Page MenuHome GnuPG
Feed Advanced Search

May 11 2022

werner added a comment to T5950: Allow viewing expired certificates more easily.

Please check the 2020 certificate by using the details dialog. Has it a valid encryption subkey?

May 11 2022, 8:59 AM · kleopatra, Feature Request
werner triaged T5816: mailing list address confusion (lists.gnupg.org shown, but does not work) as High priority.
May 11 2022, 8:09 AM · gpgweb, Bug Report
werner added a comment to T5816: mailing list address confusion (lists.gnupg.org shown, but does not work).

it was noted that this also affects other ML hosted there like those of freie-software.org

May 11 2022, 8:09 AM · gpgweb, Bug Report

May 10 2022

werner committed rG5e5df82b5f28: scd:openpgp: New card vendor. (authored by werner).
scd:openpgp: New card vendor.
May 10 2022, 4:21 PM

May 9 2022

werner added a project to T5966: keyboxd issue building gnupg-2.3.6 (almost identical toT5406): gnupg (gpg23).
May 9 2022, 7:18 AM · Restricted Project, gnupg (gpg23), Bug Report

May 6 2022

werner committed rG3d7d7e8bfd12: scd:p15: Improve the displayed S/N for Technology Nexus cards. (authored by werner).
scd:p15: Improve the displayed S/N for Technology Nexus cards.
May 6 2022, 11:46 AM
werner committed rG6f612fd5f6d8: scd:p15: Fix the the sanity check of the displayed S/N. (authored by werner).
scd:p15: Fix the the sanity check of the displayed S/N.
May 6 2022, 11:46 AM
werner committed rG91acbdc93c8a: scd:p15: Improve the displayed S/N for Technology Nexus cards. (authored by werner).
scd:p15: Improve the displayed S/N for Technology Nexus cards.
May 6 2022, 11:38 AM
werner committed rG8efe738c4a09: scd:p15: Fix the the sanity check of the displayed S/N. (authored by werner).
scd:p15: Fix the the sanity check of the displayed S/N.
May 6 2022, 11:38 AM
werner added a comment to T5965: gpgme: Inconsistent secret subkey flag when listing keys with different modes.

No sure, you could also consider the is_cardkey flag to mean that a secret key might be available. FWIW, GPA sets it internal secret key flag based on the type of listing done; thus I see no problem if you want to change the behaviour.

May 6 2022, 8:33 AM · gpgme, Restricted Project

May 5 2022

werner committed rG36a5509e11c8: gpg: Minor robustness fix. (authored by werner).
gpg: Minor robustness fix.
May 5 2022, 2:13 PM
werner committed rGd60f930d9b00: scd: New debug flags "card". (authored by werner).
scd: New debug flags "card".
May 5 2022, 2:13 PM
werner committed rG7f029eef6ce1: scd:p15: Fix reading certificates without length info. (authored by werner).
scd:p15: Fix reading certificates without length info.
May 5 2022, 2:13 PM
werner committed rGbbcca7357b01: scd:p15: Fix reading certificates without length info. (authored by werner).
scd:p15: Fix reading certificates without length info.
May 5 2022, 1:46 PM
werner committed rG7dc569392622: scd: New debug flags "card". (authored by werner).
scd: New debug flags "card".
May 5 2022, 1:46 PM
werner added a comment to T5963: Yubikey: scdaemon causes libc segfault and clashes with ECC keys.

Ours are even newer (5.4.3). Did you the Yubico tools to switch to curve443?
In any case, is it possible that you apply my fix and test again?

May 5 2022, 10:06 AM · backport, yubikey, scd, segv, Bug Report
werner committed rG385f4841330e: scd:openpgp: Fix a segv for cards supporting unknown curves. (authored by werner).
scd:openpgp: Fix a segv for cards supporting unknown curves.
May 5 2022, 9:55 AM
werner added a comment to T5963: Yubikey: scdaemon causes libc segfault and clashes with ECC keys.

Your Yubikey's firmware version is 5.2.7 - let me see what versions we have in stock to test my fix.

May 5 2022, 9:51 AM · backport, yubikey, scd, segv, Bug Report
werner triaged T5952: Can't uninstall gpg4win with Ansible as Normal priority.
May 5 2022, 8:41 AM · Support, gpg4win
werner triaged T5964: gnupg should use the KDFs implemented in libgcrypt as Normal priority.

When we implemented this first, Libgcrypt had no appropriate KDF support. I recall that I considered to change this but it turned out the for 2.2 the changes are too large. For 2.3 we will consider such a change.

May 5 2022, 8:40 AM · gnupg26, FIPS, Feature Request

May 4 2022

werner updated subscribers of T5963: Yubikey: scdaemon causes libc segfault and clashes with ECC keys.

I am not sure about the crash but the unknown curve is
1.3.6.1.4.1.11591.15.1.2 which seems to be a GNU OID for curve448

May 4 2022, 2:38 PM · backport, yubikey, scd, segv, Bug Report
werner added a comment to T5963: Yubikey: scdaemon causes libc segfault and clashes with ECC keys.

What I would do in this case is to stop the gnupg daemon amd anything whiuch might start them and run scdaemon under valgrind.

May 4 2022, 10:13 AM · backport, yubikey, scd, segv, Bug Report

May 3 2022

werner committed rW8d5439e75dca: Update binary version of GnuPG with Authenticode signed builds. (authored by werner).
Update binary version of GnuPG with Authenticode signed builds.
May 3 2022, 12:18 PM
werner committed rWa7e52329f0e5: Fix quoting in AUTHENTICODE_sign make template (authored by werner).
Fix quoting in AUTHENTICODE_sign make template
May 3 2022, 12:18 PM
werner committed rW032b1776dc8a: Fix use of osslsigncode along with stow (authored by werner).
Fix use of osslsigncode along with stow
May 3 2022, 12:18 PM
werner committed rW356765895426: appimage: Micro fix (authored by werner).
appimage: Micro fix
May 3 2022, 12:18 PM
werner added a project to T5919: libgcrypt tests/basic.c and tests/keygen.c occasionally fail with "error generating RSA key: Number is not prime": backport.
May 3 2022, 11:21 AM · backport, FIPS, libgcrypt, Bug Report
werner added a project to T5918: Disable RSA PKCS #1.5 encryption in FIPS mode: backport.
May 3 2022, 11:17 AM · backport, libgcrypt, FIPS, Bug Report

May 2 2022

werner added a project to T5935: scd: SSH emulation of gpg-agent doesn't work well with sntrup761x25519-sha512@openssh.com: workaround.
May 2 2022, 10:19 AM · workaround, gnupg (gpg23), ssh, Bug Report, scd
werner added a comment to rG4fe8859541d0: gpgscm: Fix handling an error for chdir..

FWIW, the original idea with gpgscm was to provide code which does no rely on any gpg stuff so it can be merged back into upstream. I am not sure whether this still makes sense.

May 2 2022, 9:54 AM

Apr 29 2022

werner committed rW499a8e7ad93a: appimage: Minor fix (authored by werner).
appimage: Minor fix
Apr 29 2022, 2:58 PM
werner triaged T5955: pinentry-efl sends warnings to stderr, does not close windows during getpin as Normal priority.
Apr 29 2022, 9:46 AM · efl, pinentry, Bug Report
werner created efl.
Apr 29 2022, 9:45 AM

Apr 28 2022

werner triaged T5575: Supplying more than one passphrase or PIN using passphrase-fd as Low priority.
Apr 28 2022, 9:12 AM · gnupg, yubikey, Feature Request
werner closed T5513: Outlook download external content crash as Resolved.

Please try a decent version of Gpg4win - we have fixed dozens of bugs in the mean time If the problems persists, please re-open this bug.

Apr 28 2022, 9:05 AM · Too Old, gpgol, Bug Report, gpg4win
werner triaged T5798: Empty emails in Outlook - conflict between gpgOl & ESET (antivirus add-in) as Low priority.

Conflicts between Add-Ins are often unavoidable. We have a list of known issues at:
https://wiki.gnupg.org/GpgOL/IncompatibleAddons
If you have more information on that ESET thingy please enter it into the above wiki or leave some description here.

Apr 28 2022, 9:04 AM · Add-In-conflict, gpgol, gpg4win
werner created Add-In-conflict.
Apr 28 2022, 9:00 AM
werner lowered the priority of T5931: OpenSSH 8.9, 9.0, and 9.1 can't authenticate with gpg-agent and usb token (Gnuk >= 1.2.16 is required) from High to Normal.
Apr 28 2022, 8:55 AM · gnupg24, workaround, Documentation, gnupg (gpg23), ssh, gpgagent
werner closed T5801: Kleopatra: Add support for the new dirmngr/ldapserver option to configure X.509 servers as Resolved.
Apr 28 2022, 8:53 AM · Restricted Project, kleopatra
werner closed T5793: gpgsm: Wrong length when parsing octetstring in constructed encoding + definite length as Resolved.
Apr 28 2022, 8:52 AM · Restricted Project, S/MIME, gnupg (gpg22)
werner closed T5856: Forcing aead when creating sign & encrypted files creates inconsistent results as Resolved.
Apr 28 2022, 8:52 AM · gnupg (gpg23), Bug Report
werner closed T5751: Please remove pgp.surf.nl from default dirmngr config as Resolved.
Apr 28 2022, 8:50 AM · dirmngr, Keyserver
werner closed T5940: crash importing truncated subkeys as Resolved.
Apr 28 2022, 8:49 AM · Bug Report, gnupg
werner closed T5941: gnupg 2.3.5 hangs on key import as Resolved.
Apr 28 2022, 8:49 AM · Restricted Project, gnupg (gpg23), Bug Report
werner closed T5821: gpgsm "certificate not found" error handling should use gpg_err_code() instead of -1 as Resolved.
Apr 28 2022, 8:48 AM · Restricted Project, gnupg (gpg23), Bug Report
werner triaged T5942: scdaemon is blocking system shutdown as Low priority.
Apr 28 2022, 8:48 AM · Support, scd, gpgagent
werner edited projects for T5952: Can't uninstall gpg4win with Ansible, added: Support; removed Bug Report.
Apr 28 2022, 8:47 AM · Support, gpg4win
werner closed T5954: Building for windows requires gpgrt (libgpg-error) 1.45, but configure.ac claims 1.27 as Wontfix.

Use our build system and things work. In particular you need to use the software versions as listed at versions.gnupg.org and available via the build-auch/getswdb.sh. Even better use the speedo build system for Windows. Everything else is not a supported build configuration.

Apr 28 2022, 8:45 AM · gnupg (gpg22), Bug Report

Apr 27 2022

werner committed rW2ec8836b7de4: appimage: Update /etc/gnupg-vsd (authored by werner).
appimage: Update /etc/gnupg-vsd
Apr 27 2022, 2:40 PM
werner awarded T5948: Flaky test (<keyboxd>tests/openpgp/use-exact-key.scm) failure with gnupg 2.3.5, 2.3.6 a Cup of Joe token.
Apr 27 2022, 8:34 AM · gnupg (gpg23), Bug Report

Apr 26 2022

werner committed rWa9049746f861: Fix quoting of the osslsigncode options. (authored by werner).
Fix quoting of the osslsigncode options.
Apr 26 2022, 6:00 PM
werner committed rW12a2b4ddd67c: Fix GnuPG 2.2 download directory. (authored by werner).
Fix GnuPG 2.2 download directory.
Apr 26 2022, 4:53 PM
werner committed rW99278e8a105f: Use script to get rid of M4 fun. (authored by werner).
Use script to get rid of M4 fun.
Apr 26 2022, 4:52 PM
werner triaged T5948: Flaky test (<keyboxd>tests/openpgp/use-exact-key.scm) failure with gnupg 2.3.5, 2.3.6 as Normal priority.
Apr 26 2022, 8:38 AM · gnupg (gpg23), Bug Report

Apr 25 2022

werner committed rW4f78bdca8ebc: Update to GnuPG 2.2.35 (authored by werner).
Update to GnuPG 2.2.35
Apr 25 2022, 7:18 PM
werner closed T5928: Release GnuPG 2.2.35 as Resolved.
Apr 25 2022, 7:12 PM · Release Info, gnupg (gpg22)
werner added a project to T5948: Flaky test (<keyboxd>tests/openpgp/use-exact-key.scm) failure with gnupg 2.3.5, 2.3.6: gnupg (gpg23).
Apr 25 2022, 7:10 PM · gnupg (gpg23), Bug Report
werner committed rD3d2543843f4e: swdb: GnuPG 2.2.35 (authored by werner).
swdb: GnuPG 2.2.35
Apr 25 2022, 7:09 PM
werner committed rG740c02f33aa2: Post release updates (authored by werner).
Post release updates
Apr 25 2022, 7:05 PM
werner committed rGfd93b1a48f6c: po: Auto update (authored by werner).
po: Auto update
Apr 25 2022, 7:05 PM
werner committed rG47ee0101ddfd: po: Fix a fuzzy in the German translation (authored by werner).
po: Fix a fuzzy in the German translation
Apr 25 2022, 7:05 PM
werner committed rGf7bc6f50496b: Release 2.2.35 (authored by werner).
Release 2.2.35
Apr 25 2022, 7:05 PM
werner triaged T5949: Release GnuPG 2.2.36 as Low priority.
Apr 25 2022, 6:20 PM · CVE, gnupg (gpg22), Release Info
werner committed rD9c45ec252ad0: swdb: GnuPG 2.3.6 (authored by werner).
swdb: GnuPG 2.3.6
Apr 25 2022, 5:02 PM
werner committed rWef0d98d81372: Update to GnuPG 2.3.6 (authored by werner).
Update to GnuPG 2.3.6
Apr 25 2022, 4:56 PM
werner closed T4729: WKD via http_proxy does not work if DNS is broken/unavailable as Resolved.

Was fixed in 2.3.5

Apr 25 2022, 4:53 PM · gnupg (gpg22), Restricted Project, dns, dirmngr
werner committed rG3a8164e69c3e: Release 2.3.6 (authored by werner).
Release 2.3.6
Apr 25 2022, 4:38 PM
werner committed rG73ef575fe1e1: Post release updates (authored by werner).
Post release updates
Apr 25 2022, 4:38 PM
werner committed rG638354b1179d: po: Auto update (authored by werner).
po: Auto update
Apr 25 2022, 4:38 PM
werner committed rGd0a0c3f47908: po: Fixed two fuzzies in the Japanese translation (authored by werner).
po: Fixed two fuzzies in the Japanese translation
Apr 25 2022, 4:38 PM
werner committed rG12b3666ebd6c: po: Update German translation (authored by werner).
po: Update German translation
Apr 25 2022, 4:38 PM
werner updated the task description for T5937: Release GnuPG 2.3.6.
Apr 25 2022, 4:37 PM · Release Info, gnupg (gpg23)
werner triaged T5947: Release GnuPG 2.3.7 as Low priority.
Apr 25 2022, 4:35 PM · CVE, Release Info, gnupg (gpg23)
werner committed rG9c0a24b4a55e: agent: Not writing password into file. (authored by gniibe).
agent: Not writing password into file.
Apr 25 2022, 3:29 PM
werner committed rG86d84464ae11: gpg: Avoid NULL ptr access due to corrupted packets. (authored by werner).
gpg: Avoid NULL ptr access due to corrupted packets.
Apr 25 2022, 3:29 PM
werner committed rGf6caf5b17366: gpg: Avoid NULL ptr access due to corrupted packets. (authored by werner).
gpg: Avoid NULL ptr access due to corrupted packets.
Apr 25 2022, 3:26 PM
werner triaged T5946: Make gcry_mpi_cmp more robust for opaque mpis as Normal priority.
Apr 25 2022, 3:10 PM · libgcrypt, Bug Report
werner claimed T5940: crash importing truncated subkeys.
Apr 25 2022, 2:48 PM · Bug Report, gnupg
werner added a project to T5941: gnupg 2.3.5 hangs on key import: Restricted Project.
Apr 25 2022, 2:32 PM · Restricted Project, gnupg (gpg23), Bug Report
werner added projects to T5821: gpgsm "certificate not found" error handling should use gpg_err_code() instead of -1: gnupg (gpg23), Restricted Project.
Apr 25 2022, 12:11 PM · Restricted Project, gnupg (gpg23), Bug Report
werner committed rGbeb79f2705ad: sm: Use gpg_err_code() instead of -1 (authored by tmzullinger).
sm: Use gpg_err_code() instead of -1
Apr 25 2022, 12:11 PM
werner committed rGca5d5142c6d6: Deprecate the --supervised options. (authored by werner).
Deprecate the --supervised options.
Apr 25 2022, 12:11 PM
werner added a comment to T5821: gpgsm "certificate not found" error handling should use gpg_err_code() instead of -1.

Thanks. Will go into 2.3.6

Apr 25 2022, 12:11 PM · Restricted Project, gnupg (gpg23), Bug Report
werner closed T5942: scdaemon is blocking system shutdown as Wontfix.

Please contact the Debian developers for any systemd/gnupg issues. We don't suggest the use of the --supervised option because it causes more problems than it claims to solve.

Apr 25 2022, 11:53 AM · Support, scd, gpgagent
werner added a project to T5943: gpg: Report details about failed symmetric decrypt with ERROR status: Restricted Project.
Apr 25 2022, 11:44 AM · Restricted Project, gnupg, gpgme, Restricted Project
werner edited projects for T5943: gpg: Report details about failed symmetric decrypt with ERROR status, added: gpgme, gnupg; removed gnupg (gpg23).
Apr 25 2022, 11:44 AM · Restricted Project, gnupg, gpgme, Restricted Project
werner committed rG0f8623d518d4: gpg: Emit an ERROR status as hint for a bad passphrase. (authored by werner).
gpg: Emit an ERROR status as hint for a bad passphrase.
Apr 25 2022, 11:43 AM
werner committed rGf021ecd57624: gpg: Emit an ERROR status as hint for a bad passphrase. (authored by werner).
gpg: Emit an ERROR status as hint for a bad passphrase.
Apr 25 2022, 11:19 AM
werner added a comment to T5939: Kleopatra: Better error for wrong password in symmetric decryption.

In this case it works, because the error messages are not translatable.

Apr 25 2022, 10:05 AM · Restricted Project, gpgme, kleopatra, Restricted Project
werner added a comment to T5935: scd: SSH emulation of gpg-agent doesn't work well with sntrup761x25519-sha512@openssh.com.

We are using rsa-4096 on smartcard for quite some time; so I wonder what's the problem here. Is that that we don't use our Assuan hack for large key material with OpenPGP.3?

Apr 25 2022, 8:07 AM · workaround, gnupg (gpg23), ssh, Bug Report, scd

Apr 24 2022

werner added a comment to T5939: Kleopatra: Better error for wrong password in symmetric decryption.

You should not use log messages because they are subject to change and they are translated. Let us return an ERROR status instead.

Apr 24 2022, 1:05 PM · Restricted Project, gpgme, kleopatra, Restricted Project

Apr 22 2022

werner triaged T5940: crash importing truncated subkeys as High priority.
Apr 22 2022, 8:32 PM · Bug Report, gnupg
werner closed T5868: Attached files as Invalid.
Apr 22 2022, 8:26 PM · No Response, gpgol, Bug Report, gpg4win
werner triaged T5936: gpg: Support specifiying user ID to revoke as UID hash for --quick-revoke-uid as High priority.

Should also go into 2.2

Apr 22 2022, 6:46 PM · gnupg (gpg23), Restricted Project, Feature Request
werner accepted D552: gpg: Support specifiying user ID to revoke as UID hash for --quick-revoke-uid.

The rest of the code looks fine.

Apr 22 2022, 6:45 PM · gnupg (gpg23)
werner committed rWf3c245489733: Minor fix in gpg4win.mk.in (authored by werner).
Minor fix in gpg4win.mk.in
Apr 22 2022, 12:56 PM
werner committed rWbf6e321c0fb7: Allow authenticode signing using a card. (authored by werner).
Allow authenticode signing using a card.
Apr 22 2022, 11:25 AM
werner committed rWa44745cb12dc: Update to GnuPG 2.3.5 (authored by werner).
Update to GnuPG 2.3.5
Apr 22 2022, 10:33 AM
werner added a comment to rG8b3a24e5176f: gpg: Fix line end in error message.

I tend to avoid such changes to keep the translations valid. But for master this is okay.

Apr 22 2022, 10:16 AM
werner added a comment to T5743: Release GnuPG 2.3.5.

The links for the Windows installer as given in the mail was wrong. The corrected links are

Apr 22 2022, 8:52 AM · Release Info, gnupg (gpg23)