Page MenuHome GnuPG
Feed Advanced Search

Apr 25 2018

digihash added a comment to T3917: GPGOL: No body in the mail and gpgolXXX.dat file attached when opening with Thunderbird/Enigmail + Exchange and Exquilla.

Alright, I will create a ticket with Exquilla to see with them if this could be fixed on their side.

Apr 25 2018, 1:02 PM · gpgol, Bug Report, gpg4win
aheinecke created T3935: GpgOL: S/MIME signed mails opened with GpgOL even if S/MIME is disabled.
Apr 25 2018, 9:47 AM · Bug Report, gpgol

Apr 24 2018

aheinecke added a parent task for T3762: Outlook 2016 - file/print error: T3899: Gpg4win 3.1.1.
Apr 24 2018, 1:30 PM · gpgol, gpg4win, Bug Report
aheinecke added a comment to T3931: GpgOL: Crash when adding unknown recipient and selecting encrypt right after.

Very strange behavior caused this. Outlook seems to detach from an object model call, handle a window message, and then return the object model call.

Apr 24 2018, 8:45 AM · gpg4win, Bug Report, gpgol
aheinecke added a parent task for T3931: GpgOL: Crash when adding unknown recipient and selecting encrypt right after: T3899: Gpg4win 3.1.1.
Apr 24 2018, 8:44 AM · gpg4win, Bug Report, gpgol
aheinecke closed T2670: (Win32/64) gpg-agent locks directory of initial signature as Resolved.
Apr 24 2018, 6:30 AM · Bug Report, gpg4win

Apr 23 2018

aheinecke created T3931: GpgOL: Crash when adding unknown recipient and selecting encrypt right after.
Apr 23 2018, 5:08 PM · gpg4win, Bug Report, gpgol
catenacyber created T3930: Memory leak in read_block.
Apr 23 2018, 4:28 PM · gnupg (gpg22), Bug Report
werner added a comment to T3923: dirmngr: CRL's on windows are not properly cached / parsed.

See also T2448

Apr 23 2018, 9:26 AM · Bug Report, gpg4win, S/MIME, dirmngr

Apr 22 2018

hefee created T3928: canceling password dialog for decrypting is not recognized correctling..
Apr 22 2018, 10:47 AM · gpgme, Bug Report

Apr 21 2018

werner triaged T3927: gpgsm certificate import fails because of hardcoded password length limitation as Low priority.

This for importing passwords using a somewhat heuristic approach to accommodate for all the weird things other PKCS#12 implementations do. I have not looked into the specs for a decade and thus can't tell you the reason for that limitations. There might have been one back then. In any case PKCS#12 is the most insecure things in the PKCS suite and it is questionable whether this can be called a standard.

Apr 21 2018, 7:24 PM · Feature Request, gnupg24, S/MIME
dirrgang created T3927: gpgsm certificate import fails because of hardcoded password length limitation.
Apr 21 2018, 1:04 PM · Feature Request, gnupg24, S/MIME
kode54 added a comment to T3919: GPGOL: Could not decrypt the data: Invalid crypto engine.

Also confirming the workaround. Not sure whether it would have done me any justice to counter-sign the key after accepting it locally, since I only verified it against their web page. The web page is hard to find with a Google search, since Google does not turn the unspaced hexadecimal fingerprint into something that matches the space-every-four-digits format used on their PGP/GPG instruction page. Searching for "Facebook PGP key" works, though.

Apr 21 2018, 4:01 AM · gpgme, gpgol, Bug Report, gpg4win

Apr 20 2018

wknapik added a comment to T3924: Pinentry should not prevent the use of password managers by default (in the name of security, no less).

Thanks for the quick reply @aheinecke.

Apr 20 2018, 5:09 PM · Bug Report, pinentry
aheinecke closed T3924: Pinentry should not prevent the use of password managers by default (in the name of security, no less) as Wontfix.

I (as the maintainer of pinentry-qt) fully agree with your sentiment. I changed it in pinentry-qt (since version 1.0.0) so that the keyboard input is only grabbed (which is a security feature) when the input focus is on the passphrase entry as I found it very annoying myself.

Apr 20 2018, 4:47 PM · Bug Report, pinentry
ajaja created T3926: Adding subkey from the existing key.
Apr 20 2018, 4:41 PM · gnupg (gpg22)
aheinecke added a comment to T3897: GpgOL: Sending signed / ecnrypted mail to X.509 (SMIME) recipient fails and error is not shown.

This task and Forum reports about CRL errors caused me to investigate a bit and we found a Bug with CRL's on Windows. T3923 which might be the root cause.

Apr 20 2018, 4:41 PM · gpgol, Bug Report, gpg4win
aheinecke changed the status of T3923: dirmngr: CRL's on windows are not properly cached / parsed from Open to Testing.

Looks ok now in my tests. I still want to test against more CA's with more CLRs (e.g. COMODO and CACert)

Apr 20 2018, 4:39 PM · Bug Report, gpg4win, S/MIME, dirmngr
aheinecke added a parent task for T3923: dirmngr: CRL's on windows are not properly cached / parsed: T3899: Gpg4win 3.1.1.
Apr 20 2018, 4:38 PM · Bug Report, gpg4win, S/MIME, dirmngr
aheinecke edited parent tasks for T3888: Kleopatra: S/MIME trees in keylist are minimized on refresh, added: T3925: Gpg4win 3.1.2; removed: T3899: Gpg4win 3.1.1.
Apr 20 2018, 4:37 PM · Bug Report, gpg4win, kleopatra
aheinecke removed a parent task for T3889: GpgOL: Window management does not work well in OL 2010: T3899: Gpg4win 3.1.1.
Apr 20 2018, 4:36 PM · Bug Report, gpg4win, gpgol
aheinecke closed T3889: GpgOL: Window management does not work well in OL 2010 as Resolved.

Was Okish in my last tests. But I did not fix anything compared to 3.1.0

Apr 20 2018, 4:36 PM · Bug Report, gpg4win, gpgol
aheinecke edited parent tasks for T3887: Kleopatra: Not finishing commands, added: T3925: Gpg4win 3.1.2; removed: T3899: Gpg4win 3.1.1.
Apr 20 2018, 4:36 PM · Bug Report, gpg4win, kleopatra
aheinecke added a parent task for T3919: GPGOL: Could not decrypt the data: Invalid crypto engine: T3899: Gpg4win 3.1.1.
Apr 20 2018, 4:30 PM · gpgme, gpgol, Bug Report, gpg4win
aheinecke changed the status of T3919: GPGOL: Could not decrypt the data: Invalid crypto engine from Open to Testing.

The commit mentioned fixes the problem.

Apr 20 2018, 4:30 PM · gpgme, gpgol, Bug Report, gpg4win
wknapik created T3924: Pinentry should not prevent the use of password managers by default (in the name of security, no less).
Apr 20 2018, 3:43 PM · Bug Report, pinentry
aheinecke created T3923: dirmngr: CRL's on windows are not properly cached / parsed.
Apr 20 2018, 3:42 PM · Bug Report, gpg4win, S/MIME, dirmngr
jkropf added a comment to T3919: GPGOL: Could not decrypt the data: Invalid crypto engine.

I can confirm the workaround. After importing the key from Facebook everything works as expected!
Thank you very much!

Apr 20 2018, 1:24 PM · gpgme, gpgol, Bug Report, gpg4win
aheinecke raised the priority of T3919: GPGOL: Could not decrypt the data: Invalid crypto engine from High to Unbreak Now!.

Thank you very much. It helped. I can reproduce the problem now.

Apr 20 2018, 1:05 PM · gpgme, gpgol, Bug Report, gpg4win
jkropf added a comment to T3919: GPGOL: Could not decrypt the data: Invalid crypto engine.

Same here with Mails from Facebook, here's the log

Apr 20 2018, 12:19 PM · gpgme, gpgol, Bug Report, gpg4win
aheinecke claimed T3919: GPGOL: Could not decrypt the data: Invalid crypto engine.

"Invalid crypto engine" Means that there is some internal error in the signature verification / decryption.

Apr 20 2018, 11:32 AM · gpgme, gpgol, Bug Report, gpg4win
aheinecke added a comment to T3459: GPGOL Moving mails is not possible if the decrypted / verified content is loaded.

I got an Idea how to improve the situation here. But its very complex and might break Outlook even for unencrypted mails. So it's very invasive.

Apr 20 2018, 11:10 AM · gpg4win, gpgol, Bug Report
werner closed T3920: t-verify test fails as Resolved.

Right now building the release.

Apr 20 2018, 10:35 AM · gpgme (gpgme 1.23.x), Bug Report
gniibe added a comment to T3781: ECC encryption key on-card generation broken.

@nitroalex Perhaps, creating new ticker is better for this topic.
In the current OpenPGP card specification, there is no way for an application (except having a list of card implementation information) to know wich algo and which curve is supported or not.
So, what an application does is try and error.
I don't like this situation, but I don't know how we can modify the specification.

Apr 20 2018, 10:10 AM · g10, scd, Bug Report

Apr 19 2018

thwaller added a comment to T3881: Window sizing issue.

Linux, Ubuntu

Apr 19 2018, 9:30 PM · gpa, Bug Report
werner added a comment to T3881: Window sizing issue.

Is that on Windows?

Apr 19 2018, 6:40 PM · gpa, Bug Report
werner moved T3354: gpgme only builds against two versions of python at once from Backlog to Python stuff on the gpgme board.
Apr 19 2018, 6:08 PM · Python, gpgme, Bug Report
werner moved T3920: t-verify test fails from Python stuff to QA for next release on the gpgme board.
Apr 19 2018, 6:07 PM · gpgme (gpgme 1.23.x), Bug Report
werner moved T3920: t-verify test fails from QA for next release to Python stuff on the gpgme board.
Apr 19 2018, 6:07 PM · gpgme (gpgme 1.23.x), Bug Report
werner moved T3920: t-verify test fails from Backlog to QA for next release on the gpgme board.
Apr 19 2018, 5:46 PM · gpgme (gpgme 1.23.x), Bug Report
nitroalex added a comment to T3781: ECC encryption key on-card generation broken.

Well, I surely would agree (and this is only a proposal anyway), but my point here is, that OpenPGP Card does not support Curve 25519, so that one *have to* choose between those other two. Considering me a tinfoil hat person, I would rather not choose NIST, as many others wouldn't too.

Apr 19 2018, 2:27 PM · g10, scd, Bug Report
aheinecke closed T3917: GPGOL: No body in the mail and gpgolXXX.dat file attached when opening with Thunderbird/Enigmail + Exchange and Exquilla as Wontfix.

Ok I tested with Exquilla. I configured an Exchange account once through Thunderbirds built-in account (IMAP) and once with Exquilla

Apr 19 2018, 1:14 PM · gpgol, Bug Report, gpg4win
werner added a comment to T3920: t-verify test fails.

Weel, you GnUPG version is actualluy the lates. Unfortunately I tested with a beta version. Let's wait a day to see whether there is more fallout and if not I will do a 1.11.1

Apr 19 2018, 10:47 AM · gpgme (gpgme 1.23.x), Bug Report
werner triaged T3920: t-verify test fails as High priority.

Look like you are using an older GnuPG version and thus the test fails. I need to tweak the test.

Apr 19 2018, 10:11 AM · gpgme (gpgme 1.23.x), Bug Report
ignatenkobrain created T3920: t-verify test fails.
Apr 19 2018, 9:51 AM · gpgme (gpgme 1.23.x), Bug Report
kode54 created T3919: GPGOL: Could not decrypt the data: Invalid crypto engine.
Apr 19 2018, 8:40 AM · gpgme, gpgol, Bug Report, gpg4win
aheinecke claimed T3917: GPGOL: No body in the mail and gpgolXXX.dat file attached when opening with Thunderbird/Enigmail + Exchange and Exquilla.

Thanks for the report.
I clarified the title a bit to include exchange / exquila.

Apr 19 2018, 7:28 AM · gpgol, Bug Report, gpg4win
aheinecke renamed T3917: GPGOL: No body in the mail and gpgolXXX.dat file attached when opening with Thunderbird/Enigmail + Exchange and Exquilla from GPGOL: No body in the mail and gpgolXXX.dat file attached when opening with Thunderbird/Enigmail to GPGOL: No body in the mail and gpgolXXX.dat file attached when opening with Thunderbird/Enigmail + Exchange and Exquilla.
Apr 19 2018, 7:24 AM · gpgol, Bug Report, gpg4win
aheinecke closed T3427: Enigmail users see only attached gpgolXXX.dat file when signed or encrypted by GpgOL as Resolved.

Let's use the new issue as the problem is described completely there and it makes it more clear.

Apr 19 2018, 7:24 AM · Info Needed, gpgol, gpg4win, Enigmail, Bug Report
Lambd0x added a comment to T3716: gpg: signing failed: Inappropriate ioctl for device for Thunderbird 52.4.0, gnupg-2.1.20, enigmail-1.9.8.3 for PGP encryption/decryption over emails..

No problem :).
Currently I cannot access this newer pinentry release.
My .bashrc is almost default, hence it doesn't have the line you requested.

Apr 19 2018, 1:10 AM · Enigmail, Bug Report

Apr 18 2018

digihash reopened T3427: Enigmail users see only attached gpgolXXX.dat file when signed or encrypted by GpgOL as "Open".

I already created a new issue for this in the new version of gpg4win (v3.1.0) with GpgOL v2.1.0. This is the issue: T3917.

Apr 18 2018, 1:54 PM · Info Needed, gpgol, gpg4win, Enigmail, Bug Report
digihash created T3917: GPGOL: No body in the mail and gpgolXXX.dat file attached when opening with Thunderbird/Enigmail + Exchange and Exquilla.
Apr 18 2018, 1:47 PM · gpgol, Bug Report, gpg4win
werner triaged T3916: Memory leak in read_block as Low priority.
Apr 18 2018, 1:34 PM · gnupg, Bug Report
jpi added a comment to T3806: error accessing ldaps key server (TLS vs. STARTTLS).

Thanks for looking into this issue :-)

Apr 18 2018, 9:43 AM · Too Old, LDAP, dirmngr, Bug Report
catenacyber created T3916: Memory leak in read_block.
Apr 18 2018, 9:36 AM · gnupg, Bug Report

Apr 17 2018

werner triaged T3786: Unexpectedly slow decryption for AEAD (and CFB) as High priority.
Apr 17 2018, 8:40 PM · gnupg (gpg23), Bug Report
werner triaged T3806: error accessing ldaps key server (TLS vs. STARTTLS) as Normal priority.
Apr 17 2018, 8:39 PM · Too Old, LDAP, dirmngr, Bug Report
werner renamed T3806: error accessing ldaps key server (TLS vs. STARTTLS) from error accessing ldaps key server to error accessing ldaps key server (TLS vs. STARTTLS).
Apr 17 2018, 8:38 PM · Too Old, LDAP, dirmngr, Bug Report
werner triaged T3815: tests fail in 2021 as Normal priority.
Apr 17 2018, 8:30 PM · qt, Python, gpgme, Bug Report
werner assigned T3815: tests fail in 2021 to BenM.

Ben: We need to use a faked system time thing to make those tests more stable.

Apr 17 2018, 8:29 PM · qt, Python, gpgme, Bug Report
werner closed T3774: Failure to decrypt AEAD-encrypted files in some rare cases as Resolved.
Apr 17 2018, 8:24 PM · gnupg, Bug Report
werner closed T3764: AES-GCM bug for len(IV) != 96 as Resolved.

I backported the fix for 1.8.3.

Apr 17 2018, 8:23 PM · libgcrypt, Bug Report
werner closed T3408: keccak_permute_32.h : error: 'asm' operand requires impossible reload as Resolved.

Cherry-picked this for 1.8.3.

Apr 17 2018, 8:14 PM · libgcrypt, Bug Report
werner triaged T3469: gpg: decryption failed: No secret key <= after debian upgrade from Jessie to Stretch as Normal priority.
Apr 17 2018, 8:08 PM · Support, Documentation
werner triaged T3491: FIPS-enabled libgcrypt traps gnome-keyring daemon in an infinite loop as Low priority.

FIPS rules changed anyway and thus more rework will be needed anyway. I keep this open at low priorirty.

Apr 17 2018, 8:06 PM · libgcrypt
werner closed T3499: make check fails if --with-agent-pgm is used as Invalid.

This is a build system setup problem with standard solutions.

Apr 17 2018, 8:04 PM · Bug Report
werner closed T3546: ERR 219 on --refresh-keys / --send-keys /... as Invalid.

@Beiri22: It was my fault to to tell you to use scdaemon.conf. The correct conf file is of course dirmngr.conf. However, with @BenM comments I don't think that it is a bug at all. I am thus closing this; please feel free to re-open if we were wrong

Apr 17 2018, 8:00 PM · dns, Bug Report
werner triaged T3716: gpg: signing failed: Inappropriate ioctl for device for Thunderbird 52.4.0, gnupg-2.1.20, enigmail-1.9.8.3 for PGP encryption/decryption over emails. as Normal priority.

Do you have a chance to try with a more recent pinentry; ie. 1.10 ? This may give better diagnostics.
Another thing I would suggest is to debug the invocation of pinentry: Put

Apr 17 2018, 7:51 PM · Enigmail, Bug Report
catenacyber added a comment to T3913: left shift of negative value in iobuf.c.

Ok, thanks for the reply

Apr 17 2018, 5:48 PM · Bug Report
loader added a comment to T3915: Allow building with Clang on MIPS64.

Thank you :)

Apr 17 2018, 5:27 PM · libgcrypt, Bug Report
werner added a comment to T3915: Allow building with Clang on MIPS64.

Thanks. I only now noticed that this is the same as we already use for 32 bit MIPS. I have no more questions. Will push to master and the 1.8 branch.

Apr 17 2018, 5:24 PM · libgcrypt, Bug Report
werner closed T3913: left shift of negative value in iobuf.c as Invalid.

That is all intended. You can always create broken messages which don't result in _one_ clear error code.

Apr 17 2018, 5:15 PM · Bug Report
loader added a comment to T3915: Allow building with Clang on MIPS64.

Clang doesn't support the "h" inline asm constraint and the C version of umul_ppmm() works on MIPS64.

Apr 17 2018, 5:11 PM · libgcrypt, Bug Report
werner triaged T3915: Allow building with Clang on MIPS64 as Normal priority.
Apr 17 2018, 3:55 PM · libgcrypt, Bug Report
werner added a comment to T3915: Allow building with Clang on MIPS64.

Your patch indicates that all clang versions for MIPS64 support this feature. Is my reading correct?

Apr 17 2018, 3:55 PM · libgcrypt, Bug Report
loader created T3915: Allow building with Clang on MIPS64.
Apr 17 2018, 2:53 PM · libgcrypt, Bug Report
werner placed T3354: gpgme only builds against two versions of python at once up for grabs.
Apr 17 2018, 12:48 PM · Python, gpgme, Bug Report
catenacyber added a comment to T3913: left shift of negative value in iobuf.c.

With this example, the problem happens at
a->size |= iobuf_get (chain) << 8;
iobuf_get (chain)returns -1 and -1 << 8 is not well defined.

Apr 17 2018, 11:37 AM · Bug Report
werner added a comment to T3913: left shift of negative value in iobuf.c.

Sorry, I can replicate this with current 2.2 nor with master (on amd64 Linux):

Apr 17 2018, 11:27 AM · Bug Report
catenacyber created T3913: left shift of negative value in iobuf.c.
Apr 17 2018, 11:00 AM · Bug Report
werner triaged T3471: gpgme decryptverify indicating wrongly an error. as Normal priority.
Apr 17 2018, 10:43 AM · Not A Bug, gnupg, Bug Report
werner triaged T3813: GPGME error: "invalid crypto engine" in the MSYS2 version as Low priority.

We never tried to build gpgme with MSYS2 and I would also say this is not supported. A wild guess is that this mixes platform specific code.

Apr 17 2018, 10:37 AM · Python, gpgme, Bug Report
werner renamed T3813: GPGME error: "invalid crypto engine" in the MSYS2 version from GPGME error: invalid crypto engine to GPGME error: "invalid crypto engine" in the MSYS2 version.
Apr 17 2018, 10:34 AM · Python, gpgme, Bug Report
werner closed T3892: python: Fix crash by leaving struct members intact as Resolved.

To attach a file use the cloud-with-arrow icon in the edit toolbox.

Apr 17 2018, 10:31 AM · gpgme, Bug Report

Apr 16 2018

dkg created T3912: generate_keypair() in g10/keygen.c seems unclear.
Apr 16 2018, 9:52 PM · Documentation, gnupg (gpg22)
aheinecke added a comment to T3907: Internal error when encrypting to cacert certificate.

I wonder if CACert intentionally sabotages X509 / CMS.

Apr 16 2018, 1:39 PM · Bug Report, S/MIME, gpg4win
aheinecke added a parent task for T3888: Kleopatra: S/MIME trees in keylist are minimized on refresh: T3899: Gpg4win 3.1.1.
Apr 16 2018, 11:18 AM · Bug Report, gpg4win, kleopatra
aheinecke created T3907: Internal error when encrypting to cacert certificate.
Apr 16 2018, 11:16 AM · Bug Report, S/MIME, gpg4win
aheinecke added a parent task for T3889: GpgOL: Window management does not work well in OL 2010: T3899: Gpg4win 3.1.1.
Apr 16 2018, 11:09 AM · Bug Report, gpg4win, gpgol
aheinecke added a parent task for T3887: Kleopatra: Not finishing commands: T3899: Gpg4win 3.1.1.
Apr 16 2018, 11:09 AM · Bug Report, gpg4win, kleopatra
gniibe claimed T3731: gcry_pk_genkey() segfaults for ecdsa 384.
Apr 16 2018, 10:24 AM · libgcrypt, Bug Report
tinkerwolf added a comment to T3381: dirmngr won't start on Windows 10 with admin level account.

Did that help any?

Apr 16 2018, 2:47 AM · libassuan, Restricted Project, gpg4win, dirmngr, Windows, Bug Report

Apr 15 2018

PaSch closed T3905: The COM add-ins "C:\Program Files (x86)\Gpg4win\bin_64\gpgol.dll" is not loaded after Outlook 2016 x64 is restarted. as Resolved.

You can close the report.
I'm working with a restricted user and I installed gpg4win-3.1.0 with admin rights, probably didn't work so well.

Apr 15 2018, 11:00 PM · gpgol, Bug Report
PaSch created T3905: The COM add-ins "C:\Program Files (x86)\Gpg4win\bin_64\gpgol.dll" is not loaded after Outlook 2016 x64 is restarted..
Apr 15 2018, 8:25 PM · gpgol, Bug Report

Apr 14 2018

dkg added a comment to T3894: re-evaluate default randomness choices during key generation on GNU/Linux platforms.

See also Filippo Valsorda's 32c3 talk about CSPRNGs.

Apr 14 2018, 6:45 PM · libgcrypt, gnupg
dkg added a comment to T3894: re-evaluate default randomness choices during key generation on GNU/Linux platforms.

@gouttegd : setting only-urandom at the distro level problematic due to two factors:

Apr 14 2018, 6:42 PM · libgcrypt, gnupg
catenacyber added a comment to T3900: Memory leak in check_sig_and_print.

You are welcome :-) I did not know about that 39-Arigato

Apr 14 2018, 11:49 AM · gnupg (gpg22), Bug Report

Apr 13 2018

gouttegd added a comment to T3894: re-evaluate default randomness choices during key generation on GNU/Linux platforms.

@dkg : Can’t this be solved at the distribution level? I assume the packager/maintainer for Libgcrypt on a given distribution should know whether the getrandom syscall is available on said distribution, so he could install a /etc/gcrypt/random.conf file with the only-urandom option.

Apr 13 2018, 11:38 PM · libgcrypt, gnupg
dkg added a comment to T3894: re-evaluate default randomness choices during key generation on GNU/Linux platforms.

Werner wrote:

we already use the getrandom system call if it is available

Apr 13 2018, 9:05 PM · libgcrypt, gnupg
werner added a comment to T3781: ECC encryption key on-card generation broken.

Neither Brainpool nor NIST curves make any sense unless there is an organizational policy requirement. Thus the --expert requirement is the Right Thing (tm).

Apr 13 2018, 12:53 PM · g10, scd, Bug Report