Page MenuHome GnuPG
Feed All Stories

Wed, Jan 28

werner closed T8028: Release Gpg4win 5.0.0 as Resolved.
Wed, Jan 28, 4:14 PM · gpg4win, Release Info
werner closed T8060: Release Gpg4win 5.0.1 as Resolved.
Wed, Jan 28, 4:14 PM · gpg4win, Release Info
werner added projects to T8065: gnupg self test hang: clean migration: gnupg26, NetBSD.

Do you remember wether you had the same problem also with 2.5.14 or 2.5.16? Or can you test with these versions? Which version of libgpg-error are you using?

Wed, Jan 28, 4:13 PM · NetBSD, gnupg26, Bug Report
wiz added a comment to T8065: gnupg self test hang: clean migration.

When I kill the gpg process, I see:

("/tmp/security/gnupg2/work/gnupg-2.5.17/g10/gpg" --no-permission-warning --no-greeting --no-secmem-warning --batch "--agent-program=/tmp/security/gnupg2/work/gnupg-2.5.17/agent/gpg-agent|--debug-quick-random" --list-sec
ret-keys) failed: gpg: starting migration from earlier GnuPG versions
Wed, Jan 28, 3:57 PM · NetBSD, gnupg26, Bug Report
wiz updated the task description for T8065: gnupg self test hang: clean migration.
Wed, Jan 28, 3:52 PM · NetBSD, gnupg26, Bug Report
wiz created T8065: gnupg self test hang: clean migration.
Wed, Jan 28, 3:52 PM · NetBSD, gnupg26, Bug Report
ebo added a subtask for T8064: Draft: GpgOL: Add Option to force GpgOL usage in case of conflict: T7989: GpgOL: Confusing message in dialog window "Conflicting crypto settings".
Wed, Jan 28, 3:32 PM · Feature Request, gpgol
ebo added a parent task for T7989: GpgOL: Confusing message in dialog window "Conflicting crypto settings": T8064: Draft: GpgOL: Add Option to force GpgOL usage in case of conflict.
Wed, Jan 28, 3:32 PM · vsd33 (vsd-3.3.5), Bug Report, gpd5x, gpgol
ebo triaged T8064: Draft: GpgOL: Add Option to force GpgOL usage in case of conflict as Normal priority.
Wed, Jan 28, 3:31 PM · Feature Request, gpgol
m.eik triaged T8063: improve naming scheme of reencrypt folders as Normal priority.
Wed, Jan 28, 3:10 PM · gpgol2
ebo added a project to T7989: GpgOL: Confusing message in dialog window "Conflicting crypto settings": vsd34.
Wed, Jan 28, 3:08 PM · vsd33 (vsd-3.3.5), Bug Report, gpd5x, gpgol
tfry committed rOJd98b386978db: Update generated javascript (authored by tfry).
Update generated javascript
Wed, Jan 28, 2:54 PM
tfry updated the task description for T8024: Port away from EWS API usage.
Wed, Jan 28, 2:51 PM · gpgol2
tfry committed rOJ5fd91df488c7: Remove further direct references to EWS. (authored by tfry).
Remove further direct references to EWS.
Wed, Jan 28, 2:48 PM
m.eik triaged T8062: improve version information for debugging as Normal priority.
Wed, Jan 28, 2:44 PM · gpgol2
pl13 committed rG0437dfc94b23: tests: Add test for parsing too large signature packets. (authored by pl13).
tests: Add test for parsing too large signature packets.
Wed, Jan 28, 2:31 PM
tfry committed rOJ14d1f4bc1044: Remove/port further direct usages of EWS API (authored by tfry).
Remove/port further direct usages of EWS API
Wed, Jan 28, 1:56 PM
werner committed rG81760cc931d6: Fix stub functions to avoid LTO linking bugs. (authored by werner).
Fix stub functions to avoid LTO linking bugs.
Wed, Jan 28, 1:41 PM
tfry committed rOJ4b75d756017e: Port usage to Graph-API, with a fallback to EWS for on-premises installations (authored by tfry).
Port usage to Graph-API, with a fallback to EWS for on-premises installations
Wed, Jan 28, 1:41 PM
tfry committed rOJa343e72dc0dd: Finish porting reencrypt feature to EWS/Graph-API abstraction (authored by tfry).
Finish porting reencrypt feature to EWS/Graph-API abstraction
Wed, Jan 28, 1:41 PM
werner added a comment to T8029: IPC error on batch import of secret kyber cert.

My actual plan is to rework the imp[ort/export of secret keys to gpg-agent. Right now gpg-agent has knowledge of OpenPGP for import/export. This is not good and the required conversion should be moved to a helper tools for easier testing and to have this out of the gpg-agent process. For Kyber we right now don't use any conversion mut store the secret keys in gpg-agent's native format. Thus the passphrase is not necessary. We need to figure out why we have this problem here.

Wed, Jan 28, 11:47 AM · gnupg26, Bug Report, gpd5x, kleopatra
tfry triaged T8061: reencrypt: Deal with subfolders as Normal priority.
Wed, Jan 28, 11:32 AM · gpgol2
tfry abandoned D624: Enhance reencrypt dialog UI.

Merged, manually.

Wed, Jan 28, 10:58 AM
tfry committed rOJb2565accaf4a: Refresh web files (authored by tfry).
Refresh web files
Wed, Jan 28, 10:57 AM
tfry committed rOJ9bfc7cc5f604: Merge branch 'work/tfry/reencrypt_ui' (authored by tfry).
Merge branch 'work/tfry/reencrypt_ui'
Wed, Jan 28, 10:57 AM
tfry committed rOJbcd891a5daa5: Remove unused sources files (authored by tfry).
Remove unused sources files
Wed, Jan 28, 9:42 AM
gniibe committed rMe4623a83adf4: Fix build with libassuan 2. (authored by collinfunk).
Fix build with libassuan 2.
Wed, Jan 28, 7:04 AM
l10n daemon script <scripty@kde.org> committed rLIBKLEOd1915630a249: GIT_SILENT Sync po/docbooks with svn (authored by l10n daemon script <scripty@kde.org>).
GIT_SILENT Sync po/docbooks with svn
Wed, Jan 28, 4:47 AM

Tue, Jan 27

werner committed rG3fdd959d8994: Post release updates (authored by werner).
Post release updates
Tue, Jan 27, 6:51 PM
werner committed rGf2f89dc82538: po: msgmerge (authored by werner).
po: msgmerge
Tue, Jan 27, 6:51 PM
werner committed rG17b514596f60: Release 2.5.17 (authored by werner).
Release 2.5.17
Tue, Jan 27, 6:51 PM
werner committed rG11b7e4139e82: gpg: Fix possible NULL-deref with overlong signature packets. (authored by werner).
gpg: Fix possible NULL-deref with overlong signature packets.
Tue, Jan 27, 6:51 PM
werner committed rG93fa34d9a346: tpm: Fix possible buffer overflow in PKDECRYPT (authored by werner).
tpm: Fix possible buffer overflow in PKDECRYPT
Tue, Jan 27, 6:51 PM
werner committed rGc3e387427977: po: Update Swedish translation (authored by Daniel Nylander <github@danielnylander.se>).
po: Update Swedish translation
Tue, Jan 27, 6:51 PM
werner committed rGeba28eeaa1b1: agent: Add accelerator keys for "Wrong" and "Correct". (authored by werner).
agent: Add accelerator keys for "Wrong" and "Correct".
Tue, Jan 27, 6:51 PM
werner committed rG2438271ab601: agent: Fix stack buffer overflow when using gpgsm and KEM (authored by werner).
agent: Fix stack buffer overflow when using gpgsm and KEM
Tue, Jan 27, 6:51 PM
bernhard added a comment to T8059: Gpg4win: Change bug report address to a Gpg4win-specific address.

This ticket is explicitly about Kleopatra included in Gpg4win.

Tue, Jan 27, 6:43 PM · gpd5x, kleopatra, gpg4win
werner set External Link to https://lists.gnupg.org/pipermail/gnupg-announce/2026q1/000501.html on T7996: Release GnuPG 2.5.17 (security).
Tue, Jan 27, 5:52 PM · CVE, gnupg, Release Info
ikloecker added a comment to T8059: Gpg4win: Change bug report address to a Gpg4win-specific address.

Kleopatra is also run on GNU/Linux Distributions.

Tue, Jan 27, 5:34 PM · gpd5x, kleopatra, gpg4win
werner committed rD400df30db64e: Security announcement (authored by werner).
Security announcement
Tue, Jan 27, 5:34 PM
werner updated the task description for T8060: Release Gpg4win 5.0.1.
Tue, Jan 27, 5:28 PM · gpg4win, Release Info
werner committed rDc5bbc42c40a6: swdb: GnuPg 2.5.17 and Gpg4win 5.0.1 (authored by werner).
swdb: GnuPg 2.5.17 and Gpg4win 5.0.1
Tue, Jan 27, 5:26 PM
werner closed T8045: Stack-based buffer overflow in TPM2 `PKDECRYPT` as Resolved.
Tue, Jan 27, 5:18 PM · gnupg26, CVE, TPM, Bug Report
werner closed T8049: Null pointer dereference with overlong signature packet as Resolved.
Tue, Jan 27, 5:17 PM · segv, gnupg26, Bug Report
werner closed T8055: pinentry-tty: Correct/Cancel/Wrong - what does "C" select? as Resolved.
Tue, Jan 27, 5:17 PM · gnupg, pinentry, Bug Report
werner renamed T8049: Null pointer dereference with overlong signature packet from Security (internal) - Aisle Research report: Null pointer dereference with overlong signature packet to Null pointer dereference with overlong signature packet.
Tue, Jan 27, 5:16 PM · segv, gnupg26, Bug Report
werner changed the visibility for T8045: Stack-based buffer overflow in TPM2 `PKDECRYPT`.
Tue, Jan 27, 5:12 PM · gnupg26, CVE, TPM, Bug Report
werner closed T8044: gpg-agent stack buffer overflow in pkdecrypt using KEM as Resolved.
Tue, Jan 27, 5:12 PM · CVE, gnupg26, gpgagent, Bug Report
werner changed the visibility for T7996: Release GnuPG 2.5.17 (security).
Tue, Jan 27, 5:11 PM · CVE, gnupg, Release Info
bernhard added a comment to T8059: Gpg4win: Change bug report address to a Gpg4win-specific address.

Kleopatra is also run on GNU/Linux Distributions.

Tue, Jan 27, 4:20 PM · gpd5x, kleopatra, gpg4win
werner added a comment to T7996: Release GnuPG 2.5.17 (security).

This is a security update

Tue, Jan 27, 3:47 PM · CVE, gnupg, Release Info
werner renamed T7996: Release GnuPG 2.5.17 (security) from Release GnuPG 2.5.17 to Release GnuPG 2.5.17 (security).
Tue, Jan 27, 3:44 PM · CVE, gnupg, Release Info
ebo moved T8045: Stack-based buffer overflow in TPM2 `PKDECRYPT` from Backlog to Done on the gnupg26 board.
Tue, Jan 27, 2:34 PM · gnupg26, CVE, TPM, Bug Report
ebo edited projects for T8045: Stack-based buffer overflow in TPM2 `PKDECRYPT`, added: gnupg26; removed gnupg.
Tue, Jan 27, 2:33 PM · gnupg26, CVE, TPM, Bug Report
ebo moved T8044: gpg-agent stack buffer overflow in pkdecrypt using KEM from Backlog to Done on the gnupg26 board.
Tue, Jan 27, 2:31 PM · CVE, gnupg26, gpgagent, Bug Report
ebo closed T7990: export-minimal unexpectedly omits expired key as Resolved.

Option works in Gpg4win-5.0.1 with GnuPG 2.5.17

Tue, Jan 27, 2:29 PM · gnupg26, Feature Request, Gentoo
ebo moved T6623: Kleopatra hangs "Loading certificate cache" on Windows 10 from Done to gpd-5.0.0 on the gpd5x board.
Tue, Jan 27, 1:59 PM · gpd5x (gpd-5.0.0), kleopatra
ebo moved T4581: Kleopatra stuck in loading the certificate cache from Done to gpd-5.0.0 on the gpd5x board.
Tue, Jan 27, 1:59 PM · gpd5x (gpd-5.0.0), gpg4win, kleopatra, Bug Report
ebo moved T7434: Kleopatra: Initial keylisting hangs for ~60 seconds (gpg-agent: Socket ...S.gpg-agent cannot be bound) from Done to gpd-5.0.0 on the gpd5x board.
Tue, Jan 27, 1:58 PM · gpd5x (gpd-5.0.0), gnupg, kleopatra
ebo moved T8026: Kleopatra: Export of multiple S/MIME certificates only exports one from Done to gpd-5.0.1 on the gpd5x board.
Tue, Jan 27, 1:58 PM · gpd5x (gpd-5.0.1), gnupg26, Bug Report
ebo created gpd5x (gpd-5.0.1).
Tue, Jan 27, 1:57 PM
ebo closed T8026: Kleopatra: Export of multiple S/MIME certificates only exports one as Resolved.
Tue, Jan 27, 1:54 PM · gpd5x (gpd-5.0.1), gnupg26, Bug Report
ebo moved T8026: Kleopatra: Export of multiple S/MIME certificates only exports one from WIP to Done on the gnupg26 board.

works in Gpg4win 5.0.1 with GnuPG 2.5.17

Tue, Jan 27, 1:52 PM · gpd5x (gpd-5.0.1), gnupg26, Bug Report
werner added a comment to T8028: Release Gpg4win 5.0.0.

Gpg4win 5.0.0 (2026-01-14)

Tue, Jan 27, 11:45 AM · gpg4win, Release Info
werner triaged T8060: Release Gpg4win 5.0.1 as High priority.
Tue, Jan 27, 11:45 AM · gpg4win, Release Info
ikloecker created T8059: Gpg4win: Change bug report address to a Gpg4win-specific address.
Tue, Jan 27, 9:02 AM · gpd5x, kleopatra, gpg4win
tfry committed rOJ9722d1b87d4a: Cleanups (authored by tfry).
Cleanups
Tue, Jan 27, 8:23 AM
tfry committed rOJ2262c655ee91: Request API permissions based on type of installation (authored by tfry).
Request API permissions based on type of installation
Tue, Jan 27, 8:23 AM
l10n daemon script <scripty@kde.org> committed rMTPd1cdd6f6abf2: GIT_SILENT Sync po/docbooks with svn (authored by l10n daemon script <scripty@kde.org>).
GIT_SILENT Sync po/docbooks with svn
Tue, Jan 27, 4:25 AM
Albert Astals Cid <aacid@kde.org> committed rKLEOPATRAd15e118981ac: GIT_SILENT Upgrade release service version to 25.12.2. (authored by Albert Astals Cid <aacid@kde.org>).
GIT_SILENT Upgrade release service version to 25.12.2.
Tue, Jan 27, 2:00 AM
Albert Astals Cid <aacid@kde.org> committed rKLEOPATRA52ede8008647: GIT_SILENT Update Appstream for new release (authored by Albert Astals Cid <aacid@kde.org>).
GIT_SILENT Update Appstream for new release
Tue, Jan 27, 2:00 AM
Albert Astals Cid <aacid@kde.org> committed rKLEOPATRAb1ab409dfc5d: GIT_SILENT Update Appstream for new release (authored by Albert Astals Cid <aacid@kde.org>).
GIT_SILENT Update Appstream for new release
Tue, Jan 27, 2:00 AM

Mon, Jan 26

tfry committed rOJf3021f1be3fe: Fix copy-and-update graph implementaion; add send mail implementation (authored by tfry).
Fix copy-and-update graph implementaion; add send mail implementation
Mon, Jan 26, 4:39 PM
tfry committed rOJ0d5f7d38296a: Send mails via abstracted API (authored by tfry).
Send mails via abstracted API
Mon, Jan 26, 4:39 PM
tfry committed rOJ6750a5550794: Implement further basic mail jobs, and start porting reencrypt code (authored by tfry).
Implement further basic mail jobs, and start porting reencrypt code
Mon, Jan 26, 4:39 PM
ebo triaged T8058: Draft: Kleopatra: Upload specific variant needed for the export warning in case of uncertified certificates as Normal priority.
Mon, Jan 26, 4:16 PM · gpd5x, kleopatra
ebo renamed T7496: Kleopatra: Unify the UI process for server upload (-> small string change) from Kleopatra: Unify the UI process for server upload to Kleopatra: Unify the UI process for server upload (-> small string change).
Mon, Jan 26, 4:04 PM · gpd5x, kleopatra
ebo added a parent task for T6769: Kleopatra: Change warning on keyserver upload: T8057: Certificate upload related improvements.
Mon, Jan 26, 2:57 PM · vsd33 (vsd-3.3.0), Restricted Project, kleopatra
ebo added a parent task for T7495: Kleopatra: Improve success message on keyserver upload: T8057: Certificate upload related improvements.
Mon, Jan 26, 2:57 PM · vsd34, gpd5x (gpd-5.0.0), kleopatra
ebo added a parent task for T7496: Kleopatra: Unify the UI process for server upload (-> small string change): T8057: Certificate upload related improvements.
Mon, Jan 26, 2:57 PM · gpd5x, kleopatra
ebo added a parent task for T7772: Kleopatra: Config option - only allow upload of certificates with private key to LDAP keyserver: T8057: Certificate upload related improvements.
Mon, Jan 26, 2:57 PM · gpd5x, vsd34, kleopatra
ebo added subtasks for T8057: Certificate upload related improvements: T7495: Kleopatra: Improve success message on keyserver upload, T6769: Kleopatra: Change warning on keyserver upload, T7496: Kleopatra: Unify the UI process for server upload (-> small string change), T7772: Kleopatra: Config option - only allow upload of certificates with private key to LDAP keyserver.
Mon, Jan 26, 2:57 PM · kleopatra
ebo triaged T8057: Certificate upload related improvements as Normal priority.
Mon, Jan 26, 2:54 PM · kleopatra
ebo added a project to T7495: Kleopatra: Improve success message on keyserver upload: vsd34.
Mon, Jan 26, 2:48 PM · vsd34, gpd5x (gpd-5.0.0), kleopatra
ebo closed T7579: Kleopatra: improve menu items as Resolved.
Mon, Jan 26, 2:38 PM · gpd5x (gpd-5.0.0), kleopatra
ebo closed T7674: Kleopatra: Restore behavior of RSAKeySizes and PGPKeyType as Resolved.
Mon, Jan 26, 2:29 PM · vsd33 (vsd-3.3.3), kleopatra
ebo triaged T8056: Support config options RSAKeySizes and PGPKeyType for Kf6 as Normal priority.
Mon, Jan 26, 2:29 PM · gpd5x, kleopatra
ebo placed T6568: Kleopatra: make table column headings accessible up for grabs.
Mon, Jan 26, 2:01 PM · vsd34, gpd5x, a11y, kleopatra
ebo placed T6874: Kleopatra subkey management improvements up for grabs.
Mon, Jan 26, 1:59 PM · kleopatra
timegrid added a comment to T8052: GnuPG: First listing of secret keys is empty.

To reproduce the hang, a loop will suffice (usually happens within the first 15 times, once it needed 50 runs):

Mon, Jan 26, 11:39 AM · Bug Report, gpgagent, gpd5x, gnupg26
timegrid removed a project from T6587: GpgME++ / QGpgME MSVC build: Restricted Project.
Mon, Jan 26, 11:22 AM · gpgme
ikloecker changed the status of T6537: Make KIO::move work on Windows when moving between different partitions, a subtask of T6373: Kleopatra: Show progress dialog when moving decrypted archive to final destination, from Testing to Open.
Mon, Jan 26, 11:20 AM · Feature Request, gpd5x, kleopatra
ikloecker changed the status of T6537: Make KIO::move work on Windows when moving between different partitions from Testing to Open.

This is still open. It cannot be tested because Gpg4win still doesn't use KIO::move on Windows (because the above patch has not yet been merged).

Mon, Jan 26, 11:20 AM · gpd5x, kleopatra
ikloecker changed the status of T6537: Make KIO::move work on Windows when moving between different partitions, a subtask of T6851: Kleopatra: Allow users to change name of decryption result if file already exists, from Testing to Open.
Mon, Jan 26, 11:20 AM · vsd33 (vsd-3.3.0), kleopatra, Restricted Project
timegrid added a comment to T8053: GpgSM: `log-file` is ignored.

There's no other configuration, this happens with a clean gnupghome with one smime cert + root cert and the above gpgsm.conf (output on stdin/stderr):

Mon, Jan 26, 11:18 AM · gpd5x, Bug Report, S/MIME, gnupg26
ikloecker added a comment to T6373: Kleopatra: Show progress dialog when moving decrypted archive to final destination.

I think this is still open (and requires T6537: Make KIO::move work on Windows when moving between different partitions).

Mon, Jan 26, 11:15 AM · Feature Request, gpd5x, kleopatra
ikloecker added a comment to T6587: GpgME++ / QGpgME MSVC build.

This is not yet fixed. KDE still applies a patch to gpgmepp (and gpgmeqt) to ifdef a few GCCisms.

Mon, Jan 26, 11:13 AM · gpgme
tfry committed rOJc96c4628b833: Implement copy-and-update mail operation using Graph API (authored by tfry).
Implement copy-and-update mail operation using Graph API
Mon, Jan 26, 9:13 AM

Sun, Jan 25

mfilippov added a comment to T8047: Support secure memory on Windows.

@werner I added an implementation https://dev.gnupg.org/D622
that matches Linux behavior and avoids the message about secure memory not being supported on Windows. The change is scoped to the pinentry tool and intentionally follows Linux behavior. Does this approach look reasonable to you?

Sun, Jan 25, 9:02 PM · Windows, gnupg, Feature Request
werner committed rE9b7c3438a3c9: po: Update Swedish translation. (authored by Daniel Nylander <github@danielnylander.se>).
po: Update Swedish translation.
Sun, Jan 25, 6:30 PM