Page MenuHome GnuPG
Feed Advanced Search

Dec 9 2022

werner committed rGe778c9ce8926: scd:p15: Skip deleted records. (authored by werner).
scd:p15: Skip deleted records.
Dec 9 2022, 8:54 AM
werner committed rG11d3114e1a86: speedo: Support CUSTOM_SWDB builds. (authored by werner).
speedo: Support CUSTOM_SWDB builds.
Dec 9 2022, 8:54 AM
werner committed rG8346ebf168ed: speedo: Introduce the OVERRIDE_TARBALLS feature (authored by werner).
speedo: Introduce the OVERRIDE_TARBALLS feature
Dec 9 2022, 8:54 AM
werner committed rG061efac03ff9: scd:p15: Skip deleted records. (authored by werner).
scd:p15: Skip deleted records.
Dec 9 2022, 8:53 AM

Dec 7 2022

werner added a comment to T5960: Kleopatra: Encoding problems with GnuPG output on Windows.

Oh well, in case you mean the diagnostic output things are different. gpg uses the code page as returned by GetConsoleOutputCP becuase we are a console program. Qt might assume that GetACP is used (as for GUis and thus we get a wrong codepage. You may try to run "chcp 65001" before starrting kleopatra or figure out how to convince Qt to set the codepage to 65001 (utf-8)

Dec 7 2022, 9:13 AM · vsd33 (vsd-3.3.0), Restricted Project, kleopatra
werner added a comment to T5960: Kleopatra: Encoding problems with GnuPG output on Windows.

gpg always used UTF-8 the option to enable this is the default for more than a decade.

Dec 7 2022, 9:06 AM · vsd33 (vsd-3.3.0), Restricted Project, kleopatra

Dec 6 2022

werner closed T4013: Certificate requests generated from Ed25519 keys are not compliant with draft-ietf-curdle-pkix as Resolved.

I guess we can close this one.

Dec 6 2022, 2:25 PM · S/MIME, Feature Request, libksba
werner updated the task description for T6230: Release Libksba 1.6.2 (CVE-2022-3515).
Dec 6 2022, 2:23 PM · CVE, Release Info, libksba
werner triaged T6304: Release Libksba 1.6.3 as Normal priority.
Dec 6 2022, 2:23 PM · Release Info, libksba
werner updated the task description for T6106: Release GnuPG 2.3.8.
Dec 6 2022, 10:11 AM · Release Info, gnupg (gpg23)
werner triaged T6303: Release GnuPG 2.4.0 as Normal priority.
Dec 6 2022, 10:11 AM · gnupg, Release Info
werner renamed T6106: Release GnuPG 2.3.8 from Release GnuPG 2.2.38 to Release GnuPG 2.3.8.
Dec 6 2022, 10:10 AM · Release Info, gnupg (gpg23)
werner committed rGbcd3a5c3655c: doc: Prepare NEWS (authored by werner).
doc: Prepare NEWS
Dec 6 2022, 10:06 AM
werner closed T6241: cross-compile fails after commit 745d333cf7b5b6fee62e3b26c8a2ccc004e017da as Resolved.

A real fix will be in the next gpgrt release

Dec 6 2022, 9:29 AM · workaround, gnupg (gpg22), gpgrt, Bug Report
werner closed T6292: gpg-wks-client --mirror and expired keys as Resolved.
Dec 6 2022, 9:28 AM · Feature Request, wkd, gnupg
werner committed rG115cc4d37c18: wkd: Do not send/install/mirror expired user ids. (authored by werner).
wkd: Do not send/install/mirror expired user ids.
Dec 6 2022, 9:28 AM
werner committed rGd9271d594b5b: gpgsm: Silence the "non-critical certificate policy not allowed". (authored by werner).
gpgsm: Silence the "non-critical certificate policy not allowed".
Dec 6 2022, 9:28 AM
werner committed rG278f85d1bc6c: wkd: Do not send/install/mirror expired user ids. (authored by werner).
wkd: Do not send/install/mirror expired user ids.
Dec 6 2022, 9:24 AM
werner added a comment to T6292: gpg-wks-client --mirror and expired keys.

No. We now ignore expired key with --mirror, --create, and --install-key.

Dec 6 2022, 9:23 AM · Feature Request, wkd, gnupg

Dec 5 2022

werner committed rG58819c024a11: gpgsm: Print the revocation time also with --verify. (authored by werner).
gpgsm: Print the revocation time also with --verify.
Dec 5 2022, 5:50 PM
werner committed rG1c2bdd80b18f: gpgsm: Fix "problem re-searching certificate" case. (authored by werner).
gpgsm: Fix "problem re-searching certificate" case.
Dec 5 2022, 5:50 PM
werner added a comment to T4518: Kleopatra: Changes log-file tcp://IPADDR to tcp:\\IPADDR.

Windows accepts forward slashes in all API calls. Users are sometimes confused by this but this is a documented feature for ages in the API.

Dec 5 2022, 4:56 PM · Restricted Project, Windows, kleopatra
werner committed rGb6abaed2b5f6: gpgsm: Print revocation date and reason in cert listings. (authored by werner).
gpgsm: Print revocation date and reason in cert listings.
Dec 5 2022, 4:42 PM
werner committed rG4f1b9e3abb33: gpgsm: Silence the "non-critical certificate policy not allowed". (authored by werner).
gpgsm: Silence the "non-critical certificate policy not allowed".
Dec 5 2022, 2:32 PM
werner committed rG7fa1d3cc821d: gpgsm: Always use the chain model if the root-CA requests this. (authored by werner).
gpgsm: Always use the chain model if the root-CA requests this.
Dec 5 2022, 2:27 PM
werner added a comment to T4518: Kleopatra: Changes log-file tcp://IPADDR to tcp:\\IPADDR.

The log file is intended to be an URL. Thus forward slash is fine.

Dec 5 2022, 10:02 AM · Restricted Project, Windows, kleopatra

Dec 2 2022

werner committed rG1a85ee9a431b: gpg: New export option "mode1003". (authored by werner).
gpg: New export option "mode1003".
Dec 2 2022, 10:11 AM
werner committed rG1d88e14de751: gpg: Remove a mostly duplicated function. (authored by werner).
gpg: Remove a mostly duplicated function.
Dec 2 2022, 10:11 AM

Dec 1 2022

werner closed T6294: Import of EC448 keys fails as Resolved.
Dec 1 2022, 10:15 AM · gnupg (gpg23), Bug Report
werner added a comment to T6294: Import of EC448 keys fails.

Thanks for reporting. We usually test by moving the <keygrip>.key files around ;-)

Dec 1 2022, 10:14 AM · gnupg (gpg23), Bug Report
werner committed rGe094616cb75d: agent: Fix import of protected v5 keys. (authored by werner).
agent: Fix import of protected v5 keys.
Dec 1 2022, 10:13 AM
werner committed rG2d8ac55d26e7: gpgsm: Change default algo to AES-256. (authored by werner).
gpgsm: Change default algo to AES-256.
Dec 1 2022, 10:13 AM

Nov 30 2022

werner committed rGdeac3e91eb68: wkd: Make use of --debug extprog. (authored by werner).
wkd: Make use of --debug extprog.
Nov 30 2022, 11:26 AM
werner committed rG2f4492f3be6a: wkd: New option --add-revocs and some fixes. (authored by werner).
wkd: New option --add-revocs and some fixes.
Nov 30 2022, 11:26 AM
werner committed rGedbe30c1528c: gpg: New export-filter export-revocs (authored by werner).
gpg: New export-filter export-revocs
Nov 30 2022, 11:26 AM
werner committed rGbe02365c3fa6: gpgsm: Change default algo to AES-256. (authored by werner).
gpgsm: Change default algo to AES-256.
Nov 30 2022, 11:01 AM
werner added a comment to T6293: w32: putenv in Microsoft runtime doesn't support GNU extension.

Actually we should switch from putenv to SetEnvironmentVariable et al. because that avoids problems wit different Windows libc versions, for example in DLLs.

Nov 30 2022, 8:35 AM · gnupg, Bug Report

Nov 29 2022

werner created T6292: gpg-wks-client --mirror and expired keys.
Nov 29 2022, 5:50 PM · Feature Request, wkd, gnupg
werner committed rGfbc52f550174: doc: Comment typo fix (authored by werner).
doc: Comment typo fix
Nov 29 2022, 5:19 PM
werner committed rGc3f9f2d497b1: wkd: New option --add-revocs and some fixes. (authored by werner).
wkd: New option --add-revocs and some fixes.
Nov 29 2022, 5:19 PM
werner committed rG34fafa50f19c: wkd: Make use of --debug extprog. (authored by werner).
wkd: Make use of --debug extprog.
Nov 29 2022, 5:19 PM
werner closed T6291: FIPS: dirmngr CRL hash uses MD5 as Wontfix.

There are other uses of MD5 and thus we can't disable it. For example gpgsm also lists the MD5 fingerprint of certificates because they are still in use at some places.

Nov 29 2022, 2:50 PM · libgcrypt, gnupg (gpg23), Bug Report
werner committed rG44dc253c4c53: build: Update gpg-error.m4. (authored by gniibe).
build: Update gpg-error.m4.
Nov 29 2022, 12:50 PM
werner committed rG12273efdf4b5: doc: Make uploading of 2.2 manuals easier (authored by werner).
doc: Make uploading of 2.2 manuals easier
Nov 29 2022, 12:50 PM
werner committed rG19791a1d4c9b: scd: Use app_get_slot at more places. (authored by werner).
scd: Use app_get_slot at more places.
Nov 29 2022, 12:50 PM
werner committed rGea222a0d9c73: scd: Use APP_LEARN_FLAG_KEYPAIRINFO with more apps. (authored by werner).
scd: Use APP_LEARN_FLAG_KEYPAIRINFO with more apps.
Nov 29 2022, 12:50 PM
werner committed rGadbe5a35a5f8: scd:nks: Support non-ESIGN signing with the Signature Card v2 (authored by werner).
scd:nks: Support non-ESIGN signing with the Signature Card v2
Nov 29 2022, 12:50 PM
werner committed rG865386c0cf0b: gpg: New option --compatibility-flags (authored by werner).
gpg: New option --compatibility-flags
Nov 29 2022, 12:50 PM
werner committed rGaf1d4ff2eadc: gpg: Make --list-packets work w/o --no-armor for plain OCB packets. (authored by werner).
gpg: Make --list-packets work w/o --no-armor for plain OCB packets.
Nov 29 2022, 12:50 PM
werner committed rG290f458ad66f: gpg: Import stray revocation certificates. (authored by werner).
gpg: Import stray revocation certificates.
Nov 29 2022, 12:50 PM
werner committed rG6ba5b6b85451: agent: Allow trustlist on Windows in Unicode homedirs. (authored by werner).
agent: Allow trustlist on Windows in Unicode homedirs.
Nov 29 2022, 12:50 PM
werner committed rGc1f5fcff4231: gpg: Fix trusted introducer for user-ids with only the mbox. (authored by werner).
gpg: Fix trusted introducer for user-ids with only the mbox.
Nov 29 2022, 12:50 PM
werner committed rG2e18c371d241: scd: Redact --debug cardio output of a VERIFY APDU. (authored by werner).
scd: Redact --debug cardio output of a VERIFY APDU.
Nov 29 2022, 12:50 PM
werner committed rGce50dea7cfe1: gpg: Add a notation to encryption subkeys in de-vs mode. (authored by werner).
gpg: Add a notation to encryption subkeys in de-vs mode.
Nov 29 2022, 12:50 PM
werner committed rG84aba39491c2: scd:nks: Fix ECC signing if key not given by keygrip. (authored by werner).
scd:nks: Fix ECC signing if key not given by keygrip.
Nov 29 2022, 12:50 PM
werner committed rGb94fe0e0077f: tests: Use 233 for invalid value of FD. (authored by gniibe).
tests: Use 233 for invalid value of FD.
Nov 29 2022, 12:50 PM
werner committed rGb13c0b595ebd: w32: Fix for make check. (authored by gniibe).
w32: Fix for make check.
Nov 29 2022, 12:50 PM
werner committed rG1e62c4b7c24f: w32: Exclude tests with HOME. (authored by gniibe).
w32: Exclude tests with HOME.
Nov 29 2022, 12:50 PM
werner committed rG44cbe6fbc062: tests: Keep .log files in objdir. (authored by gniibe).
tests: Keep .log files in objdir.
Nov 29 2022, 12:50 PM
werner committed rG8b1061a5dec7: tests: Fix to support --enable-all-tests and variants. (authored by gniibe).
tests: Fix to support --enable-all-tests and variants.
Nov 29 2022, 12:50 PM
werner committed rGddfc90e5242e: tests:w32: Fix for non-dot file name for Windows. (authored by gniibe).
tests:w32: Fix for non-dot file name for Windows.
Nov 29 2022, 12:50 PM
werner committed rG4ea7f03c1013: tests:gpgscm:w32: Fix for GetTempPath. (authored by gniibe).
tests:gpgscm:w32: Fix for GetTempPath.
Nov 29 2022, 12:50 PM
werner committed rG11f323271671: gpg: Make --require-compliance work with out --status-fd (authored by werner).
gpg: Make --require-compliance work with out --status-fd
Nov 29 2022, 12:50 PM
werner committed rG791c162c7001: Update NEWS for 2.2.41 (authored by werner).
Update NEWS for 2.2.41
Nov 29 2022, 12:50 PM
werner committed rGff266aef2911: w32: Fix for make check. (authored by gniibe).
w32: Fix for make check.
Nov 29 2022, 12:50 PM
werner committed rG15b8d100c9c8: g10/plaintext: do_hash: use iobuf_read for higher performance (authored by jukivili).
g10/plaintext: do_hash: use iobuf_read for higher performance
Nov 29 2022, 12:50 PM
werner committed rG2302e180c010: gpg: use iobuf_read for higher detached signing speed (authored by werner).
gpg: use iobuf_read for higher detached signing speed
Nov 29 2022, 12:50 PM
werner closed T5826: Improve detached signing and verification speed as Resolved.

Done (STABLE-BRANCH-2-2.40 for now)

Nov 29 2022, 12:23 PM · gnupg
werner closed T5826: Improve detached signing and verification speed, a subtask of T5828: Improvements for gnupg data operation performance (enc/dec/sign/verify/enarmor/dearmor/etc), as Resolved.
Nov 29 2022, 12:23 PM · gnupg
werner committed rGPA6b134447a30a: po: Update Russian translation. (authored by Ineiev <ineiev@gnu.org>).
po: Update Russian translation.
Nov 29 2022, 10:09 AM
werner reopened T5826: Improve detached signing and verification speed, a subtask of T5828: Improvements for gnupg data operation performance (enc/dec/sign/verify/enarmor/dearmor/etc), as Open.
Nov 29 2022, 9:56 AM · gnupg
werner reopened T5826: Improve detached signing and verification speed as "Open".
Nov 29 2022, 9:56 AM · gnupg
werner claimed T5826: Improve detached signing and verification speed.

Yes, I'll do that. Thanks for the reminder.

Nov 29 2022, 9:55 AM · gnupg

Nov 28 2022

werner committed rGc985b52e71a8: gpg: New export-filter export-revocs (authored by werner).
gpg: New export-filter export-revocs
Nov 28 2022, 12:44 PM
werner committed rG2aacd843ad6b: gpg: Make --require-compliance work with out --status-fd (authored by werner).
gpg: Make --require-compliance work with out --status-fd
Nov 28 2022, 8:22 AM
werner committed rD94098b71808f: swdb: Adjust for new location of versions.gnupg.org (authored by werner).
swdb: Adjust for new location of versions.gnupg.org
Nov 28 2022, 8:07 AM
werner committed rDd50e44291126: swdb: Use config file for the upload location (authored by werner).
swdb: Use config file for the upload location
Nov 28 2022, 8:07 AM

Nov 25 2022

werner added a comment to T6288: Document gpgrt-config in detail or improve it to support simple invocation.

Bootstrapping is an issue. Recall that pkg-config is not a simple program but requires the use of glib (which depends on libffi, libmount, libpcre) - catch-22. Makes building GnuPG on AIX not actually easy.

Nov 25 2022, 7:00 PM · gpgrt, Bug Report
werner committed rG1324dc3490b0: gpg: New option --list-filter (authored by werner).
gpg: New option --list-filter
Nov 25 2022, 4:06 PM
werner committed rGd70779bdc60c: dirmngr: Silence ocsp debug output. (authored by werner).
dirmngr: Silence ocsp debug output.
Nov 25 2022, 9:26 AM
werner closed T6289: Pinentry garbles international characters as Resolved.
Nov 25 2022, 8:13 AM · gpg4win, Support
werner added a comment to T6289: Pinentry garbles international characters.

You are using the basic pinnentry which comes as part of the basic installer. Almost everyone does not use this but Gpg4win which has a real pinentry. See http://gpg4win.org You don;t need the program statement then because gpg is installed in the PATH.

Nov 25 2022, 8:12 AM · gpg4win, Support

Nov 23 2022

werner added projects to T6286: gpgme-json not installed by default: gpgme, Feature Request.

Actually we have two gpgme versions in gpg4win because gnupg is a "sub"-installer inside of gpg4win and it comes with its own gpgme. That gpgme is the release version but the one used by gpg4win's kleopatra is often a newer snapshot.

Nov 23 2022, 11:36 AM · Feature Request, gpgme, gpg4win
werner added a comment to T6284: Another integer overflow in Libksba.

Here is the patch which will go into the next release

From f61a5ea4e0f6a80fd4b28ef0174bee77793cf070 Mon Sep 17 00:00:00 2001
From: Werner Koch <wk@gnupg.org>
Date: Tue, 22 Nov 2022 16:36:46 +0100
Subject: [PATCH] Fix an integer overflow in the CRL signature parser.
Nov 23 2022, 11:17 AM · CVE, Bug Report, libksba

Nov 22 2022

werner triaged T6284: Another integer overflow in Libksba as Unbreak Now! priority.
Nov 22 2022, 4:54 PM · CVE, Bug Report, libksba
werner added projects to T6283: could the newer jq255 Elliptic Curve be interesting to implement?: Feature Request, libgcrypt.
Nov 22 2022, 1:18 PM · libgcrypt, Feature Request

Nov 17 2022

werner added a comment to T6282: Kleopatra: Smartcard dialog for Signature Card 2.0 does not show keys if one key wasn't imported from the card.

It turned out that the reason for the problem is the use of the --ignore-cert-with-oid option in gpgsm.conf.

Nov 17 2022, 6:00 PM · Bug Report, kleopatra, scd
werner committed rGcce5ecece1d0: dirmngr: Silence debug diagnostics in OCSP (authored by werner).
dirmngr: Silence debug diagnostics in OCSP
Nov 17 2022, 5:14 PM
werner created T6282: Kleopatra: Smartcard dialog for Signature Card 2.0 does not show keys if one key wasn't imported from the card.
Nov 17 2022, 5:04 PM · Bug Report, kleopatra, scd
werner added a comment to T5085: Filter APDUs in log output.

We need to do this also for CHANGE REFERENCE DATA - however, there should be an extra option so that we can debug this despite of the redacting.

Nov 17 2022, 5:00 PM · gnupg, Feature Request, scd
werner committed rG468b64dcaa9e: scd: Redact --debug cardio output of a VERIFY APDU. (authored by werner).
scd: Redact --debug cardio output of a VERIFY APDU.
Nov 17 2022, 2:56 PM
werner committed rG9f7ff4367247: scd: Redact --debug cardio output of a VERIFY APDU. (authored by werner).
scd: Redact --debug cardio output of a VERIFY APDU.
Nov 17 2022, 2:41 PM
werner committed rG8c6529b4f13c: Update NEWS (authored by werner).
Update NEWS
Nov 17 2022, 9:36 AM
werner closed T6181: Release GnuPG 2.2.40 as Resolved.
Nov 17 2022, 9:35 AM · gnupg (gpg22), Release Info
werner closed T6221: When encrypting, gpg claims DE_VS compliance with non-compliant gcrypt as Resolved.
Nov 17 2022, 9:34 AM · gnupg (gpg22), Bug Report
werner closed T5713: Kleopatra: PKCS#12 Import no Error on bad passphrase as Resolved.
Nov 17 2022, 9:34 AM · Restricted Project, kleopatra
werner closed T6224: Mirror internal LDAP to a WKD as Resolved.
Nov 17 2022, 9:33 AM · Restricted Project, Feature Request, gnupg (gpg23)
werner closed T6047: Dirmngr - LDAP Schema V2 not used when Base DN is specified as Resolved.
Nov 17 2022, 9:33 AM · LDAP, dirmngr, gnupg (gpg23), Feature Request
werner triaged T6280: Release GnuPG 2.2.41 as Low priority.
Nov 17 2022, 9:32 AM · gnupg22, Release Info

Nov 16 2022

werner committed rGb284412786d7: gpg: Add a notation to encryption subkeys in de-vs mode. (authored by werner).
gpg: Add a notation to encryption subkeys in de-vs mode.
Nov 16 2022, 5:17 PM