Page MenuHome GnuPG
Feed Advanced Search

Aug 1 2021

werner closed T2749: gpg --secret-keyring is silently ignored as Resolved.

You should have read the release notes of 2.1 (first point). We can't keep a bug open because you had a wrong understanding of GnuPG properties. Sorry.

Aug 1 2021, 10:50 AM · Support, gnupg

Jul 30 2021

werner triaged T5538: gpg-agent's keytocard cmd should use a better default creation time. as Normal priority.
Jul 30 2021, 1:24 PM · gpgagent, gnupg (gpg23)
werner triaged T5537: Use CSIDL_LOCAL_APPDATA for the socketdir as High priority.
Jul 30 2021, 12:50 PM · Windows, Unknown Object (Project), gnupg (gpg22)
werner added a comment to T4393: GnuPG should always accept key updates even if the update does not contain UIDs.

This bug has been closed as Wontfix more than a year ago. I see no reason to continue the discussion in the bugtracker.

Jul 30 2021, 9:20 AM · gnupg (gpg23), Feature Request
werner closed T5534: Public key block with Signature Key generates expired NIIBE Yutaka (GnuPG Release Key) as Resolved.

Well, the keys are not generated but public keys are imported. @gniibe's key has meanwhile expired but we keep it because it will allow users to verify some older source packages. An expired signature key is not an error but merely means that one should evaluate the meaning of the signature with more diligence.

Jul 30 2021, 9:17 AM · www.gnupg.org, Support
werner created www.gnupg.org.
Jul 30 2021, 9:16 AM

Jul 29 2021

werner triaged T5536: Backport the extended gpg-check-pattern to 2.2 as Normal priority.
Jul 29 2021, 12:37 PM · gnupg (gpg22)
werner committed rG7cdd06af4792: sm,w32: Fix Unicode problem on key box creation. (authored by werner).
sm,w32: Fix Unicode problem on key box creation.
Jul 29 2021, 11:51 AM
werner committed rG73c03e023228: tools: Extend gpg-check-pattern. (authored by werner).
tools: Extend gpg-check-pattern.
Jul 29 2021, 11:36 AM

Jul 28 2021

werner closed T4791: Switch between PIV and OpenPGP app w/o reentering the PIN as Resolved.

Works for a long time now (unless we broke it again;-)

Jul 28 2021, 3:21 PM · scd, yubikey
werner removed a parent task for T4694: manage first-party attestations: Unknown Object (Maniphest Task).
Jul 28 2021, 3:20 PM · Keyserver, Feature Request
werner added a comment to T5250: macOS: gpgconf SIGSEGV when run via gpgme from the GUI application.

To extend on this: dlopen'ing of gpgme is NOT SUPPORTED. It is in general not a good idea to do this on standard Unix systems. On Windows we could make it work because DLLs on that platform are well designed and not a hack like the Unix shared objects.

Jul 28 2021, 9:49 AM · gpgme, MacOS, Bug Report

Jul 27 2021

werner committed rM4b64774b6d13: core: Support closefrom also for glibc. (authored by Jiri Kucera <sanczes@gmail.com>).
core: Support closefrom also for glibc.
Jul 27 2021, 12:27 PM
werner triaged T5531: dirmngr --validate broken for DER encoded files as Normal priority.
Jul 27 2021, 7:59 AM · gnupg (gpg23), dirmngr, Bug Report

Jul 26 2021

werner closed T2749: gpg --secret-keyring is silently ignored as Resolved.

Everything in ~/.gnupg is and has always been private to gnupg unless explicitly stated otherwise.

Jul 26 2021, 8:24 AM · Support, gnupg

Jul 12 2021

werner set External Link to https://eprint.iacr.org/2021/923.pdf on T5328: On the (in)security of Elgamal in OpenPGP.
Jul 12 2021, 6:11 PM · side-channel, CVE, libgcrypt
werner assigned T4894: FIPS: RSA/DSA/ECDSA are missing hashing operation to gniibe.
Jul 12 2021, 11:20 AM · FIPS, libgcrypt, Feature Request
werner raised the priority of T4894: FIPS: RSA/DSA/ECDSA are missing hashing operation from Normal to High.
Jul 12 2021, 11:20 AM · FIPS, libgcrypt, Feature Request

Jul 8 2021

werner added a comment to T4873: Enable AES GCM in FIPS mode.

gniibe: Can you please check what openssl does exactly. The problem is that we currently have no permanent state for Libgcrypt (i.e. something stored on disk per user or even better global)

Jul 8 2021, 2:29 PM · FIPS, libgcrypt, Feature Request
werner added a comment to T4873: Enable AES GCM in FIPS mode.

FWIW: Unfortunately everyone is moving to GCM, even Outlook. While GnuPG was evaluated by the German BSI we had discussions about this and their evaluators were wary about GCM due to its brittleness thus our use of OCB was very welcomed. OTOH, another approved product meanwhile comes with GCM for S/MIME and thus it seems thatGCM is accepted.

Jul 8 2021, 2:20 PM · FIPS, libgcrypt, Feature Request
werner committed rG101ba4f18ace: kbx: Fix keyboxd searching with multiple patterns. (authored by werner).
kbx: Fix keyboxd searching with multiple patterns.
Jul 8 2021, 2:16 PM
werner committed rGb871824fefa1: kbx: Improve debugging of the search descriptions in keyboxd. (authored by werner).
kbx: Improve debugging of the search descriptions in keyboxd.
Jul 8 2021, 2:16 PM
werner committed rG924c8221fbe5: scd: Silence compiler waring about unused args. (authored by werner).
scd: Silence compiler waring about unused args.
Jul 8 2021, 2:16 PM
werner closed T4505: SM, W32: GPGSM hangs up the GnuPG System as Resolved.
Jul 8 2021, 2:13 PM · Unknown Object (Project), gpgol, S/MIME, gpg4win, Windows

Jul 7 2021

werner triaged T5521: Use of conscious language as Wishlist priority.

Sorry, this is not acceptable to me. <rant>You don't change racism by avoid words which are may be connected to racism. Master is a term used for example to indicate that a person is proficient in her profession. Slave is (in theory) a historic term to describe, well slaves. That is humans who are non-free and are not allowed to control their lives - like the majority of humans these days - they are just called different and the methods of suppression are different than in the past. In fact a Roman slave (but not a medieval bondsman) had well defined and esteemed rights not something the majority of US citizen with a dark skin has in practice. Term abolished, racism abolished, works as good as freeing the US slaves in the 1856, the 1960, or still today. It did not work. Mr. Kings hope has not yet realized itself and is now maybe farther away than we all had hoped in the second half of the last century. Don't cover facts by changing words used in a very different context.</rant>

Jul 7 2021, 5:48 PM · gnupg24, Won't Fix, Feature Request, gnupg (gpg23), libgcrypt
werner triaged T5480: Export keys + manual as Low priority.
Jul 7 2021, 2:28 PM · Info Needed, gpg4win, Feature Request
werner added a comment to T5520: Fix tests in FIPS mode.

That reminds me that we we should replace libgcrypt's internal debug functions by those from gpgrt. We have a dependency for gpgrt anyway and thus we should avoid code duplication. Sure we will keep the existsing public functions but that is easy given that gpgrt comes with gpgrt_logv since 1.28 which we can make mandatory (currently libgcrypt requires 1.27 (from 2017, with 1.28 is from 2018)

Jul 7 2021, 9:24 AM · FIPS, libgcrypt, Bug Report

Jul 6 2021

werner triaged T5427: Update Italian Version as Normal priority.
Jul 6 2021, 6:18 PM · i18n, gpg4win
werner closed T5414: Input/output error (218136625) as Resolved.

Check that the file exists and that you have permissions to read the file. You may use an editor to try this out.

Jul 6 2021, 6:16 PM · Support, gpg4win
werner lowered the priority of T4884: PKCS #15 support in gpgsm from High to Normal.
Jul 6 2021, 6:12 PM · Feature Request, gnupg, scd, S/MIME
werner triaged T5468: About the API of GpgME to revoke key pairs and subkeys. as Normal priority.
Jul 6 2021, 6:10 PM · gpgme, Feature Request
werner triaged T5460: Migration for ABI change (newer mingw) as Normal priority.
Jul 6 2021, 6:09 PM · gpg4win, Windows
werner triaged T5520: Fix tests in FIPS mode as High priority.
Jul 6 2021, 3:33 PM · FIPS, libgcrypt, Bug Report
werner added a project to T5520: Fix tests in FIPS mode: FIPS.
Jul 6 2021, 1:46 PM · FIPS, libgcrypt, Bug Report
werner added a comment to T5433: libgcrypt: Do not use SHA1 by default.

With the planned new context aware pubkey functions we technically could do this change w/o an ABI break.

Jul 6 2021, 7:57 AM · FIPS, libgcrypt, Bug Report

Jul 4 2021

werner committed rD8cf26a72d9f1: swdb: GnuPG 2.2.29 (authored by werner).
swdb: GnuPG 2.2.29
Jul 4 2021, 5:49 PM
werner set External Link to https://lists.gnupg.org/pipermail/gnupg-announce/2021q3/000461.html on T5498: Release GnuPG 2.2.29.
Jul 4 2021, 5:45 PM · Release Info, gnupg (gpg22)
werner closed T5497: v2.2.28 fails to locate-key from keyserver by email: Invalid user ID as Resolved.
Jul 4 2021, 5:30 PM · Bug Report
werner closed T5487: GnuPG 2.2.28 not working with Yubikey NEO as Resolved.
Jul 4 2021, 5:30 PM · yubikey, gnupg (gpg22), Bug Report
werner committed rG4952ed958413: Post release updates (authored by werner).
Post release updates
Jul 4 2021, 5:29 PM
werner committed rG695a879af81e: Release 2.2.29 (authored by werner).
Release 2.2.29
Jul 4 2021, 5:29 PM
werner committed rG3283cf3a7a5e: Update OpenPGP card vendor list. (authored by werner).
Update OpenPGP card vendor list.
Jul 4 2021, 5:29 PM
werner closed T5498: Release GnuPG 2.2.29 as Resolved.
Jul 4 2021, 5:29 PM · Release Info, gnupg (gpg22)
werner triaged T5519: Release GnuPG 2.2.30 as Low priority.
Jul 4 2021, 5:23 PM · Release Info, gnupg (gpg22)
werner triaged T5491: Console output failure with no-unicode font: GnuPG 2.2.28 is not working with »encrypt-to« in gpg.conf without specifying another recipient. as Normal priority.
Jul 4 2021, 4:19 PM · gnupg (gpg22), Windows, Bug Report

Jul 2 2021

werner committed rG51310497ef0f: po: Remove removed files. (authored by werner).
po: Remove removed files.
Jul 2 2021, 2:45 PM
werner added a comment to T5491: Console output failure with no-unicode font: GnuPG 2.2.28 is not working with »encrypt-to« in gpg.conf without specifying another recipient..

It is a matter of the used font. 2.2.29 will fix this problem.

Jul 2 2021, 7:52 AM · gnupg (gpg22), Windows, Bug Report

Jul 1 2021

werner removed a member for g10code: cbiedl.
Jul 1 2021, 12:36 PM
werner defrocked cbiedl.
Jul 1 2021, 12:35 PM
werner committed rDaf638d166270: web: Removed Stripe logo (authored by werner).
web: Removed Stripe logo
Jul 1 2021, 11:02 AM

Jun 29 2021

werner committed rG5f78ae696c10: artwork: Explain the license for the logo (authored by werner).
artwork: Explain the license for the logo
Jun 29 2021, 6:47 PM
werner committed rD7ceaec9ecdec: web: Add a link to the logo source (authored by werner).
web: Add a link to the logo source
Jun 29 2021, 6:40 PM
werner committed rD6d1c162eb07c: web: Note the author of the logo (authored by werner).
web: Note the author of the logo
Jun 29 2021, 6:32 PM
werner triaged T5449: gnupg: Do not use SHA1 by default as Low priority.

The original idea with the DNS code was just to source copy it but it turned out that we need to maintain it in GnuPG. Thus adding support for SHA256 makes sense to keep the code current in case we ever need to use it.

Jun 29 2021, 3:49 PM · gnupg24, gnupg (gpg23), Bug Report
werner added a project to T5513: Outlook download external content crash: gpgol.
Jun 29 2021, 3:44 PM · Too Old, gpgol, Bug Report, gpg4win

Jun 28 2021

werner triaged T5512: Implement service indicators as High priority.
Jun 28 2021, 1:27 PM · Feature Request, FIPS, libgcrypt
werner changed the Can Browse User Directory policy for application People from All Users to Contributor (Project).
Jun 28 2021, 7:46 AM
werner changed the Default Edit Policy policy for application Owners from All Users to Contributor (Project).
Jun 28 2021, 7:45 AM
werner changed the Can Manage Macros policy for application Macro from All Users to Contributor (Project).
Jun 28 2021, 7:45 AM
werner changed the Default Edit Policy policy for application Pholio from All Users to Contributor (Project).
Jun 28 2021, 7:42 AM
werner changed the Default Edit Policy policy for application Projects from All Users to Administrators.
Jun 28 2021, 7:40 AM

Jun 27 2021

werner changed the edit policy for Windows.
Jun 27 2021, 11:05 PM
werner changed the edit policy for kleopatra.
Jun 27 2021, 11:04 PM
werner changed the edit policy for Active Directory.
Jun 27 2021, 11:03 PM
werner changed the edit policy for Support.
Jun 27 2021, 11:02 PM
werner changed the edit policy for Bug Report.
Jun 27 2021, 11:01 PM
werner updated the image for Bug Report from F2435158: -yellow.png to F2435160: profile.
Jun 27 2021, 10:48 PM
werner updated the image for Bug Report from F2434743: profile to F2435158: -yellow.png.
Jun 27 2021, 10:48 PM

Jun 26 2021

werner added a comment to T5496: [Problem Report] Add a new Cross-Platform Frontend Software for gnupg to the List.

wk at gnupg dot org but better avoid any HTML parts etc.

Jun 26 2021, 9:22 AM · Info Needed, Not A Bug

Jun 25 2021

werner committed rGa6efde307f7b: agent: Fix regression in agent_get_shadow_info_type. (authored by werner).
agent: Fix regression in agent_get_shadow_info_type.
Jun 25 2021, 8:23 PM
werner committed rG47c4e3e00a7e: dirmngr: Change the default keyserver. (authored by werner).
dirmngr: Change the default keyserver.
Jun 25 2021, 7:17 PM
werner assigned T5509: Use-after-free in t-edit-sign test to ikloecker.

Thanks for the report.

Jun 25 2021, 5:49 PM · gpgme, Bug Report
werner closed T5069: Concurrent auto-start of gpg-agent by multiple gpg instances. as Resolved.
Jun 25 2021, 11:29 AM · Not A Bug, No Response, Info Needed, gnupg (gpg22), Windows, Bug Report
werner lowered the priority of T4892: gpgsm --gen-key with existing key from "ssh-add" fails from Normal to Low.

Needs to be tested with the current 2.2 version and a gcry_log_debugsxp should be added to the error output.

Jun 25 2021, 11:26 AM · gnupg24, Bug Report, S/MIME
werner closed T5162: Import problem due to disabled brainpool curves as Wontfix.

This will not be fixed. Brainpool is a standard feature of Libgcrypt and thus this is a bug in the used Libgcrypt installation. Note that although I recently fixed a new regression test for this case, I do not think that it is a good idea to add extra code for a broken Libgcrypt.

Jun 25 2021, 11:21 AM · Bug Report, libgcrypt, gnupg (gpg22)
werner closed T5309: gpg: key generation failed: Corrupted protection as Resolved.
Jun 25 2021, 11:16 AM · Info Needed, gnupg (gpg22), Bug Report
werner closed T5068: LDAP keyserver does not support lookup by fingerprint as Resolved.

This has been solved in 2.2.26 commit rGc75fd75532

Jun 25 2021, 11:15 AM · LDAP, dirmngr, gnupg (gpg22)
werner added a comment to T5322: gpg erroring when the terminal is too small to show the ncurses pinentry dialog.

That might depend on your pinentry version. With a pre-1.1.1 pinentry and 2.2.28 I get this:

Jun 25 2021, 11:12 AM · gnupg (gpg22), gpgagent, pinentry, Bug Report
werner closed T5376: gpg --fetch-keys no longer returns non 0 exit status on failure as Resolved.
Jun 25 2021, 10:55 AM · gnupg (gpg22), Bug Report
werner added a comment to T5376: gpg --fetch-keys no longer returns non 0 exit status on failure.

Will be in 2.2.29.

Jun 25 2021, 10:54 AM · gnupg (gpg22), Bug Report
werner committed rG5fe4b9788752: gpg: Let --fetch-key return an exit code on failure. (authored by werner).
gpg: Let --fetch-key return an exit code on failure.
Jun 25 2021, 10:52 AM
werner committed rG9579c7786278: gpg: Let --fetch-key return an exit code on failure. (authored by werner).
gpg: Let --fetch-key return an exit code on failure.
Jun 25 2021, 9:57 AM
werner committed rG95d707e09336: tools: Tweak ccidmon output. (authored by werner).
tools: Tweak ccidmon output.
Jun 25 2021, 9:57 AM
werner closed T5496: [Problem Report] Add a new Cross-Platform Frontend Software for gnupg to the List as Resolved.

Thanks. I added it to the list. If you have not yet done this I would suggest to write a note to gnupg-users.

Jun 25 2021, 9:26 AM · Info Needed, Not A Bug
werner committed rDfe3a1e96188c: web: Add GpgFrontend and Kleopatra (authored by werner).
web: Add GpgFrontend and Kleopatra
Jun 25 2021, 9:24 AM
werner added a project to T5500: gpgme: Test t-idiomatic.py fails with Python 3.8: Python.
Jun 25 2021, 9:16 AM · Python, gpgme, Bug Report
werner triaged T5500: gpgme: Test t-idiomatic.py fails with Python 3.8 as Normal priority.

We need to see how to best fix this regression test for all Python versions.

Jun 25 2021, 9:16 AM · Python, gpgme, Bug Report
werner lowered the priority of T5464: Failure to import Curve25519 ECDH secret subkey to the GnupG. from High to Normal.

We should not support a different OID or representation of 22519 which will only lead to incompatibilities and trouble existing users. 25519 is in too widespread use than to allow for any changes.

Jun 25 2021, 9:15 AM · Support, gnupg, OpenPGP
werner triaged T5508: Allow hardware optimizations in FIPS as High priority.
Jun 25 2021, 8:55 AM · FIPS, libgcrypt, Bug Report
werner added a comment to T5484: SCDaemon Not reselect applet and reauthenticate when the card send Security Not Sastisfied.

FWIW: We have always refused to support shared mode because we anticipated such problems. However, we have a customer using their own cards along with card maintenance software of them. For their purposes PCSC_SHARED works just fine makes and this is why I decided to add --pcsc-shared along with a warning that it is in general not a good idea.

Jun 25 2021, 8:54 AM · yubikey, Bug Report, scd
werner committed rDb0c3cb09b274: swdb: gpgme 1.16.0 (authored by werner).
swdb: gpgme 1.16.0
Jun 25 2021, 1:32 AM

Jun 24 2021

werner updated the task description for T5499: Release GPGME 1.16.0.
Jun 24 2021, 7:48 PM · Release Info, gpgme
werner closed T5292: regression: no longer possible to get signatures from decrypt from unknown keys as Resolved.
Jun 24 2021, 7:43 PM · patch, Python, gpgme, Bug Report
werner committed rM1021c8645555: Release 1.16.0 (authored by werner).
Release 1.16.0
Jun 24 2021, 7:41 PM
werner committed rMe8e055e682f8: Post release updates (authored by werner).
Post release updates
Jun 24 2021, 7:41 PM
werner committed rM768b7892e378: python: Do not include the full file names in the docs. (authored by werner).
python: Do not include the full file names in the docs.
Jun 24 2021, 7:41 PM
werner committed rM14b148b7d340: python: Allow returning signatures made by unknown keys in `decrypt` (authored by jap).
python: Allow returning signatures made by unknown keys in `decrypt`
Jun 24 2021, 7:41 PM
werner closed T5475: Kleopatra: Crash when decrypting large archives as Resolved.
Jun 24 2021, 7:41 PM · kleopatra
werner closed T5499: Release GPGME 1.16.0 as Resolved.
Jun 24 2021, 7:40 PM · Release Info, gpgme
werner lowered the priority of T3958: GPGME: Qt Bindings and MacOS from Normal to Low.
Jun 24 2021, 6:31 PM · MacOS, qt, gpgme