Apr 20 2021, 8:34 AM · gnupg
gniibe abandoned D513: Support macOS build with SIP by using posix_spawn in tests/random.

Applied.

Apr 20 2021, 8:32 AM
gniibe accepted D525: doc: Fix swapped constants.

This has been applied already.

Apr 20 2021, 8:29 AM
gniibe committed rKfbb1f303198b: Fixes for static analysis reports. (authored by Jakuje).
Fixes for static analysis reports.
Apr 20 2021, 6:33 AM
gniibe added a comment to T5395: libksba coverity static analysis reports.

I applied 1,2,3, and 5 in rKfbb1f303198b: Fixes for static analysis reports.

Apr 20 2021, 6:32 AM · libksba, Bug Report
gniibe added a comment to T5395: libksba coverity static analysis reports.

I can't see null pointer de-reference (you claimed) in [4/5].
Could you please elaborate?

Apr 20 2021, 4:47 AM · libksba, Bug Report
gniibe claimed T5395: libksba coverity static analysis reports.
Apr 20 2021, 2:39 AM · libksba, Bug Report
gniibe closed T5293: gpg-error.m4 should search gpg-error.pc under the paths of gpgrt-config as Resolved.
Apr 20 2021, 2:36 AM · gpgrt
gniibe closed T5372: assertion failure mulm_25519: different sizes in Libgrypt 1.9 as Resolved.
Apr 20 2021, 2:29 AM · !assert, Bug Report, libgcrypt
gniibe closed T5384: pinentry coverity static analysis reports as Resolved.
Apr 20 2021, 2:28 AM · pinentry, Bug Report
gniibe added a comment to T4900: OS X 10.12 and dyld: Library not loaded: /usr/local/lib/libgcrypt.20.dylib.

IIUC, with libgcrypt in LIBGCRYPT-1.8-BRANCH (not yet released) and libgcrypt 1.9.3, the build process works well (the problem with SIP has been handled).

Apr 20 2021, 2:27 AM · MacOS, libgcrypt, Bug Report
gniibe closed T5375: getentropy usage is forbidden by Apple, but is now being forced by libgcrypt as Resolved.
Apr 20 2021, 2:12 AM · MacOS, libgcrypt

Apr 19 2021

gniibe committed rT1c2f98da3364: build: Update gpg-error.m4 (authored by gniibe).
build: Update gpg-error.m4
Apr 19 2021, 5:24 AM

Apr 16 2021

gniibe added a comment to T5048: Error handling in libassuan.

Updated:

diff --git a/configure.ac b/configure.ac
index 53a343b..f496729 100644
--- a/configure.ac
+++ b/configure.ac
@@ -82,6 +82,7 @@ AC_PROG_AWK
 AC_CHECK_TOOL(AR, ar, :)
 AC_USE_SYSTEM_EXTENSIONS
Apr 16 2021, 8:50 AM · gpgrt, libassuan
gniibe added a comment to T5384: pinentry coverity static analysis reports.

Fixed in rP7f7fd8bcfd74: tty: Fix error return paths and its resource leaks.

Apr 16 2021, 5:59 AM · pinentry, Bug Report
gniibe committed rP7f7fd8bcfd74: tty: Fix error return paths and its resource leaks. (authored by gniibe).
tty: Fix error return paths and its resource leaks.
Apr 16 2021, 5:58 AM
gniibe added a comment to T5384: pinentry coverity static analysis reports.

Actually, calling do_touch_file when some error(s) are not good.
Let me fix all the things.

Apr 16 2021, 5:02 AM · pinentry, Bug Report
gniibe closed T5134: GPG - will not sign nor verify the pin when using a contactless reader as Resolved.
Apr 16 2021, 4:25 AM · Not A Bug, scd, Bug Report
gniibe added a project to T5048: Error handling in libassuan: gpgrt.
Apr 16 2021, 3:56 AM · gpgrt, libassuan
gniibe added a comment to T5048: Error handling in libassuan.

Sorry, I was wrong. It seems that GNU C library has a feature to avoid bad truncation.

Apr 16 2021, 3:55 AM · gpgrt, libassuan

Apr 15 2021

gniibe committed rGPA77a069390073: build: Update m4/gpg-error.m4 (authored by gniibe).
build: Update m4/gpg-error.m4
Apr 15 2021, 10:35 AM
gniibe committed rGPA240fb98c6e6b: Let autogen.sh create the VERSION file. (authored by gniibe).
Let autogen.sh create the VERSION file.
Apr 15 2021, 10:35 AM
gniibe committed rGPAfe623eab3d20: po: Update Japanese Translations. (authored by gniibe).
po: Update Japanese Translations.
Apr 15 2021, 10:35 AM
gniibe committed rCa8d6c6c1b258: cipher: Fix memory leaks for EdDSA. (authored by gniibe).
cipher: Fix memory leaks for EdDSA.
Apr 15 2021, 9:14 AM
gniibe closed T5385: libgcrypt coverity static analysis reports as Resolved.

Thank you.
We also need to release memory for points.

Apr 15 2021, 9:13 AM · libgcrypt, Bug Report
gniibe closed T5380: Tools needed during a build lack of CFLAGS was passed durring configure time as Resolved.

mkheader has CFLAGS_FOR_BUILD since libassuan 2.5.4.
gost-s-box has so since libgcrypt 1.9.0.

Apr 15 2021, 8:41 AM · MacOS, Bug Report
gniibe committed rP6b697bd3e9f8: build: Update m4/gpg-error.m4 (authored by gniibe).
build: Update m4/gpg-error.m4
Apr 15 2021, 7:33 AM
gniibe raised the priority of T4673: 2.3-only: Don't fallback to PC/SC on failure by the internal CCID driver, only use PC/SC when --disable-ccid is specified from Normal to High.

Making this task up to HIGH priority, so that people can easily find this change in 2.3.0.

Apr 15 2021, 7:20 AM · gnupg (gpg23), Restricted Project, scd, Feature Request
gniibe closed T3152: KDF DO support in OpenPGP card as Resolved.
Apr 15 2021, 7:10 AM · scd
gniibe closed T3300: scd: Support multiple readers by PC/SC driver as Resolved.
Apr 15 2021, 7:10 AM · Restricted Project, gnupg (gpg23), scd
gniibe changed the status of T4848: Usage of git in configure.ac for pinentry/gpa finds incorrect repositories from Open to Testing.

Done for gpa.
Please test.

Apr 15 2021, 7:08 AM · pinentry, gpa, toolchain, Bug Report
gniibe added a comment to T4848: Usage of git in configure.ac for pinentry/gpa finds incorrect repositories.

Done for pinentry.

Apr 15 2021, 6:36 AM · pinentry, gpa, toolchain, Bug Report
gniibe committed rP1c0c177fa5ae: Let autogen.sh create the VERSION file. (authored by gniibe).
Let autogen.sh create the VERSION file.
Apr 15 2021, 6:35 AM
gniibe closed T5100: OpenPGP app overwrites Yubikey serial number as Resolved.
Apr 15 2021, 4:42 AM · Restricted Project, gnupg, scd, yubikey, kleopatra
gniibe closed T5100: OpenPGP app overwrites Yubikey serial number, a subtask of T5130: Kleopatra: Generating OpenPGP keys on Yubikey (with PIV enabled) fails with "General error", as Resolved.
Apr 15 2021, 4:42 AM · kleopatra, Bug Report
gniibe closed T5296: libgpg-error: build failure without threads as Resolved.
Apr 15 2021, 4:18 AM · gpgrt, Bug Report
gniibe closed T5062: gpg: error getting version from 'scdaemon': Forbidden as Resolved.

This task includes multiple issues: two sub-tasks and how-to-use remotely.
Two tasks had been fixed already.
The last one was documented here.
So, closing.

Apr 15 2021, 4:15 AM · Bug Report
gniibe closed T4158: UIF (User Interaction Flag) DO support as Resolved.
Apr 15 2021, 4:09 AM · Restricted Project, Feature Request, scd, gnupg
gniibe triaged T5396: Remove USE_RANDOM_DAEMON support from libgcrypt as Wishlist priority.
Apr 15 2021, 3:57 AM · libgcrypt
gniibe committed rG283ccbc824d8: po: Update Italian Translation. (authored by Denis).
po: Update Italian Translation.
Apr 15 2021, 3:16 AM
gniibe closed T5390: Italian translation GnuPG 2.3 as Resolved.

Thank you. Merged and pushed.

Apr 15 2021, 3:15 AM · i18n, gnupg (gpg23)

Apr 14 2021

gniibe committed rPa87d9e8f89f9: core,emacs,tty,curses: Fix memory leaks, invalid accese, and mistake. (authored by Jakuje).
core,emacs,tty,curses: Fix memory leaks, invalid accese, and mistake.
Apr 14 2021, 12:37 PM
gniibe closed T5384: pinentry coverity static analysis reports as Resolved.

Applied and pushed.

Apr 14 2021, 8:58 AM · pinentry, Bug Report
gniibe added a comment to T5393: gnupg coverity static analysis reports.

@werner No problem. Just go ahead.

Apr 14 2021, 1:45 AM · gnupg (gpg23), Bug Report

Apr 13 2021

gniibe closed T3416: gpg should select available signing key on card (even with -u option) as Resolved.

Done in 2.3.0.

Apr 13 2021, 8:07 AM · Restricted Project, Feature Request, gnupg
gniibe closed T3416: gpg should select available signing key on card (even with -u option), a subtask of T2291: Smartcard interaction improvement (was: Shadowed private key design (for smartcard)), as Resolved.
Apr 13 2021, 8:07 AM · Restricted Project, Feature Request, gnupg
gniibe closed T4695: Remove SERIALNO as an identifier to select keys, a subtask of T2291: Smartcard interaction improvement (was: Shadowed private key design (for smartcard)), as Resolved.
Apr 13 2021, 8:06 AM · Restricted Project, Feature Request, gnupg
gniibe closed T4695: Remove SERIALNO as an identifier to select keys as Resolved.

Done in 2.3.0.

Apr 13 2021, 8:06 AM · Restricted Project, Feature Request, gnupg
gniibe closed T2291: Smartcard interaction improvement (was: Shadowed private key design (for smartcard)) as Resolved.

Done in 2.3.

Apr 13 2021, 8:05 AM · Restricted Project, Feature Request, gnupg
gniibe committed rGa16f726f9404: common: Fix memory leaks. (authored by Jakuje).
common: Fix memory leaks.
Apr 13 2021, 8:02 AM
gniibe committed rG7cbe29c4fb4f: scd: Fix memory leaks. (authored by Jakuje).
scd: Fix memory leaks.
Apr 13 2021, 8:02 AM
gniibe committed rG51bbd99a3c9b: kbx: Fix memory leak. (authored by Jakuje).
kbx: Fix memory leak.
Apr 13 2021, 8:02 AM
gniibe committed rG4c8be54cc430: tools: Fix memory leaks. (authored by Jakuje).
tools: Fix memory leaks.
Apr 13 2021, 8:02 AM
gniibe added a comment to T5393: gnupg coverity static analysis reports.

Thank you.

Apr 13 2021, 8:02 AM · gnupg (gpg23), Bug Report
gniibe claimed T5393: gnupg coverity static analysis reports.
Apr 13 2021, 7:12 AM · gnupg (gpg23), Bug Report
gniibe closed T5389: gnupg 2.3 missing libassuan include directory in CFLAGS for several targets as Resolved.

Thank you. Applied and pushed.

Apr 13 2021, 6:59 AM · gnupg (gpg23), Bug Report
gniibe committed rGcd66b2eb0d34: agent,kbx: Add LIBASSUAN_CLFAGS. (authored by Jakuje).
agent,kbx: Add LIBASSUAN_CLFAGS.
Apr 13 2021, 6:58 AM
gniibe committed rC9c42db0b379c: api: Avoid use of C99 feature. (authored by gniibe).
api: Avoid use of C99 feature.
Apr 13 2021, 4:00 AM
gniibe changed the status of T5372: assertion failure mulm_25519: different sizes in Libgrypt 1.9 from Open to Testing.
Apr 13 2021, 3:16 AM · !assert, Bug Report, libgcrypt
gniibe changed the status of T5375: getentropy usage is forbidden by Apple, but is now being forced by libgcrypt from Open to Testing.
Apr 13 2021, 3:16 AM · MacOS, libgcrypt
gniibe committed rC0007f889bda8: random: Fix for iOS. (authored by gniibe).
random: Fix for iOS.
Apr 13 2021, 3:15 AM
gniibe committed rCe8b7f10be275: cipher: Hardening ElGamal by introducing exponent blinding too. (authored by gniibe).
cipher: Hardening ElGamal by introducing exponent blinding too.
Apr 13 2021, 3:15 AM
gniibe claimed T5384: pinentry coverity static analysis reports.

Thank you. I'll take care of this.

Apr 13 2021, 3:01 AM · pinentry, Bug Report

Apr 12 2021

gniibe closed T4888: GpgSM: Support ECC key generation by gpgsm_genkey, a subtask of T4098: GpgSM: Add ECC support, as Resolved.
Apr 12 2021, 12:21 PM · gnupg (gpg23), Feature Request, S/MIME
gniibe closed T4888: GpgSM: Support ECC key generation by gpgsm_genkey as Resolved.
Apr 12 2021, 12:21 PM · Restricted Project, Feature Request, S/MIME
gniibe added a comment to T5328: On the (in)security of Elgamal in OpenPGP.

Do we have CVE number assigned?

Apr 12 2021, 7:52 AM · side-channel, CVE, libgcrypt
gniibe claimed T5380: Tools needed during a build lack of CFLAGS was passed durring configure time.
Apr 12 2021, 7:51 AM · MacOS, Bug Report
gniibe claimed T5389: gnupg 2.3 missing libassuan include directory in CFLAGS for several targets.
Apr 12 2021, 7:05 AM · gnupg (gpg23), Bug Report
gniibe changed the status of T5365: --with-libgpg-error-prefix doesn't affect gpgrt-config path detection from Open to Testing.
Apr 12 2021, 6:13 AM · MacOS, gpgrt, Cross-Compiler, libgcrypt
gniibe closed T5381: libgpg-error coverity static analysis reports as Resolved.

Thank you for your publishing your key of CB6BE1D0D7D1594A.
I applied and pushed your changes.

Apr 12 2021, 6:08 AM · gpgrt, Bug Report
gniibe committed rEad062b0a5b7d: build,tests: Fix leaks of memory or file pointer. (authored by Jakuje).
build,tests: Fix leaks of memory or file pointer.
Apr 12 2021, 6:08 AM
gniibe committed rG304c2e0202dd: doc: Register DCO for Jakub Jelen. (authored by gniibe).
doc: Register DCO for Jakub Jelen.
Apr 12 2021, 5:57 AM

Apr 9 2021

gniibe added a comment to T5381: libgpg-error coverity static analysis reports.

Thanks. Note, that the same code is in gnupg2 in common/exechelp-posix.c:736

Apr 9 2021, 1:45 AM · gpgrt, Bug Report

Apr 8 2021

gniibe committed rG36355394d865: gpg: Ed448 and X448 are only for v5. (authored by gniibe).
gpg: Ed448 and X448 are only for v5.
Apr 8 2021, 9:52 AM
gniibe committed rGb0a7132856ef: po: Update Simplified Chinese Translation. (authored by bobwxc).
po: Update Simplified Chinese Translation.
Apr 8 2021, 6:58 AM
gniibe committed rGf8ae51977ce4: scd: Fix CCID driver for SCM SPR332/SPR532. (authored by gniibe).
scd: Fix CCID driver for SCM SPR332/SPR532.
Apr 8 2021, 6:50 AM
gniibe claimed T5297: SCM SPR332 smartcard reader support broken.

Thank you.
Applied both to STABLE-BRANCH-2-2 and master (changing new function name).

Apr 8 2021, 6:50 AM · gnupg (gpg22), scd, Bug Report
gniibe committed rGab66c4357595: scd: Fix CCID driver for SCM SPR332/SPR532. (authored by gniibe).
scd: Fix CCID driver for SCM SPR332/SPR532.
Apr 8 2021, 6:44 AM
gniibe added a comment to T5328: On the (in)security of Elgamal in OpenPGP.

So, in my opinion, applying the patch for ElGamal exponent blinding is enough (for now).

Apr 8 2021, 6:22 AM · side-channel, CVE, libgcrypt
gniibe added a comment to T5328: On the (in)security of Elgamal in OpenPGP.

For DSA, I had assumed similar attack could be effective.

Apr 8 2021, 6:22 AM · side-channel, CVE, libgcrypt
gniibe added a comment to T5380: Tools needed during a build lack of CFLAGS was passed durring configure time.

CC_FOR_BUILD is used for building executables for the build machine.
CC_FOR_BUILD may be different to CC (for target).

Apr 8 2021, 6:09 AM · MacOS, Bug Report