Page MenuHome GnuPG
Feed Advanced Search

Wed, Apr 8

Karl added a comment to T8197: "gpg --refresh-keys" aborts with "gpg: keyserver refresh failed: No data" if too many keys are missing on keyserver.

@werner I can confirm that we've tested the patch and it seems to fix the issue in our setup.

Wed, Apr 8, 4:36 PM · gnupg22, Keyserver, gnupg26, Bug Report

Tue, Apr 7

werner added a project to T8209: Replace GnuPG's name-value impl by the one from GpgRT: Feature Request.
Tue, Apr 7, 4:54 PM · Feature Request, gnupg26
werner triaged T8209: Replace GnuPG's name-value impl by the one from GpgRT as Normal priority.
Tue, Apr 7, 4:54 PM · Feature Request, gnupg26
werner moved T8197: "gpg --refresh-keys" aborts with "gpg: keyserver refresh failed: No data" if too many keys are missing on keyserver from Backlog to WIP on the gnupg26 board.

Applied to master to be release with 2.5.19.

Tue, Apr 7, 4:46 PM · gnupg22, Keyserver, gnupg26, Bug Report
werner changed the status of T8188: gpgsm: No error/warning on verification or decryption in case of trusted but not VS-compliant certificate from Open to Testing.
Tue, Apr 7, 3:15 PM · gnupg22, vsd, gnupg26
werner changed the status of T7593: Check the trustlist de-vs flag in the per key compliance check from Open to Testing.
Tue, Apr 7, 3:14 PM · gpd5x, gnupg26, vsd, Feature Request
werner moved T7593: Check the trustlist de-vs flag in the per key compliance check from Backlog to WIP on the gnupg26 board.
Tue, Apr 7, 2:51 PM · gpd5x, gnupg26, vsd, Feature Request
pl13 moved T8188: gpgsm: No error/warning on verification or decryption in case of trusted but not VS-compliant certificate from Backlog to WiP on the gnupg22 board.
Tue, Apr 7, 1:38 PM · gnupg22, vsd, gnupg26
pl13 added a project to T8188: gpgsm: No error/warning on verification or decryption in case of trusted but not VS-compliant certificate: gnupg22.
Tue, Apr 7, 1:37 PM · gnupg22, vsd, gnupg26

Wed, Apr 1

pl13 added a comment to T8188: gpgsm: No error/warning on verification or decryption in case of trusted but not VS-compliant certificate.

Here is my attempt for fixing the de-vs compliance check when verifying a signature:

Wed, Apr 1, 2:28 PM · gnupg22, vsd, gnupg26

Tue, Mar 31

ebo added a comment to T7333: Allow gpg to auto-upload a new own key to LDAP servers.

2.2.53 was released wit VSD 3.3.6

Tue, Mar 31, 4:56 PM · vsd33, gnupg26, gnupg22
ebo moved T7333: Allow gpg to auto-upload a new own key to LDAP servers from WiP to QA on the gnupg22 board.
Tue, Mar 31, 4:54 PM · vsd33, gnupg26, gnupg22
ebo moved T7333: Allow gpg to auto-upload a new own key to LDAP servers from Backlog to QA on the vsd33 board.
Tue, Mar 31, 4:54 PM · vsd33, gnupg26, gnupg22
ebo edited projects for T7333: Allow gpg to auto-upload a new own key to LDAP servers, added: vsd33; removed vsd34.
Tue, Mar 31, 4:53 PM · vsd33, gnupg26, gnupg22
werner added a comment to T8197: "gpg --refresh-keys" aborts with "gpg: keyserver refresh failed: No data" if too many keys are missing on keyserver.

Can you please test the patch below in your environment. That would be helpful.

Tue, Mar 31, 3:18 PM · gnupg22, Keyserver, gnupg26, Bug Report

Sat, Mar 28

werner triaged T8197: "gpg --refresh-keys" aborts with "gpg: keyserver refresh failed: No data" if too many keys are missing on keyserver as High priority.
Sat, Mar 28, 6:12 PM · gnupg22, Keyserver, gnupg26, Bug Report

Fri, Mar 27

timegrid added a comment to T8189: GnuPG: Bad signature on import of designated revokation certificate.

Note: The invalid revocation certificate: Bad signature - rejected line is also shown on vsd 3.3.4, gpg 2.2.53 @ win10 (but revocation works).

Fri, Mar 27, 1:30 PM · Bug Report, gnupg26
timegrid updated the task description for T8196: GnuPG: Designated revokation with certify-only primary keys does not work.
Fri, Mar 27, 12:11 PM · Bug Report, gnupg26
timegrid created T8196: GnuPG: Designated revokation with certify-only primary keys does not work.
Fri, Mar 27, 11:55 AM · Bug Report, gnupg26
werner triaged T8195: Add option --ignore-expiration to gpg and gpgsm as Normal priority.
Fri, Mar 27, 11:17 AM · gnupg26, Feature Request
werner claimed T8076: Kleopatra: Unable to completely delete key with secret subkeys and offline-primary key.
Fri, Mar 27, 11:07 AM · gnupg26, gpd5x, kleopatra, Bug Report
werner triaged T8048: Keyboxd: S/MIME certificate is imported on ldap search as Normal priority.
Fri, Mar 27, 10:33 AM · keyboxd, Bug Report, gnupg26, S/MIME, LDAP, gpd5x

Thu, Mar 26

werner triaged T8188: gpgsm: No error/warning on verification or decryption in case of trusted but not VS-compliant certificate as Normal priority.
Thu, Mar 26, 9:26 AM · gnupg22, vsd, gnupg26
gniibe claimed T8048: Keyboxd: S/MIME certificate is imported on ldap search.

I applied the keyboxd part for SETEPHEMERAL command, as it doesn't break anything.

Thu, Mar 26, 3:56 AM · keyboxd, Bug Report, gnupg26, S/MIME, LDAP, gpd5x

Wed, Mar 25

timegrid updated the task description for T8189: GnuPG: Bad signature on import of designated revokation certificate.
Wed, Mar 25, 11:16 AM · Bug Report, gnupg26
timegrid triaged T8189: GnuPG: Bad signature on import of designated revokation certificate as Normal priority.
Wed, Mar 25, 11:10 AM · Bug Report, gnupg26
gniibe added a comment to T8048: Keyboxd: S/MIME certificate is imported on ldap search.

Here is an attempt to fix the client side:

Wed, Mar 25, 5:26 AM · keyboxd, Bug Report, gnupg26, S/MIME, LDAP, gpd5x

Tue, Mar 24

ebo created T8188: gpgsm: No error/warning on verification or decryption in case of trusted but not VS-compliant certificate.
Tue, Mar 24, 2:12 PM · gnupg22, vsd, gnupg26
werner renamed T8186: gpgsm: Add an attribute with version information to signatures from gpgsm: Add an atrtibute with version information to signatures to gpgsm: Add an attribute with version information to signatures.
Tue, Mar 24, 11:03 AM · Feature Request, S/MIME, gnupg26
werner triaged T8186: gpgsm: Add an attribute with version information to signatures as Normal priority.
Tue, Mar 24, 11:02 AM · Feature Request, S/MIME, gnupg26

Mon, Mar 23

ebo removed a project from T6986: Refresh/update OpenPGP keys should check WKD: needs discussion.

To clarify, the state in Kleopatra Ingo described a year ago has changed, with T7579: Kleopatra: improve menu items the refresh option in the Tools menu was removed. Both actions to update certificates - in the context menu and in the details - are/work the same.

Mon, Mar 23, 9:53 AM · gnupg26, Bug Report, Feature Request
ikloecker removed projects from T6986: Refresh/update OpenPGP keys should check WKD: gpd5x, kleopatra.

Removing kleopatra tag since Kleopatra already does what's requested.

Mon, Mar 23, 9:05 AM · gnupg26, Bug Report, Feature Request
timegrid added a comment to T8078: GpgAgent: trustlist.txt still requires LF on the last line.

But the original patch rG1b4ac98de7db: agent: Accept a trustlist with a missing LF at the end. was not working to allow missing newlines in gpg4win-5.0.0 @ win11?

Mon, Mar 23, 9:04 AM · gnupg24, gnupg22, Bug Report, gpgagent, gnupg26
ebo added a project to T6986: Refresh/update OpenPGP keys should check WKD: needs discussion.
Mon, Mar 23, 8:41 AM · gnupg26, Bug Report, Feature Request

Sun, Mar 22

werner raised the priority of T6986: Refresh/update OpenPGP keys should check WKD from Normal to High.
Sun, Mar 22, 6:20 PM · gnupg26, Bug Report, Feature Request

Fri, Mar 20

gniibe added a comment to T8162: pinentry/gpg/gpgme/Kleo: Cancel semantics: decryption.

Pushed the change of gpgme: rM8b89678aed6d: Fix passphrase cancel handling.

Fri, Mar 20, 5:21 AM · pinentry, Feature Request, gnupg26, gpd5x, kleopatra

Thu, Mar 19

werner added a comment to T8078: GpgAgent: trustlist.txt still requires LF on the last line.

That change is too complex for just getting a proper error message. The original patch covers the most common case.

Thu, Mar 19, 2:04 PM · gnupg24, gnupg22, Bug Report, gpgagent, gnupg26
timegrid added projects to T8078: GpgAgent: trustlist.txt still requires LF on the last line: gnupg22, gnupg24.

This should also be fixed in 2.2 and 2.4 (if neccessary)

Thu, Mar 19, 12:25 PM · gnupg24, gnupg22, Bug Report, gpgagent, gnupg26
ikloecker updated the task description for T8182: Make OK the default action for the "insert card" prompt..
Thu, Mar 19, 9:27 AM · gpgagent, gnupg26, pinentry, Bug Report
gniibe added a comment to T8182: Make OK the default action for the "insert card" prompt..

It seems that pinentry-curses defaults to "OK".
(my branch for GTK-4, same.)

Thu, Mar 19, 8:07 AM · gpgagent, gnupg26, pinentry, Bug Report

Wed, Mar 18

ikloecker added a comment to T8182: Make OK the default action for the "insert card" prompt..

Cancel (in pinentry-qt) was made default with rP291089ed476d75c71ef1984a7c081d27e357437d. Marc's ChangeLog entry was

  • qt4/main.cpp: (qt_cmd_handler) make Cancel the default button for CONFIRM
Wed, Mar 18, 9:00 PM · gpgagent, gnupg26, pinentry, Bug Report
werner triaged T8182: Make OK the default action for the "insert card" prompt. as Normal priority.
Wed, Mar 18, 5:32 PM · gpgagent, gnupg26, pinentry, Bug Report
gniibe added a comment to T8162: pinentry/gpg/gpgme/Kleo: Cancel semantics: decryption.

I consider again about Ben's change. It could be simply support of the detection of the cancel situation where gpgme should return GPG_ERR_CANCELED (not related to single cancellation vs. whole cancellation).

Wed, Mar 18, 6:38 AM · pinentry, Feature Request, gnupg26, gpd5x, kleopatra

Tue, Mar 17

werner edited projects for T8162: pinentry/gpg/gpgme/Kleo: Cancel semantics: decryption, added: Feature Request, pinentry; removed Bug Report.

I can't remember why Ben introduced the new status. OTOH, I wish that the Qt-Pinentry also emits a button_info line for closing the window. Normal users don't notice the difference but if you have a lot of private keys and you get a mail which has only hidden recipients the full_canceled is pretty useful. Also for other tasks like allow-mark-trusted: On Windows with the qt-pinentry I am always cursing about this but on my box I only need to close the pinentry window to get a fully_canceled

Tue, Mar 17, 4:08 PM · pinentry, Feature Request, gnupg26, gpd5x, kleopatra
gniibe added a comment to T8162: pinentry/gpg/gpgme/Kleo: Cancel semantics: decryption.

I investigated the introduction of STATUS_CANCELED_BY_USER and GPGME_STATUS_CANCELED_BY_USER:
rG31e47dfad0f4: gpg: Add canceled status message.
rM35ca460019ea: Parse STATUS_CANCELED_BY_USER.

Tue, Mar 17, 10:07 AM · pinentry, Feature Request, gnupg26, gpd5x, kleopatra

Mar 12 2026

ikloecker added a comment to T8162: pinentry/gpg/gpgme/Kleo: Cancel semantics: decryption.

I stand partially corrected. Apparently, pinentry-efl also sets close_button. For Gpg4win that's irrelevant because we ship pinentry-qt which doesn't have this IMHO contra-intuitive behavior (and pinentry-w32 where I don't know how it behaves).

Mar 12 2026, 11:11 AM · pinentry, Feature Request, gnupg26, gpd5x, kleopatra
werner added a comment to T8162: pinentry/gpg/gpgme/Kleo: Cancel semantics: decryption.

pinentry-tty and pinentry-curses support GPG_ERR_FULLY_CANCELED by Ctrl-C. But other pinentry implementations have no support (only GPG_ERR_CANCELED).

Mar 12 2026, 10:01 AM · pinentry, Feature Request, gnupg26, gpd5x, kleopatra
ikloecker added a comment to T8162: pinentry/gpg/gpgme/Kleo: Cancel semantics: decryption.

I'd also like to point out that changing the error code from GPG_ERR_CANCELED to GPG_ERR_FULLY_CANCELED could cause regressions in applications.

Mar 12 2026, 9:06 AM · pinentry, Feature Request, gnupg26, gpd5x, kleopatra
ikloecker added a comment to T8162: pinentry/gpg/gpgme/Kleo: Cancel semantics: decryption.

How do you want to decide whether to show two "Cancel" buttons? How would you call those two "Cancel" buttons? For decryption I can imagine that for example "Try Next Key" and "Cancel Decryption" (or even just "Cancel") would make clear what happens.

Mar 12 2026, 8:43 AM · pinentry, Feature Request, gnupg26, gpd5x, kleopatra

Mar 11 2026

bernhard added a comment to T8162: pinentry/gpg/gpgme/Kleo: Cancel semantics: decryption.

If this definition is OK

Mar 11 2026, 9:01 AM · pinentry, Feature Request, gnupg26, gpd5x, kleopatra
gniibe updated the task description for T8162: pinentry/gpg/gpgme/Kleo: Cancel semantics: decryption.
Mar 11 2026, 2:05 AM · pinentry, Feature Request, gnupg26, gpd5x, kleopatra
gniibe renamed T8162: pinentry/gpg/gpgme/Kleo: Cancel semantics: decryption from pinentry/gpg/gpgme/Kleo: Cancel semantics to pinentry/gpg/gpgme/Kleo: Cancel semantics: decryption.
Mar 11 2026, 2:02 AM · pinentry, Feature Request, gnupg26, gpd5x, kleopatra
gniibe updated the task description for T8162: pinentry/gpg/gpgme/Kleo: Cancel semantics: decryption.
Mar 11 2026, 1:58 AM · pinentry, Feature Request, gnupg26, gpd5x, kleopatra
gniibe triaged T8162: pinentry/gpg/gpgme/Kleo: Cancel semantics: decryption as Normal priority.
Mar 11 2026, 1:56 AM · pinentry, Feature Request, gnupg26, gpd5x, kleopatra
gniibe added a comment to T7339: Kleopatra: Cannot decrypt packets with hybrid cipher without using symmetric passphrase.

@bernhard Thank you for the link.

Mar 11 2026, 1:27 AM · gnupg26, gpd5x, kleopatra, Bug Report

Mar 10 2026

ikloecker added a comment to T8076: Kleopatra: Unable to completely delete key with secret subkeys and offline-primary key.

If you specify a primary key the primary key shall be deleted. If there is only an offline or token based primary it can't be deleted. This is what the user requested. We can't change this because otherwise subkeys might be unintentionally deleted.

Mar 10 2026, 5:55 PM · gnupg26, gpd5x, kleopatra, Bug Report
werner added a comment to T8076: Kleopatra: Unable to completely delete key with secret subkeys and offline-primary key.

What is an "incomplete team key" - a standard offline secret key (i.e. one with only secret subkeys)?

Mar 10 2026, 5:25 PM · gnupg26, gpd5x, kleopatra, Bug Report
werner renamed T8076: Kleopatra: Unable to completely delete key with secret subkeys and offline-primary key from Kleopatra: Unable to completely delete key with secret subkeys and "offline" primary key to Kleopatra: Unable to completely delete key with secret subkeys and offline-primary key.
Mar 10 2026, 5:24 PM · gnupg26, gpd5x, kleopatra, Bug Report
werner added a comment to T8076: Kleopatra: Unable to completely delete key with secret subkeys and offline-primary key.

If you specify a primary key the primary key shall be deleted. If there is only an offline or token based primary it can't be deleted. This is what the user requested. We can't change this because otherwise subkeys might be unintentionally deleted.

Mar 10 2026, 5:21 PM · gnupg26, gpd5x, kleopatra, Bug Report
ikloecker added a comment to T7339: Kleopatra: Cannot decrypt packets with hybrid cipher without using symmetric passphrase.

I guess the behavior changed with gpg 2.4, i.e. "With gpg 2.4 (or later), ..."

Mar 10 2026, 5:19 PM · gnupg26, gpd5x, kleopatra, Bug Report
ebo added a project to T7339: Kleopatra: Cannot decrypt packets with hybrid cipher without using symmetric passphrase: gnupg26.

why gpg 2.4? Don't you mean 2.6? I'll add the proper 2.6 tag for avoiding confusion

Mar 10 2026, 2:33 PM · gnupg26, gpd5x, kleopatra, Bug Report

Mar 4 2026

timegrid closed T8012: Missing error on first key search without keyserver as Resolved.

Right, looks good to me now on gpg4win-5.0.2-beta2 @ win11:

Mar 4 2026, 8:55 AM · dirmngr, Bug Report, gnupg26
ebo changed the status of T8012: Missing error on first key search without keyserver from Open to Testing.
Mar 4 2026, 8:26 AM · dirmngr, Bug Report, gnupg26
gniibe added a comment to T8012: Missing error on first key search without keyserver.

Possibly, it was the same cause as T8052 (the bug in libgpg-error spawning a process).

Mar 4 2026, 8:09 AM · dirmngr, Bug Report, gnupg26
gniibe added a comment to T8048: Keyboxd: S/MIME certificate is imported on ldap search.

I looked at sm/keydb.c:keydb_set_ephemeral function. It says:

Mar 4 2026, 7:38 AM · keyboxd, Bug Report, gnupg26, S/MIME, LDAP, gpd5x

Mar 3 2026

timegrid closed T8052: GnuPG: First listing of secret keys is empty as Resolved.
Mar 3 2026, 1:22 PM · gpd5x (gpd-5.0.2), gpgrt, Bug Report, gpgagent, gnupg26
timegrid moved T8052: GnuPG: First listing of secret keys is empty from Done to gpd-5.0.2 on the gpd5x board.
Mar 3 2026, 1:22 PM · gpd5x (gpd-5.0.2), gpgrt, Bug Report, gpgagent, gnupg26
timegrid moved T8052: GnuPG: First listing of secret keys is empty from Backlog to Done on the gpgrt board.
Mar 3 2026, 1:22 PM · gpd5x (gpd-5.0.2), gpgrt, Bug Report, gpgagent, gnupg26
timegrid moved T8052: GnuPG: First listing of secret keys is empty from WIP to Done on the gnupg26 board.
Mar 3 2026, 1:22 PM · gpd5x (gpd-5.0.2), gpgrt, Bug Report, gpgagent, gnupg26
timegrid moved T8052: GnuPG: First listing of secret keys is empty from QA to Done on the gpd5x board.

Looks good to me on gpg4win-5.0.2-beta2 @ win11:

  • first manual gpg -K and gpgsm -K displays the correct output now
  • the loop ran without a hang for 50 times
Mar 3 2026, 1:20 PM · gpd5x (gpd-5.0.2), gpgrt, Bug Report, gpgagent, gnupg26

Mar 1 2026

Marian-Kechlibar added a comment to T8029: IPC error on batch import of secret kyber cert.

My actual plan is to rework the imp[ort/export of secret keys to gpg-agent. Right now gpg-agent has knowledge of OpenPGP for import/export. This is not good and the required conversion should be moved to a helper tools for easier testing and to have this out of the gpg-agent process. For Kyber we right now don't use any conversion mut store the secret keys in gpg-agent's native format. Thus the passphrase is not necessary. We need to figure out why we have this problem here.

Mar 1 2026, 6:32 PM · gnupg26, Bug Report, gpd5x, kleopatra

Feb 27 2026

gniibe added a comment to T8078: GpgAgent: trustlist.txt still requires LF on the last line.

I found that it's not that simple to accept the case of no newline at the end.
Because we need to handle the edge case where no newline occurs at the maximum buffer length, too.
It's something like the following.

Feb 27 2026, 3:21 AM · gnupg24, gnupg22, Bug Report, gpgagent, gnupg26
gniibe claimed T8092: GnuPG: Add algorithm info for all kyber choices on certificate generation.
Feb 27 2026, 1:55 AM · Feature Request, PQC, gnupg26

Feb 26 2026

ebo moved T8052: GnuPG: First listing of secret keys is empty from WIP to QA on the gpd5x board.
Feb 26 2026, 3:04 PM · gpd5x (gpd-5.0.2), gpgrt, Bug Report, gpgagent, gnupg26
ebo moved T8052: GnuPG: First listing of secret keys is empty from Backlog to WIP on the gnupg26 board.
Feb 26 2026, 8:36 AM · gpd5x (gpd-5.0.2), gpgrt, Bug Report, gpgagent, gnupg26
ebo moved T8052: GnuPG: First listing of secret keys is empty from Backlog to WIP on the gpd5x board.
Feb 26 2026, 8:35 AM · gpd5x (gpd-5.0.2), gpgrt, Bug Report, gpgagent, gnupg26
gniibe changed the status of T8052: GnuPG: First listing of secret keys is empty from Open to Testing.
Feb 26 2026, 12:55 AM · gpd5x (gpd-5.0.2), gpgrt, Bug Report, gpgagent, gnupg26

Feb 25 2026

ebo moved T8092: GnuPG: Add algorithm info for all kyber choices on certificate generation from Backlog to WIP on the gnupg26 board.
Feb 25 2026, 8:43 AM · Feature Request, PQC, gnupg26
gniibe changed the status of T8092: GnuPG: Add algorithm info for all kyber choices on certificate generation from Open to Testing.
Feb 25 2026, 5:16 AM · Feature Request, PQC, gnupg26
gniibe added a comment to T8045: Stack-based buffer overflow in TPM2 `PKDECRYPT`.

Also applied to 2.4 branch.

Feb 25 2026, 3:56 AM · gnupg26, Security, TPM, Bug Report

Feb 24 2026

werner changed the status of T8045: Stack-based buffer overflow in TPM2 `PKDECRYPT` from Open to Testing.
Feb 24 2026, 3:34 PM · gnupg26, Security, TPM, Bug Report

Feb 19 2026

timegrid added a comment to T8092: GnuPG: Add algorithm info for all kyber choices on certificate generation.

I haven't tested it, but it looks good

Feb 19 2026, 12:52 PM · Feature Request, PQC, gnupg26
ebo moved T7875: GnuPG: Deletion of kyber key fails from Backlog to WIP on the gnupg26 board.
Feb 19 2026, 10:25 AM · Bug Report, PQC, gnupg26
gniibe closed T8065: gnupg self test hang: clean migration as Resolved.

Fixed in libgpg-error 1.59.

Feb 19 2026, 5:32 AM · gpgrt, NetBSD, gnupg26, Bug Report
gniibe triaged T8052: GnuPG: First listing of secret keys is empty as Normal priority.
Feb 19 2026, 5:21 AM · gpd5x (gpd-5.0.2), gpgrt, Bug Report, gpgagent, gnupg26
gniibe changed the status of T7875: GnuPG: Deletion of kyber key fails from Open to Testing.
Feb 19 2026, 5:20 AM · Bug Report, PQC, gnupg26
gniibe added a comment to T8092: GnuPG: Add algorithm info for all kyber choices on certificate generation.

Like this patch?

Feb 19 2026, 2:35 AM · Feature Request, PQC, gnupg26

Feb 17 2026

werner added a subtask for T4537: gpgsm support for timestamp signatures: T4108: Support for verifying OpenPGP standalone and timestamp signatures.
Feb 17 2026, 9:56 AM · gnupg26, S/MIME, Feature Request
gniibe claimed T7875: GnuPG: Deletion of kyber key fails.
Feb 17 2026, 8:48 AM · Bug Report, PQC, gnupg26

Feb 13 2026

werner added a comment to T7333: Allow gpg to auto-upload a new own key to LDAP servers.

Has now been backported to be released with 2.2.53

Feb 13 2026, 2:55 PM · vsd33, gnupg26, gnupg22
werner moved T7333: Allow gpg to auto-upload a new own key to LDAP servers from Backlog to WIP on the vsd34 board.
Feb 13 2026, 2:55 PM · vsd33, gnupg26, gnupg22
werner changed the status of T7333: Allow gpg to auto-upload a new own key to LDAP servers from Open to Testing.
Feb 13 2026, 2:54 PM · vsd33, gnupg26, gnupg22
werner moved T7866: Allow separate LDAP keyserver for uploading from WIP to Done on the gnupg26 board.
Feb 13 2026, 2:28 PM · gnupg22, vsd34, LDAP, Feature Request, gnupg26
werner moved T7866: Allow separate LDAP keyserver for uploading from Backlog to WiP on the gnupg22 board.
Feb 13 2026, 2:28 PM · gnupg22, vsd34, LDAP, Feature Request, gnupg26
werner changed the status of T7866: Allow separate LDAP keyserver for uploading from Open to Testing.
Feb 13 2026, 2:28 PM · gnupg22, vsd34, LDAP, Feature Request, gnupg26
gniibe added a comment to T7875: GnuPG: Deletion of kyber key fails.

Here is an attempt of mine this week:

diff --git a/g10/call-agent.c b/g10/call-agent.c
index 5e13a3e52..8949fad17 100644
--- a/g10/call-agent.c
+++ b/g10/call-agent.c
@@ -3290,13 +3290,14 @@ confirm_status_cb (void *opaque, const char *line)
    message.  If FORCE is true the agent is advised not to ask for
    confirmation. */
 gpg_error_t
-agent_delete_key (ctrl_t ctrl, const char *hexkeygrip, const char *desc,
+agent_delete_key (ctrl_t ctrl, const char *keygrip, const char *desc,
                   int force)
 {
   gpg_error_t err;
   char line[ASSUAN_LINELENGTH];
   struct default_inq_parm_s dfltparm;
   struct confirm_parm_s confirm_parm;
+  const char *keygrip2 = NULL;
Feb 13 2026, 8:07 AM · Bug Report, PQC, gnupg26

Feb 12 2026

werner lowered the priority of T8045: Stack-based buffer overflow in TPM2 `PKDECRYPT` from Unbreak Now! to Normal.
Feb 12 2026, 11:14 AM · gnupg26, Security, TPM, Bug Report
gniibe added a comment to T8045: Stack-based buffer overflow in TPM2 `PKDECRYPT`.

The fix causes a regression. Reported: https://lists.gnupg.org/pipermail/gnupg-devel/2026-February/036218.html

Feb 12 2026, 2:49 AM · gnupg26, Security, TPM, Bug Report
gniibe reopened T8045: Stack-based buffer overflow in TPM2 `PKDECRYPT` as "Open".

This is not 2.5-only.

Feb 12 2026, 2:48 AM · gnupg26, Security, TPM, Bug Report

Feb 9 2026

timegrid added a comment to T8092: GnuPG: Add algorithm info for all kyber choices on certificate generation.

Sorry for the ambiguity. The request was only about mentioning (bpX) for the first two choices, not to add more combinations.

Feb 9 2026, 11:45 AM · Feature Request, PQC, gnupg26