Page MenuHome GnuPG
Feed Advanced Search

May 19 2025

werner added a comment to T7627: gpgme(qt) testsuite error on 32bit archs with 64bit time_t.

We won't apply any fixes to the cpp, QT, or Python language bindings in the 1.24 branch. The Qt branch has been factored out to the gpgmeqt project on request from the KDE folks. And yes, we should add projects (tags) for gpgmepp and gpgmeqt.

May 19 2025, 4:34 PM · gpgme, Bug Report
werner updated the task description for T7524: Release GPGME 1.24.2.
May 19 2025, 4:26 PM · gpgme, Release Info
werner triaged T7659: Release GPGME 1.24.3 as Low priority.
May 19 2025, 4:25 PM · Release Info, gpgme
werner closed T7647: cipher/simd-common-riscv.h missing from libgcrypt 1.11.1 tarball as Resolved.

Problem noted in T7166

May 19 2025, 12:16 PM · riscv, libgcrypt, Bug Report
werner added a comment to T7166: Release Libgcrypt 1.11.1.

Noet that one file is missing in the released tarball; when building for RISC-V please see T7647#201164

May 19 2025, 12:15 PM · Release Info, libgcrypt
werner added a comment to T7647: cipher/simd-common-riscv.h missing from libgcrypt 1.11.1 tarball.

Patch applied.

May 19 2025, 12:12 PM · riscv, libgcrypt, Bug Report

May 16 2025

werner closed T5993: gpg should reject compressed packets outside of messages as Resolved.
May 16 2025, 2:46 PM · Feature Request, gnupg
werner added a comment to T5993: gpg should reject compressed packets outside of messages.

(The commits had a wrong bug it in their message)

May 16 2025, 2:44 PM · Feature Request, gnupg
werner committed rG23ccad05c680: gpg: Do not allow compressed key packets on import. (authored by werner).
gpg: Do not allow compressed key packets on import.
May 16 2025, 2:40 PM
werner committed rG8e529f922194: gpg: Do not allow compressed key packets on import. (authored by werner).
gpg: Do not allow compressed key packets on import.
May 16 2025, 2:33 PM
werner committed rG645cf7d8fc25: Revert "w32: On socket nonce mismatch close the socket." (authored by werner).
Revert "w32: On socket nonce mismatch close the socket."
May 16 2025, 2:33 PM
werner committed rGfcac10357e6d: gpg: Remove unused variable. (authored by werner).
gpg: Remove unused variable.
May 16 2025, 2:33 PM
werner added a comment to T5993: gpg should reject compressed packets outside of messages.

It might be useful to have samples of compressed keys:

May 16 2025, 2:20 PM · Feature Request, gnupg
werner committed rEcda4789a9f7d: Time for a new error code; this time GPG_ERR_UNEXPECTED_PACKET (authored by werner).
Time for a new error code; this time GPG_ERR_UNEXPECTED_PACKET
May 16 2025, 12:48 PM
werner updated subscribers of T5993: gpg should reject compressed packets outside of messages.

No, we can't do much about this. It has always been easy to create compression bombs and the more relevant thing here is compressed signed or encrypted data. Or just compressed mails. The patch by @DemiMarie is way to complicated for what it wants to achieve and actually breaks existing use cases. For example Poppler uses GnuPG comment packets to lower its own attack surface by leaving all OpenPGP handling to gpg. The patch (or at least the version we noticed in Fedora and Debian) entirely breaks this use.

May 16 2025, 12:04 PM · Feature Request, gnupg

May 15 2025

werner added a comment to T7634: libgcrypt's test t-thread-local fails to link on some platforms..

Also pushed to 1.11

May 15 2025, 9:48 PM · NetBSD, libgcrypt, Bug Report
werner committed rDba2663cda232: swdb: gpgol 2.6.1 (authored by werner).
swdb: gpgol 2.6.1
May 15 2025, 4:08 PM
werner committed rO2ed92385c1d9: Post release updates (authored by werner).
Post release updates
May 15 2025, 4:03 PM
werner committed rO4a9196cbb492: Release 2.6.1 (authored by werner).
Release 2.6.1
May 15 2025, 4:03 PM
werner committed rObda9f5afc8e6: Handle non mail items in inbox events (authored by mmontkowski).
Handle non mail items in inbox events
May 15 2025, 3:43 PM
werner added a comment to D556: Disallow compressed signatures and certificates.

Way too complicate and thus has a high risk of regression,

May 15 2025, 11:58 AM

May 14 2025

werner committed rW0929cd3b6783: Rename packages.common to packages.list (authored by werner).
Rename packages.common to packages.list
May 14 2025, 4:16 PM
werner committed rW383eb8586161: Update Okular for gnupg >= 2.4 to the correct version. (authored by werner).
Update Okular for gnupg >= 2.4 to the correct version.
May 14 2025, 4:07 PM
werner committed rWe42e2d1d6037: Merge branch 'gpg4win-5-branch' (authored by werner).
Merge branch 'gpg4win-5-branch'
May 14 2025, 3:58 PM
werner committed rW14ee2719e291: Merge branch 'gpg4win-5-branch' (authored by werner).
Merge branch 'gpg4win-5-branch'
May 14 2025, 3:56 PM
werner committed rDeffa3ea5e36e: Improve the make rules to upload sbdb.lst. (authored by werner).
Improve the make rules to upload sbdb.lst.
May 14 2025, 3:35 PM
werner committed rD35d7563176ce: swdb: gnupg 2.4.8 (authored by werner).
swdb: gnupg 2.4.8
May 14 2025, 3:33 PM
werner committed rGd48b26a2f6c7: Post release updates. (authored by werner).
Post release updates.
May 14 2025, 3:05 PM
werner committed rG6f39568ae655: Release 2.4.8 (authored by werner).
Release 2.4.8
May 14 2025, 3:05 PM
werner closed T6594: Okular: Proper about data customization as Resolved.

We have updated patches for long in the gpg4win repo and thus I close this bug.

May 14 2025, 3:02 PM · Restricted Project, okular
werner added a comment to T7589: Unable to export SSH keys for ED25519 keys generate on a SmartCard.

Using the primary key for ssh was not intended and thus not tested. I have not yet found the time too look closer at your report. Just one remark:

May 14 2025, 12:32 PM · gnupg, ssh, Bug Report
werner added a project to T7589: Unable to export SSH keys for ED25519 keys generate on a SmartCard: gnupg.
May 14 2025, 12:07 PM · gnupg, ssh, Bug Report
werner triaged T7653: Fix gpg's passwd for Kyber with the ecc part on a card as Normal priority.
May 14 2025, 10:05 AM · Bug Report, gnupg26

May 13 2025

werner committed rGeb2a90d343a4: gpg: Make combination of show-only-fpr-mbox and show-unusable-uid work. (authored by werner).
gpg: Make combination of show-only-fpr-mbox and show-unusable-uid work.
May 13 2025, 3:44 PM
werner committed rGd5a4a2dc890e: gpg: Make combination of show-only-fpr-mbox and show-unusable-uid work. (authored by werner).
gpg: Make combination of show-only-fpr-mbox and show-unusable-uid work.
May 13 2025, 3:44 PM
werner added a project to T7649: gnupg: Use KEM interface for encryption/decryption: gnupg26.
May 13 2025, 3:24 PM · gnupg26
werner closed T7171: Allow for empty Subject in X.509 as Resolved.
May 13 2025, 3:21 PM · libksba, Bug Report, gnupg, S/MIME
werner committed rGe57a2e65d93f: gpgsm: Just print a note for an empty subject during import. (authored by werner).
gpgsm: Just print a note for an empty subject during import.
May 13 2025, 3:19 PM
werner committed rGe7a9bd320561: gpgsm: Just print a note for an empty subject during import. (authored by werner).
gpgsm: Just print a note for an empty subject during import.
May 13 2025, 3:17 PM
werner closed T6941: gpgsm/dirmngr: support for end-entity certificates with an empty "Subject DN", a subtask of T7171: Allow for empty Subject in X.509, as Resolved.
May 13 2025, 3:00 PM · libksba, Bug Report, gnupg, S/MIME
werner closed T6941: gpgsm/dirmngr: support for end-entity certificates with an empty "Subject DN" as Resolved.

Meanwhile we have some support for an empty subject but gpgsm still prints an error notice. See the T7171 for more.

May 13 2025, 3:00 PM · gnupg26, S/MIME, Feature Request
werner added a subtask for T7171: Allow for empty Subject in X.509: T6941: gpgsm/dirmngr: support for end-entity certificates with an empty "Subject DN".
May 13 2025, 2:58 PM · libksba, Bug Report, gnupg, S/MIME
werner added a parent task for T6941: gpgsm/dirmngr: support for end-entity certificates with an empty "Subject DN": T7171: Allow for empty Subject in X.509.
May 13 2025, 2:58 PM · gnupg26, S/MIME, Feature Request
werner committed rG7c2e7bcc41ad: agent: We should use a macro for the keygrip len in new code. (authored by werner).
agent: We should use a macro for the keygrip len in new code.
May 13 2025, 9:55 AM

May 12 2025

werner committed rC67b8da4ef627: Remove occurrences of old FSF postal address. (authored by Collin Funk via Gcrypt-devel <gcrypt-devel@gnupg.org>).
Remove occurrences of old FSF postal address.
May 12 2025, 6:05 PM
werner committed rC93034d649124: Fix ungrammatical use of "allow to" (authored by Paul Eggert <eggert@cs.ucla.edu>).
Fix ungrammatical use of "allow to"
May 12 2025, 6:05 PM
werner committed rM905bd760a99a: Add GPGME_CREATE_GROUP flag for gpgme_op_createkey and _createsubkey. (authored by werner).
Add GPGME_CREATE_GROUP flag for gpgme_op_createkey and _createsubkey.
May 12 2025, 2:44 PM
werner committed rGedd01d8fc45e: gpg: Fully implement the group key flag. (authored by werner).
gpg: Fully implement the group key flag.
May 12 2025, 12:01 PM
werner committed rG924f09d1f3c8: gpg: Fully implement the group key flag. (authored by werner).
gpg: Fully implement the group key flag.
May 12 2025, 12:00 PM
werner committed rG8833a34bf087: gpg: Fully implement the group key flag. (authored by werner).
gpg: Fully implement the group key flag.
May 12 2025, 12:00 PM

May 9 2025

werner committed rD7a45397df2f7: We should no use the defunc k.gnupg.net anymore. (authored by werner).
We should no use the defunc k.gnupg.net anymore.
May 9 2025, 5:43 PM
werner committed rD36945e2d5259: Update information about gnupg people. (authored by werner).
Update information about gnupg people.
May 9 2025, 5:24 PM
werner set External Link to https://lists.gnupg.org/pipermail/gnupg-announce/2025q2/000492.html on T7586: Release GnuPG 2.5.6.
May 9 2025, 5:02 PM · gnupg, Release Info
werner committed rG727e125a4dc1: Update distsigkey (authored by werner).
Update distsigkey
May 9 2025, 4:45 PM
werner committed rGb5a763fff1f9: Update distsigkey (authored by werner).
Update distsigkey
May 9 2025, 4:45 PM
werner committed rGb361c25bcdcd: Update distsigkey (authored by werner).
Update distsigkey
May 9 2025, 4:45 PM
werner committed rD01116327613d: Update the signature keys. (authored by werner).
Update the signature keys.
May 9 2025, 4:44 PM
werner committed rD03bf599c03b7: Announce GnuPG 2.5.6 (authored by werner).
Announce GnuPG 2.5.6
May 9 2025, 3:42 PM
werner committed rW40e45e38b959: Also update the to-be-signed DLL name. (authored by werner).
Also update the to-be-signed DLL name.
May 9 2025, 10:11 AM
werner renamed T7645: Kleopatra: Encoding errors in signature verification audit log (timestamps) from Kleopatra: Encoding errors in signature verification audit log to Kleopatra: Encoding errors in signature verification audit log (timestamps).
May 9 2025, 9:26 AM · gnupg26, gpd5x, Bug Report
werner triaged T7645: Kleopatra: Encoding errors in signature verification audit log (timestamps) as Low priority.

I think we have another report on this in the tracker. The problem is indeed the ugly Windows time functions to print a string. Let me only remeber that untile a few years, Windows had the opinion that Germany is the the Westeuropäische Zeit, i.e. Portugal or the UK.

May 9 2025, 9:25 AM · gnupg26, gpd5x, Bug Report
werner set the color for riscv to Checkered.
May 9 2025, 9:21 AM
werner added a project to T7647: cipher/simd-common-riscv.h missing from libgcrypt 1.11.1 tarball: riscv.
May 9 2025, 9:21 AM · riscv, libgcrypt, Bug Report
werner added a comment to T7647: cipher/simd-common-riscv.h missing from libgcrypt 1.11.1 tarball.

That is quite possible because we do not have a test system for RISC-V and the make release tarbegt is not abale to verify this.

May 9 2025, 9:21 AM · riscv, libgcrypt, Bug Report

May 8 2025

werner committed rW57f57e1b1339: Fix DLL name of libpoppler. (authored by werner).
Fix DLL name of libpoppler.
May 8 2025, 5:02 PM
werner committed rWc471e16de9cd: Two patches for gpgol 2.6.0 (authored by werner).
Two patches for gpgol 2.6.0
May 8 2025, 4:32 PM
werner committed rW9ef029f83c22: Update to gnupg-2.5.6, Kleopatra and Okular current snapshots (authored by werner).
Update to gnupg-2.5.6, Kleopatra and Okular current snapshots
May 8 2025, 4:31 PM
werner updated the task description for T7586: Release GnuPG 2.5.6.
May 8 2025, 3:43 PM · gnupg, Release Info
werner closed T7632: gnupg test suite fails to build on AIX. as Resolved.
May 8 2025, 3:32 PM · AIX, gnupg, Bug Report
werner closed T7638: gpg on Solaris does not print a signal description as Resolved.
May 8 2025, 3:32 PM · Solaris, gnupg, Bug Report
werner moved T4021: dirmngr: dirmngr/dns.c issue with 127.0.0.1 from WiP to QA on the gnupg24 board.
May 8 2025, 3:31 PM · gnupg24, dirmngr
werner closed T7576: keyboxd: Searching <email@Example.COM> as Resolved.
May 8 2025, 3:31 PM · gnupg, Bug Report
werner closed T7583: 2.5.5 removes sig on clean that 2.5.4 and earlier kept as Resolved.
May 8 2025, 3:30 PM · gnupg, Bug Report
werner closed T7547: signatures from revoked or expired keys show up as missing keys, a subtask of T7527: Keyring/keybox denial of service, as Resolved.
May 8 2025, 3:29 PM · OpenPGP, gnupg, Bug Report
werner closed T7547: signatures from revoked or expired keys show up as missing keys as Resolved.
May 8 2025, 3:29 PM · gnupg26, gnupg24, Bug Report
werner updated the task description for T7586: Release GnuPG 2.5.6.
May 8 2025, 3:29 PM · gnupg, Release Info
werner closed T6477: WKD redirects and dirmngr redirect rewriting as Resolved.
May 8 2025, 3:27 PM · gnupg24 (gnupg-2.4.3), wkd, dirmngr
werner committed rD306fa8e4255c: swdb: gnupg 2.5.6 (authored by werner).
swdb: gnupg 2.5.6
May 8 2025, 11:28 AM
werner committed rG806b0080bb34: Release 2.5.6 (authored by werner).
Release 2.5.6
May 8 2025, 11:18 AM
werner committed rGfe347b38814b: Post release updates (authored by werner).
Post release updates
May 8 2025, 11:18 AM
werner committed rG598296b9fc60: tests:gpgscm: Fix build error on AIX. (authored by Collin Funk via Gnupg-devel <gnupg-devel@gnupg.org>).
tests:gpgscm: Fix build error on AIX.
May 8 2025, 10:53 AM
werner committed rG8ba33fffe9f4: common: Add Solaris support to get_signal_name. (authored by Collin Funk via Gnupg-devel <gnupg-devel@gnupg.org>).
common: Add Solaris support to get_signal_name.
May 8 2025, 10:53 AM
werner committed rG1fea38669155: po: Fix misspelled italian translation for 'encrypted' (authored by Mattia Narducci via Gnupg-devel <gnupg-devel@gnupg.org>).
po: Fix misspelled italian translation for 'encrypted'
May 8 2025, 10:53 AM
werner added a comment to T6681: agent: Clean up main loop and better cache handling of expiration (was: Adding agent_timer API for monitoring something and passphrase cache).

I can't see any documentation that a value of 0 disables the cache. The user might have used some undefined behaviour. For example in the old code we did a housecleaning when we were idle but the new code uses a timer and another thread for flushing the cache. We could open a feature request to entire disable the cache but I bet that we will get a lot of new bug reports because users will then need to enter their passphrase too often for one operation.

May 8 2025, 9:14 AM · keyboxd, gpgagent, gnupg26
werner updated the task description for T7165: Release Libgcrypt 1.11.0.
May 8 2025, 8:51 AM · Release Info, libgcrypt
werner triaged T7643: Release Libgcrypt 1.12.0 as Normal priority.
May 8 2025, 8:49 AM · Release Info, libgcrypt

May 7 2025

werner committed rDecb9d83b6db5: swdb: libgcrypt 1.11.1 (authored by werner).
swdb: libgcrypt 1.11.1
May 7 2025, 6:33 PM
werner closed T7165: Release Libgcrypt 1.11.0 as Resolved.
May 7 2025, 6:01 PM · Release Info, libgcrypt
werner committed rW7e0136936239: Update to libgcrypt 1.11.1 (authored by werner).
Update to libgcrypt 1.11.1
May 7 2025, 6:01 PM
werner committed rW67a34021ff41: Update to libgcrypt 1.11.1 (authored by werner).
Update to libgcrypt 1.11.1
May 7 2025, 6:00 PM
werner updated the task description for T7166: Release Libgcrypt 1.11.1.
May 7 2025, 5:55 PM · Release Info, libgcrypt
werner triaged T7642: Release Libgcrypt 1.11.2 as Low priority.
May 7 2025, 5:52 PM · Release Info, libgcrypt
werner changed the status of T7633: libgcrypt fails to build on NetBSD due to the systems bswap32 macro defintion. from Open to Testing.
May 7 2025, 2:48 PM · NetBSD, libgcrypt, Bug Report
werner changed the status of T7634: libgcrypt's test t-thread-local fails to link on some platforms. from Open to Testing.
May 7 2025, 2:47 PM · NetBSD, libgcrypt, Bug Report
werner added a comment to T6681: agent: Clean up main loop and better cache handling of expiration (was: Adding agent_timer API for monitoring something and passphrase cache).

Lucas Mülling commented yesterday on gnupg-devel:

May 7 2025, 11:40 AM · keyboxd, gpgagent, gnupg26

May 6 2025

werner committed rG581d8bd087f0: Update NEWS (authored by werner).
Update NEWS
May 6 2025, 4:13 PM
werner committed rG9589da97e2fc: gpgsm: Always print info about certs-only message. (authored by werner).
gpgsm: Always print info about certs-only message.
May 6 2025, 1:46 PM
werner committed rGe1576eee040f: scd:p15: Make signing work for Nexus cards. (authored by werner).
scd:p15: Make signing work for Nexus cards.
May 6 2025, 11:19 AM
werner added a comment to T7638: gpg on Solaris does not print a signal description.

Right now we have

May 6 2025, 8:32 AM · Solaris, gnupg, Bug Report

May 5 2025

werner added a comment to T7620: gpgme_get_key fails to detect secret encryption subkey after key generation on card (until context is recreated).

I doubt that this is a gpgme problem. With a gpgme log we will be able see the exact commands send to gpg and replicate this on the command line.

May 5 2025, 5:45 PM · gnupg, Bug Report