Page MenuHome GnuPG
Feed Advanced Search

Feb 23 2024

werner committed rPTH150dc11942c9: Release 1.7 (authored by werner).
Release 1.7
Feb 23 2024, 1:59 PM
werner committed rPTH154f75962d9b: Add npth_poll and npth_ppoll to linker script. (authored by werner).
Add npth_poll and npth_ppoll to linker script.
Feb 23 2024, 1:59 PM
werner committed rPTHf0091f3ef96a: Add a release build target (authored by werner).
Add a release build target
Feb 23 2024, 1:59 PM
werner closed T6619: How to maintain our local libtool patch, a subtask of T6484: dll: 64-bit different name for libgcrypt, libksba, ntbtls, and gpgme, as Resolved.
Feb 23 2024, 1:58 PM
werner closed T6619: How to maintain our local libtool patch as Resolved.

With today's release of npth everything should be set.

Feb 23 2024, 1:58 PM · gpgrt, Bug Report
werner moved T6674: doc: U+2010 HYPHEN vs. U+002D HYPHEN-MINUS for man pages from Backlog to QA on the gpgrt board.
Feb 23 2024, 1:57 PM · gpgrt
werner moved T6737: libgpg-error: String filter should *NOT* be called with non-nul-terminated string from Backlog to QA on the gpgrt board.
Feb 23 2024, 1:56 PM · gpgrt, Bug Report
werner moved T6746: yat2man: Support -- and --- from Backlog to QA on the gpgrt board.
Feb 23 2024, 1:56 PM · gpgrt
werner added a parent task for T4961: ship gpgrt.pc: T7011: Migrate libgpg-error to gpgrt.
Feb 23 2024, 1:55 PM · Feature Request, gpgrt
werner added a subtask for T7011: Migrate libgpg-error to gpgrt: T4961: ship gpgrt.pc.
Feb 23 2024, 1:55 PM · gpgrt
werner triaged T7011: Migrate libgpg-error to gpgrt as Normal priority.
Feb 23 2024, 1:55 PM · gpgrt
werner closed T7010: Release npth 1.7 as Resolved.
Feb 23 2024, 1:46 PM · Release Info, npth
werner closed T6947: unnamed semaphore leak on AIX as Resolved.
Feb 23 2024, 11:28 AM · AIX, npth, Bug Report
werner closed T4491: Compile error in nPth's t-fork.c on Solaris 11.3 i86pc as Resolved.
Feb 23 2024, 11:27 AM · npth, Bug Report
werner closed T5889: Declaration of 'struct timespec' in npth-1.6 conflicts with some versions of MinGW as Resolved.
Feb 23 2024, 11:27 AM · npth, Bug Report
werner closed T5748: Adding poll/ppoll to NPTH, a subtask of T2385: support more than 1024 fds., as Resolved.
Feb 23 2024, 11:26 AM · gpgrt, Feature Request, gpgme
werner closed T5748: Adding poll/ppoll to NPTH as Resolved.

The patch is part of 1.7 - please test and in case of problems feel free to re-open.

Feb 23 2024, 11:26 AM · npth, Feature Request
werner accepted rPTHb5ecd8d2c6fd: posix: Add npth_poll/npth_ppoll..
Feb 23 2024, 11:24 AM
werner committed rWfcc4d6318357: Update npth (authored by werner).
Update npth
Feb 23 2024, 11:16 AM
werner committed rD3b29c6823568: swdb: npth 1.7 (authored by werner).
swdb: npth 1.7
Feb 23 2024, 11:14 AM
werner triaged T7010: Release npth 1.7 as Normal priority.
Feb 23 2024, 10:53 AM · Release Info, npth
werner committed rD717240fd8ae2: swdb: Libksba 1.6.6. (authored by werner).
swdb: Libksba 1.6.6.
Feb 23 2024, 10:43 AM
werner committed rW0a160250fa1f: Update libksba (authored by werner).
Update libksba
Feb 23 2024, 10:36 AM
werner committed rK5b220df6f821: Post release updates (authored by werner).
Post release updates
Feb 23 2024, 10:27 AM
werner committed rK3a4382259c3c: Release 1.6.6 (authored by werner).
Release 1.6.6
Feb 23 2024, 10:27 AM
werner triaged T7009: Release Libksba 1.6.6 as Normal priority.
Feb 23 2024, 9:57 AM · Release Info, libksba

Feb 22 2024

werner committed rG40227e42ea0f: doc: Document the "grp" record in colon listings. (authored by werner).
doc: Document the "grp" record in colon listings.
Feb 22 2024, 5:04 PM
werner added a comment to T6755: libgcrypt: KEM API.

A way to generated keys in the usual s-expression way has been added. This allows us to get the keygrip for the key.

Feb 22 2024, 4:33 PM · PQC, libgcrypt
werner committed rC4db7f3b07be5: cipher: Add a way to get a keygrip for KEM algos. (authored by werner).
cipher: Add a way to get a keygrip for KEM algos.
Feb 22 2024, 4:30 PM
werner committed rCb36aee33dd00: cipher: Slight refactoring of kem.c. (authored by werner).
cipher: Slight refactoring of kem.c.
Feb 22 2024, 3:45 PM

Feb 21 2024

werner closed T5084: Using GPGWin 3.1.13, Putty fails to load the private key from a YubiKey as Resolved.

Closing due to age and because gpg4win 4 started to using the much improved GnuPG 2.4

Feb 21 2024, 5:45 PM · gnupg, ssh, Bug Report, gpg4win
werner lowered the priority of T4553: Compatibilty with encrypted mails sent to SecurePIM from High to Normal.
Feb 21 2024, 5:38 PM · Feature Request, gpg4win, gpgol
werner closed T4170: Backing up, transporting, and transferring private keys from device to device as Resolved.

With backup and restore import/export options all should be set for a long time. I guess this bug can be closed.

Feb 21 2024, 5:37 PM · nGPH
werner closed T3907: Internal error when encrypting to cacert certificate as Wontfix.

Way to old. Does anyone still uses CAcert?

Feb 21 2024, 5:32 PM · Bug Report, S/MIME, gpg4win
werner added a comment to T3908: Permission denied for root on other user's tty.

Lowering priority because it does not seem to be a popular issue.

Feb 21 2024, 5:31 PM · pinentry
werner lowered the priority of T3908: Permission denied for root on other user's tty from High to Normal.
Feb 21 2024, 5:31 PM · pinentry
werner committed rG2372f6a4035c: gpg: Fix gpg_mpi_write for the unused opaque case. (authored by werner).
gpg: Fix gpg_mpi_write for the unused opaque case.
Feb 21 2024, 3:54 PM
werner committed rX9b889bef98d2: po: Add Italian translation (authored by werner).
po: Add Italian translation
Feb 21 2024, 3:51 PM
werner closed T6990: GpgEX translate in Italian language as Resolved.

Thanks for your work. I applied it to Gpgex.

Feb 21 2024, 3:27 PM · gpgex, i18n
werner committed rEc3b6eaedd870: argparse: Adjust help output for command mode. (authored by werner).
argparse: Adjust help output for command mode.
Feb 21 2024, 3:15 PM
werner added a comment to T6997: gnupg-2.4.4 breaks dirmngr fetching keys via hkps:// from behind a proxy.

Okay, backported to 2.2.

Feb 21 2024, 3:13 PM · gnupg22 (gnupg-2.2.43), gnupg24 (gnupg-2.4.5), Bug Report
werner committed rG41c022072599: dirmngr: Fix keep-alive flag handling. (authored by gniibe).
dirmngr: Fix keep-alive flag handling.
Feb 21 2024, 3:13 PM
werner committed rGc33c4fdf10b7: dirmngr: Fix the regression of use of proxy for TLS connection. (authored by gniibe).
dirmngr: Fix the regression of use of proxy for TLS connection.
Feb 21 2024, 3:13 PM
werner committed rGd6c428699db7: dirmngr: Fix proxy with TLS. (authored by gniibe).
dirmngr: Fix proxy with TLS.
Feb 21 2024, 3:13 PM
werner added inline comments to rG848546b05ab0: dirmngr: Fix the regression of use of proxy for TLS connection..
Feb 21 2024, 3:00 PM
werner added a comment to T6637: PQC for Libgcrypt.

FWIW, I posted some ideas at https://lists.gnupg.org/pipermail/librepgp-discuss/2024/000043.html . For official use in Germany we will very likely also add Brainpool curves as a replacement for the IETF curves.

Feb 21 2024, 2:52 PM · PQC, libgcrypt
werner reopened T6729: scdaemon 'Operation not supported by device' on macOS unless racing for first (?) read on boot as "Open".

The solution seems to be a newer libccid version. If that is the case we may want to include the fix also in our own ccid driver.

Feb 21 2024, 2:45 PM · Feature Request, Not A Bug, gnupg, scd, MacOS
werner edited projects for T7005: exportation des certificats OpenPGP., added: Support; removed Bug Report.

Please note that this is a bug tracker and not a general support channel. You would also need to write in English - we can't triage reports written in other languages.

Feb 21 2024, 2:39 PM · Support, gpg4win
werner committed rGa09157ccb2bd: wks: Allow command style args for gpg-wks-client. (authored by werner).
wks: Allow command style args for gpg-wks-client.
Feb 21 2024, 2:08 PM

Feb 20 2024

werner added a comment to T6977: gpgme_op_verify from libgpgme hang without returning anything when verifying corrupted file signature.

gpg --list-packets shows this:

Feb 20 2024, 2:03 PM · gpgme, Bug Report
werner committed rG95bc592ab547: g13: Allow command line style "g13 mount foo". (authored by werner).
g13: Allow command line style "g13 mount foo".
Feb 20 2024, 11:40 AM
werner committed rG3aa02027cdc3: scd:p15: Fix typo in a comment (authored by hamarituc).
scd:p15: Fix typo in a comment
Feb 20 2024, 10:34 AM
werner committed rG557f29d2c16e: scd:p15: Add ECC support for D-Trust Card 4.1/4.4 (authored by hamarituc).
scd:p15: Add ECC support for D-Trust Card 4.1/4.4
Feb 20 2024, 10:32 AM
werner committed rG1e496cf2e527: scd:p15: Take derive usage into account for decryption (2). (authored by werner).
scd:p15: Take derive usage into account for decryption (2).
Feb 20 2024, 10:31 AM
werner committed rG3341017ff125: scd:p15: Handle duplicate certificate ids. (authored by werner).
scd:p15: Handle duplicate certificate ids.
Feb 20 2024, 9:35 AM
werner committed rGad4bc3e04d0b: scd:p15: Take derive usage into account for decryption. (authored by werner).
scd:p15: Take derive usage into account for decryption.
Feb 20 2024, 9:35 AM

Feb 19 2024

werner added projects to T6986: Refresh/update OpenPGP keys should check WKD: Feature Request, Bug Report.
Feb 19 2024, 5:03 PM · gpd5x, Bug Report, Feature Request, gnupg24, kleopatra
werner renamed T6986: Refresh/update OpenPGP keys should check WKD from Kleopatra: Refresh OpenPGP keys should check WKD to Refresh OpenPGP keys should check WKD.
Feb 19 2024, 5:02 PM · gpd5x, Bug Report, Feature Request, gnupg24, kleopatra
werner added a project to T6986: Refresh/update OpenPGP keys should check WKD: gnupg24.

I need to come up with a better strategy here. --refresh-keys is a very useful command and it should do what the user expects. Maybe we can adjust the behaviour iff we detect that there is an LDAP keyserver.

Feb 19 2024, 5:02 PM · gpd5x, Bug Report, Feature Request, gnupg24, kleopatra
werner added a parent task for T7000: Take derive usage into account for pkcs#15 cards.: T7001: Support D-TRUST ECC cards.
Feb 19 2024, 1:54 PM · gnupg24 (gnupg-2.4.5), Bug Report, scd
werner added a subtask for T7001: Support D-TRUST ECC cards: T7000: Take derive usage into account for pkcs#15 cards..
Feb 19 2024, 1:54 PM · gnupg, scd
werner triaged T7001: Support D-TRUST ECC cards as Normal priority.
Feb 19 2024, 1:54 PM · gnupg, scd
werner moved T7000: Take derive usage into account for pkcs#15 cards. from Backlog to WiP on the gnupg24 board.
Feb 19 2024, 1:51 PM · gnupg24 (gnupg-2.4.5), Bug Report, scd
werner triaged T7000: Take derive usage into account for pkcs#15 cards. as Normal priority.
Feb 19 2024, 1:45 PM · gnupg24 (gnupg-2.4.5), Bug Report, scd

Feb 16 2024

werner added inline comments to rG848546b05ab0: dirmngr: Fix the regression of use of proxy for TLS connection..
Feb 16 2024, 10:11 AM
werner closed T6999: Are you aware of implementations which would generate signatures with 0x0001 lbits in signature? as Resolved.

No, I am not aware. I can't remember whether PGP once had such a bug because @dshaw did most cross-testing and fixing for PGP bugs. I would suggest to remove any such checks. IIRC, this was introduced by PGP 2 to speed up signature checking. 30 years ago RSA operations were quite expensive.

Feb 16 2024, 10:01 AM · Documentation, gnupg

Feb 15 2024

werner added a comment to T6755: libgcrypt: KEM API.

Although, we don't use our usual s-expressions we need to add a way to derive a keygrip from Kyber et al and also to wrap the key into an s-expression to that it can be stored by gpg-agent in its usual files. An exported new API to get the keygrip of a KEM key would be good to avoid encapsulation but for other purposes an encapsulation is still required.

Feb 15 2024, 6:00 PM · PQC, libgcrypt
werner added a comment to T6991: Adding XDG Base Directory paths as *fallbacks* over the existing ~/.gnupg paths.

That is simply because your XDG_RUNTIME is set to the same directory gnupg uses. See gnupg/common/homedir.c:_gnupg_socketdir_internal

Feb 15 2024, 5:44 PM · Support, gnupg, Feature Request
werner committed rW05ddc4949742: Include all code to sign MSI files. (authored by werner).
Include all code to sign MSI files.
Feb 15 2024, 3:06 PM
werner committed rG037067853609: speedo: Add config variable for the timestamp service. (authored by werner).
speedo: Add config variable for the timestamp service.
Feb 15 2024, 2:54 PM
werner closed T6996: Add Kleopatra at Portable App as Wontfix.

Portable Apps are a Bad Idea because they bypass important security mechanisms. In any case please tak such discussions to a mailing list and please do not use the bug tracker for this. The audience of bug reports is pretty limited.

Feb 15 2024, 2:16 PM · Feature Request
werner assigned T6985: Kleopatra: Check update not working correctly to TobiasFella.
Feb 15 2024, 11:08 AM · Restricted Project, gpg4win, kleopatra
werner added a comment to T6985: Kleopatra: Check update not working correctly.

Quick hint how to test a fix given that the versions.gnupg.org currently does not carry an entry for gpg4win.

Feb 15 2024, 11:07 AM · Restricted Project, gpg4win, kleopatra
werner committed rDabd6a3ab5f2e: web: Fix an URL. (authored by werner).
web: Fix an URL.
Feb 15 2024, 10:16 AM
werner claimed T6986: Refresh/update OpenPGP keys should check WKD.
Feb 15 2024, 9:25 AM · gpd5x, Bug Report, Feature Request, gnupg24, kleopatra

Feb 14 2024

werner triaged T6993: Missing signature for gpgol.dll as Low priority.

You mean the Authenticode signature? Afaics, only the gnupg files come with such signatures.

Feb 14 2024, 2:10 PM · gpgol, Feature Request, gpg4win
werner added a comment to T6992: Fix possible uninitialized err variable in libskba der builder.

@Jakuje, you are right. This is a plain error and we should do a new release to avoid false errors.

Feb 14 2024, 8:54 AM · libksba, Bug Report

Feb 13 2024

werner closed T3341: Offer to reencrypt existing crypto mails when switching keys, a subtask of T3338: Extending enigmail filter options, as Wontfix.
Feb 13 2024, 10:59 AM · Enigmail
werner closed T3341: Offer to reencrypt existing crypto mails when switching keys as Wontfix.

There is no Enigmail for TB anymore.

Feb 13 2024, 10:59 AM · Enigmail

Feb 10 2024

werner committed rG302afcb6f6af: gpg: Add option --assert-pubkey_algo. (authored by werner).
gpg: Add option --assert-pubkey_algo.
Feb 10 2024, 2:51 PM
werner changed the status of T6946: gpgv: Help automatic reject too short keys from Open to Testing.

We check the actual used signature and the corresponding (sub)key. Whether you trust this key is a different thing and we are not able to check that. Note that the same subkey may be used with different primary keys. The whole point of gpgv is to that you pass a list of trusted keys - actually this makes this new option superfluous but in gpg it makes sense. It was easy to add it to gpgv, though.

Feb 10 2024, 2:31 PM · gnupg24 (gnupg-2.4.5), Feature Request, gpgv

Feb 9 2024

werner added a project to T6985: Kleopatra: Check update not working correctly: gpg4win.
Feb 9 2024, 2:46 PM · Restricted Project, gpg4win, kleopatra

Feb 8 2024

werner added a comment to T6977: gpgme_op_verify from libgpgme hang without returning anything when verifying corrupted file signature.

@Karam, please test as suggested by @ikloecker.

Feb 8 2024, 3:23 PM · gpgme, Bug Report
werner edited Description on i18n.
Feb 8 2024, 3:19 PM
werner triaged T6983: Improve Italian translate in Kleopatra as Low priority.

Setting the priority to low because that is the task for the KDE translation team. I am not sure how we can interact with the translation team, bug tracker wise. Do they have their own tracker?

Feb 8 2024, 3:18 PM · kleopatra, i18n
werner committed rX9f977a8b9d50: Fix README (authored by werner).
Fix README
Feb 8 2024, 12:37 PM

Feb 7 2024

werner edited projects for T6980: Bug in Kleopatra, added: Support; removed Bug Report.

Please post the output of "gpgconf -X" and "gpgconf -V".

Feb 7 2024, 10:08 PM · Support, gpg4win
werner closed T6981: Not VS-NfD compliant as Resolved.

VS-NfD is not a standard but a classification for restricted data. Software used to convey such material needs an official approval and is bound to certain organizational requirements. That is what "VS-NfD konform" says. The community version of gpg4win does not have this approval despite that it is technically the same code as the approved GnuPG VS-Desktop.

Feb 7 2024, 10:02 PM · Documentation, Support
werner committed rGPA596b953438e0: Add very basic support for PIV cards. (authored by werner).
Add very basic support for PIV cards.
Feb 7 2024, 6:53 PM
werner committed rGPAfc72ba2a3e7d: Fix typo in a menu entry. (authored by werner).
Fix typo in a menu entry.
Feb 7 2024, 6:53 PM
werner removed a project from T6977: gpgme_op_verify from libgpgme hang without returning anything when verifying corrupted file signature: C++.

Oh well, it does not use the c++ binding .

Feb 7 2024, 9:25 AM · gpgme, Bug Report
werner triaged T6977: gpgme_op_verify from libgpgme hang without returning anything when verifying corrupted file signature as Normal priority.
Feb 7 2024, 9:22 AM · gpgme, Bug Report
werner triaged T6962: gpg lock issue on Alma Linux upgraded servers as Normal priority.
Feb 7 2024, 9:21 AM · Support, gnupg
werner triaged T6975: The option --default-key gives up too early if there are multiple matches as Normal priority.
Feb 7 2024, 9:21 AM · Feature Request, gnupg
werner triaged T6976: RSA PKCS#1v1.5 signatures with SHA3 use invalid encoding as Normal priority.
Feb 7 2024, 9:20 AM · FIPS, libgcrypt, Bug Report
werner added projects to T6977: gpgme_op_verify from libgpgme hang without returning anything when verifying corrupted file signature: gpgme, C++.
Feb 7 2024, 9:20 AM · gpgme, Bug Report
werner added projects to T6976: RSA PKCS#1v1.5 signatures with SHA3 use invalid encoding: libgcrypt, FIPS.
Feb 7 2024, 9:17 AM · FIPS, libgcrypt, Bug Report
werner added a comment to T6757: gpgsm 2.4 Fails to import P12 certificate/key.

Feb 7 2024, 9:09 AM · gnupg24 (gnupg-2.4.4), S/MIME, Bug Report

Feb 6 2024

werner added a comment to T6757: gpgsm 2.4 Fails to import P12 certificate/key.

The old debug output is in genral okay but what I would do is to add a couple of log_debug calls like

Feb 6 2024, 5:16 PM · gnupg24 (gnupg-2.4.4), S/MIME, Bug Report
werner committed rE49507cf6977f: core: Add "wipe" mode flag. (authored by werner).
core: Add "wipe" mode flag.
Feb 6 2024, 5:07 PM