Page MenuHome GnuPG
Feed Advanced Search

Feb 14 2021

werner closed T5302: autogen.sh --build-w32 fails with "configure: convert is missing" as Wontfix.

There is a message telling you what is missing. Thus I can not consider this a bug. There are just too many dependencies which are required for cross-compiling that the README can only tell about those which we don't expect to be installed on a developer's box.

Feb 14 2021, 4:12 PM · toolchain, gpg4win

Feb 13 2021

werner added a comment to T5296: libgpg-error: build failure without threads.

They are mandatory for gnupg but not for Libgcrypt and Libgpg-error. I guess we can fix that.

Feb 13 2021, 6:03 PM · gpgrt, Bug Report
werner closed T5295: Cleo question as Invalid.

This does not look like a bug report. Please ask on a mailing list for help.

Feb 13 2021, 6:01 PM · Support, gpg4win
werner triaged T5297: SCM SPR332 smartcard reader support broken as Normal priority.
Feb 13 2021, 5:59 PM · gnupg (gpg22), scd, Bug Report
werner triaged T5299: use FULL_PATH_NAMES=NO for gpgme doxygen as Normal priority.
Feb 13 2021, 5:58 PM · gpgme
werner closed T5298: drop support for python2 for the python bindings for gpgme as Wontfix.

There is still useful software working only with 2.7. So it is not the time to drop this.

Feb 13 2021, 5:57 PM · gpgme, Python
werner closed T5300: are there supposed to be control characters in source files? as Resolved.

A page feed character is a very common and useful control character. In fact Emacs knows how to jump page by page.

Feb 13 2021, 5:51 PM · Bug Report

Feb 12 2021

werner changed the status of T5277: libgcrypt 1.9.1 fails to build with --disable-asm from Open to Testing.

A beta release is available as https://gnupg.org/ftp/gcrypt/alpha/libgcrypt/libgcrypt-1.9.2-beta16.tar.bz2 (https://gnupg.org/ftp/gcrypt/alpha/libgcrypt/libgcrypt-1.9.2-beta16.tar.bz2.sig).

Feb 12 2021, 12:37 PM · MacOS, libgcrypt, Bug Report
werner closed T5259: Release Libgcrypt 1.9.1 as Resolved.
Feb 12 2021, 12:34 PM · Release Info, libgcrypt
werner closed T5259: Release Libgcrypt 1.9.1, a subtask of T5157: libgcrypt: ARM64 Builds on macOS fail, as Resolved.
Feb 12 2021, 12:34 PM · toolchain, MacOS, libgcrypt, Bug Report
werner closed T5259: Release Libgcrypt 1.9.1, a subtask of T5257: 32 bit cross build fails on asm code in gcrypt 1.9.0, as Resolved.
Feb 12 2021, 12:34 PM · Bug Report, Cross-Compiler, libgcrypt
werner closed T5259: Release Libgcrypt 1.9.1, a subtask of T5159: make check fails for libgcrypt on Apple Silicon / ARM Mac, as Resolved.
Feb 12 2021, 12:34 PM · Restricted Project, MacOS, libgcrypt, Bug Report
werner closed T5259: Release Libgcrypt 1.9.1, a subtask of T5251: Compile error on ARMv7 for libgcrypt , as Resolved.
Feb 12 2021, 12:34 PM · asm, libgcrypt, Bug Report
werner closed T5259: Release Libgcrypt 1.9.1, a subtask of T5255: libgcrypt: build "error: invalid operand for instruction" when compiling with Clang & LTO, as Resolved.
Feb 12 2021, 12:34 PM · asm, libgcrypt, clang, Bug Report
werner closed T5259: Release Libgcrypt 1.9.1, a subtask of T5254: libgcrypt 1.9.0 fails make check (selftest), as Resolved.
Feb 12 2021, 12:34 PM · patch, libgcrypt, Bug Report
werner closed T5259: Release Libgcrypt 1.9.1, a subtask of T5243: libgcrypt "check if fips_is_operational and error return if not" patch for FIPS 140, as Resolved.
Feb 12 2021, 12:34 PM · libgcrypt
werner closed T5259: Release Libgcrypt 1.9.1, a subtask of T5263: cipher/sha512.c: build failure without arm neon asm, as Resolved.
Feb 12 2021, 12:34 PM · libgcrypt, Bug Report
werner closed T5259: Release Libgcrypt 1.9.1, a subtask of T5268: macOS getentropy, as Resolved.
Feb 12 2021, 12:34 PM · libgcrypt, MacOS
werner closed T5259: Release Libgcrypt 1.9.1, a subtask of T5269: failure of modular inverse, as Resolved.
Feb 12 2021, 12:34 PM · libgcrypt
werner closed T5259: Release Libgcrypt 1.9.1, a subtask of T5267: Ed25519 backward compatible private key support for preceding ZERO(s), as Resolved.
Feb 12 2021, 12:34 PM · libgcrypt
werner closed T5259: Release Libgcrypt 1.9.1, a subtask of T5264: libgcrypt 1.9.0 does not compile on old Mac OS X, versions 10.5.8 (Leopard) and 10.4.11 (Tiger), both on PPC hardware, as Resolved.
Feb 12 2021, 12:34 PM · libgcrypt, Bug Report
werner closed T5259: Release Libgcrypt 1.9.1, a subtask of T5271: libgcrypt 1.9.0 compilation fails on Ubuntu xenial, as Resolved.
Feb 12 2021, 12:34 PM · Ubuntu, Bug Report, libgcrypt
werner closed T5259: Release Libgcrypt 1.9.1, a subtask of T5275: Exploitable overflow in Libgcrypt 1.9.0, as Resolved.
Feb 12 2021, 12:34 PM · CVE, libgcrypt
werner committed rC30d1f9dab234: Update NEWS (authored by werner).
Update NEWS
Feb 12 2021, 12:23 PM
werner committed rC3f42f727a069: Make sure the grcy_get_config string is always null-terminated. (authored by jukivili).
Make sure the grcy_get_config string is always null-terminated.
Feb 12 2021, 12:10 PM
werner committed rC370e44127287: Add handling for -Og with O-flag munging (authored by jukivili).
Add handling for -Og with O-flag munging
Feb 12 2021, 12:10 PM
werner committed rC205d841e3ae1: Fix ubsan warnings for i386 build (authored by jukivili).
Fix ubsan warnings for i386 build
Feb 12 2021, 12:10 PM
werner committed rC1d312bc65846: ecc: Add checking key for ECDSA. (authored by gniibe).
ecc: Add checking key for ECDSA.
Feb 12 2021, 12:10 PM
werner triaged T5296: libgpg-error: build failure without threads as Normal priority.

How does it come that you have a Linux kernel without threads? Or maybe the better question is why does libc not support threads?

Feb 12 2021, 12:01 PM · gpgrt, Bug Report

Feb 11 2021

werner committed rG9235c9b65b04: doc: Add NEWS with news from the 2.2 series. (authored by werner).
doc: Add NEWS with news from the 2.2 series.
Feb 11 2021, 12:53 PM
werner committed rGb770393b76b6: doc: Improve the gpg-card man page. (authored by werner).
doc: Improve the gpg-card man page.
Feb 11 2021, 12:18 PM
werner added a comment to T4417: Work needed for gnupg 2.3.

For 2.3.0 we won't be able to fix all bugs./feature requests. Instead we l will solve that in the 2.3 series.

Feb 11 2021, 11:07 AM · gnupg (gpg23)
werner removed a parent task for T4362: Replace the exec funtions for photoids in gpg by our standard exec functions.: T4417: Work needed for gnupg 2.3.
Feb 11 2021, 11:05 AM · gnupg, Feature Request
werner removed subtasks for T4417: Work needed for gnupg 2.3: T4344: Periodic check of own keys with the WKD, T4362: Replace the exec funtions for photoids in gpg by our standard exec functions., T4406: Allow the use of the default-new-key-algo format for --quick-gen-key..
Feb 11 2021, 11:05 AM · gnupg (gpg23)
werner removed a parent task for T4344: Periodic check of own keys with the WKD: T4417: Work needed for gnupg 2.3.
Feb 11 2021, 11:05 AM · wkd, gnupg, Feature Request
werner removed a parent task for T4406: Allow the use of the default-new-key-algo format for --quick-gen-key.: T4417: Work needed for gnupg 2.3.
Feb 11 2021, 11:05 AM · gnupg24, Feature Request
werner removed a subtask for T4417: Work needed for gnupg 2.3: T3495: The --list-keys should account for groups that are defined.
Feb 11 2021, 11:00 AM · gnupg (gpg23)
werner removed a parent task for T3495: The --list-keys should account for groups that are defined: T4417: Work needed for gnupg 2.3.
Feb 11 2021, 11:00 AM · gnupg, Feature Request
werner added a project to T3495: The --list-keys should account for groups that are defined: gnupg.
Feb 11 2021, 11:00 AM · gnupg, Feature Request
werner added a project to T5294: Displaying the date and time at which you've replied to an email when using GPgOL: gpgol.
Feb 11 2021, 10:13 AM · gpgol, Feature Request

Feb 10 2021

werner closed T4713: Bug in get_best_pubkey_byname as Resolved.

Works for me.

Feb 10 2021, 8:03 PM · Restricted Project, gnupg (gpg23)
werner lowered the priority of T4601: gpg --quiet --quick-sign-key is not quiet from Normal to Low.
Feb 10 2021, 3:05 PM · gnupg24, gnupg (gpg23), Bug Report
werner closed T4599: remap `--search` to `--locate-keys` (with warning) as Wontfix.
Feb 10 2021, 3:03 PM · gnupg (gpg23), dirmngr
werner closed T4488: dirmngr: allow changing `use-tor` in a reload as Wontfix.

dirmngr needs to be killed for this. gpgconf --kill dirmngr.

Feb 10 2021, 3:02 PM · gnupg (gpg23), dirmngr
werner added a subtask for T4398: Rework Console and command line handling on Windows: T4365: Encoding problem: gpg truncates multibyte characters in interactive prompts on Windows.
Feb 10 2021, 2:59 PM · Feature Request, gnupg (gpg23)
werner added a parent task for T4365: Encoding problem: gpg truncates multibyte characters in interactive prompts on Windows: T4398: Rework Console and command line handling on Windows.
Feb 10 2021, 2:59 PM · Windows, gnupg (gpg23), Bug Report
werner merged T3466: Add tool to convert a card backup key to a regular secret key into T4359: Convert backup keyfiles to regular key's.
Feb 10 2021, 2:58 PM · gnupg24, gnupg (gpg23), Feature Request
werner merged task T3466: Add tool to convert a card backup key to a regular secret key into T4359: Convert backup keyfiles to regular key's.
Feb 10 2021, 2:58 PM · gnupg (gpg23), Feature Request
werner closed T4154: allow setting passphrase from an environment variable as Wontfix.
Feb 10 2021, 2:55 PM · Feature Request, gnupg (gpg23)
werner closed T3573: Research performance problems with some large keyring. as Resolved.

Meanwhile we introduced the keyboxd which should solve such problems. It will be marked experimental in 2.3 but I expect that it will soon be used as the default way to store keys - at least under Windows.

Feb 10 2021, 2:52 PM · gnupg (gpg23)
werner closed T3415: GnuPG should refuse to encrypt using 64-bit block ciphers by default as Resolved.
Feb 10 2021, 2:49 PM · gnupg (gpg23), Bug Report
werner committed rG825dd7220ff6: gpg: Do not allow old cipher algorithms for encryption. (authored by werner).
gpg: Do not allow old cipher algorithms for encryption.
Feb 10 2021, 2:49 PM
werner lowered the priority of T3389: canonical OpenPGP certificate export from Normal to Wishlist.
Feb 10 2021, 11:53 AM · gnupg, Feature Request
werner edited projects for T3287: Improve http proxy support by honoring SRV RRs., added: gnupg; removed gnupg (gpg23).
Feb 10 2021, 11:51 AM · gnupg, dirmngr
werner closed T3284: ssh-add -D does not return an error as it should. as Wontfix.

Won't be done because the expectations of users are different on whether they use ssh-agent or gpg-agent. And it breaks scripts

Feb 10 2021, 11:42 AM · gnupg (gpg23), Documentation
werner closed T3108: gpgconf lists the wrong extra socket path when a path is explicitly configured in gpg-agent.conf as Wontfix.
Feb 10 2021, 11:39 AM · gnupg (gpg23), gpgagent
werner closed T3237: gnupg complies to CO_DE_VS when generating keys non-interactively only by accident as Invalid.

I would not all this an accident.

Feb 10 2021, 11:37 AM · gnupg (gpg23)
werner closed T3101: GnuPG 2.2 cannot import secret keys from 1.4/2.0's secring.gpg directly (if it is expired by original expiration date) as Resolved.
Feb 10 2021, 11:35 AM · workaround, gnupg, Bug Report
werner set the color for workaround to Grey.
Feb 10 2021, 11:35 AM
werner lowered the priority of T4338: gpg-agent fails to start on Windows if GNUPGHOME is longer than 80 characters from Normal to Low.
Feb 10 2021, 11:32 AM · Windows, gpgagent, Bug Report
werner closed T2964: dirmngr and gpg-agent should work automatically even when GNUPGHOME is larger than sun_path as Resolved.

The now used /var/run thingy solves all these problems nicely. In fact we may eventually remove the use fallback of using sockets in the GNUPGHOMEDIR.

Feb 10 2021, 11:29 AM · Stalled, scd, gpgagent, Bug Report, gnupg, dirmngr
werner renamed T2958: Extend --unwrap to also remove a compression layer. from extract signature from encrypted+signed message to Extend --unwrap to also remove a compression layer..
Feb 10 2021, 11:24 AM · gnupg24, Feature Request, gnupg (gpg23)
werner added a comment to T2958: Extend --unwrap to also remove a compression layer..

We have the --unwrap option which already does this. The problem here is that an addition compression layer is not removed. Therefore I will rename this report to add a feature strip things down to a signature or literal data packet..

Feb 10 2021, 11:23 AM · gnupg24, Feature Request, gnupg (gpg23)
werner closed T2925: Permissions of pubkey.kbx not retained through changes as Wontfix.

Eventually we will move to keyboxd which is already an experimental option in 2.3. Thus we won't do anything here.

Feb 10 2021, 11:13 AM · gnupg (gpg23), Bug Report
werner closed T2912: command line keytocard as Wontfix.

The gpg-card is more flexible than the old gpg stuff. If there is something missing we will add it over time but it does not make sense to keep this request open.

Feb 10 2021, 11:12 AM · gnupg (gpg23), Feature Request
werner lowered the priority of T2862: support session key extraction and overriding for gpgsm from Normal to Wishlist.
Feb 10 2021, 11:10 AM · gnupg24, Feature Request, gnupg (gpg23)
werner closed T2850: auto-key-locate is annoying as Resolved.

Due to better working timeouts we have mostly soolved these problems,. Further keyservers are not anymore of great use these days.

Feb 10 2021, 11:09 AM · gnupg (gpg23), gnupg, Feature Request
werner closed T2836: dirmngr: wakes up periodically as Resolved.

The other patches don't make sense because of future plans for dirmngr.

Feb 10 2021, 11:07 AM · gnupg, gnupg (gpg23), Bug Report, dirmngr
werner lowered the priority of T2760: Populate comment field when exporting authentication key for SSH from Normal to Wishlist.
Feb 10 2021, 11:05 AM · gnupg24, ssh, Feature Request
werner lowered the priority of T2290: Allow gpgv2 to use armored GPG keys as keyring file with trusted keys from Normal to Wishlist.
Feb 10 2021, 11:02 AM · gnupg24, Feature Request
werner lowered the priority of T2186: --encrypt-to ambiguous with a expired and revoked key from Normal to Low.
Feb 10 2021, 11:01 AM · gnupg24, Feature Request
werner closed T1089: Please store requests in a cache to avoid sending out duplicate requests (mailto: interface) as Wontfix.
Feb 10 2021, 10:59 AM · gnupg (gpg23), gnupg, Debian, Feature Request
werner committed rG6e730c18816f: Remove obsolete M4 macros. (authored by werner).
Remove obsolete M4 macros.
Feb 10 2021, 8:57 AM
werner committed rG2b75b2560544: Require GpgRT version 1.41. (authored by werner).
Require GpgRT version 1.41.
Feb 10 2021, 8:57 AM
werner committed rEe95b0c67cd6c: doc: Document another interface change in 1.37 (authored by werner).
doc: Document another interface change in 1.37
Feb 10 2021, 8:27 AM
werner committed rGf9e4dae08d7c: build: Make make distcheck work again. (authored by werner).
build: Make make distcheck work again.
Feb 10 2021, 8:15 AM
werner committed rG209b7113f349: tools: Remove the symcryptrun tool. (authored by werner).
tools: Remove the symcryptrun tool.
Feb 10 2021, 8:15 AM

Feb 9 2021

werner added a comment to T5291: gpg fails to recognize signatures if signer's user ID subpacket is present with the critical bit set .

Critical attributes are well known from CMS and X.509 and some have a history which can only be described as cargo cult. We should not allow them in the OpenPGP ecosystem without giving them a specific semantic aside from "we do something with it".

Feb 9 2021, 6:35 PM · gnupg (gpg22), Bug Report
werner closed T5290: the stable 2.2 branch no longer builds symcryptrun, but it ships the symcryptrun.1 manpage as Resolved.

Done. FWIW. in 2.3 symcryptrun will be removed entirely.

Feb 9 2021, 6:32 PM · Documentation, gnupg (gpg22), Bug Report
werner committed rGdb687d15e653: doc: Remove man page for symcryptrun. (authored by werner).
doc: Remove man page for symcryptrun.
Feb 9 2021, 6:29 PM
werner triaged T5286: Calculate Z hash for sm2 as Low priority.

We need more information on the why and when of this change. We don't want to maintain different versions of the same algorithm. The I-D expired more than 6 years ago and thus it should not be used as a reference.

Feb 9 2021, 7:58 AM · Not A Bug, Info Needed, libgcrypt, Feature Request
werner triaged T5290: the stable 2.2 branch no longer builds symcryptrun, but it ships the symcryptrun.1 manpage as Normal priority.
Feb 9 2021, 7:56 AM · Documentation, gnupg (gpg22), Bug Report
werner closed T5291: gpg fails to recognize signatures if signer's user ID subpacket is present with the critical bit set as Wontfix.

Without any defined semantic it is not proper to ignore a critical bit. The software which created this keyblock seems to aim for incompatibility.

Feb 9 2021, 7:55 AM · gnupg (gpg22), Bug Report
werner added a comment to T5289: gen-lock-obj.sh uses echo -n from /bin/sh, which echos "-n".

iirc the advise from the GNU coding standards is to use printf(1) instead of trying to figure out how echo(1) works.

Feb 9 2021, 7:53 AM · MacOS, gpgrt, Bug Report

Feb 8 2021

werner placed T4713: Bug in get_best_pubkey_byname up for grabs.

Thanks for the fix.

Feb 8 2021, 8:56 PM · Restricted Project, gnupg (gpg23)
werner committed rCb142da4c88de: New test driver to allow for standalone regression tests. (authored by werner).
New test driver to allow for standalone regression tests.
Feb 8 2021, 6:48 PM
werner committed rCebc4d5670a1a: New test Makefile target xtestsuite (authored by werner).
New test Makefile target xtestsuite
Feb 8 2021, 6:48 PM
werner committed rC82395f11b444: tests: Fix minor glitches. (authored by werner).
tests: Fix minor glitches.
Feb 8 2021, 6:48 PM

Feb 5 2021

werner triaged T5287: mkportable doesn't work (due to missing files in share/locale/eu/ ?) as Low priority.

Actually I would be in favor of removing this portable thingy. It is and will always be the worst and most insecure way of using crypto.

Feb 5 2021, 2:16 PM · Bug Report, gpg4win

Feb 4 2021

werner added a comment to rC8716e4b2ada2: global: make sure that bulk config string is null-terminated.

Oh well, a bit surprising but I agree that it works :-)

Feb 4 2021, 7:16 PM
werner committed rD064d5b02fa09: web: Set end-of-life for Libgcrypt 1.8 (authored by werner).
web: Set end-of-life for Libgcrypt 1.8
Feb 4 2021, 2:27 PM
werner added a comment to rC8716e4b2ada2: global: make sure that bulk config string is null-terminated.

Actually I can't see why this is only a problem in the NULL case. if you select a specific config item the string might also not be 0 terminated - it depends a bit on the size of the used buffers. In 1.8 I applied this with the the if (!what) condidion.

Feb 4 2021, 1:06 PM

Feb 3 2021

werner reopened T4713: Bug in get_best_pubkey_byname as "Open".

The problem persists when using keyboxd which returns keys in a different order.

Feb 3 2021, 3:29 PM · Restricted Project, gnupg (gpg23)
werner closed T5285: GnuPG: 8Bit filenames can no longer be provided on the command line as Wontfix.

I mentioned it several times: It is not sufficient to use some wmain as long as we don't rework the entire spawn machinery in gnupg. libassuan and gpgme. Reading Unicode from the command line would be easy the other things are the real work.

Feb 3 2021, 3:26 PM · gnupg
werner added a comment to T5285: GnuPG: 8Bit filenames can no longer be provided on the command line.

And in fact it was never possible to use 8bit filenames on the command line. The result was not stable and led to non-compatible messages due to the use of native character set instead of proper utf-8. It depended on just too much things.
gpgme-tool or gpgme-json might be useful workaround.

Feb 3 2021, 3:24 PM · gnupg
werner added a comment to T5285: GnuPG: 8Bit filenames can no longer be provided on the command line.

You can use --multifile for this. This reads the filenames from a descriptor or a file. One on the reasons to implement Unicode handling at most places was a request to allow using --multifile as a workaound for the command line limitation..

Feb 3 2021, 3:20 PM · gnupg
werner closed T5275: Exploitable overflow in Libgcrypt 1.9.0 as Resolved.
Feb 3 2021, 8:07 AM · CVE, libgcrypt

Feb 2 2021

werner committed rG7f3ce66ec56a: gpg: Remove support for PKA. (authored by werner).
gpg: Remove support for PKA.
Feb 2 2021, 8:03 PM
werner closed T5105: can't find users with Kleopatra when press "Look up on server" as Resolved.

Please do not repeat you question, this won't give you anymore attention. Read my comment above and please ask on a mailing list etc.

Feb 2 2021, 4:00 PM · Support, kleopatra, Keyserver
werner committed rGfde7d833573d: gpg: Remove more or less useless tool gpgcompose. (authored by werner).
gpg: Remove more or less useless tool gpgcompose.
Feb 2 2021, 1:16 PM