Page MenuHome GnuPG
Feed All Stories

Aug 9 2019

gniibe committed rCdb4e9976cc31: dsa,ecdsa: Fix use of nonce, use larger one. (authored by gniibe).
dsa,ecdsa: Fix use of nonce, use larger one.
Aug 9 2019, 2:21 AM

Aug 8 2019

werner closed T4674: Invalid message format in gpg-connect-agent --hex as Wontfix.

/hex is just a diagnostic helper and not expected to be used to retrieve data.

Aug 8 2019, 11:19 PM · Bug Report
nephirus created T4674: Invalid message format in gpg-connect-agent --hex.
Aug 8 2019, 4:33 PM · Bug Report
aheinecke committed rG0b7088dc8035: speedo, w32: Add w32-wixlib target for MSI package (authored by aheinecke).
speedo, w32: Add w32-wixlib target for MSI package
Aug 8 2019, 1:12 PM
aheinecke committed rG496469186179: build: Sign all Windows binaries. (authored by werner).
build: Sign all Windows binaries.
Aug 8 2019, 1:12 PM
gniibe committed rC7c2943309d14: dsa,ecdsa: Fix use of nonce, use larger one. (authored by gniibe).
dsa,ecdsa: Fix use of nonce, use larger one.
Aug 8 2019, 10:53 AM

Aug 7 2019

gniibe committed rCd5407b78cca9: ecc: Add mitigation against timing attack. (authored by gniibe).
ecc: Add mitigation against timing attack.
Aug 7 2019, 7:38 AM
gniibe committed rCb9577f7c89b4: ecc: Add mitigation against timing attack. (authored by gniibe).
ecc: Add mitigation against timing attack.
Aug 7 2019, 7:38 AM
gniibe committed rC5ad654a33085: dsa,ecdsa: Allocate secure memory for RFC6979 generation. (authored by gniibe).
dsa,ecdsa: Allocate secure memory for RFC6979 generation.
Aug 7 2019, 7:38 AM
gniibe committed rC75c2fbc43d2f: dsa,ecdsa: Allocate secure memory for RFC6979 generation. (authored by gniibe).
dsa,ecdsa: Allocate secure memory for RFC6979 generation.
Aug 7 2019, 7:38 AM
gniibe committed rG100642e77696: scd: Remove fallback mechanism to PC/SC. (authored by gniibe).
scd: Remove fallback mechanism to PC/SC.
Aug 7 2019, 1:52 AM
gniibe created T4673: 2.3-only: Don't fallback to PC/SC on failure by the internal CCID driver, only use PC/SC when --disable-ccid is specified.
Aug 7 2019, 1:49 AM · gnupg (gpg23), Restricted Project, scd, Feature Request

Aug 6 2019

gniibe closed T4631: Difficulties to generate key on OpenPGP Smart Card V3.3 as Resolved.
Aug 6 2019, 10:45 PM · scd, Bug Report
gniibe committed rGbb82ad018a7b: agent: Fix an error path of agent_get_confirmation. (authored by gniibe).
agent: Fix an error path of agent_get_confirmation.
Aug 6 2019, 10:41 PM
Schiller_36912 created T4672: E-mail encryption in Microsoft Outlook Office 365 does not work properly.
Aug 6 2019, 7:09 PM · Bug Report, gpg4win
werner committed rG5ea6250cc576: kbx: Add framework for the SEARCH command (authored by werner).
kbx: Add framework for the SEARCH command
Aug 6 2019, 4:08 PM
werner committed rG1f980d23af8b: kbx: Allow writing using a estream. (authored by werner).
kbx: Allow writing using a estream.
Aug 6 2019, 3:31 PM
werner committed rGa5118b19c182: Merge branch 'master' into switch-to-gpgk (authored by werner).
Merge branch 'master' into switch-to-gpgk
Aug 6 2019, 3:31 PM
werner committed rGe22ebf357050: common: Remove code duplication for service starting. (authored by werner).
common: Remove code duplication for service starting.
Aug 6 2019, 3:31 PM
werner committed rG0611f548bcd3: tools: New option --keyboxd for gpg-connect-agent. (authored by werner).
tools: New option --keyboxd for gpg-connect-agent.
Aug 6 2019, 3:31 PM
werner committed rGa52d883fdbe6: Merge branch 'master' into switch-to-gpgk (authored by werner).
Merge branch 'master' into switch-to-gpgk
Aug 6 2019, 3:31 PM
werner committed rGd8a84594abe4: common: Change yet unused status_printf function. (authored by werner).
common: Change yet unused status_printf function.
Aug 6 2019, 3:31 PM
wiktor-k added a comment to T4618: DANE OpenPGP certificate retrieval does not verify DNSSEC signatures.

DNSSEC is a centralized CA system. Just different than the TLS one. Given that Certificate Transparency exists I'd say DNSSEC is less transparent than TLS. For example if you happen to have a .ly domain then the Libyan can silently control your signed zone. Given that there is no CT for DNSSEC they can do so selectively, for any connection they want. It wouldn't be the first problem with them.

Aug 6 2019, 1:56 PM · dns, dirmngr
mejo added a comment to T4618: DANE OpenPGP certificate retrieval does not verify DNSSEC signatures.

I'm left wondering: are there cases where OPENPGPKEY would be preferred over WKD?

Aug 6 2019, 1:43 PM · dns, dirmngr
gniibe abandoned D470: Use intptr_t for file/pid handle on Windows.
Aug 6 2019, 1:11 PM
aheinecke closed T4671: https://files.gpg4win.org/README-3.1.10.en.txt has German section `New` as Resolved.

Fixed now, both in the repo and on the file server. Thanks for noticing.

Aug 6 2019, 11:16 AM · gpg4win
aheinecke committed rW711f7272aa12: Fix english readme (authored by aheinecke).
Fix english readme
Aug 6 2019, 11:15 AM
aheinecke added a comment to T4671: https://files.gpg4win.org/README-3.1.10.en.txt has German section `New`.

I really need to automate things more for a release there is just too much copy and pasting involved where mistakes can happen.

Aug 6 2019, 11:12 AM · gpg4win
bernhard committed rW430623ba537d: Fix 3.1.10 announcement switch to EN (authored by bernhard).
Fix 3.1.10 announcement switch to EN
Aug 6 2019, 11:09 AM
bernhard added a project to T4671: https://files.gpg4win.org/README-3.1.10.en.txt has German section `New`: gpg4win.
Aug 6 2019, 10:27 AM · gpg4win
bernhard created T4671: https://files.gpg4win.org/README-3.1.10.en.txt has German section `New`.
Aug 6 2019, 10:26 AM · gpg4win
gniibe committed rMb97434fbf087: json: Fix t-decrypt-verify.out for GnuPG >= 2.3. (authored by gniibe).
json: Fix t-decrypt-verify.out for GnuPG >= 2.3.
Aug 6 2019, 6:46 AM
gniibe committed rGf588dd8d1766: common: Fix line break handling, finding a space. (authored by gniibe).
common: Fix line break handling, finding a space.
Aug 6 2019, 6:16 AM
gniibe committed rGd8a49bbcd1b1: gpg: Don't report NO_SECKEY for valid key. (authored by gniibe).
gpg: Don't report NO_SECKEY for valid key.
Aug 6 2019, 4:17 AM

Aug 5 2019

werner triaged T4666: gpg --delete-secret-keys: excessive and unclear prompting, surprising outcomes as Low priority.
Aug 5 2019, 7:53 PM · gnupg24, gnupg (gpg23), Bug Report
werner triaged T4665: gpg --delete-key of subkey leaves dangling subkey binding signature as Normal priority.
Aug 5 2019, 7:51 PM · gnupg (gpg22), Bug Report
werner triaged T4667: "gpg: deleting secret key failed: No pinentry" when in --batch mode with --pinentry=loopback as Normal priority.
Aug 5 2019, 7:51 PM · gnupg24, gnupg (gpg23), Bug Report
werner triaged T4669: Key expiration time sometimes improperly interpreted as a signed 32-bit value as Normal priority.
Aug 5 2019, 7:50 PM · Not A Bug, OpenPGP, gnupg
skeeto added a comment to T4669: Key expiration time sometimes improperly interpreted as a signed 32-bit value.

Re-examining this now, I'm noticing the problem is not at all that it's being treated as signed, but that GnuPG is internally using a 32-bit unsigned integer for the time even though the key expiration scheme allows for expiration dates beyond 2106. Seeing dates in the past threw me off, and when I had originally tried using a zero creation time to test a broader range I ran into T4670.

Aug 5 2019, 12:54 PM · Not A Bug, OpenPGP, gnupg
skeeto added a comment to T4669: Key expiration time sometimes improperly interpreted as a signed 32-bit value.

I'm using Debian 10 "Buster" on x86-64, but for this ticket I used my own build of GnuPG so that I could demonstrate with the latest version. The system's GnuPG 2.2.12 has the same behaviors I showed here.

Aug 5 2019, 12:43 PM · Not A Bug, OpenPGP, gnupg
werner triaged T4668: `gpgconf --launch gpg-agent` tells me to run `gpgconf --check-options gpg-agent`, but the latter command gives me no information as Low priority.
Aug 5 2019, 10:04 AM · gnupg (gpg22), Bug Report
werner added a comment to T4669: Key expiration time sometimes improperly interpreted as a signed 32-bit value.

What OS are you using?

Aug 5 2019, 10:02 AM · Not A Bug, OpenPGP, gnupg
werner triaged T4670: Key expiration time ignored for zero creation date keys as Normal priority.
Aug 5 2019, 10:00 AM · patch, gnupg (gpg22), Bug Report
werner committed rEc6d9598a8572: New error codes NO_KEYBOXD, KEYBOXD, NO_SERVICE, and SERVICE. (authored by werner).
New error codes NO_KEYBOXD, KEYBOXD, NO_SERVICE, and SERVICE.
Aug 5 2019, 9:09 AM
l10n daemon script <scripty@kde.org> committed rLIBKLEOc4c2d1c46f98: SVN_SILENT made messages (.desktop file) - always resolve ours (authored by l10n daemon script <scripty@kde.org>).
SVN_SILENT made messages (.desktop file) - always resolve ours
Aug 5 2019, 8:21 AM
l10n daemon script <scripty@kde.org> committed rKLEOPATRAd2d11376a853: GIT_SILENT made messages (after extraction) (authored by l10n daemon script <scripty@kde.org>).
GIT_SILENT made messages (after extraction)
Aug 5 2019, 7:16 AM
l10n daemon script <scripty@kde.org> committed rLIBKLEO82e8100a3ce7: SVN_SILENT made messages (.desktop file) - always resolve ours (authored by l10n daemon script <scripty@kde.org>).
SVN_SILENT made messages (.desktop file) - always resolve ours
Aug 5 2019, 4:53 AM
gniibe committed rGef2424144a07: sm: Support AES-256 key. (authored by gniibe).
sm: Support AES-256 key.
Aug 5 2019, 3:34 AM
l10n daemon script <scripty@kde.org> committed rKLEOPATRA60a00a70b91e: GIT_SILENT made messages (after extraction) (authored by l10n daemon script <scripty@kde.org>).
GIT_SILENT made messages (after extraction)
Aug 5 2019, 2:58 AM
skeeto created T4670: Key expiration time ignored for zero creation date keys.
Aug 5 2019, 1:18 AM · patch, gnupg (gpg22), Bug Report
skeeto created T4669: Key expiration time sometimes improperly interpreted as a signed 32-bit value.
Aug 5 2019, 12:45 AM · Not A Bug, OpenPGP, gnupg

Aug 4 2019

Laurent Montel <montel@kde.org> committed rLIBKLEO1d7c385904ca: GIT_SILENT: Update dependancy (authored by Laurent Montel <montel@kde.org>).
GIT_SILENT: Update dependancy
Aug 4 2019, 7:44 PM
Laurent Montel <montel@kde.org> committed rKLEOPATRA8fd6591db268: GIT_SILENT: Update dependancy (authored by Laurent Montel <montel@kde.org>).
GIT_SILENT: Update dependancy
Aug 4 2019, 7:43 PM
Laurent Montel <montel@kde.org> committed rKLEOPATRA278f1dbe7f78: GIT_SILENT: Prepare 5.12.0 (authored by Laurent Montel <montel@kde.org>).
GIT_SILENT: Prepare 5.12.0
Aug 4 2019, 7:40 PM
Laurent Montel <montel@kde.org> committed rLIBKLEO059cbd300ad6: GIT_SILENT: Prepare 5.12.0 (authored by Laurent Montel <montel@kde.org>).
GIT_SILENT: Prepare 5.12.0
Aug 4 2019, 7:37 PM

Aug 3 2019

dkg created T4668: `gpgconf --launch gpg-agent` tells me to run `gpgconf --check-options gpg-agent`, but the latter command gives me no information.
Aug 3 2019, 7:30 PM · gnupg (gpg22), Bug Report
dkg created T4667: "gpg: deleting secret key failed: No pinentry" when in --batch mode with --pinentry=loopback.
Aug 3 2019, 7:15 PM · gnupg24, gnupg (gpg23), Bug Report
dkg added a comment to T4666: gpg --delete-secret-keys: excessive and unclear prompting, surprising outcomes.

I also observe that the text in the GUI prompts is remarkably unclear on its own. setting aside the grammar, punctuation, and wording, the prompts don't expose the usage flags set for the secret keys, which is possibly the only detail that a user with a single OpenPGP certificate would care about: "am i deleting my signing-capable subkey or my decryption-capable subkey?"

Aug 3 2019, 7:10 PM · gnupg24, gnupg (gpg23), Bug Report
dkg created T4666: gpg --delete-secret-keys: excessive and unclear prompting, surprising outcomes.
Aug 3 2019, 7:05 PM · gnupg24, gnupg (gpg23), Bug Report
Rycky_Tigg closed T4664: No prompts for password while decrypting as Invalid.

I was able to avoid reported behaviour; then n not a bug.

Aug 3 2019, 6:02 PM · Bug Report
dkg created T4665: gpg --delete-key of subkey leaves dangling subkey binding signature.
Aug 3 2019, 5:12 PM · gnupg (gpg22), Bug Report
Rycky_Tigg created T4664: No prompts for password while decrypting.
Aug 3 2019, 1:52 PM · Bug Report
Laurent Montel <montel@kde.org> committed rLIBKLEOfddf5e8de1ff: GIT_SILENT: Prepare 5.12.0 (authored by Laurent Montel <montel@kde.org>).
GIT_SILENT: Prepare 5.12.0
Aug 3 2019, 11:44 AM

Aug 2 2019

werner triaged T4663: libgcrypt: fix build without threads by adding an option to disable tests as Normal priority.
Aug 2 2019, 11:33 AM · libgcrypt, Bug Report
ffontaine updated the task description for T4663: libgcrypt: fix build without threads by adding an option to disable tests.
Aug 2 2019, 10:02 AM · libgcrypt, Bug Report
ffontaine created T4663: libgcrypt: fix build without threads by adding an option to disable tests.
Aug 2 2019, 10:00 AM · libgcrypt, Bug Report
werner triaged T4661: gpg-agent "getinfo cmd_has_option" is frequently wrong as Low priority.
Aug 2 2019, 9:51 AM · Documentation, gpgagent

Jul 31 2019

werner triaged T4662: --locate-external-keys does not interact well with --no-auto-key-locate as Normal priority.
Jul 31 2019, 9:38 PM · gnupg (gpg22), Bug Report
dkg created T4662: --locate-external-keys does not interact well with --no-auto-key-locate.
Jul 31 2019, 7:31 PM · gnupg (gpg22), Bug Report
Laurent Montel <montel@kde.org> committed rLIBKLEO2575e4028dcf: GIT_SILENT: Prepare 5.12.0 rc (authored by Laurent Montel <montel@kde.org>).
GIT_SILENT: Prepare 5.12.0 rc
Jul 31 2019, 6:08 PM
Laurent Montel <montel@kde.org> committed rKLEOPATRA2a7b974503f8: GIT_SILENT: Prepare 5.12.0 rc (authored by Laurent Montel <montel@kde.org>).
GIT_SILENT: Prepare 5.12.0 rc
Jul 31 2019, 5:55 PM
dkg reopened T4661: gpg-agent "getinfo cmd_has_option" is frequently wrong as "Open".

Please update the documentation for the function in that case.

Jul 31 2019, 4:49 PM · Documentation, gpgagent
dkg added a comment to T4652: avoid unnecessary trailing NUL byte in S-expressions.

Please see my explanation on gnupg-devel about why the trailing NUL is a source of pain and difficulty for would-be adopters.

Jul 31 2019, 4:45 PM · gnupg, Bug Report
werner triaged T4655: Windows 64-bit: gnupg_fd_t, assuan_fd_t and int for fd in the API, and casts as Wishlist priority.
Jul 31 2019, 12:42 PM · Memo
werner added a project to T4656: Windows 64-bit: functions which use pid_t: Memo.
Jul 31 2019, 12:42 PM · Memo
werner set the color for Memo to Orange.
Jul 31 2019, 12:41 PM
werner triaged T4656: Windows 64-bit: functions which use pid_t as Wishlist priority.

Lacking another category for such things, I dropped the priority.

Jul 31 2019, 12:39 PM · Memo
werner triaged T4619: Unable to decrypt symmetric-key encrypted data as Normal priority.
Jul 31 2019, 12:37 PM · gnupg24, gnupg (gpg23), Bug Report
werner triaged T4642: gpa searches for gpg2keys_ldap, should be dirmngr_ldap as Normal priority.

Well, gpa needs to use gpgme's interface for receiving and sending keys. The use of the helper programs an old hack.

Jul 31 2019, 12:36 PM · gpa
werner triaged T4652: avoid unnecessary trailing NUL byte in S-expressions as Low priority.
Jul 31 2019, 12:34 PM · gnupg, Bug Report
werner added a comment to T4620: no support for multiple (yubikey) smartcards plugged in at the same time.

Right, master will be 2.3.

Jul 31 2019, 8:54 AM · Restricted Project, Bug Report
werner triaged T4644: gpg: implement keybox compression run as Normal priority.
Jul 31 2019, 8:53 AM · gnupg (gpg22), Bug Report
werner added a comment to T4655: Windows 64-bit: gnupg_fd_t, assuan_fd_t and int for fd in the API, and casts.

Actually all this code shall be replaced by new code from gpgrt. Most likely using estream_t for all of them.

Jul 31 2019, 8:53 AM · Memo
werner closed T4661: gpg-agent "getinfo cmd_has_option" is frequently wrong as Invalid.

No, it was not in mind. I introduced this only for backward compatibility. It will be extended iff we have a need for it.

Jul 31 2019, 8:51 AM · Documentation, gpgagent
werner added a comment to T4652: avoid unnecessary trailing NUL byte in S-expressions.

Appending a nul byte is fail-safe programming and helps in debugging. It is on purpose and shall not be removed.

Jul 31 2019, 8:49 AM · gnupg, Bug Report

Jul 30 2019

werner added a comment to T4656: Windows 64-bit: functions which use pid_t.

Actually my not-written-down plan is to use a Windows like style for tracking a process. This will also resolve the pid rollover problem. It shall all go into gpgrt of course.

Jul 30 2019, 6:58 PM · Memo
gniibe added a comment to T4661: gpg-agent "getinfo cmd_has_option" is frequently wrong.

My understanding is: it was introduced by rG370f841a0135: Enhanced last patch. in 2009 to give information to client (for a specific command at that time), possibly in a hope that server side would support the feature for all commands (and client could benefits).

Jul 30 2019, 8:59 AM · Documentation, gpgagent

Jul 29 2019

dkg created T4661: gpg-agent "getinfo cmd_has_option" is frequently wrong.
Jul 29 2019, 8:54 PM · Documentation, gpgagent
aheinecke added a comment to T4123: Pinentry-qt does not always become active foreground window (especially when requesting pin for authentication).

I think the problem is the following:

Jul 29 2019, 9:23 AM · pinentry, Bug Report, gpg4win

Jul 28 2019

bb added a comment to T4123: Pinentry-qt does not always become active foreground window (especially when requesting pin for authentication).

False alarm. Turns out pinentry-gtk-2.exe is also not working all the time.

Jul 28 2019, 9:22 PM · pinentry, Bug Report, gpg4win
a_p3rson added a comment to T4123: Pinentry-qt does not always become active foreground window (especially when requesting pin for authentication).

@bb - I've tried this, this doesn't appear to work. It looks like the Gtk2 pinentry doesn't grab focus when doing authentication, either. Interestingly enough, it also doesn't show in the taskbar.

Jul 28 2019, 12:50 AM · pinentry, Bug Report, gpg4win

Jul 27 2019

bb added a comment to T4123: Pinentry-qt does not always become active foreground window (especially when requesting pin for authentication).

Note:
I added:

pinentry-program "C:\Program Files (x86)\Gpg4win\bin\pinentry-gtk-2.exe"

as a workaround to my gpg-agent.conf. This pinentry is able to grab the focus.

Jul 27 2019, 3:58 PM · pinentry, Bug Report, gpg4win
JW-D added a comment to T4631: Difficulties to generate key on OpenPGP Smart Card V3.3.

The card was replaced by the vendor. It seems to be a problem with the specific card. All other cards so far worked well. The issue can be closed.

Jul 27 2019, 2:37 PM · scd, Bug Report
bb added a comment to T4123: Pinentry-qt does not always become active foreground window (especially when requesting pin for authentication).

Does anyone has an update on this issue?

Jul 27 2019, 11:59 AM · pinentry, Bug Report, gpg4win
dkg added a comment to T4658: Fix a dangling pointer in pinentry's qt/main.cpp.

I've just uploaded pinentry 1.1.0-3 to debian unstable with this fix in it.

Jul 27 2019, 6:07 AM · pinentry, Bug Report
dkg added a comment to T4658: Fix a dangling pointer in pinentry's qt/main.cpp.

@aheinecke thanks for the heads-up. i'll pull this in.

Jul 27 2019, 1:16 AM · pinentry, Bug Report

Jul 26 2019

gniibe triaged T4654: Gemalto Ezio Shield (CT710): CCID command failed: Parameter error at offset 7 as Normal priority.
Jul 26 2019, 10:35 PM · scd, Restricted Project, Bug Report
gniibe added a comment to T4654: Gemalto Ezio Shield (CT710): CCID command failed: Parameter error at offset 7.

Thanks. So, this is a positive report for 8E60:34C2. I'm going to add this VID:PID to support pinpad input by the internal CCID driver.

Jul 26 2019, 10:34 PM · scd, Restricted Project, Bug Report
martin.von.wittich added a comment to T4654: Gemalto Ezio Shield (CT710): CCID command failed: Parameter error at offset 7.

Pinpad input is not supported for Gemalto Ezio Shield, currently. OpenPGP card expects variable length pinpad input, and we don't have any positive report with the card reader.

Jul 26 2019, 2:46 PM · scd, Restricted Project, Bug Report
asv added a comment to T4620: no support for multiple (yubikey) smartcards plugged in at the same time.

we won't backport it to 2.2

Jul 26 2019, 10:55 AM · Restricted Project, Bug Report