Page MenuHome GnuPG
Feed All Stories

Jul 7 2022

gniibe closed T5979: SCardListReaders: Conditional jump or move depends on uninitialised value(s) as Resolved.
Jul 7 2022, 6:50 AM · backport, gnupg, scd, patch
gniibe closed T6033: Regression in GnuPG 2.2.34 with some ECC keys as Resolved.
Jul 7 2022, 6:50 AM · Bug Report, gnupg (gpg22)
gniibe removed a project from T6033: Regression in GnuPG 2.2.34 with some ECC keys: Restricted Project.

Fixed in 2.2.36.

Jul 7 2022, 6:50 AM · Bug Report, gnupg (gpg22)
gniibe committed rCb2a64ed4f34a: cipher: Fix gcry_pk_hash_verify for explicit hash. (authored by gniibe).
cipher: Fix gcry_pk_hash_verify for explicit hash.
Jul 7 2022, 5:16 AM
gniibe claimed T6066: gcry_pk_hash_verify() does not work with explicitly specified hash algorithm.

Thank you for your report. That's my badness (forgetting to implement in pk_verify_md function).

Jul 7 2022, 5:07 AM · backport, libgcrypt, Bug Report
gniibe committed rC37b812f5e2a3: tests/t-kdf: Test KDF FIPS indicator (authored by Clemens Lang via Gcrypt-devel <gcrypt-devel@lists.gnupg.org>).
tests/t-kdf: Test KDF FIPS indicator
Jul 7 2022, 4:47 AM
gniibe committed rC45a139b166a3: tests: Test gcry_pk_hash_sign w/explicit hash algo (authored by Clemens Lang via Gcrypt-devel <gcrypt-devel@lists.gnupg.org>).
tests: Test gcry_pk_hash_sign w/explicit hash algo
Jul 7 2022, 4:47 AM
calestyo added a comment to T6058: clarify need of --batch and/or --pinentry-mode looback with --passphrase-* options.

It's true for key generation, but not for all cases.

Jul 7 2022, 2:35 AM · gnupg, Documentation

Jul 6 2022

vitusb added a comment to T6042: Cannot search on keyserver from kleopatra 3.1.22 inside an AppImage of GnuPG Desktop or GnuPG VS Desktop.

Just to clarify: Does this only happen with self-built AppImages? Or does this also happen with AppImages provided by gnupg.com/gnupg.org?

Jul 6 2022, 11:26 PM · AppImage, gpg4win, Bug Report
ikloecker added a comment to T6042: Cannot search on keyserver from kleopatra 3.1.22 inside an AppImage of GnuPG Desktop or GnuPG VS Desktop.

Just to clarify: Does this only happen with self-built AppImages? Or does this also happen with AppImages provided by gnupg.com/gnupg.org? (I haven't found AppImages to download on gnupg.org.)

Jul 6 2022, 10:44 PM · AppImage, gpg4win, Bug Report
vitusb added a comment to T6042: Cannot search on keyserver from kleopatra 3.1.22 inside an AppImage of GnuPG Desktop or GnuPG VS Desktop.

Hello ...

I may report, that I've tested this behaviour with "kleopatra" with serveral keyservers.
Jul 6 2022, 10:03 PM · AppImage, gpg4win, Bug Report
werner committed rDaf411baa9c20: swdb: GnuPG 2.2.36 (authored by werner).
swdb: GnuPG 2.2.36
Jul 6 2022, 8:34 PM
werner added a comment to T5949: Release GnuPG 2.2.36.

Please note that due to vacation issues the signatures use the gnupg.com Brainpool based release key and some Linux distributions come with Brainpool removed from GnuPG.

Jul 6 2022, 8:33 PM · CVE, gnupg (gpg22), Release Info
werner updated the task description for T5949: Release GnuPG 2.2.36.
Jul 6 2022, 8:30 PM · CVE, gnupg (gpg22), Release Info
werner committed rG3777bc652879: Post release updates (authored by werner).
Post release updates
Jul 6 2022, 8:19 PM
werner committed rG491645b50ec9: Release 2.3.36 (authored by werner).
Release 2.3.36
Jul 6 2022, 8:19 PM
jukivili updated the task description for T4460: libgcrypt performance TODOs.
Jul 6 2022, 8:19 PM · libgcrypt
ikloecker committed rKLEOPATRAc6d235f2f34a: Store file name of result file in DecryptVerifyResult (authored by ikloecker).
Store file name of result file in DecryptVerifyResult
Jul 6 2022, 5:38 PM
ikloecker committed rKLEOPATRA5a2213de79be: On request, save decrypted file with embedded file name (authored by ikloecker).
On request, save decrypted file with embedded file name
Jul 6 2022, 5:38 PM
ikloecker committed rKLEOPATRAc5a5af14e9d1: Allow retrieving the file name of an Output (authored by ikloecker).
Allow retrieving the file name of an Output
Jul 6 2022, 5:38 PM
neverpanic added a comment to T6066: gcry_pk_hash_verify() does not work with explicitly specified hash algorithm.

For the record, the valgrind trace for the crash is:

Jul 6 2022, 5:00 PM · backport, libgcrypt, Bug Report
ikloecker added a comment to T6042: Cannot search on keyserver from kleopatra 3.1.22 inside an AppImage of GnuPG Desktop or GnuPG VS Desktop.

I guess the problem is that the fix for T5741: dirmngr does not ask keyservers for fingerprints wasn't backported to 2.2.

Jul 6 2022, 4:34 PM · AppImage, gpg4win, Bug Report
neverpanic created T6066: gcry_pk_hash_verify() does not work with explicitly specified hash algorithm.
Jul 6 2022, 4:26 PM · backport, libgcrypt, Bug Report
aheinecke added a comment to T6042: Cannot search on keyserver from kleopatra 3.1.22 inside an AppImage of GnuPG Desktop or GnuPG VS Desktop.

But this is with the default keyserver keys.ubuntu.com it shows the fingerprint if I do a search --with-colons with 2.3 and the same keyserver (addressed via IP) on the same machine returns results on Windows and says No Fingerprints in the app image. This is what I found so strange here.

Jul 6 2022, 3:30 PM · AppImage, gpg4win, Bug Report
ikloecker added a comment to T6064: Kleopatra: Allow queries to list all certificates on the server.

Many keyservers return a maximum number of results. I have seen results being capped at 100 keys.

Jul 6 2022, 2:56 PM · Restricted Project, kleopatra
ikloecker triaged T6061: pinentry-qt on wayland does not fallback to pinentry-curses as Low priority.

pinentry does the following to check if it's running in a GUI session:

// check a few environment variables that are usually set on X11 or Wayland sessions
const bool hasWaylandDisplay = qEnvironmentVariableIsSet("WAYLAND_DISPLAY");
const bool isWaylandSessionType = qgetenv("XDG_SESSION_TYPE") == "wayland";
const bool hasX11Display = pinentry_have_display(argc, argv);
const bool isX11SessionType = qgetenv("XDG_SESSION_TYPE") == "x11";
const bool isGUISession = hasWaylandDisplay || isWaylandSessionType || hasX11Display || isX11SessionType;

i.e. it checks if a few environment variables are set or have a specific value.

Jul 6 2022, 2:45 PM · pinentry, Bug Report
ikloecker merged T6042: Cannot search on keyserver from kleopatra 3.1.22 inside an AppImage of GnuPG Desktop or GnuPG VS Desktop into T5725: Kleopatra: Certificate lookup shows only one result even if there are 100s matches.
Jul 6 2022, 2:28 PM · Restricted Project, kleopatra, Bug Report
ikloecker merged task T6042: Cannot search on keyserver from kleopatra 3.1.22 inside an AppImage of GnuPG Desktop or GnuPG VS Desktop into T5725: Kleopatra: Certificate lookup shows only one result even if there are 100s matches.
Jul 6 2022, 2:28 PM · AppImage, gpg4win, Bug Report
ikloecker added a comment to T6042: Cannot search on keyserver from kleopatra 3.1.22 inside an AppImage of GnuPG Desktop or GnuPG VS Desktop.

Looks like a duplicate of T5725: Kleopatra: Certificate lookup shows only one result even if there are 100s matches. Solution: Use a key server that returns fingerprints.

Jul 6 2022, 2:28 PM · AppImage, gpg4win, Bug Report
aheinecke triaged T6008: Absturz von GPG4win in Outlook as Low priority.

Hier scheint es sich um ein individuelles Problem zu handeln. Ich bin irritiert das die Fehlermeldungen von "gpgsm" also unserem S/MIME tool. Tritt der Fehler auch so auf wenn in den Einstellungen von GpgOL der S/MIME Support deaktiviert ist?

Jul 6 2022, 2:07 PM · Bug Report, gpg4win
aheinecke triaged T6016: Verify Checksums seems to need file to be named correctly as Low priority.

I agree, we should look for additional names when verifying checksums.

Jul 6 2022, 1:39 PM · kleopatra, gpg4win
aheinecke reassigned T6042: Cannot search on keyserver from kleopatra 3.1.22 inside an AppImage of GnuPG Desktop or GnuPG VS Desktop from werner to ikloecker.

I can reproduce the problem. Under Windows it works, with my development setup with GnuPG 2.3 it works, but in the appimage I get the error that all keys were skipped.

Jul 6 2022, 1:09 PM · AppImage, gpg4win, Bug Report
ikloecker committed rKLEOPATRA57c73f6acd19: Use automatic memory management for temporary working directory (authored by ikloecker).
Use automatic memory management for temporary working directory
Jul 6 2022, 12:18 PM
ikloecker committed rKLEOPATRAdbc0e886d82a: Add missing include (authored by ikloecker).
Add missing include
Jul 6 2022, 12:18 PM
ikloecker committed rKLEOPATRA351c4730744e: Modernize: Inherit c'tors of base class with using-declaration (authored by ikloecker).
Modernize: Inherit c'tors of base class with using-declaration
Jul 6 2022, 12:18 PM
jukivili committed rC66ef99bb1804: sm4: fix wrong macro used for GFNI/AVX2 code-path (authored by jukivili).
sm4: fix wrong macro used for GFNI/AVX2 code-path
Jul 6 2022, 12:17 PM
jukivili committed rCfd3ed68754eb: tests/basic: enable IV checks for CBC/CFB/CTR bulk tests (authored by jukivili).
tests/basic: enable IV checks for CBC/CFB/CTR bulk tests
Jul 6 2022, 12:17 PM
jukivili committed rC935e211af145: sm4: fix use of GFNI/AVX2 accelerated key expansion (authored by jukivili).
sm4: fix use of GFNI/AVX2 accelerated key expansion
Jul 6 2022, 12:17 PM
jukivili committed rC99b7375bd616: camellia-gfni-avx512: remove copy-paste / leftover extra instructions (authored by jukivili).
camellia-gfni-avx512: remove copy-paste / leftover extra instructions
Jul 6 2022, 12:17 PM
jukivili committed rCac14d9ee7a09: camellia-gfni-avx512: add missing register clearing on function exits (authored by jukivili).
camellia-gfni-avx512: add missing register clearing on function exits
Jul 6 2022, 12:17 PM
encryptedsoul added a comment to T6065: GpgOL attachement size handled wrong.

So maybe add a hint with the workaround to the error message, maybe even link to some *.reg files that would fix it, with a big fat warning to respect and look out for your E-Mail providers attachement size limits. The 20MB thing from Outlook is nothing more than an educated guess by Microsoft in the first place, some providers have smaller limits and the user has to identifiy the server error code themselves anyways.

Jul 6 2022, 12:15 PM · Bug Report, gpg4win
aheinecke triaged T6065: GpgOL attachement size handled wrong as Low priority.

The problem is that we keep the original, encrypted, signed structure of the mail as a hidden attachment. When we then add the attachments we extracted from the original mail as "real" attachments in the Outlook data structures we basically double in size and hit an error in Outlook. It does not always have to be double, e.g. if the attachment was compressed in the encrypted data it can be much larger then the original mail. So this happens mostly with data that is not easy to compress.

Jul 6 2022, 12:10 PM · Bug Report, gpg4win
aheinecke added a member for g10code: mmontkowski.
Jul 6 2022, 11:21 AM
aheinecke empowered mmontkowski as an administrator.
Jul 6 2022, 11:20 AM
encryptedsoul created T6065: GpgOL attachement size handled wrong.
Jul 6 2022, 11:18 AM · Bug Report, gpg4win
aheinecke triaged T6064: Kleopatra: Allow queries to list all certificates on the server as Low priority.
Jul 6 2022, 11:11 AM · Restricted Project, kleopatra
aheinecke triaged T6063: GnuPG: Ignore invalid hash algorithm preferences when signing & encrypting combined as High priority.
Jul 6 2022, 11:01 AM · gnupg, Restricted Project
aheinecke triaged T6062: Kleopatra: Kleopatra fails with error if signed data is not found as Normal priority.
Jul 6 2022, 10:30 AM · Restricted Project, kleopatra
quite created T6061: pinentry-qt on wayland does not fallback to pinentry-curses.
Jul 6 2022, 9:54 AM · pinentry, Bug Report
ikloecker committed rKLEOPATRAfafcd270cc2c: Use list-initialization for command line options (authored by ikloecker).
Use list-initialization for command line options
Jul 6 2022, 9:13 AM
ikloecker committed rKLEOPATRA75f8a896f691: Set file name of encrypted data if a single file is encrypted (authored by ikloecker).
Set file name of encrypted data if a single file is encrypted
Jul 6 2022, 9:12 AM
ikloecker committed rKLEOPATRA5b1c8324343e: Simplify check if user ID should be checked (authored by ikloecker).
Simplify check if user ID should be checked
Jul 6 2022, 9:12 AM
ikloecker committed rM5436b309fe67: qt: Allow setting the file name of signed and encrypted data (authored by ikloecker).
qt: Allow setting the file name of signed and encrypted data
Jul 6 2022, 8:54 AM
ikloecker committed rMbc10169724d2: qt: Allow setting the file name of encrypted data (authored by ikloecker).
qt: Allow setting the file name of encrypted data
Jul 6 2022, 8:54 AM
Philipp created T6060: segfault (NULL-pointer) when inspecting gpg Context after exception (python).
Jul 6 2022, 8:23 AM · Python, gpgme, Bug Report
gniibe added a comment to T6048: Test suite fixes with --enable-pubkey-ciphers=ecc.

Thanks. Applied. Also, fixed about a warning for ChaCha20.

Jul 6 2022, 7:56 AM · FIPS, libgcrypt
gniibe triaged T6059: ntbtls: use of shorter hash for ECC as Normal priority.
Jul 6 2022, 6:57 AM · Feature Request, Restricted Project, ntbtls
gniibe added a comment to T6058: clarify need of --batch and/or --pinentry-mode looback with --passphrase-* options.

I admit that documentation for users should be updated and/or semantics of options could be improved.

Jul 6 2022, 4:36 AM · gnupg, Documentation
calestyo created T6058: clarify need of --batch and/or --pinentry-mode looback with --passphrase-* options.
Jul 6 2022, 3:15 AM · gnupg, Documentation
gniibe committed rC8d5053fb08cf: cipher,chacha20: Conditionalize a variable. (authored by gniibe).
cipher,chacha20: Conditionalize a variable.
Jul 6 2022, 2:36 AM
gniibe committed rC9d6203532d90: tests/basic: Skip non-FIPS tests in FIPS mode (authored by neverpanic).
tests/basic: Skip non-FIPS tests in FIPS mode
Jul 6 2022, 2:20 AM

Jul 5 2022

Saklad5 added a project to T6051: Allow revoking last UID of primary key with expert mode: gnupg.
Jul 5 2022, 6:49 PM · OpenPGP, Feature Request, gnupg
neverpanic added a comment to T6048: Test suite fixes with --enable-pubkey-ciphers=ecc.

Here's another one related to this: https://lists.gnupg.org/pipermail/gcrypt-devel/2022-July/005344.html

Jul 5 2022, 5:34 PM · FIPS, libgcrypt
ikloecker claimed T6056: Kleopatra: Improve handling of embedded filename .
Jul 5 2022, 4:28 PM · Restricted Project, Restricted Project, kleopatra
ikloecker edited projects for T6056: Kleopatra: Improve handling of embedded filename , added: Restricted Project; removed g10code.

Move from g10code to gpgcom, as discussed with Andre.

Jul 5 2022, 4:28 PM · Restricted Project, Restricted Project, kleopatra
ikloecker moved T6057: Kleopatra: Add option to disable automatic extraction of tar archives from Restricted Project Column to Restricted Project Column on the Restricted Project board.
Jul 5 2022, 4:27 PM · Restricted Project, kleopatra
ikloecker edited projects for T6057: Kleopatra: Add option to disable automatic extraction of tar archives, added: Restricted Project; removed g10code.

Move from g10code to gpgcom, as discussed with Andre.

Jul 5 2022, 4:27 PM · Restricted Project, kleopatra
ikloecker committed rKLEOPATRA89eff4de147b: Do not skip email addresses if there is no email attribute field (authored by ikloecker).
Do not skip email addresses if there is no email attribute field
Jul 5 2022, 4:15 PM
ikloecker committed rKLEOPATRA34f0de274680: Add support for compilers lacking <ranges> (authored by ikloecker).
Add support for compilers lacking <ranges>
Jul 5 2022, 4:15 PM
ikloecker changed the status of T6057: Kleopatra: Add option to disable automatic extraction of tar archives from Open to Testing.
Jul 5 2022, 4:12 PM · Restricted Project, kleopatra
ikloecker closed T6055: Kleopatra: Collapses certificate tree if one opens details dialog with double click as Resolved.
Jul 5 2022, 4:11 PM · Restricted Project, kleopatra, Bug Report
ikloecker committed rKLEOPATRAafe356092dc4: Remove check for BinaryAndFineGrainedIdentify feature in GpgME (authored by ikloecker).
Remove check for BinaryAndFineGrainedIdentify feature in GpgME
Jul 5 2022, 3:25 PM
ikloecker committed rKLEOPATRA26f35b7d92ed: Allow changing the auto-extract option in the settings dialog (authored by ikloecker).
Allow changing the auto-extract option in the settings dialog
Jul 5 2022, 3:25 PM
ikloecker committed rKLEOPATRA31c78f319660: Simplify listening for changed settings (authored by ikloecker).
Simplify listening for changed settings
Jul 5 2022, 3:25 PM
ikloecker committed rKLEOPATRAbd14c41d7058: Show related addresses of S/MIME certificates as simple list (authored by ikloecker).
Show related addresses of S/MIME certificates as simple list
Jul 5 2022, 3:25 PM
ikloecker committed rKLEOPATRA07d2ba4b370d: Initialize all members in-class (authored by ikloecker).
Initialize all members in-class
Jul 5 2022, 3:25 PM
ikloecker committed rKLEOPATRA7be4f02b92cc: Add option to control automatic extraction of decrypted archives (authored by ikloecker).
Add option to control automatic extraction of decrypted archives
Jul 5 2022, 3:25 PM
ikloecker committed rKLEOPATRA7f9a9ec9aa95: Show trust level icon next to trust level text for S/MIME (authored by ikloecker).
Show trust level icon next to trust level text for S/MIME
Jul 5 2022, 3:25 PM
ikloecker committed rKLEOPATRAe38b555141ba: fixup! Show all configured S/MIME attributes (authored by ikloecker).
fixup! Show all configured S/MIME attributes
Jul 5 2022, 3:25 PM
ikloecker committed rKLEOPATRAffb71bd734d1: Show trust level of S/MIME certificate separately of user ID table (authored by ikloecker).
Show trust level of S/MIME certificate separately of user ID table
Jul 5 2022, 3:25 PM
ikloecker committed rKLEOPATRAeeffbd812050: Disable expanding and collapsing of items by double-clicking (authored by ikloecker).
Disable expanding and collapsing of items by double-clicking
Jul 5 2022, 3:25 PM
ikloecker committed rKLEOPATRAe6f56087dc4c: Move the key protocol to the window title (authored by ikloecker).
Move the key protocol to the window title
Jul 5 2022, 3:25 PM
ikloecker committed rKLEOPATRA806aa4e3913c: Rearrange the buttons in the two button rows (authored by ikloecker).
Rearrange the buttons in the two button rows
Jul 5 2022, 3:25 PM
ikloecker committed rKLEOPATRA6f2545663320: Properly memory manage the info fields (authored by ikloecker).
Properly memory manage the info fields
Jul 5 2022, 3:25 PM
ikloecker committed rKLEOPATRAe1e605cfd9a5: Show all configured S/MIME attributes (authored by ikloecker).
Show all configured S/MIME attributes
Jul 5 2022, 3:25 PM
ikloecker claimed T6057: Kleopatra: Add option to disable automatic extraction of tar archives.
Jul 5 2022, 2:15 PM · Restricted Project, kleopatra
ikloecker added a project to T5708: Kleopatra: Configure expiration date default in config: Restricted Project.
Jul 5 2022, 2:15 PM · kleopatra, g10code, Restricted Project
aheinecke triaged T6057: Kleopatra: Add option to disable automatic extraction of tar archives as High priority.
Jul 5 2022, 12:37 PM · Restricted Project, kleopatra
aheinecke triaged T6056: Kleopatra: Improve handling of embedded filename as High priority.
Jul 5 2022, 12:33 PM · Restricted Project, Restricted Project, kleopatra
ikloecker claimed T6055: Kleopatra: Collapses certificate tree if one opens details dialog with double click.
Jul 5 2022, 12:07 PM · Restricted Project, kleopatra, Bug Report
ikloecker created T6055: Kleopatra: Collapses certificate tree if one opens details dialog with double click.
Jul 5 2022, 12:07 PM · Restricted Project, kleopatra, Bug Report
mlaurent closed D558: qt: Add #include <QStringList> needed for building against qt6.
Jul 5 2022, 6:56 AM · gpgme
gniibe committed rG424aa3543de0: gpg,build: Fix message for newer gettext. (authored by gniibe).
gpg,build: Fix message for newer gettext.
Jul 5 2022, 6:48 AM
gniibe added a comment to T6047: Dirmngr - LDAP Schema V2 not used when Base DN is specified.

Let me know how best to submit it

Jul 5 2022, 4:36 AM · LDAP, dirmngr, gnupg (gpg23), Feature Request
gniibe committed rCe2a7a0c9f5d2: kdf: Fix memory leak on error. (authored by gniibe).
kdf: Fix memory leak on error.
Jul 5 2022, 4:09 AM
joeyberkovitz added a comment to T6047: Dirmngr - LDAP Schema V2 not used when Base DN is specified.

I tried to submit the below patch to gnupg-devel@lists.gnupg.org, but get an Unrouteable address error. Let me know how best to submit it

Jul 5 2022, 3:27 AM · LDAP, dirmngr, gnupg (gpg23), Feature Request
calestyo created T6054: ambiguous error message when output file exists already.
Jul 5 2022, 1:17 AM · Bug Report
calestyo created T6053: max passphrase lengths.
Jul 5 2022, 1:14 AM · gnupg, Documentation

Jul 4 2022

ikloecker added a comment to D558: qt: Add #include <QStringList> needed for building against qt6.

Please arc close-revision D558 this revision.

Jul 4 2022, 7:50 PM · gpgme
mlaurent abandoned D559: qt: Remove duplicate QGpgmeConfig.cmake.in.in in EXTRA_DIST.
Jul 4 2022, 5:38 PM · gpgme