Page MenuHome GnuPG
Feed All Stories

Feb 6 2024

TobiasFella committed rLIBKLEOe61f3bb96863: Adapt KeySelectionCombo to use user IDs instead of Keys (authored by TobiasFella).
Adapt KeySelectionCombo to use user IDs instead of Keys
Feb 6 2024, 9:52 AM
Karam changed Version from 1.17.1 (tested also on 1.22.0 to libgpgme 1.17.1 (tested also on 1.22.0) on T6977: gpgme_op_verify from libgpgme hang without returning anything when verifying corrupted file signature.
Feb 6 2024, 9:36 AM · gpgme, Bug Report
Karam created T6977: gpgme_op_verify from libgpgme hang without returning anything when verifying corrupted file signature.
Feb 6 2024, 9:35 AM · gpgme, Bug Report
TobiasFella committed rLIBKLEO43900fc91d4e: Adapt KeySelectionCombo to use user IDs instead of Keys (authored by TobiasFella).
Adapt KeySelectionCombo to use user IDs instead of Keys
Feb 6 2024, 9:34 AM
TobiasFella committed rLIBKLEOc14508615bf9: Adapt KeySelectionCombo to use user IDs instead of Keys (authored by TobiasFella).
Adapt KeySelectionCombo to use user IDs instead of Keys
Feb 6 2024, 9:28 AM
TobiasFella committed rLIBKLEOe08ee7ac9d26: Adapt KeySelectionCombo to use user IDs instead of Keys (authored by TobiasFella).
Adapt KeySelectionCombo to use user IDs instead of Keys
Feb 6 2024, 9:11 AM
TobiasFella committed rLIBKLEO0cb529bedac6: Apply 1 suggestion(s) to 1 file(s) (authored by ikloecker).
Apply 1 suggestion(s) to 1 file(s)
Feb 6 2024, 9:10 AM
TobiasFella committed rLIBKLEOc5b465c6b6d3: Rework UserIdProxyModel data handling (authored by TobiasFella).
Rework UserIdProxyModel data handling
Feb 6 2024, 9:10 AM
werner committed rC52f18b9ffe6c: doc: Fix link to the s-expression description. (authored by werner).
doc: Fix link to the s-expression description.
Feb 6 2024, 9:09 AM
TobiasFella committed rLIBKLEO3711f5e93b42: Apply 1 suggestion(s) to 1 file(s) (authored by ikloecker).
Apply 1 suggestion(s) to 1 file(s)
Feb 6 2024, 9:02 AM
ikloecker added a comment to T6975: The option --default-key gives up too early if there are multiple matches.

Quite frankly, if a third party application calls gpg with anything other than fingerprints to specify keys it's asking for trouble. I have changed KMail from using user IDs to using fingerprints when calling gpg more than 20 years ago.

Feb 6 2024, 8:42 AM · Feature Request, gnupg
l10n daemon script <scripty@kde.org> committed rLIBKLEO4fc784e315da: GIT_SILENT Sync po/docbooks with svn (authored by l10n daemon script <scripty@kde.org>).
GIT_SILENT Sync po/docbooks with svn
Feb 6 2024, 5:51 AM
l10n daemon script <scripty@kde.org> committed rKLEOPATRA72ba19b983ae: GIT_SILENT Sync po/docbooks with svn (authored by l10n daemon script <scripty@kde.org>).
GIT_SILENT Sync po/docbooks with svn
Feb 6 2024, 5:50 AM
l10n daemon script <scripty@kde.org> committed rMTPc294a5c6093a: GIT_SILENT Sync po/docbooks with svn (authored by l10n daemon script <scripty@kde.org>).
GIT_SILENT Sync po/docbooks with svn
Feb 6 2024, 4:40 AM
l10n daemon script <scripty@kde.org> committed rLIBKLEOc2690574d532: GIT_SILENT Sync po/docbooks with svn (authored by l10n daemon script <scripty@kde.org>).
GIT_SILENT Sync po/docbooks with svn
Feb 6 2024, 4:40 AM
l10n daemon script <scripty@kde.org> committed rKLEOPATRAe303bdaf8c0d: GIT_SILENT Sync po/docbooks with svn (authored by l10n daemon script <scripty@kde.org>).
GIT_SILENT Sync po/docbooks with svn
Feb 6 2024, 4:40 AM
l10n daemon script <scripty@kde.org> committed rLIBKLEOb7b41c110a13: GIT_SILENT Sync po/docbooks with svn (authored by l10n daemon script <scripty@kde.org>).
GIT_SILENT Sync po/docbooks with svn
Feb 6 2024, 3:52 AM
l10n daemon script <scripty@kde.org> committed rMTPc60fccce8f72: GIT_SILENT Sync po/docbooks with svn (authored by l10n daemon script <scripty@kde.org>).
GIT_SILENT Sync po/docbooks with svn
Feb 6 2024, 3:52 AM
l10n daemon script <scripty@kde.org> committed rKLEOPATRA91a19af15907: GIT_SILENT Sync po/docbooks with svn (authored by l10n daemon script <scripty@kde.org>).
GIT_SILENT Sync po/docbooks with svn
Feb 6 2024, 3:52 AM
Angel reopened T6975: The option --default-key gives up too early if there are multiple matches as "Open".

Sorry, Werner, but I have to disagree on this. Specifying them by fingerprint only works if you have a specific field for the key (including the case where you are just it on the config file).

Feb 6 2024, 3:17 AM · Feature Request, gnupg
l10n daemon script <scripty@kde.org> committed rMTP950de7d19334: GIT_SILENT Sync po/docbooks with svn (authored by l10n daemon script <scripty@kde.org>).
GIT_SILENT Sync po/docbooks with svn
Feb 6 2024, 2:35 AM
l10n daemon script <scripty@kde.org> committed rLIBKLEOcec0c3604553: GIT_SILENT Sync po/docbooks with svn (authored by l10n daemon script <scripty@kde.org>).
GIT_SILENT Sync po/docbooks with svn
Feb 6 2024, 2:35 AM
l10n daemon script <scripty@kde.org> committed rKLEOPATRAa02a962ce666: GIT_SILENT Sync po/docbooks with svn (authored by l10n daemon script <scripty@kde.org>).
GIT_SILENT Sync po/docbooks with svn
Feb 6 2024, 2:33 AM

Feb 5 2024

neverpanic added a comment to T6976: RSA PKCS#1v1.5 signatures with SHA3 use invalid encoding.

I'm attaching a proposed patch. We should decide whether this is the correct encoding to use for SHAKE128 and SHAKE256, because they are variable-length output functions and there is an alternative encoding that has a field for the length, which is likely better suited, but currently not really well supported by libgcrypt (since this would be dynamic content in the ASN.1 encoding).

Feb 5 2024, 5:39 PM · FIPS, libgcrypt, Bug Report
neverpanic created T6976: RSA PKCS#1v1.5 signatures with SHA3 use invalid encoding.
Feb 5 2024, 5:37 PM · FIPS, libgcrypt, Bug Report
TobiasFella committed rKLEOPATRAe1238027cb91: Adapt SignEncryptWidget to be based on UserIDs instead of Keys (authored by TobiasFella).
Adapt SignEncryptWidget to be based on UserIDs instead of Keys
Feb 5 2024, 4:54 PM
TobiasFella committed rLIBKLEOaeff1ff46549: Adapt KeySelectionCombo to use user IDs instead of Keys (authored by TobiasFella).
Adapt KeySelectionCombo to use user IDs instead of Keys
Feb 5 2024, 4:50 PM
TobiasFella committed rLIBKLEOdc6535e65697: Rework UserIdProxyModel data handling (authored by TobiasFella).
Rework UserIdProxyModel data handling
Feb 5 2024, 4:13 PM
TobiasFella committed rLIBKLEO0c19d69f29b9: Adapt KeySelectionCombo to use user IDs instead of Keys (authored by TobiasFella).
Adapt KeySelectionCombo to use user IDs instead of Keys
Feb 5 2024, 4:12 PM
TobiasFella committed rLIBKLEO955e7a765891: Rework UserIdProxyModel data handling (authored by TobiasFella).
Rework UserIdProxyModel data handling
Feb 5 2024, 4:12 PM
werner committed rD1ea209620bc7: web: Improve wording of Libgcrypt's security model. (authored by werner).
web: Improve wording of Libgcrypt's security model.
Feb 5 2024, 3:14 PM
werner committed rG23d9093d9b05: More NEWS. (authored by werner).
More NEWS.
Feb 5 2024, 1:02 PM
dvratil moved T6891: KMail: IMAP flags are sometimes not synced / shown correctly from Restricted Project Column to Restricted Project Column on the Restricted Project board.
Feb 5 2024, 10:25 AM · Restricted Project, KMail
dvratil moved T6862: Document how to switch akonadi database backend to sqlite from Restricted Project Column to Restricted Project Column on the Restricted Project board.
Feb 5 2024, 10:25 AM · Restricted Project, KMail
dvratil moved T6776: KOrganizer: Reminders only for attendees from Restricted Project Column to Restricted Project Column on the Restricted Project board.
Feb 5 2024, 10:25 AM · Restricted Project, KDE
mlaurent committed rKLEOPATRAaec4de30aa3e: GIT_SILENT: add SPDX-FileCopyrightText/SPDX-License-Identifier (authored by mlaurent).
GIT_SILENT: add SPDX-FileCopyrightText/SPDX-License-Identifier
Feb 5 2024, 8:57 AM
werner closed T6975: The option --default-key gives up too early if there are multiple matches as Wontfix.

Instead of tweaking this and risk a regression for some users I added a suggested to the man page to use a fingerprint.

Feb 5 2024, 8:53 AM · Feature Request, gnupg
werner committed rG5842eee80523: doc: Suggest the use of a fingerprint for --default-key. (authored by werner).
doc: Suggest the use of a fingerprint for --default-key.
Feb 5 2024, 8:52 AM
mlaurent committed rKLEOPATRA64a2693b6204: Use KF_MIN_VERSION/KMIME_VERSION in windows because for the moment version is… (authored by mlaurent).
Use KF_MIN_VERSION/KMIME_VERSION in windows because for the moment version is…
Feb 5 2024, 8:46 AM
werner closed T6972: Explicitly deprecate --use-embedded-filename -- it is hazardous as Resolved.

Unfortunately there are real world applications which make use of this option in special environments. Thus we can't remove it. I improved the warning in the man page.

Feb 5 2024, 8:44 AM · Documentation, gnupg, patch
werner committed rGe5f24218fcd8: doc: Improve warning for --use-embedded-filename. (authored by werner).
doc: Improve warning for --use-embedded-filename.
Feb 5 2024, 8:43 AM
werner closed T6974: Bump requisites on 2.2.x as Resolved.
Feb 5 2024, 8:24 AM · gnupg
werner committed rG3d46eb6cf799: common: Update requisites (authored by Angel).
common: Update requisites
Feb 5 2024, 8:24 AM
werner added a project to T6974: Bump requisites on 2.2.x: gnupg.

There will be a 2.2.43 soonish. Thanks for the patch.

Feb 5 2024, 8:24 AM · gnupg
werner committed rGcbe0956df0f9: gpgsm: Increase salt size in pkcs#12 parser. (authored by werner).
gpgsm: Increase salt size in pkcs#12 parser.
Feb 5 2024, 8:15 AM
werner committed rG214d3ffe0f91: gpgsm: Increase salt size in pkcs#12 parser. (authored by werner).
gpgsm: Increase salt size in pkcs#12 parser.
Feb 5 2024, 8:15 AM
werner committed rG375c3a238ab6: gpgsm: cleanup on error paths (authored by Angel).
gpgsm: cleanup on error paths
Feb 5 2024, 8:15 AM
werner added a comment to T6757: gpgsm 2.4 Fails to import P12 certificate/key.

I would have expected an error message right after

Feb 5 2024, 8:09 AM · gnupg24 (gnupg-2.4.4), S/MIME, Bug Report
werner closed T6973: uninitialized err on p12_parse as Resolved.

Thanks. Applied to 2.4 will eventually be merged into master.

Feb 5 2024, 7:55 AM · gnupg
l10n daemon script <scripty@kde.org> committed rLIBKLEO858eff164e7e: GIT_SILENT Sync po/docbooks with svn (authored by l10n daemon script <scripty@kde.org>).
GIT_SILENT Sync po/docbooks with svn
Feb 5 2024, 5:48 AM
l10n daemon script <scripty@kde.org> committed rKLEOPATRA72a1c62f2eff: GIT_SILENT Sync po/docbooks with svn (authored by l10n daemon script <scripty@kde.org>).
GIT_SILENT Sync po/docbooks with svn
Feb 5 2024, 5:47 AM
Angel added a comment to T6973: uninitialized err on p12_parse.

Feb 5 2024, 4:54 AM · gnupg
l10n daemon script <scripty@kde.org> committed rMTP271b00e3be6d: GIT_SILENT Sync po/docbooks with svn (authored by l10n daemon script <scripty@kde.org>).
GIT_SILENT Sync po/docbooks with svn
Feb 5 2024, 4:36 AM
l10n daemon script <scripty@kde.org> committed rLIBKLEO2ea4123b59a9: GIT_SILENT Sync po/docbooks with svn (authored by l10n daemon script <scripty@kde.org>).
GIT_SILENT Sync po/docbooks with svn
Feb 5 2024, 4:36 AM
l10n daemon script <scripty@kde.org> committed rKLEOPATRAde992b340764: GIT_SILENT Sync po/docbooks with svn (authored by l10n daemon script <scripty@kde.org>).
GIT_SILENT Sync po/docbooks with svn
Feb 5 2024, 4:34 AM
l10n daemon script <scripty@kde.org> committed rMTP2e5f3468d44c: GIT_SILENT Sync po/docbooks with svn (authored by l10n daemon script <scripty@kde.org>).
GIT_SILENT Sync po/docbooks with svn
Feb 5 2024, 3:42 AM
l10n daemon script <scripty@kde.org> committed rLIBKLEOe448bd4f76b9: GIT_SILENT Sync po/docbooks with svn (authored by l10n daemon script <scripty@kde.org>).
GIT_SILENT Sync po/docbooks with svn
Feb 5 2024, 3:42 AM
l10n daemon script <scripty@kde.org> committed rKLEOPATRA8fb14bced007: GIT_SILENT Sync po/docbooks with svn (authored by l10n daemon script <scripty@kde.org>).
GIT_SILENT Sync po/docbooks with svn
Feb 5 2024, 3:42 AM
l10n daemon script <scripty@kde.org> committed rMTPadab50a65dfe: GIT_SILENT Sync po/docbooks with svn (authored by l10n daemon script <scripty@kde.org>).
GIT_SILENT Sync po/docbooks with svn
Feb 5 2024, 2:36 AM
l10n daemon script <scripty@kde.org> committed rLIBKLEO6fb7661fa277: GIT_SILENT Sync po/docbooks with svn (authored by l10n daemon script <scripty@kde.org>).
GIT_SILENT Sync po/docbooks with svn
Feb 5 2024, 2:32 AM
l10n daemon script <scripty@kde.org> committed rKLEOPATRA66eb280c058c: GIT_SILENT Sync po/docbooks with svn (authored by l10n daemon script <scripty@kde.org>).
GIT_SILENT Sync po/docbooks with svn
Feb 5 2024, 2:29 AM
Angel added a comment to T6946: gpgv: Help automatic reject too short keys.

Do note there could be subkeys as well.

Feb 5 2024, 1:59 AM · gnupg24 (gnupg-2.4.5), Feature Request, gpgv
Angel created T6975: The option --default-key gives up too early if there are multiple matches.
Feb 5 2024, 1:26 AM · Feature Request, gnupg
Angel added a comment to T6974: Bump requisites on 2.2.x.

Feb 5 2024, 12:51 AM · gnupg
Angel created T6974: Bump requisites on 2.2.x.
Feb 5 2024, 12:49 AM · gnupg
Angel created T6973: uninitialized err on p12_parse.
Feb 5 2024, 12:40 AM · gnupg

Feb 4 2024

Angel added a comment to T5444: "gpg: key generation failed: Unknown elliptic curve" from "Key-Type: default".

I recently stumbled upon this as well.

Feb 4 2024, 11:59 PM · gnupg24, gnupg (gpg23)
Angel added a comment to T6972: Explicitly deprecate --use-embedded-filename -- it is hazardous.

I agree. Any automatic use of the embedded filename will be potentially problematic security-wise. The only safe use is probably as a value in an interactive dialog, and even then, only if the user doesn't accept a dangerous value.

Feb 4 2024, 11:51 PM · Documentation, gnupg, patch
jukivili committed rC0929a9f1ede2: Fix Kyber segfaulting on Win64 (authored by jukivili).
Fix Kyber segfaulting on Win64
Feb 4 2024, 8:48 PM
jukivili committed rC679b07898897: rijndael-s390x: fix AES256-XTS feature mask (authored by jukivili).
rijndael-s390x: fix AES256-XTS feature mask
Feb 4 2024, 8:48 PM
l10n daemon script <scripty@kde.org> committed rLIBKLEOf8f3e07a8747: GIT_SILENT Sync po/docbooks with svn (authored by l10n daemon script <scripty@kde.org>).
GIT_SILENT Sync po/docbooks with svn
Feb 4 2024, 4:04 AM
l10n daemon script <scripty@kde.org> committed rKLEOPATRA8a60b13fbca8: GIT_SILENT Sync po/docbooks with svn (authored by l10n daemon script <scripty@kde.org>).
GIT_SILENT Sync po/docbooks with svn
Feb 4 2024, 4:00 AM
Angel merged T2759: Misleading error message when trying to sign with an expired key into T4704: Wrong error message when key is expired.
Feb 4 2024, 3:55 AM · gnupg24 (gnupg-2.4.4), UI, Bug Report
Angel merged task T2759: Misleading error message when trying to sign with an expired key into T4704: Wrong error message when key is expired.
Feb 4 2024, 3:55 AM · Bug Report, gnupg
Angel added a comment to T2759: Misleading error message when trying to sign with an expired key.

This was reported again 3 years later as T4704, and finally fixed in gnupg-2.4.4, released last week.

Feb 4 2024, 3:55 AM · Bug Report, gnupg
l10n daemon script <scripty@kde.org> committed rKLEOPATRA97b5017500b1: GIT_SILENT Sync po/docbooks with svn (authored by l10n daemon script <scripty@kde.org>).
GIT_SILENT Sync po/docbooks with svn
Feb 4 2024, 2:20 AM

Feb 3 2024

l10n daemon script <scripty@kde.org> committed rKLEOPATRAbfbe3c6fedd5: GIT_SILENT Sync po/docbooks with svn (authored by l10n daemon script <scripty@kde.org>).
GIT_SILENT Sync po/docbooks with svn
Feb 3 2024, 2:23 AM

Feb 2 2024

dkg added a comment to T6972: Explicitly deprecate --use-embedded-filename -- it is hazardous.

The patch supplied here should apply to STABLE-BRANCH-2-4, but it should also be easy enough to backport to STABLE-BRANCH-2-2 and STABLE-BRANCH-1-4. For GnuPG master, i recommend actually removing the option.

Feb 2 2024, 9:14 PM · Documentation, gnupg, patch
dkg created T6972: Explicitly deprecate --use-embedded-filename -- it is hazardous.
Feb 2 2024, 9:12 PM · Documentation, gnupg, patch
lecris added a comment to T6757: gpgsm 2.4 Fails to import P12 certificate/key.

Unfortunately I have deleted the .p12 with the CA chain, and I don't know how I've generated it. It also contained my production certificates so, kinda sensitive to upload here.

Feb 2 2024, 5:49 PM · gnupg24 (gnupg-2.4.4), S/MIME, Bug Report
werner added a comment to T6757: gpgsm 2.4 Fails to import P12 certificate/key.

Okay, I push the change for the extended salt size. Regarding the import of CA certificates, I have not seen any problems. In fact it is pretty common. Did you test with with 2.4.4. A test file would be helpful.

Feb 2 2024, 5:33 PM · gnupg24 (gnupg-2.4.4), S/MIME, Bug Report
werner committed rW26f9a94902ed: Set version again to 4.3.1. (authored by werner).
Set version again to 4.3.1.
Feb 2 2024, 2:22 PM
werner committed rW165551b8e848: msi: Allow to build other GPD targets than only Desktop. (authored by werner).
msi: Allow to build other GPD targets than only Desktop.
Feb 2 2024, 2:18 PM
lecris added a comment to T6757: gpgsm 2.4 Fails to import P12 certificate/key.

Ok, I have tried again the series of workarounds that I initially posted on the main description, and I managed to fix it by striping the CA certificates. So the current issues here are:

Feb 2 2024, 2:01 PM · gnupg24 (gnupg-2.4.4), S/MIME, Bug Report
lecris updated the task description for T6757: gpgsm 2.4 Fails to import P12 certificate/key.
Feb 2 2024, 1:45 PM · gnupg24 (gnupg-2.4.4), S/MIME, Bug Report
TobiasFella committed rLIBKLEO1c0190e72757: Various fixes for UserIDProxyModel (authored by TobiasFella).
Various fixes for UserIDProxyModel
Feb 2 2024, 8:10 AM
TobiasFella committed rLIBKLEOfe8a366598f4: Various fixes for UserIDProxyModel (authored by TobiasFella).
Various fixes for UserIDProxyModel
Feb 2 2024, 8:09 AM
mlaurent committed rMTPc14dd55bc9e4: GIT_SILENT: prepare 6.0.0 (authored by mlaurent).
GIT_SILENT: prepare 6.0.0
Feb 2 2024, 7:26 AM
mlaurent committed rKLEOPATRAe131622ec240: GIT_SILENT: prepare 6.0.0 (authored by mlaurent).
GIT_SILENT: prepare 6.0.0
Feb 2 2024, 7:25 AM
debohman added a comment to T6444: pinentry-1.2.1 does not configure against libgpg-error-1.47.

This is still an issue.

Feb 2 2024, 2:23 AM · pinentry
debohman added a comment to T6443: ntbtls-0.3.1 does not configure against libgpg-error-1.47.

Verified in ntbtls-0.3.2.

Feb 2 2024, 2:22 AM · ntbtls
l10n daemon script <scripty@kde.org> committed rLIBKLEOd524bb074558: GIT_SILENT Sync po/docbooks with svn (authored by l10n daemon script <scripty@kde.org>).
GIT_SILENT Sync po/docbooks with svn
Feb 2 2024, 2:19 AM
l10n daemon script <scripty@kde.org> committed rKLEOPATRA9c42573d8292: GIT_SILENT Sync po/docbooks with svn (authored by l10n daemon script <scripty@kde.org>).
GIT_SILENT Sync po/docbooks with svn
Feb 2 2024, 2:18 AM

Feb 1 2024

mlaurent committed rMTPaac8c666f5ac: GIT_SILENT: use directly QLatin1StringView (authored by mlaurent).
GIT_SILENT: use directly QLatin1StringView
Feb 1 2024, 10:45 PM
gc100 closed T6965: WKD fail: gpg/dimngr fails to retrieve public key as Resolved.

Fixed by changing server as noted above.

Feb 1 2024, 9:00 PM · Support, dirmngr, Bug Report
gc100 added a comment to T6965: WKD fail: gpg/dimngr fails to retrieve public key.

Thanks for all the help @gniibe.

Feb 1 2024, 8:59 PM · Support, dirmngr, Bug Report
gc100 added a comment to T6965: WKD fail: gpg/dimngr fails to retrieve public key.

It should not be removed as I believe it is required to be compliant:

Feb 1 2024, 5:22 PM · Support, dirmngr, Bug Report
werner committed rWa7b9a1c7673f: Temporary set version back to 4.3.0 (authored by werner).
Temporary set version back to 4.3.0
Feb 1 2024, 4:35 PM
mlaurent committed rMTP938f4abf7509: GIT_SILENT: prepare 6.0.0 (authored by mlaurent).
GIT_SILENT: prepare 6.0.0
Feb 1 2024, 1:33 PM
mlaurent committed rLIBKLEO4bd57fd5cd0c: GIT_SILENT: prepare 6.0.0 (authored by mlaurent).
GIT_SILENT: prepare 6.0.0
Feb 1 2024, 1:27 PM