Page MenuHome GnuPG
Feed Advanced Search

Wed, Nov 20

dkg added a comment to T7403: GnuPG 2.4.6 rewrites Ed25519 MPIs into non-compliant MPI form .

thanks for the clarification. i was not objecting to the workflow, i was trying to understand so that i can interact with the bug tracker appropriately. I was unaware of the difference between "milestones" and other project tags. I'll try to get that right in the future.

Wed, Nov 20, 3:52 PM · Not A Bug, gnupg24, Bug Report
werner triaged T7403: GnuPG 2.4.6 rewrites Ed25519 MPIs into non-compliant MPI form as Low priority.
Wed, Nov 20, 9:02 AM · Not A Bug, gnupg24, Bug Report
werner added projects to T7403: GnuPG 2.4.6 rewrites Ed25519 MPIs into non-compliant MPI form : gnupg24, Not A Bug.

Please do not add milestone tags.

Wed, Nov 20, 9:02 AM · Not A Bug, gnupg24, Bug Report

Thu, Nov 14

gniibe claimed T7044: Deadlock on Windows in sdaemon.

I put "scd" tag and let me claim this ticket.

Thu, Nov 14, 7:31 AM · scd, Bug Report, Windows, gnupg24

Tue, Nov 12

gniibe closed T7293: spawn API glitch as Resolved.
Tue, Nov 12, 7:34 AM · gnupg24, gnupg22, gpgrt, Bug Report

Fri, Nov 8

ebo added a comment to T7332: Kleopatra: Initial keylisting sometimes fails or hangs for some seconds.

For Beta-75 it looks similar judging from my first tries.

Fri, Nov 8, 4:04 PM · gnupg24, gnupg22, gpd5x, kleopatra, Bug Report

Thu, Nov 7

ebo added a comment to T7332: Kleopatra: Initial keylisting sometimes fails or hangs for some seconds.

I managed to get the same "loading certificate" message several times in a row on this test instance by stopping and starting Kleopatra in a row twice. After removing the Signature Card 2.0 this did not happen again in 5-6 tries, although I collected 2 lingering listing processes again (not both started on the same startup). Even import of a X.509 certificate worked.

Thu, Nov 7, 2:29 PM · gnupg24, gnupg22, gpd5x, kleopatra, Bug Report
ebo added a comment to T7332: Kleopatra: Initial keylisting sometimes fails or hangs for some seconds.

Next I managed to have one gpg and one gpgsm process each left over from the last execution of Kleopatra.
After starting Kleopatra new anyway, again "loading certificate cache" and an additional pair of gpg and gpgsm listing processes start.

Thu, Nov 7, 2:11 PM · gnupg24, gnupg22, gpd5x, kleopatra, Bug Report
ebo added a comment to T7332: Kleopatra: Initial keylisting sometimes fails or hangs for some seconds.

Had a occurrence of the never ending "loading certificate cache" issue again.
There was a leftover gpgsm process from the previous tests (although Kleopatra warned when I closed it, that processes still running in the background were there and would be aborted).

Thu, Nov 7, 1:40 PM · gnupg24, gnupg22, gpd5x, kleopatra, Bug Report

Tue, Nov 5

ebo removed a project from T5054: Preservation of modification date upon decryption/extraction.: gnupg (gpg23).
Tue, Nov 5, 3:10 PM · gnupg26, Bug Report, gpgtar

Sat, Nov 2

werner changed the status of T7332: Kleopatra: Initial keylisting sometimes fails or hangs for some seconds from Testing to Open.
Sat, Nov 2, 4:12 PM · gnupg24, gnupg22, gpd5x, kleopatra, Bug Report

Fri, Nov 1

gniibe added a comment to T7332: Kleopatra: Initial keylisting sometimes fails or hangs for some seconds.

@ebo Thank you for your continuous testing.

Fri, Nov 1, 1:59 AM · gnupg24, gnupg22, gpd5x, kleopatra, Bug Report

Thu, Oct 31

ebo added a comment to T7332: Kleopatra: Initial keylisting sometimes fails or hangs for some seconds.

Unfortunately, this seems not to have ended the sporadic hangs.
I just saw a hanging initial keylisting with gpg4win-beta-70 which hast gpg 2.4.6

Thu, Oct 31, 3:18 PM · gnupg24, gnupg22, gpd5x, kleopatra, Bug Report
ebo renamed T6014: Add support for relative redirect URI-references to dirmngr from Failed to search on certificate server. The error returned was: Syntax error in URI. to Add support for relative redirect URI-references to dirmngr.
Thu, Oct 31, 11:45 AM · gnupg24, dirmngr, Bug Report

Tue, Oct 29

werner closed T7030: Release GnuPG 2.4.6 as Resolved.
Tue, Oct 29, 2:25 PM · gnupg24 (2.4.6), Release Info
werner updated the task description for T7030: Release GnuPG 2.4.6.
Tue, Oct 29, 2:24 PM · gnupg24 (2.4.6), Release Info
werner moved T7151: graceful shutdown: DEVINFO should be a gpg-agent command: also watching input close from Backlog to QA on the gnupg24 board.
Tue, Oct 29, 1:39 PM · gpgagent, scd, gnupg24, Bug Report
werner added a project to T6358: --locate-key does not consider expired subkeys.: Bug Report.
Tue, Oct 29, 1:34 PM · Bug Report, gnupg24, OpenPGP
werner moved T7298: gpg --quick-set-expire fails for V5 subkeys from Backlog to QA on the gnupg24 board.
Tue, Oct 29, 1:12 PM · gnupg24, gnupg26, Bug Report
werner changed the status of T7298: gpg --quick-set-expire fails for V5 subkeys from Open to Testing.

Backported to 2.4 to go into 2.4.6

Tue, Oct 29, 1:12 PM · gnupg24, gnupg26, Bug Report
werner changed the status of T7332: Kleopatra: Initial keylisting sometimes fails or hangs for some seconds from Open to Testing.
Tue, Oct 29, 1:07 PM · gnupg24, gnupg22, gpd5x, kleopatra, Bug Report
werner moved T7030: Release GnuPG 2.4.6 from Backlog to WiP on the gnupg24 board.
Tue, Oct 29, 1:07 PM · gnupg24 (2.4.6), Release Info
werner added a comment to T7332: Kleopatra: Initial keylisting sometimes fails or hangs for some seconds.

Fix backported to 2.4

Tue, Oct 29, 12:51 PM · gnupg24, gnupg22, gpd5x, kleopatra, Bug Report

Oct 24 2024

ikloecker reassigned T7332: Kleopatra: Initial keylisting sometimes fails or hangs for some seconds from ikloecker to werner.

Passing ticket to werner to consider backports.

Oct 24 2024, 10:03 AM · gnupg24, gnupg22, gpd5x, kleopatra, Bug Report

Oct 17 2024

ebo edited projects for T7332: Kleopatra: Initial keylisting sometimes fails or hangs for some seconds, added: gnupg22, gnupg24; removed gnupg.
Oct 17 2024, 1:49 PM · gnupg24, gnupg22, gpd5x, kleopatra, Bug Report

Oct 9 2024

ebo edited projects for T5447: Add feature to delete a key from an LDAP server, added: vsd33; removed vsd33 (vsd-3.3.0).
Oct 9 2024, 10:47 AM · vsd33, Restricted Project, gnupg24, LDAP
alexk added a project to T5447: Add feature to delete a key from an LDAP server: vsd33 (vsd-3.3.0).
Oct 9 2024, 10:18 AM · vsd33, Restricted Project, gnupg24, LDAP

Oct 4 2024

ebo added a comment to T6882: Make ADSK configurable for new keys.

Tested with VS-Desktop-3.2.94.2-Beta.
Works as expected on the cli.

Oct 4 2024, 4:42 PM · gnupg24 (2.4.6), gnupg22 (gnupg-2.2.45)
ebo added a subtask for T6882: Make ADSK configurable for new keys: T7322: Kleopatra: General error if ADSK is not configured correctly.
Oct 4 2024, 4:35 PM · gnupg24 (2.4.6), gnupg22 (gnupg-2.2.45)
werner moved T6882: Make ADSK configurable for new keys from QA to gnupg-2.2.45 on the gnupg22 board.
Oct 4 2024, 11:35 AM · gnupg24 (2.4.6), gnupg22 (gnupg-2.2.45)
werner removed a project from T6882: Make ADSK configurable for new keys: Restricted Project.
Oct 4 2024, 11:34 AM · gnupg24 (2.4.6), gnupg22 (gnupg-2.2.45)
werner removed a project from T6882: Make ADSK configurable for new keys: vsd33.
Oct 4 2024, 11:34 AM · gnupg24 (2.4.6), gnupg22 (gnupg-2.2.45)

Oct 2 2024

ikloecker added a comment to T7313: gpgconf --list-options does not handle multiple trusted-keys..

gpgme should handle lists correctly. In Kleopatra those options are not shown in the configuration dialog because they are GC_LEVEL_INVISIBLE, i.e. Kleopatra can read them programmatically but they are not shown to the user.

Oct 2 2024, 5:13 PM · Feature Request, gnupg

Oct 1 2024

ikloecker added a comment to T6882: Make ADSK configurable for new keys.

While testing this I noticed that only the last adsk or trusted key is listed. Thus several assurances of this options are not properly represented. See T7313

Oct 1 2024, 1:33 PM · gnupg24 (2.4.6), gnupg22 (gnupg-2.2.45)
werner assigned T7313: gpgconf --list-options does not handle multiple trusted-keys. to ikloecker.

Fixed for master. Let's first test this with kleopatra.

Oct 1 2024, 10:59 AM · Feature Request, gnupg
werner renamed T7313: gpgconf --list-options does not handle multiple trusted-keys. from gpgconf --list-options does now handle multiple trusted-keys. to gpgconf --list-options does not handle multiple trusted-keys..
Oct 1 2024, 10:33 AM · Feature Request, gnupg
werner added a comment to T6882: Make ADSK configurable for new keys.

Done for 2.2. It is already in 2.4.

Oct 1 2024, 10:05 AM · gnupg24 (2.4.6), gnupg22 (gnupg-2.2.45)
werner triaged T7313: gpgconf --list-options does not handle multiple trusted-keys. as Normal priority.
Oct 1 2024, 10:05 AM · Feature Request, gnupg

Sep 27 2024

werner added a comment to T6882: Make ADSK configurable for new keys.

Will do.

Sep 27 2024, 11:39 AM · gnupg24 (2.4.6), gnupg22 (gnupg-2.2.45)
gniibe added a comment to T6375: gpg-agent race-condition with parallel clients.

It is reproducible bug even with master branch.

Sep 27 2024, 4:22 AM · gnupg24, gpgagent, Bug Report

Sep 26 2024

ikloecker added a comment to T6882: Make ADSK configurable for new keys.

werner: Can you also backport listing of "default-new-key-adsk" with gpgconf so that Kleopatra can check whether a default ADSK is set?

Sep 26 2024, 4:14 PM · gnupg24 (2.4.6), gnupg22 (gnupg-2.2.45)
ebo moved T6882: Make ADSK configurable for new keys from WiP to QA on the gnupg22 board.
Sep 26 2024, 4:04 PM · gnupg24 (2.4.6), gnupg22 (gnupg-2.2.45)
werner moved T6882: Make ADSK configurable for new keys from Backlog to WiP on the gnupg22 board.

Backported to 2.2

Sep 26 2024, 11:05 AM · gnupg24 (2.4.6), gnupg22 (gnupg-2.2.45)
gniibe added a comment to T6375: gpg-agent race-condition with parallel clients.

I have a look at the log file of gpg-agent.log. I can see that six PKDECRYPT requests are handled simultaneously. I think that it's out of secure memory to decrypt the private key which results pinentry request.

Sep 26 2024, 10:35 AM · gnupg24, gpgagent, Bug Report

Sep 25 2024

werner moved T5436: gpg-agent 2.3.1: PIN caching not working for decrypt operations from Backlog to done on the gnupg24 board.
Sep 25 2024, 4:31 PM · gnupg24, yubikey, Bug Report
werner closed T6556: gpgtar: Removes existing output file on error as Resolved.

We won't do that for Windows.

Sep 25 2024, 4:27 PM · gnupg24 (gnupg-2.4.2), gnupg22 (gnupg-2.2.42), Restricted Project, gpgtar, Bug Report
werner moved T6556: gpgtar: Removes existing output file on error from Backlog to gnupg-2.2.42 on the gnupg22 board.
Sep 25 2024, 4:26 PM · gnupg24 (gnupg-2.4.2), gnupg22 (gnupg-2.2.42), Restricted Project, gpgtar, Bug Report
werner changed the status of T7293: spawn API glitch from Open to Testing.
Sep 25 2024, 4:14 PM · gnupg24, gnupg22, gpgrt, Bug Report
werner added a comment to T7293: spawn API glitch.

Fixed in 2.2 with: rGc33523a0132e047032c4d65f9dedec0297bfbef3

Sep 25 2024, 4:13 PM · gnupg24, gnupg22, gpgrt, Bug Report
werner moved T7293: spawn API glitch from Backlog to WiP on the gnupg22 board.
Sep 25 2024, 4:12 PM · gnupg24, gnupg22, gpgrt, Bug Report
werner moved T7293: spawn API glitch from Backlog to QA on the gnupg24 board.
Sep 25 2024, 4:12 PM · gnupg24, gnupg22, gpgrt, Bug Report

Sep 24 2024

werner triaged T7298: gpg --quick-set-expire fails for V5 subkeys as Normal priority.
Sep 24 2024, 2:24 PM · gnupg24, gnupg26, Bug Report
werner added a comment to T7298: gpg --quick-set-expire fails for V5 subkeys.

Please go ahead and apply to master. I'll take then care of backporting.

Sep 24 2024, 2:23 PM · gnupg24, gnupg26, Bug Report
werner claimed T7298: gpg --quick-set-expire fails for V5 subkeys.
Sep 24 2024, 2:20 PM · gnupg24, gnupg26, Bug Report

Sep 20 2024

gniibe added a comment to T7151: graceful shutdown: DEVINFO should be a gpg-agent command: also watching input close.

Found another thinko; When there is no clients with DEVINFO --watch, the pipe to be notified is not consumed at all (no read). It eventually results blocked by write(2), when the pipe is filled.

Sep 20 2024, 3:51 AM · gpgagent, scd, gnupg24, Bug Report

Sep 19 2024

werner added a comment to T7151: graceful shutdown: DEVINFO should be a gpg-agent command: also watching input close.

I see. the systemd race of having two gpg-agent processes. The second gpg-agent should eventually go away but than it is already too late.

Sep 19 2024, 8:56 AM · gpgagent, scd, gnupg24, Bug Report
gniibe added a comment to T7151: graceful shutdown: DEVINFO should be a gpg-agent command: also watching input close.

I mean: two gpg-agent requests simultaneously running DEVINFO --watch.
Single scdaemon, two threads handling DEVINFO --watch simultaneously, by pselect + read.
Two threads waken up, but it was only one thread which can read(2), another was blocked (before the fix).

Sep 19 2024, 1:43 AM · gpgagent, scd, gnupg24, Bug Report

Sep 18 2024

werner added a comment to T7151: graceful shutdown: DEVINFO should be a gpg-agent command: also watching input close.

You mean it is possible that the initialization function is called by several threads - or that two scdaemon's are running before they realize that one of them is in the way?

Sep 18 2024, 6:30 PM · gpgagent, scd, gnupg24, Bug Report
gniibe added a comment to T7151: graceful shutdown: DEVINFO should be a gpg-agent command: also watching input close.

Fixed in rGfc30f7059650: scd: Fix DEVINFO to allow multiple clients.

Sep 18 2024, 6:52 AM · gpgagent, scd, gnupg24, Bug Report
gniibe added a comment to T7151: graceful shutdown: DEVINFO should be a gpg-agent command: also watching input close.

I realized that I put a bug on POSIX; When multiple clients do DEVINFO --watch, it is possible for scdaemon to hang (waiting pselect and read, read by one, read by another is blocked).

Sep 18 2024, 4:57 AM · gpgagent, scd, gnupg24, Bug Report

Sep 17 2024

gniibe added a comment to T7293: spawn API glitch.

Fixed GnuPG 2.4 in: rG730593affa91: common:w32: Don't expose unused functions.

Sep 17 2024, 9:11 AM · gnupg24, gnupg22, gpgrt, Bug Report
gniibe updated the task description for T7293: spawn API glitch.
Sep 17 2024, 3:15 AM · gnupg24, gnupg22, gpgrt, Bug Report
gniibe set External Link to https://bugs.debian.org/1081807 on T7293: spawn API glitch.
Sep 17 2024, 2:26 AM · gnupg24, gnupg22, gpgrt, Bug Report
gniibe updated the task description for T7293: spawn API glitch.
Sep 17 2024, 2:23 AM · gnupg24, gnupg22, gpgrt, Bug Report
gniibe claimed T7293: spawn API glitch.

libgpg-error fix is done in: rEc2a713fe11e3: w32:spawn: Remove unused function get_max_fds.

Sep 17 2024, 2:22 AM · gnupg24, gnupg22, gpgrt, Bug Report
gniibe created T7293: spawn API glitch.
Sep 17 2024, 2:20 AM · gnupg24, gnupg22, gpgrt, Bug Report

Sep 9 2024

werner added a comment to T1825: Add a re-encrypt to additional key.

This has now been implemented for gnupg26 for public key encryption. However, symmetric key encryption, a man page, and the gpgme support are missing right now.

Sep 9 2024, 4:51 PM · Restricted Project, gnupg24, Feature Request

Aug 19 2024

werner moved T7256: gnupg 2.4.5 gcc-14 build error with --disable-exec photoid.c:428:10: error: 'return' with a value, in function returning void from Backlog to QA on the gnupg24 board.
Aug 19 2024, 10:31 AM · gnupg24, Bug Report
werner closed T7256: gnupg 2.4.5 gcc-14 build error with --disable-exec photoid.c:428:10: error: 'return' with a value, in function returning void as Resolved.

Thanks.

Aug 19 2024, 10:31 AM · gnupg24, Bug Report
werner triaged T7256: gnupg 2.4.5 gcc-14 build error with --disable-exec photoid.c:428:10: error: 'return' with a value, in function returning void as Low priority.
Aug 19 2024, 10:27 AM · gnupg24, Bug Report

Aug 17 2024

ametzler1 created T7256: gnupg 2.4.5 gcc-14 build error with --disable-exec photoid.c:428:10: error: 'return' with a value, in function returning void.
Aug 17 2024, 4:14 PM · gnupg24, Bug Report

Aug 16 2024

werner triaged T7247: Keyboxd doesn't notify user of unmigrated keys as Normal priority.
Aug 16 2024, 3:04 PM · gnupg24, Feature Request, keyboxd

Aug 13 2024

zablockil added a comment to T4537: gpgsm support for timestamp signatures.

I made a ticket on bugzilla with ready-made tests for S/MIME, but on close inspection a different structure appears for S/MIME and another for qualified signature (openssl could not verify token extracted from CAdES-BASELINE-T signature). However, these tests can be very useful.

Aug 13 2024, 5:10 PM · gnupg26, S/MIME, Feature Request

Aug 2 2024

ebo changed the status of T6882: Make ADSK configurable for new keys from Open to Testing.

Status is testing for 2.4, no backport yet for 2.2, so there it stays in the backlog column

Aug 2 2024, 10:38 AM · gnupg24 (2.4.6), gnupg22 (gnupg-2.2.45)
ebo moved T6882: Make ADSK configurable for new keys from Backlog to WiP on the gnupg24 board.
Aug 2 2024, 10:36 AM · gnupg24 (2.4.6), gnupg22 (gnupg-2.2.45)
ebo added a project to T6882: Make ADSK configurable for new keys: gnupg24.
Aug 2 2024, 10:35 AM · gnupg24 (2.4.6), gnupg22 (gnupg-2.2.45)

Jul 4 2024

ebo updated the task description for T4346: Remove gpg-agent passphrase nags for empty / none passphrase.
Jul 4 2024, 12:06 PM · gnupg24, gpg4win, pinentry

Jul 1 2024

werner lowered the priority of T6500: Keyserver access via http-proxy isn't attempted when using standard-resolver from High to Normal.
Jul 1 2024, 12:21 PM · gnupg, dns, Bug Report
gniibe changed the status of T7151: graceful shutdown: DEVINFO should be a gpg-agent command: also watching input close from Open to Testing.
Jul 1 2024, 4:25 AM · gpgagent, scd, gnupg24, Bug Report
gniibe changed the status of T7160: scd: pipe server shutdown, a subtask of T7151: graceful shutdown: DEVINFO should be a gpg-agent command: also watching input close, from Open to Testing.
Jul 1 2024, 4:25 AM · gpgagent, scd, gnupg24, Bug Report

Jun 27 2024

gniibe added a comment to T7151: graceful shutdown: DEVINFO should be a gpg-agent command: also watching input close.

Asking a change of gpgme would need more time... So, I decided to change gpg-agent side.
gpg-agent part was done in: rGb3f1f2cd192b: agent: Handle SCD DEVINFO --watch command in a special way.

Jun 27 2024, 8:38 AM · gpgagent, scd, gnupg24, Bug Report

Jun 25 2024

gniibe added a comment to T7151: graceful shutdown: DEVINFO should be a gpg-agent command: also watching input close.

scdaemon part was done in: rG36d8cffc6cd2: scd: Finish DEVINFO --watch command on input close.

Jun 25 2024, 10:56 AM · gpgagent, scd, gnupg24, Bug Report

Jun 24 2024

werner added a comment to T7151: graceful shutdown: DEVINFO should be a gpg-agent command: also watching input close.

Maybe we can support this directly in gpgme's assuan API.

Jun 24 2024, 9:05 AM · gpgagent, scd, gnupg24, Bug Report
gniibe added a comment to T7151: graceful shutdown: DEVINFO should be a gpg-agent command: also watching input close.

Did some experiment and I concluded (for now) that new command for gpg-agent would not be needed.
Instead, it might be better doing following in GPGME.

Jun 24 2024, 4:24 AM · gpgagent, scd, gnupg24, Bug Report

Jun 17 2024

gniibe added projects to T7151: graceful shutdown: DEVINFO should be a gpg-agent command: also watching input close: scd, gpgagent.
Jun 17 2024, 4:49 AM · gpgagent, scd, gnupg24, Bug Report

Jun 13 2024

werner triaged T7151: graceful shutdown: DEVINFO should be a gpg-agent command: also watching input close as High priority.
Jun 13 2024, 12:38 PM · gpgagent, scd, gnupg24, Bug Report

Jun 9 2024

bjmgeek added a comment to T6457: delete-secret-key does not delete all secret keys, when primary secret key is stripped in keyring.

I confirmed that this is present in version 2.2.40 on debian as well.

Jun 9 2024, 10:13 PM · gnupg24, Feature Request

Jun 6 2024

werner raised the priority of T1825: Add a re-encrypt to additional key from Normal to High.
Jun 6 2024, 11:23 AM · Restricted Project, gnupg24, Feature Request

May 31 2024

whites11 added a comment to T7041: Yubikey (PGP + PIV) --pcsc-shared: PIN requires every time.

Thanks for your answer, @werner

May 31 2024, 2:33 PM · gnupg26, yubikey, scd, Bug Report
werner added a comment to T7041: Yubikey (PGP + PIV) --pcsc-shared: PIN requires every time.

Do not use the pcscd but the integrated CCID driver. This is actually the default form Unix. Or are you on Windows?

May 31 2024, 12:36 PM · gnupg26, yubikey, scd, Bug Report
whites11 added a comment to T7041: Yubikey (PGP + PIV) --pcsc-shared: PIN requires every time.

Hello all. I think I am affected by this problem (I get asked for the yubikey PIV pin every time I make a git commit).
Is there a known workaround?

May 31 2024, 10:45 AM · gnupg26, yubikey, scd, Bug Report

May 29 2024

werner moved T7129: Fix static reports by static analyser in gnugp from Backlog to QA on the gnupg22 board.
May 29 2024, 12:01 PM · gnupg22 (gnupg-2.2.44), gnupg24 (2.4.6), Bug Report
werner changed the status of T7129: Fix static reports by static analyser in gnugp from Open to Testing.

Backported to 2.4 and relevant parts also to 2.2

May 29 2024, 12:00 PM · gnupg22 (gnupg-2.2.44), gnupg24 (2.4.6), Bug Report

May 28 2024

Jakuje added a comment to T7129: Fix static reports by static analyser in gnugp.

In PATCH GnuPG 12/15] sm: Avoid use of uninitialized variable I can't see where ERR was not initialized.

May 28 2024, 5:28 PM · gnupg22 (gnupg-2.2.44), gnupg24 (2.4.6), Bug Report
werner moved T7129: Fix static reports by static analyser in gnugp from Backlog to WiP on the gnupg24 board.
May 28 2024, 5:20 PM · gnupg22 (gnupg-2.2.44), gnupg24 (2.4.6), Bug Report
werner added a comment to T7129: Fix static reports by static analyser in gnugp.

All except the above mentioned applied to master - will be backported to 2.4

May 28 2024, 5:20 PM · gnupg22 (gnupg-2.2.44), gnupg24 (2.4.6), Bug Report
werner added a comment to T7129: Fix static reports by static analyser in gnugp.

In PATCH GnuPG 12/15] sm: Avoid use of uninitialized variable I can't see where ERR was not initialized.

May 28 2024, 5:19 PM · gnupg22 (gnupg-2.2.44), gnupg24 (2.4.6), Bug Report
Jakuje added a comment to T7129: Fix static reports by static analyser in gnugp.

Fair enough. This is more theoretical and could happen only on huge reads. Using ssize_t for read() return value is safe option, but really does not make sense to adhere to it in cases where the reads must be smaller.

May 28 2024, 4:23 PM · gnupg22 (gnupg-2.2.44), gnupg24 (2.4.6), Bug Report
werner added a comment to T7129: Fix static reports by static analyser in gnugp.

I do not understand why there should be an integer overflow:

May 28 2024, 4:10 PM · gnupg22 (gnupg-2.2.44), gnupg24 (2.4.6), Bug Report
werner raised the priority of T7129: Fix static reports by static analyser in gnugp from Normal to High.
May 28 2024, 11:08 AM · gnupg22 (gnupg-2.2.44), gnupg24 (2.4.6), Bug Report