Page MenuHome GnuPG
Feed Advanced Search

Dec 9 2019

werner committed rG70cb02c05937: Include release information from 2.2.17 to 2.2.19 (authored by werner).
Include release information from 2.2.17 to 2.2.19
Dec 9 2019, 4:59 PM

Dec 8 2019

werner added a comment to T4393: GnuPG should always accept key updates even if the update does not contain UIDs.

I see no reason to move required computations from the server to the client.

Dec 8 2019, 7:58 PM · gnupg (gpg23), Feature Request

Dec 7 2019

werner updated the task description for T4696: Fresh certificate get's pulled into certificate chain with expired root certificate.
Dec 7 2019, 4:28 PM · gnupg (gpg22), S/MIME, Bug Report
werner changed the visibility for T4696: Fresh certificate get's pulled into certificate chain with expired root certificate.
Dec 7 2019, 4:28 PM · gnupg (gpg22), S/MIME, Bug Report
werner updated the task description for T4696: Fresh certificate get's pulled into certificate chain with expired root certificate.
Dec 7 2019, 4:26 PM · gnupg (gpg22), S/MIME, Bug Report
werner committed rD56e66c2f49df: web: Announce release of gnupg 2.2.19 (authored by werner).
web: Announce release of gnupg 2.2.19
Dec 7 2019, 1:44 PM
werner committed rD2d3bc7071fc3: swdb: Release GnuPG 2.2.19 (authored by werner).
swdb: Release GnuPG 2.2.19
Dec 7 2019, 1:44 PM
werner closed T4696: Fresh certificate get's pulled into certificate chain with expired root certificate as Resolved.
Dec 7 2019, 1:15 PM · gnupg (gpg22), S/MIME, Bug Report
werner closed T4768: Release GnuPG 2.2.19 as Resolved.

Release done.

Dec 7 2019, 1:14 PM
werner set External Link to https://lists.gnupg.org/pipermail/gnupg-announce/2019q4/000443.html on T4768: Release GnuPG 2.2.19.
Dec 7 2019, 1:13 PM
werner committed rG0bdbd37b8796: Post release updates (authored by werner).
Post release updates
Dec 7 2019, 12:51 PM
werner committed rG1c841c8389fb: Release 2.2.19 (authored by werner).
Release 2.2.19
Dec 7 2019, 12:51 PM
werner committed rGc6feb84bc9c0: po: Auto-update (authored by werner).
po: Auto-update
Dec 7 2019, 12:51 PM
werner committed rG8c167febc0ab: sm: Add special case for expired intermediate certificates. (authored by werner).
sm: Add special case for expired intermediate certificates.
Dec 7 2019, 12:51 PM
werner committed rG8823adaa405e: po: Update German translation (authored by werner).
po: Update German translation
Dec 7 2019, 12:51 PM
werner committed rG438a1ec2978c: dirmngr: Tell gpg about WKD lookups resulting from a cache. (authored by werner).
dirmngr: Tell gpg about WKD lookups resulting from a cache.
Dec 7 2019, 12:51 PM
werner committed rG03983711b337: po: Make g10/call-dirmngr.c translatable. (authored by werner).
po: Make g10/call-dirmngr.c translatable.
Dec 7 2019, 12:51 PM

Dec 6 2019

werner committed rGd246f317c048: sm: Add special case for expired intermediate certificates. (authored by werner).
sm: Add special case for expired intermediate certificates.
Dec 6 2019, 8:31 PM
werner committed rG8a6ecc6ff52b: dirmngr: Tell gpg about WKD looks resulting from a cache. (authored by werner).
dirmngr: Tell gpg about WKD looks resulting from a cache.
Dec 6 2019, 8:31 PM
werner closed T4684: Release GnuPG 2.2.18 as Resolved.
Dec 6 2019, 8:31 PM · Release Info, gnupg (gpg22)
werner moved T4696: Fresh certificate get's pulled into certificate chain with expired root certificate from For next release to Ready for release on the gnupg (gpg22) board.
Dec 6 2019, 8:30 PM · gnupg (gpg22), S/MIME, Bug Report
werner added a comment to T4696: Fresh certificate get's pulled into certificate chain with expired root certificate.

I found a solution for master and 2.1.19 which minimizes the risk of regressions:

Dec 6 2019, 8:29 PM · gnupg (gpg22), S/MIME, Bug Report
werner added a comment to T4585: pinentry-tty mishandles ctrl-C.

In case you use gpgme we have a flag which can be queried to see whether a redraw is required:

Dec 6 2019, 3:34 PM · Restricted Project, Bug Report

Dec 5 2019

werner added a comment to T4585: pinentry-tty mishandles ctrl-C.

allow-loopback-pinentry in gpg-agent.conf is actually the default. This options advises gpg-agent to accept a request for a loopback-pinentry. If you would configure no-allow-loopback-pinentry, requests from gpg to use a loopback pinentry are rejected.

Dec 5 2019, 8:57 PM · Restricted Project, Bug Report

Dec 4 2019

werner triaged T4769: gnupg:passphrase for new key asked three times as Normal priority.

That is actually a GnuPG thing. We originally did it this way to help people remember their passphrase before they start using the key. I agree it is annoying and I would like to remove it too. At the same time we should really think about making no-passphrase the default and require it only with certain compliance settings.

Dec 4 2019, 7:54 PM · gnupg24, gpgagent, gnupg (gpg23), Bug Report, gpg4win
werner closed T4726: auto-key-locate only works with raw e-mail addresses (not angle-brackets) as Resolved.

Fixed for 2.2.19 and master

Dec 4 2019, 4:28 PM · gnupg (gpg22), wkd, Bug Report
werner committed rG78bb81e9deec: gpg: Use AKL for angle bracketed mail address with -r. (authored by werner).
gpg: Use AKL for angle bracketed mail address with -r.
Dec 4 2019, 4:21 PM
werner committed rG1abb39fdaf44: gpg: Use AKL for angle bracketed mail address with -r. (authored by werner).
gpg: Use AKL for angle bracketed mail address with -r.
Dec 4 2019, 2:42 PM
werner triaged T4767: gpgme_signature_t exp_timestamp behaves differently for OpenPGP vs. CMS as Low priority.
Dec 4 2019, 10:43 AM · OpenPGP, S/MIME, gpgme, Bug Report
werner created T4768: Release GnuPG 2.2.19.
Dec 4 2019, 8:59 AM
werner added a comment to T4767: gpgme_signature_t exp_timestamp behaves differently for OpenPGP vs. CMS.

CMS signatures do not have a expiration time. Further the meaning of the expiration time of one of the certificates also depends on the validation model (shell or chain); thus a one-to-one relationship between these times is not possible.

Dec 4 2019, 8:56 AM · OpenPGP, S/MIME, gpgme, Bug Report
werner closed T4766: gpgme_signature_t relies on `unsigned long` for signature creation and expiration times as Wontfix.

We will run into all kind of problems after 2038 on 32 bit boxes. 2106 is nothing to care about.

Dec 4 2019, 8:51 AM · gpgme, Bug Report
werner triaged T4765: gpgsm --import should not try to invoke dirmngr if it is not necessary as Low priority.
Dec 4 2019, 8:47 AM · gnupg24, gnupg (gpg23), S/MIME, Bug Report

Dec 3 2019

werner added a comment to T4696: Fresh certificate get's pulled into certificate chain with expired root certificate.

Thank you.

Dec 3 2019, 3:00 PM · gnupg (gpg22), S/MIME, Bug Report

Dec 2 2019

werner closed T4761: Verify signatures failed as Invalid.
Dec 2 2019, 5:27 PM · Support, gnupg
werner closed T4763: Decrypt Gpg files as Invalid.

This is a support question. Please use one of the public support channels as listed at gnupg.org or ask for a quote at a commercial service (https://gnupg.org/service.html).

Dec 2 2019, 5:26 PM · Support, gpg4win

Nov 29 2019

werner closed T4762: GPG decryption results in error "double free detected in tcache 2" as Resolved.

Regression due to a faulty backport. Fixed in repo; patch is F1052802
Thanks for reporting.

Nov 29 2019, 5:50 PM · gnupg, Bug Report
werner committed rG9ac182f376ab: gpg: Fix double free with anonymous recipients. (authored by werner).
gpg: Fix double free with anonymous recipients.
Nov 29 2019, 5:47 PM
werner reopened T4684: Release GnuPG 2.2.18 as "Open".

There is a regression in decryption with hidden recipients; see T4762.
Patch available

.

Nov 29 2019, 5:01 PM · Release Info, gnupg (gpg22)
werner added a comment to T4762: GPG decryption results in error "double free detected in tcache 2".

Okay, I can replicate that on gnupg 2.2; it works correct on master.

Nov 29 2019, 4:43 PM · gnupg, Bug Report
werner triaged T4762: GPG decryption results in error "double free detected in tcache 2" as High priority.
Nov 29 2019, 4:33 PM · gnupg, Bug Report

Nov 28 2019

werner removed a project from T4761: Verify signatures failed: Bug Report.

I am not sure what you want you are going. I see is a verify command using an unknown file or number of files without knowing its content (using globbing (*-SOMETHING) is not a good idea). Some signature is verified okay but it is not known whether the key is trustworthy. You export a ke and then you do a verify on the key - this can't work because a key-file is not a signature.

Nov 28 2019, 6:38 PM · Support, gnupg
werner committed rGd2ff62dbdf89: gpg: Change the way v5 fingerprints are printed. (authored by werner).
gpg: Change the way v5 fingerprints are printed.
Nov 28 2019, 12:06 PM
werner committed rG915297705af6: kbx: Redefine the UBID which is now the primary fingerprint. (authored by werner).
kbx: Redefine the UBID which is now the primary fingerprint.
Nov 28 2019, 11:27 AM
werner committed rG724466692692: gpg: Implement insert, update, and delete via keyboxd. (authored by werner).
gpg: Implement insert, update, and delete via keyboxd.
Nov 28 2019, 11:27 AM
werner committed rG490e0cd0bab8: kbx: Add new command DELETE. (authored by werner).
kbx: Add new command DELETE.
Nov 28 2019, 11:27 AM

Nov 27 2019

werner committed rMd480a3c8f3a3: core,w32: Silence compiler warnings. (authored by werner).
core,w32: Silence compiler warnings.
Nov 27 2019, 10:04 PM
werner committed rA16d3ffa15906: w32: Fix bad-function-cast warning. (authored by werner).
w32: Fix bad-function-cast warning.
Nov 27 2019, 8:33 PM
werner committed rGf59455d054a7: dirmngr: Replace no-strict-overflow pragma by wrapv pragma. (authored by werner).
dirmngr: Replace no-strict-overflow pragma by wrapv pragma.
Nov 27 2019, 8:25 PM
werner committed rG61f41cdce5b6: gpg: Move a keydb function to another file. (authored by werner).
gpg: Move a keydb function to another file.
Nov 27 2019, 8:25 PM
werner committed rA2fc0761aedff: doc: Minor comment cleanup and beautification. (authored by werner).
doc: Minor comment cleanup and beautification.
Nov 27 2019, 3:19 PM
werner committed rDd02ae47fedb0: web: Announce release of 2.2.18 (authored by werner).
web: Announce release of 2.2.18
Nov 27 2019, 8:45 AM
werner added a comment to T4696: Fresh certificate get's pulled into certificate chain with expired root certificate.

Sorry, a fix didn't made it into 2.2.18.

Nov 27 2019, 8:19 AM · gnupg (gpg22), S/MIME, Bug Report

Nov 26 2019

werner triaged T4756: gpgsm --list-keys behaves differently than gpg when --passphrase is supplied as Normal priority.
Nov 26 2019, 4:52 PM · Feature Request, S/MIME
werner committed rG264c15c72fe0: dirmngr: Rework of the LDAP code, part 1. (authored by werner).
dirmngr: Rework of the LDAP code, part 1.
Nov 26 2019, 1:13 PM
werner committed rG1009e4e5f713: dirmngr: Make building with a TLS library mandatory (authored by werner).
dirmngr: Make building with a TLS library mandatory
Nov 26 2019, 12:03 PM
werner committed rG8fb14d3b3f9c: doc: Fixed variable naming. (authored by werner).
doc: Fixed variable naming.
Nov 26 2019, 12:03 PM
werner closed T4760: gnupg-2.2.18/scd/ccid-driver.c:3702: possible missing break ? as Resolved.

This is actually unused code and it will never be called with ERR == 0. Will fix it in master anway.

Nov 26 2019, 11:22 AM · scd, Bug Report
werner closed T4759: gnupg-2.2.18/kbx/keybox-search.c:1159:36: warning: Function 'keybox_get_keyblock' argument order different as Invalid.

No bug.

Nov 26 2019, 11:20 AM · gnupg, Bug Report
werner triaged T4758: gnupg-2.2.18/dirmngr/ldap-parse-uri.c:57:27: style: Same expression on both sides of '||'. as Normal priority.

The LDAP code is actually in very bad shape because @neal added it without utilizing the ldap wrapper and thus a timeout won't work reliable.

Nov 26 2019, 11:17 AM · LDAP, dirmngr, Bug Report
werner triaged T4759: gnupg-2.2.18/kbx/keybox-search.c:1159:36: warning: Function 'keybox_get_keyblock' argument order different as Normal priority.

See T4760.

Nov 26 2019, 11:15 AM · gnupg, Bug Report
werner triaged T4760: gnupg-2.2.18/scd/ccid-driver.c:3702: possible missing break ? as Normal priority.

[ Please do not post each compiler warning as a single report. That is just just too much overhead and we do see such messages ourselves if you would provide a bit more information. ]

Nov 26 2019, 11:12 AM · scd, Bug Report
werner set External Link to https://lists.gnupg.org/pipermail/gnupg-announce/2019q4/000442.html on T4684: Release GnuPG 2.2.18.
Nov 26 2019, 7:26 AM · Release Info, gnupg (gpg22)

Nov 25 2019

werner committed rD0d423ae0ba4a: swdb: Release gnupg 2.2.18 (authored by werner).
swdb: Release gnupg 2.2.18
Nov 25 2019, 10:19 PM
werner triaged T4757: gpgsm --import --quiet is not quiet as Low priority.
Nov 25 2019, 10:19 PM · S/MIME, Bug Report
werner closed T4165: Dirmngr: Ipv6 causes network failure if Ipv6 can't be reached, a subtask of T4163: hkps://hkps.pool.sks-keyservers.net has to many bad servers to be a good default, as Resolved.
Nov 25 2019, 10:17 PM · gnupg, Keyserver
werner closed T4165: Dirmngr: Ipv6 causes network failure if Ipv6 can't be reached as Resolved.

Unusable v6 interfaces are now detected on Windows and then not used.

Nov 25 2019, 10:17 PM · Keyserver, Feature Request, dirmngr
werner closed T4594: dirmngr appears to unilaterally import system CAs as Resolved.
Nov 25 2019, 10:16 PM · Bug Report, dirmngr, gnupg (gpg22)
werner closed T4652: avoid unnecessary trailing NUL byte in S-expressions as Resolved.
Nov 25 2019, 10:15 PM · gnupg, Bug Report
werner closed T4627: "gpg --verbose --list-secret-keys" prints a lot of warning messages unrelated to secret keys as Resolved.
Nov 25 2019, 10:15 PM · gnupg (gpg22), Bug Report
werner closed T4634: "gpg --quiet --quick-gen-key" is not quiet: emits "key $FPR marked as ultimately trusted" to stderr. as Resolved.
Nov 25 2019, 10:15 PM · gnupg (gpg22), Bug Report
werner closed T4628: new import-clean default for keys from keyservers modifies the local keyring when anything is returned as Resolved.
Nov 25 2019, 10:15 PM · Keyserver, gnupg (gpg22), Bug Report
werner updated the task description for T4684: Release GnuPG 2.2.18.
Nov 25 2019, 10:14 PM · Release Info, gnupg (gpg22)
werner updated the task description for T4684: Release GnuPG 2.2.18.
Nov 25 2019, 10:14 PM · Release Info, gnupg (gpg22)
werner closed T4665: gpg --delete-key of subkey leaves dangling subkey binding signature as Resolved.
Nov 25 2019, 10:13 PM · gnupg (gpg22), Bug Report
werner closed T4662: --locate-external-keys does not interact well with --no-auto-key-locate as Resolved.
Nov 25 2019, 10:12 PM · gnupg (gpg22), Bug Report
werner closed T4633: gpg argument "--passphrase=" yields 'missing argument for option "--passphrase="' as Resolved.
Nov 25 2019, 10:12 PM · Restricted Project, gnupg (gpg22), Bug Report
werner closed T4644: gpg: implement keybox compression run as Resolved.
Nov 25 2019, 10:12 PM · gnupg (gpg22), Bug Report
werner closed T4755: WoT forgeries using SHA-1 as Resolved.
Nov 25 2019, 10:11 PM · CVE, gnupg
werner closed T4684: Release GnuPG 2.2.18 as Resolved.
Nov 25 2019, 10:11 PM · Release Info, gnupg (gpg22)
werner committed rG80971adbc1ed: Post release updates (authored by werner).
Post release updates
Nov 25 2019, 9:51 PM
werner committed rG82b9e1bdbdd7: Release 2.2.18 (authored by werner).
Release 2.2.18
Nov 25 2019, 9:51 PM
werner committed rG253fadbf88a3: po: auto-update (authored by werner).
po: auto-update
Nov 25 2019, 9:51 PM
werner committed rGf29a9ed9d0a0: speedo: Tell makensis the used charset of the script. (authored by aheinecke).
speedo: Tell makensis the used charset of the script.
Nov 25 2019, 8:22 PM
werner committed rG8e49fc7f43ec: tests: Adjust for now invalid SHA-1 key signatures. (authored by werner).
tests: Adjust for now invalid SHA-1 key signatures.
Nov 25 2019, 4:31 PM
werner committed rGf027c2d5be96: po: Update German translation (authored by werner).
po: Update German translation
Nov 25 2019, 4:31 PM
werner committed rG96c4943a5bd0: agent: Improve --debug-pinentry diagnostics (authored by werner).
agent: Improve --debug-pinentry diagnostics
Nov 25 2019, 11:41 AM
werner committed rGc8783b3a204b: agent: Improve --debug-pinentry diagnostics (authored by werner).
agent: Improve --debug-pinentry diagnostics
Nov 25 2019, 11:41 AM

Nov 24 2019

werner committed rG10168a103b63: doc: Prepare a NEWS file for the next release. (authored by werner).
doc: Prepare a NEWS file for the next release.
Nov 24 2019, 8:44 PM
werner created T4755: WoT forgeries using SHA-1.
Nov 24 2019, 8:26 PM · CVE, gnupg

Nov 23 2019

werner closed T4547: improve error message ("Not enabled") when using Tor network and standard resolver as Resolved.

The manual states that --standard-resolver is mostly for debugging. The reason you get an "not enabled" is that we can't allow direct DNS queries in Tor mode which would happen with the system (standard) DNS resolver.

Nov 23 2019, 8:32 PM · dirmngr, gnupg (gpg22), Bug Report
werner committed rGdd373d4a2758: doc,dirmngr: Clarify --standard-resolver. (authored by werner).
doc,dirmngr: Clarify --standard-resolver.
Nov 23 2019, 8:30 PM
werner committed rGc21267e1c7aa: doc,dirmngr: Clarify --standard-resolver. (authored by werner).
doc,dirmngr: Clarify --standard-resolver.
Nov 23 2019, 8:30 PM
werner moved T4726: auto-key-locate only works with raw e-mail addresses (not angle-brackets) from Backlog to For next release on the gnupg (gpg22) board.
Nov 23 2019, 8:24 PM · gnupg (gpg22), wkd, Bug Report
werner closed T4753: gpg-wks-client should install a default policy file as Resolved.

Done for 2.2 and master.

Nov 23 2019, 1:52 PM · gnupg (gpg22)
werner committed rG6e893061b54d: wkd: Let --install-key write a template policy file. (authored by werner).
wkd: Let --install-key write a template policy file.
Nov 23 2019, 1:52 PM
werner committed rG50cd1a58f3a6: wkd: Let --install-key write a template policy file. (authored by werner).
wkd: Let --install-key write a template policy file.
Nov 23 2019, 1:51 PM

Nov 22 2019

werner closed T4752: compile GnuPG v2.3.0 GPG_ERR_NO_SERVICE as Invalid.

Please no bug reports for the development branch. You need to have a recent libgpg-error. We do not update the requirements checked by configure for master immediately. It is better to report this to gnupg-devel if you are sure that you have the latest versions of all libraries.

Nov 22 2019, 3:23 PM · Bug Report
werner created T4753: gpg-wks-client should install a default policy file .
Nov 22 2019, 3:19 PM · gnupg (gpg22)

Nov 21 2019

werner committed rD142f49603f45: misc: Upload g10 Code financial statemet for 2018 (authored by werner).
misc: Upload g10 Code financial statemet for 2018
Nov 21 2019, 10:34 AM