Page MenuHome GnuPG
Feed Advanced Search

Nov 12 2015

bernhard added a comment to T1858: Wish for additional TLS access to GnuPG and Gpg4win binaries.

https://files.gpg4win.org/

For as long as easy MitM can substitute traffic,
signing the EXE is a pointless waste of time.

I disagree, MitM cannot fake the origin so there is no gain in integrity
by using TLS. And if MitM can substitute traffic, it can also block TLS traffic
so there is also no again in availability.

Let me quote from T1858 (cnd on Nov 12 2015, 10:21 AM / Roundup):

additional available over TLS channels

So there is https://files.gpg4win.org/gpg4win-2.2.6.exe

Nov 12 2015, 11:26 AM · Feature Request, gpgweb
bernhard closed T1858: Wish for additional TLS access to GnuPG and Gpg4win binaries as Resolved.
Nov 12 2015, 11:26 AM · Feature Request, gpgweb
bernhard removed a project from T1858: Wish for additional TLS access to GnuPG and Gpg4win binaries: Stalled.
Nov 12 2015, 9:04 AM · Feature Request, gpgweb
bernhard added a comment to T1858: Wish for additional TLS access to GnuPG and Gpg4win binaries.

Gpg4win installers have been code-signed with Authenticode for years and thus are
as securely authenticable as you trust the Microsoft code signing certificate chain
. (If the Microsoft code-signing certificate chaing is broken, your system is wide
open as it secures a lot.)

Gpg4win and GnuPG binaries are signed and additional available over TLS channels
(which provides less integrity protection.)

Nov 12 2015, 9:04 AM · Feature Request, gpgweb

Nov 2 2015

bernhard updated subscribers of T2139: pinentry option to see the password in cleartext.

Hi!

@dkg:
Can you tell me more about your tab-return use case? Do you have hints/personal
observations about how many people are affected?
In the gtk2 pinentry this did not work so far (See my T2139 (bernhard on Oct 29 2015, 04:42 PM / Roundup)) other
implementation do not seem to allow it (I've also tested kdm login screen)
and it does not make much sense either when you can press "return" right away.
So to me it is still unclear how many people are affected.

@aheinecke: Thanks for contributing another case.
I think it is a good solution for a system login screen, where a login-change
probably is harder to do.
I think this slightly changes when you think about passphrases for pinentry
that may get entered less often and some people keep a backup on paper (which is
actually good under some circumstances) and I would claim that a passphrase
change on a key on average is easier to do than a system password.

@werner: You wrote that you've checked some other implementation, it would be cool
to have a list of those. Screenshots would be even better.

@all, my current design ideas are

  • to have a text below the entry field, close to it, saying "show password" and a on-off switch or second best a check-box, third best a button.

Rationale: Because the space requirement is mainly in width. An on-off switch

probably has the most natural mapping, but this depend on the overal GUI design
of the system. On some a real slider-switch may not be available or look alien,
then we should use what ever users will recognise as an on-off thing.
The text is much less work than to select/design an icon and it uses
less height.
  • It is okay to have that in the accessibility tab list, even after the entry field, because I personally believe that a lot more people want the natural order when using tab at all. Right now the data for how many people actually have the tab-enter habit is unknown, maybe Daniel can help us out here.
Nov 2 2015, 10:09 AM · pinentry, Feature Request, gpg4win

Oct 29 2015

bernhard added a comment to T2139: pinentry option to see the password in cleartext.

@dkg: I have been thinking about your use case:

Some people are used to pinentry and
have a common keyboard-based type, tab, hit enter workflow.

I wonder about what fraction of people we are speaking of.
In many applications, just like pinentry, you can just hit "enter" right away
so there is no need to first hit "tab". First hitting "tab" does not make sense
for these kind of dialoges.

Then in some implementation like pinentry-gtk2 0.8.3-2,
this does not work right now, because the next tab is "cancel" which users then
would reach. So it depends on the standard for dialog windows where the
ok and cancel buttons are. Was there any problem report on pinentry-gtk-2?
I am not sure if any pinentry-gtk-2 user actually had this problem?

Oct 29 2015, 4:42 PM · pinentry, Feature Request, gpg4win
bernhard updated subscribers of T2019: Order of magnitude degradation in performance in gpg2 cf gpg.

@werner
Running with --no-sig-cache took 30 Minutes.
gpg2 --delete-key 52D717F3
time LANG=C gpg2 -v --no-sig-cache --recv-keys 52D717F3
real 29m38.897s

While time LANG=C gpg2 -v --recv-keys 52D717F3 took 2 minutes.
Debian gnupg2 Version: 2.0.26-6 i386.

@neal:
Thanks for working on this, if you think it may may sense to test this
with real data, can you point to the steps required to do this?
(I guess building gpg-2.1-from your git branch, ...)

@All,
any idea what the change between 2.0.25-99intevation2 on Wheezy
and 2.0.26-6 on Jessie could be that would cause this problem?
(Or is it just a few small certs or trust settings more that will cause
this one magnitude higher load)

Oct 29 2015, 3:40 PM · Stalled, Bug Report, gnupg
bernhard updated subscribers of T2139: pinentry option to see the password in cleartext.
Oct 29 2015, 9:34 AM · pinentry, Feature Request, gpg4win
bernhard added a comment to T2139: pinentry option to see the password in cleartext.

Daniel:
Thanks for your comment and adding the use case. I saw your suggestions
on the list like changing the tab order.

More specifically: Would it be fine with you to implement this without
a warning dialog that requires another click or attention?

Oct 29 2015, 9:34 AM · pinentry, Feature Request, gpg4win

Oct 28 2015

bernhard added a comment to T2139: pinentry option to see the password in cleartext.

My suggestion is also, to seek for an icon that is more self-explanatory.
Actually I would like the "gtk_switch" gui component, though Werner is right
that it takes up a bit more of space.

Oct 28 2015, 5:46 PM · pinentry, Feature Request, gpg4win
bernhard added projects to T2139: pinentry option to see the password in cleartext: gpg4win, Feature Request, pinentry, gnupg (gpg21).
Oct 28 2015, 5:45 PM · pinentry, Feature Request, gpg4win

Aug 4 2015

bernhard added a comment to T2063: Not possible to configure http-proxy for keyserver with Kleopatra as documented in Compendium.

On Tuesday 04 August 2015 at 11:07:46, Andre Heinecke via BTS wrote:

f941252 It now makes it clear that you have to edit
gpg.conf.

Aug 4 2015, 11:09 AM · Bug Report, kleopatra, gpg4win, Documentation

Jun 24 2015

bernhard added a comment to T2019: Order of magnitude degradation in performance in gpg2 cf gpg.

I'll second this report, note that I noticed this change in behaviour
when migrating from Wheezy to Jessie and from gnupg2
2.0.25-99intevation2 to 2.0.26-6

More details copied from gnupg-devel@:
----------Original Message----------
From: Bernhard Reiter <bernhard@intevation.de>
Sent: Tuesday 23 June 2015, 16:21:54
To: gnupg-devel@gnupg.org
Subject: trustdb calculation very slow (gpg2.0 vs gpg1)

Hi
on a Debian GNU/Linux Jessie system I have a defect that
the trust calculation of a cert is taking a lot of time.
Almost 2 minutes with 100%cpu.
This used to be different with early gnupg2 versions I've used
and it is different to gpg (1), where it were 20 seconds.

No report found, thus seem to depend on my trustdb.
Any ideas on how to create a good report/debug?

Details:
How to recreate:
gpg2 --delete-key 52D717F3
time LANG=C gpg2 -v --recv-keys 52D717F3
real 1m57.144s
user 1m46.560s
sys 0m9.296s

as compared to gpg verison 1

gpg2 --delete-key 52D717F3
time LANG=C gpg --recv-keys 52D717F3
real 0m19.840s
user 0m18.192s
sys 0m0.900s

ii gnupg 1.4.18-7 i386 GNU privacy guard - a free PGP re
ii gnupg2 2.0.26-6 i386 GNU privacy guard - a free PGP re

With 2.0.25-99intevation2 on Wheezy I did not notice the issue,
but of course, my trustdb changed over time.

----------Original Message----------
From: "Dr. Peter Voigt" <pvoigt@uos.de>
Sent: Tuesday 23 June 2015, 23:35:14
To: gnupg-devel@gnupg.org
[..]

I am just having a fully configured VirtualBox VM of Jessie with Gnome
3 available, but I am not having this problem:

% time LANG=C gpg2 -v --recv-keys 52D717F3
...
LANG=C gpg2 -v --recv-keys 52D717F3 0.11s user 0.06s system 7% cpu
2.304 total

% dpkg -l gnupg2
Desired=Unknown/Install/Remove/Purge/Hold

Status=Not/Inst/Conf-files/Unpacked/halF-conf/Half-inst/trig-aWait/Trig-pend

/ Err?=(none)/Reinst-required (Status,Err: uppercase=bad)/

Name Version Architecture
Description

+++-

ii gnupg2 2.0.26-6 amd64 GNU
privacy guard - a free PGP replacement (new v2.x)

---------Original Message----------
From: Bernhard Reiter <bernhard@intevation.de>
Sent: Wednesday 24 June 2015, 09:17:35
To: gnupg-devel@gnupg.org

On Tuesday 23 June 2015 at 23:35:14, Dr. Peter Voigt wrote:

I am just having a fully configured VirtualBox VM of Jessie with Gnome
3 available, but I am not having this problem:

thanks for trying to reproduce!
As your result is showing as well:
It probably depends on my .gnupg data like the contents of my trustdb,
private keys and settings.

Of course I cannot just make this available,
so I am grateful for hints to find out more about the issue.

I could try to export, delete and reimport the trustdb, but because
gpg 1.4 works on it a lot better I assume that it is not a simple structural
problem of my trustdb. (Which I hope both gpg versions would detect.) So I am
not sure, if this is a good step to take.

Jun 24 2015, 9:39 AM · Stalled, Bug Report, gnupg
bernhard updated subscribers of T1998: Can't use extended characters in passphrase.
Jun 24 2015, 9:25 AM · pinentry, Not A Bug, Bug Report, gnupg

Jun 23 2015

bernhard added a comment to T1998: Can't use extended characters in passphrase.

----------Original Message----------
From: Pedro Coelho <pedro.msac@gmail.com>
Sent: Friday 19 June 2015, 14:55:41
To: gnupg-devel@gnupg.org
Subject: Issue 1998 Extended and Composed Characters on password.

Hi ,

Sorry to come up again with the same issue.
I posted some weeks ago an issue about gpg that I have detected while
working with gpg on Multiple/Cross systems.

This was passed to the bug tracking system as T1998.
I do not seem to be able to reply/follow-up on the bugtrack system so I
hope to contribute in here for the same issue.

I have tested to encrypt a file with a password that as several types of
characters, ascii, extended and composed.

As stated in the previous email listed below:

T1998

I was able to narrow down the problem to Composed Characters on the
password.

That is if one uses extended characters like the ones resulting from using
<altgr> or <altgr>+<shift> and try to decrypt the file on a different
OS/Computer, obviously the same keyboard layout must be present.
If the characters showing up on the CLI are the same as the ones used on
the password ... no problem for gpg to work correctly.

I made some tests passing the same file to Multiple Distros installed and
reached the conclusion that extended character support is not always
reliable to say the least ... but it can work.
For instance on Centos7 minimal with the exact same keyboard layout the
characters shown on display are not the same as in my default OpenSuSE 13.2
or Ubuntu. But once they are found gpg can decrypt the file.
That is an issue not of gpg but rather of the available mappings an Locales
on those particular systems. One as to simply be advised for those issues
in case of using gpg in multiple environments.

But problems do not stop there.
I have narrow down the problem of the decrypt bad key error to the Composed
Character.
If one uses composed characters problems keep showing up.

I used on the Same PC two sessions: One normal OpenSuSE KDE environment,
the other LXDE environment.
I noticed that on the LXDE session when using extended altgr/altgr+shift
chars I was able to decrypt my file.
The problem came about when dealing with Composed characters ... those
where a Symbol and a regular Character are composed.
Those who write in English most likelly never used such characters ... like
ã or õ. (don't even know if they even display correctly on your email
reader ... )

Those are a problem since in different systems Even with the same Locale
keyboard layout and Locale the use of a single composed chars can be
"misinterpreted".
On pinentry I've also seen for example when trying to enter a composed
character the box showed a double entry ...two chars (asteriscs) instead of
one ...

So this may indeed be a OS/Locale problem rather then a gpg problem ...

Jun 23 2015, 4:25 PM · pinentry, Not A Bug, Bug Report, gnupg

Jun 8 2015

bernhard added a comment to T2000: PGP-2 Keys are handled as if their Fingerprint is always zero.

On Monday 08 June 2015 at 12:50:23, Werner Koch via BTS wrote:

Workaround: --allow-weak-digest-algos

Jun 8 2015, 2:42 PM · Bug Report, gnupg

Mar 10 2015

bernhard added a comment to T1921: Duplicated certificates in gpgsm pubring (2.1).

Except the for doubled listing, is there any other potential drawback?

Mar 10 2015, 9:08 PM · Bug Report, gnupg, dirmngr, S/MIME

Jan 8 2015

bernhard added a comment to T1624: Gpgtar fails when files have non ASCII characters.

It probably would have been better to create two issues:
a) Dataloss with Kleo in 2.2.2 (fixed now)
b) crash with gpa

Jan 8 2015, 12:03 PM · gnupg, Windows 32, Windows, Bug Report
bernhard added a comment to T1746: Bug report - GPG a folder to *.tar.gpg loss all files!.

Jonny, can you confirm that the problem is gone with 2.2.3?

Jan 8 2015, 12:02 PM · Bug Report, gnupg, gpg4win
bernhard lowered the priority of T1624: Gpgtar fails when files have non ASCII characters from Unbreak Now! to High.
Jan 8 2015, 11:58 AM · gnupg, Windows 32, Windows, Bug Report
bernhard reassigned T1624: Gpgtar fails when files have non ASCII characters from aheinecke to werner.
Jan 8 2015, 11:58 AM · gnupg, Windows 32, Windows, Bug Report

Nov 6 2014

bernhard added projects to T1751: GPA crash on Ubuntu with "Unsupported certificate": gpa, Bug Report, Ubuntu.
Nov 6 2014, 4:41 PM · Ubuntu, Bug Report, gpa
bernhard set Version to 0.9.4 on T1751: GPA crash on Ubuntu with "Unsupported certificate".
Nov 6 2014, 4:41 PM · Ubuntu, Bug Report, gpa
bernhard set External Link to https://bugs.launchpad.net/ubuntu/+source/gpa/+bug/1381926 on T1751: GPA crash on Ubuntu with "Unsupported certificate".
Nov 6 2014, 4:41 PM · Ubuntu, Bug Report, gpa
bernhard updated subscribers of T1751: GPA crash on Ubuntu with "Unsupported certificate".
Nov 6 2014, 4:41 PM · Ubuntu, Bug Report, gpa
bernhard updated subscribers of T1174: Clipboard decryption error, encoding issue.
Nov 6 2014, 4:38 PM · Bug Report, gpa
bernhard placed T1174: Clipboard decryption error, encoding issue up for grabs.
Nov 6 2014, 4:38 PM · Bug Report, gpa
bernhard renamed T1174: Clipboard decryption error, encoding issue from Clipboard decryption error to Clipboard decryption error, encoding issue.
Nov 6 2014, 4:38 PM · Bug Report, gpa
bernhard added a comment to T1174: Clipboard decryption error, encoding issue.

Probably needs a retest with gpa 0.9.5

Nov 6 2014, 4:38 PM · Bug Report, gpa
bernhard added a comment to T1568: General Error: Library Returned Unexpected Error.

Hi thanks for the report and for trying gpa!

Could you try Gpg4win 2.2.2 (or the version 2.2.3 if it is release).
Thanks!

Nov 6 2014, 4:36 PM · Info Needed, Bug Report, gpa, gpg4win

Oct 23 2014

bernhard renamed T1624: Gpgtar fails when files have non ASCII characters from gpgex does not work with umlaut to file encryption: gpgex and gpgtar does not work with umlaut.
Oct 23 2014, 11:45 AM · gnupg, Windows 32, Windows, Bug Report

Jul 28 2014

bernhard updated subscribers of T1674: garbled characters on command line on windows with on-ascii locales.
Jul 28 2014, 9:14 AM · gnupg, Feature Request
bernhard added a comment to T1674: garbled characters on command line on windows with on-ascii locales.

What is the best way to switch the console to utf mode?
Should someone use the chcp command and how?

Anyway the default behaviour is surprising for users, so from my point of view,
it should be improved somehow. A good documentation how to switch would only
be a second grade solution. A better one would be if the .exes would switch the
code page themselfs, I assume.

Jul 28 2014, 9:14 AM · gnupg, Feature Request

Jul 24 2014

bernhard updated subscribers of T1674: garbled characters on command line on windows with on-ascii locales.
Jul 24 2014, 2:17 PM · gnupg, Feature Request
bernhard added projects to T1674: garbled characters on command line on windows with on-ascii locales: gpg4win, Bug Report.
Jul 24 2014, 2:17 PM · Feature Request, gnupg

Sep 6 2013

bernhard added a comment to T1536: gpgex crashes Win7 64bit when using GNUPGHOME.

For diagnostic reasons: could you try with Kleopatra as well?

Sep 6 2013, 12:42 PM · Duplicate, Windows 64, Bug Report, gpg4win, Windows, gpgex
bernhard added a comment to T1536: gpgex crashes Win7 64bit when using GNUPGHOME.

Thanks for asking again, I did not remember that GPGex was missing from the
compendium.

It works similiar to GpgOL, see
http://git.gnupg.org/cgi-
bin/gitweb.cgi?p=gpgex.git;a=blob_plain;f=README;hb=HEAD
and in German:
http://lists.wald.intevation.org/pipermail/gpg4win-users-de/2013-
August/000593.html

Sep 6 2013, 10:29 AM · Duplicate, Windows 64, Bug Report, gpg4win, Windows, gpgex
bernhard reassigned T1536: gpgex crashes Win7 64bit when using GNUPGHOME from aheinecke to werner.
Sep 6 2013, 10:29 AM · Duplicate, Windows 64, Bug Report, gpg4win, Windows, gpgex
bernhard added projects to T1536: gpgex crashes Win7 64bit when using GNUPGHOME: Windows, gpg4win, Windows 64.
Sep 6 2013, 8:44 AM · Duplicate, Windows 64, Bug Report, gpg4win, Windows, gpgex
bernhard added a comment to T1536: gpgex crashes Win7 64bit when using GNUPGHOME.

Hi Henning,
thanks for your feedback on Gpg4win and of trying the new Gpgex.

Can you help us further by trying to get some more diagnostic output?
See the link in the last section of http://gpg4win.org/reporting-bugs.html

Best,
Bernhard

Sep 6 2013, 8:43 AM · Duplicate, Windows 64, Bug Report, gpg4win, Windows, gpgex
bernhard assigned T1536: gpgex crashes Win7 64bit when using GNUPGHOME to aheinecke.
Sep 6 2013, 8:43 AM · Duplicate, Windows 64, Bug Report, gpg4win, Windows, gpgex
bernhard updated subscribers of T1536: gpgex crashes Win7 64bit when using GNUPGHOME.
Sep 6 2013, 8:43 AM · Duplicate, Windows 64, Bug Report, gpg4win, Windows, gpgex

Jun 24 2013

bernhard closed T1251: GPGOL creates broken attachments in Outlook 2007 as Resolved.
Jun 24 2013, 2:45 PM · Bug Report, gpgol
bernhard added a comment to T1251: GPGOL creates broken attachments in Outlook 2007.

For completeness, this fix has been published as part of the regular Gpg4win
releases since 2.1.1-beta1. It is also included in 2.1.1. There is no need to
download the dll directly, just move to the recent Gpg4win version.

Jun 24 2013, 2:44 PM · Bug Report, gpgol
bernhard reopened T1251: GPGOL creates broken attachments in Outlook 2007 as "Open".
Jun 24 2013, 2:44 PM · Bug Report, gpgol

Apr 22 2013

bernhard added a comment to T1448: gpgconf lists options which break gpg1 when gpg2 is also installed.

I strongly suggest to have an official recommendation how to solve this issue.
The currently available information does not help packagers and application
developers enought to get it right. Probable most distributions should prevent
gpg1 and gpg2 to be installed with their dependency handling.

Apr 22 2013, 9:55 AM · Not A Bug, Bug Report, gnupg

Apr 18 2013

bernhard added a project to T1448: gpgconf lists options which break gpg1 when gpg2 is also installed: Bug Report.
Apr 18 2013, 8:53 AM · Not A Bug, Bug Report, gnupg
bernhard added a comment to T1448: gpgconf lists options which break gpg1 when gpg2 is also installed.

I agree with Ralf that we need a solution for this.
I can be a multi-step solution.

But right now, most GNU distributions are not putting much effort in
the GnuPG installation and setup help. For example: With Debian squeeze
you cannot deinstall gpg1 because the dependencies would drag down other
software. Yes, this is partly a packaging problem with should be solved on
Debian's side (as well), but if we want GnuPG to be successful we need to offer
users and packagers best practice and clear recommendations.

My suggestions:
a) Make the suggestions more clear that gpg2 only should be recommened only in
almost all installations
b) offer some safety nets if there are both installed and gpgconf is used.

Apr 18 2013, 8:53 AM · Not A Bug, Bug Report, gnupg
bernhard reopened T1448: gpgconf lists options which break gpg1 when gpg2 is also installed as "Open".
Apr 18 2013, 8:53 AM · Not A Bug, Bug Report, gnupg
bernhard assigned T1448: gpgconf lists options which break gpg1 when gpg2 is also installed to werner.
Apr 18 2013, 8:53 AM · Not A Bug, Bug Report, gnupg
bernhard renamed T1448: gpgconf lists options which break gpg1 when gpg2 is also installed from gpgconf lists options which break gpg to gpgconf lists options which break gpg1 when gpg2 is also installed.
Apr 18 2013, 8:53 AM · Not A Bug, Bug Report, gnupg
bernhard updated subscribers of T1448: gpgconf lists options which break gpg1 when gpg2 is also installed.
Apr 18 2013, 8:53 AM · Not A Bug, Bug Report, gnupg

Jan 3 2013

bernhard added a comment to T1457: Decryption of msg encrypted to expired smime certificate fails if local-user is set.

I agree that adding a better message is helpful.
What about something along the lines that says:

"cannot sign with or decrypt with key XYZ"

and explaining:

  "even when trying to decrypt with a different key, 
  the default signature key gets checked."

Certainly it would be much better if decryption would just try to
decrypt with the available keys, no matter of what status the
certificates to this or other keys are. I am worrying most about the
applications that are using Gnupg in this way, they probably will
not be able to either explain this properlto user or offer good
assistance. The reason you give why this is done is only an implementation
artifact and not logical for a user that has learned or tries to learn
about public key cryptography.

Jan 3 2013, 10:58 AM · Bug Report, gnupg, S/MIME

Dec 10 2012

bernhard set Version to 2.0.19 on T1457: Decryption of msg encrypted to expired smime certificate fails if local-user is set.
Dec 10 2012, 9:27 PM · Bug Report, gnupg, S/MIME
bernhard added projects to T1457: Decryption of msg encrypted to expired smime certificate fails if local-user is set: S/MIME, gnupg, Bug Report.
Dec 10 2012, 9:27 PM · Bug Report, gnupg, S/MIME
bernhard closed T1310: Cannot decrypt file - encrypts ok [Don't know]: as Resolved.
Dec 10 2012, 8:55 PM · Bug Report, Not A Bug
bernhard added a comment to T1310: Cannot decrypt file - encrypts ok [Don't know]:.

Without a real example file, I don't think that the problem can be
reproduced. Thus I'm closing this issue because of the lack of activity
for more than 12 months.

Matter: Thanks for the report! As Werner suggested: Please ask on the
mailinglist if you continue to have problems, until we can somehow produce a
test case and then somebody is able to file a new report.

Dec 10 2012, 8:55 PM · Bug Report, Not A Bug

Jul 7 2011

bernhard assigned T1353: Update libgcrypt 1.4.5 -> 1.5.0 : signing no longer works, pkglue.c:41: mpi_from_sexp to werner.
Jul 7 2011, 10:10 AM · Bug Report, libgcrypt
bernhard added a comment to T1353: Update libgcrypt 1.4.5 -> 1.5.0 : signing no longer works, pkglue.c:41: mpi_from_sexp.

Thanks for the answer.
What is the solution right now?
Not use libgcrypt 1.5.0 with GnuPG <= 2.0.17?
Or patch GnuPG?

Jul 7 2011, 10:10 AM · Bug Report, libgcrypt

Jul 6 2011

bernhard renamed T1353: Update libgcrypt 1.4.5 -> 1.5.0 : signing no longer works, pkglue.c:41: mpi_from_sexp from Update libgcrypt 1.4.5 -> 1.5.0 : deattched signing no longer works. to Update libgcrypt 1.4.5 -> 1.5.0 : signing no longer works, pkglue.c:41: mpi_from_sexp.
Jul 6 2011, 3:23 PM · Bug Report, libgcrypt
bernhard added a comment to T1353: Update libgcrypt 1.4.5 -> 1.5.0 : signing no longer works, pkglue.c:41: mpi_from_sexp.

Tested System was Debian Lenny, XEN Instance.
Used command was

gpg2 -b testfile.txt
Jul 6 2011, 3:21 PM · Bug Report, libgcrypt
bernhard updated subscribers of T1353: Update libgcrypt 1.4.5 -> 1.5.0 : signing no longer works, pkglue.c:41: mpi_from_sexp.
Jul 6 2011, 3:21 PM · Bug Report, libgcrypt

May 19 2011

bernhard added a comment to T1313: dirmngr unresponsive when waiting for some http CRL connect() -> ping and other requests fail.

Dirmngr 2.1.0-gitde7cfc0 also stays active.

May 19 2011, 4:02 PM · Bug Report, dirmngr
bernhard closed T1313: dirmngr unresponsive when waiting for some http CRL connect() -> ping and other requests fail as Resolved.
May 19 2011, 4:02 PM · Bug Report, dirmngr
bernhard removed a project from T1313: dirmngr unresponsive when waiting for some http CRL connect() -> ping and other requests fail: Restricted Project.
May 19 2011, 4:02 PM · Bug Report, dirmngr
bernhard added a comment to T1313: dirmngr unresponsive when waiting for some http CRL connect() -> ping and other requests fail.

Testing the fix:

May 19 2011, 2:37 PM · Bug Report, dirmngr

May 11 2011

bernhard added a comment to T1313: dirmngr unresponsive when waiting for some http CRL connect() -> ping and other requests fail.

Werner, where is the patch for dirmngr 1.1.0?
http://cvs.gnupg.org/cgi-bin/viewcvs.cgi/?root=Dirmngr only goes up to rev346,
while you say rev347 has the fix. Maybe a missing sync on the svn repositories
on your part?

May 11 2011, 11:37 AM · Bug Report, dirmngr
bernhard added a project to T1313: dirmngr unresponsive when waiting for some http CRL connect() -> ping and other requests fail: Restricted Project.
May 11 2011, 11:37 AM · Bug Report, dirmngr

May 10 2011

bernhard added a comment to T1313: dirmngr unresponsive when waiting for some http CRL connect() -> ping and other requests fail.

Haven't had a chance to test it, I was somehow waiting for a new release.
Just made sure I get a 1.1.0 patched package to test next.

May 10 2011, 4:37 PM · Bug Report, dirmngr
bernhard reopened T1313: dirmngr unresponsive when waiting for some http CRL connect() -> ping and other requests fail as "Open".
May 10 2011, 4:37 PM · Bug Report, dirmngr
bernhard closed T1162: pinentry window does not stay on top as Resolved.
May 10 2011, 4:31 PM · kks, Bug Report, pinentry
bernhard removed a project from T1162: pinentry window does not stay on top: Restricted Project.
May 10 2011, 4:31 PM · kks, Bug Report, pinentry
bernhard added a comment to T1162: pinentry window does not stay on top.

Testing pinentry-qt Version: 0.8.0.svn234-0kk1 (the changelog indicates
that the change is in) on Debian Lenny with KWin from KDE 3.

May 10 2011, 4:31 PM · kks, Bug Report, pinentry

Jan 19 2011

bernhard added a comment to T1313: dirmngr unresponsive when waiting for some http CRL connect() -> ping and other requests fail.

It is okay for one request to take a long time or possibly even to block.
But it is not okay, if other, simultaniously made requests are blocked to wait
for this slow request. Especially if those parallel requests could be answered
easily and quickly, like ping.

Jan 19 2011, 5:42 PM · Bug Report, dirmngr
bernhard added a comment to T1313: dirmngr unresponsive when waiting for some http CRL connect() -> ping and other requests fail.

To me this, issue makes dirmngr unsuitable as a system service
and it currently allows denail of service attacks on gpgsm based email
applications.

Jan 19 2011, 9:37 AM · Bug Report, dirmngr

Jan 18 2011

bernhard added a comment to T1313: dirmngr unresponsive when waiting for some http CRL connect() -> ping and other requests fail.

Hmm thinking about this, it is almost like a denail of service attack, because
dirmngr will block other clients.

Jan 18 2011, 4:27 PM · Bug Report, dirmngr
bernhard raised the priority of T1313: dirmngr unresponsive when waiting for some http CRL connect() -> ping and other requests fail from Normal to High.
Jan 18 2011, 4:27 PM · Bug Report, dirmngr
bernhard updated subscribers of T1313: dirmngr unresponsive when waiting for some http CRL connect() -> ping and other requests fail.
Jan 18 2011, 4:24 PM · Bug Report, dirmngr
bernhard set Version to 2.1.0beta1 on T1313: dirmngr unresponsive when waiting for some http CRL connect() -> ping and other requests fail.
Jan 18 2011, 4:24 PM · Bug Report, dirmngr
bernhard added a comment to T1313: dirmngr unresponsive when waiting for some http CRL connect() -> ping and other requests fail.

Jan 18 2011, 4:24 PM · Bug Report, dirmngr
bernhard added projects to T1313: dirmngr unresponsive when waiting for some http CRL connect() -> ping and other requests fail: dirmngr, Bug Report.
Jan 18 2011, 4:24 PM · Bug Report, dirmngr

Nov 1 2010

bernhard added a comment to T1189: p12 import brings up pinentry in a different way (so it does not appear sometimes).

Should probably beretested with Gnupg 2.1(beta or later)
because agent startup might have changed.

Nov 1 2010, 9:37 AM · Too Old, pinentry, gpgagent, Bug Report, gnupg
bernhard reassigned T1189: p12 import brings up pinentry in a different way (so it does not appear sometimes) from werner to gnupg-hackers.
Nov 1 2010, 9:37 AM · Too Old, pinentry, gpgagent, Bug Report, gnupg
bernhard updated subscribers of T1189: p12 import brings up pinentry in a different way (so it does not appear sometimes).
Nov 1 2010, 9:37 AM · Too Old, pinentry, gpgagent, Bug Report, gnupg
bernhard added a project to T1189: p12 import brings up pinentry in a different way (so it does not appear sometimes): Info Needed.
Nov 1 2010, 9:37 AM · Too Old, pinentry, gpgagent, Bug Report, gnupg

Jul 27 2010

bernhard added a comment to T1110: Outlook2007 crashes after opening attachments of an encrypted message.
  • Weitergeleitete Nachricht ----------

Datum: Montag, 26. Juli 2010
Von: Sebastien Lumineau <sebastien.lumineau@ac-grenoble.fr>
An: "g10 Code's BTS" <gnupg@bugs.g10code.com>

Jul 27 2010, 5:57 PM · Bug Report, gpgol
bernhard added a comment to T1110: Outlook2007 crashes after opening attachments of an encrypted message.

Jul 27 2010, 5:57 PM · Bug Report, gpgol

Jul 26 2010

bernhard added a comment to T1251: GPGOL creates broken attachments in Outlook 2007.

I believe we have two seperate issues
here, though of course they might be caused by the same defect.

Jul 26 2010, 9:50 AM · Bug Report, gpgol
bernhard assigned T1251: GPGOL creates broken attachments in Outlook 2007 to werner.
Jul 26 2010, 9:50 AM · Bug Report, gpgol
bernhard updated subscribers of T1251: GPGOL creates broken attachments in Outlook 2007.
Jul 26 2010, 9:50 AM · Bug Report, gpgol
bernhard added a comment to T1110: Outlook2007 crashes after opening attachments of an encrypted message.

There is also an T1251 (GPGOL creates broken attachments in Outlook 2007)
about creating encrypted messages. I believe we have two seperate issues
here, though of course they might be caused by the same defect.

Jul 26 2010, 9:50 AM · Bug Report, gpgol
bernhard closed T1257: Outlook2007 crashes after opening attachments of an encrypted message as Resolved.
Jul 26 2010, 9:46 AM · Bug Report, Duplicate, gpgol
bernhard added a comment to T1257: Outlook2007 crashes after opening attachments of an encrypted message.

Resolved after adding info to T1110.

Jul 26 2010, 9:46 AM · Bug Report, Duplicate, gpgol
bernhard reopened T1257: Outlook2007 crashes after opening attachments of an encrypted message as "Open".
Jul 26 2010, 9:46 AM · Bug Report, Duplicate, gpgol
bernhard added a comment to T1110: Outlook2007 crashes after opening attachments of an encrypted message.

Am Freitag, 23. Juli 2010 23:59:41 schrieb Sebastien Lumineau via BTS
issue1257:

I confirm that critical issue in Win7. Here is my config:

Windows 7
Outlook 2007 + MO SP2 (do not work without SP2 ether)
Gpg4win 2.0.3
GnuPG 2.0.14
GpgOL 1.1.1
GPA 0.9.0

Message body is decrypted correctly while there's no way to handle
attachment: try "view, open, save as" crashes outlook.

Jul 26 2010, 9:46 AM · Bug Report, gpgol
bernhard updated subscribers of T1110: Outlook2007 crashes after opening attachments of an encrypted message.
Jul 26 2010, 9:46 AM · Bug Report, gpgol
bernhard removed External Link on T1257: Outlook2007 crashes after opening attachments of an encrypted message.
Jul 26 2010, 9:45 AM · Bug Report, gpgol, Duplicate
bernhard added a comment to T1257: Outlook2007 crashes after opening attachments of an encrypted message.

Duplicate of T1110

Jul 26 2010, 9:45 AM · Bug Report, gpgol, Duplicate
bernhard added a project to T1257: Outlook2007 crashes after opening attachments of an encrypted message: Duplicate.
Jul 26 2010, 9:45 AM · Bug Report, gpgol, Duplicate
bernhard closed T1257: Outlook2007 crashes after opening attachments of an encrypted message as Resolved.
Jul 26 2010, 9:45 AM · Bug Report, gpgol, Duplicate