Page MenuHome GnuPG
Feed All Stories

Jan 18 2018

aheinecke added a comment to T3746: Outlook 2016 - Cannot display signed email in sent folder.

From your log I can see that the verification fails with "Unsupported Protocol" which is weird in itself. But at least with the fixes for T3538 (they are included already in your version) it should then show the unverified body. So this is a second problem. I tried to reproduce this for sent mails but even if deliberately break them they are displayed correctly.

Jan 18 2018, 1:15 PM · Info Needed, gpgol, Bug Report, gpg4win
aheinecke closed T3745: Text "Trusted Sender Address" misleading/incomplete as Wontfix.
Jan 18 2018, 12:08 PM · gpgol
aheinecke committed rKLEOPATRAbbee94331909: Use StackedWidget in Mainwindow (authored by aheinecke).
Use StackedWidget in Mainwindow
Jan 18 2018, 12:07 PM
aheinecke committed rKLEOPATRA348f6ed98120: Add KSplitterCollapserButton to padview (authored by aheinecke).
Add KSplitterCollapserButton to padview
Jan 18 2018, 12:07 PM
aheinecke committed rKLEOPATRA7fbfa43069c8: Update commit button after crypt action (authored by aheinecke).
Update commit button after crypt action
Jan 18 2018, 12:07 PM
aheinecke committed rKLEOPATRAd6fe84921e9d: Start VerifyOpaqueTask if necessary (authored by aheinecke).
Start VerifyOpaqueTask if necessary
Jan 18 2018, 12:07 PM
aheinecke committed rKLEOPATRA23aa89022db2: s/SignEncryptFilesTask/SignEncryptTask/ (authored by aheinecke).
s/SignEncryptFilesTask/SignEncryptTask/
Jan 18 2018, 12:07 PM
aheinecke committed rKLEOPATRA68fd7e00ab1f: Hide "AuditLog" Errors (authored by aheinecke).
Hide "AuditLog" Errors
Jan 18 2018, 12:07 PM
plundra created T3747: Erroneous algo picked when using quick-add-key and future-default.
Jan 18 2018, 11:21 AM · gnupg (gpg22), Bug Report
matoid added a comment to T3746: Outlook 2016 - Cannot display signed email in sent folder.

Hi Andre, thanks for your help.

Jan 18 2018, 11:09 AM · Info Needed, gpgol, Bug Report, gpg4win
ralfbergs added a comment to T3745: Text "Trusted Sender Address" misleading/incomplete.

I can understand your reasoning, it makes sense.

Jan 18 2018, 8:39 AM · gpgol
aheinecke added a project to T3746: Outlook 2016 - Cannot display signed email in sent folder: gpgol.
Jan 18 2018, 8:05 AM · Info Needed, gpgol, Bug Report, gpg4win
aheinecke triaged T3746: Outlook 2016 - Cannot display signed email in sent folder as High priority.

Damn I thought we had all these kinds of display issues fixed now with 3.0.3. Is this really GpgOL 2.0.6? (you can take a look at the option dialog of gpgol to confirm this)

Jan 18 2018, 8:05 AM · Info Needed, gpgol, Bug Report, gpg4win
aheinecke triaged T3745: Text "Trusted Sender Address" misleading/incomplete as Low priority.

We are always looking for ways to improve the messaging but the idea here was no keep it as simple as possible.

Jan 18 2018, 8:00 AM · gpgol

Jan 17 2018

matoid created T3746: Outlook 2016 - Cannot display signed email in sent folder.
Jan 17 2018, 8:24 PM · Info Needed, gpgol, Bug Report, gpg4win
aheinecke committed rWf27fc61bf4b6: Convert task numbers into dev.gnupg.links (authored by aheinecke).
Convert task numbers into dev.gnupg.links
Jan 17 2018, 8:19 PM
werner added a comment to T3745: Text "Trusted Sender Address" misleading/incomplete.

Depends: Not everything you see has been protected by the signature. Thus such a description would need to go into more detail.

Jan 17 2018, 8:06 PM · gpgol
ralfbergs created T3745: Text "Trusted Sender Address" misleading/incomplete in the S1 Public space.
Jan 17 2018, 5:08 PM · gpgol
bernhard added a comment to T3468: Admin for Phrabicator needed.

For transparency reasons: Intevation will make Werner an offer for maintaining dev.gnupg.org.

Jan 17 2018, 4:33 PM · dev.gnupg.org
aheinecke added a parent task for T3744: Kleopatra: Extended certificate selection dialog does not support import from file: T3742: Gpg4win 3.1.0.
Jan 17 2018, 4:31 PM · kleopatra
aheinecke added a subtask for T3742: Gpg4win 3.1.0: T3744: Kleopatra: Extended certificate selection dialog does not support import from file.
Jan 17 2018, 4:31 PM · gpg4win
aheinecke closed T3744: Kleopatra: Extended certificate selection dialog does not support import from file as Resolved.
Jan 17 2018, 4:31 PM · kleopatra
aheinecke committed rKLEOPATRAe34de8fa9612: Add import to certificateselectiondialog (authored by aheinecke).
Add import to certificateselectiondialog
Jan 17 2018, 4:31 PM
aheinecke created T3744: Kleopatra: Extended certificate selection dialog does not support import from file.
Jan 17 2018, 4:19 PM · kleopatra
aheinecke added a parent task for T3743: Kleopatra: Text pad for decryption and verification: T3742: Gpg4win 3.1.0.
Jan 17 2018, 4:12 PM · gpg4win, kleopatra
aheinecke added a subtask for T3742: Gpg4win 3.1.0: T3743: Kleopatra: Text pad for decryption and verification.
Jan 17 2018, 4:12 PM · gpg4win
aheinecke created T3743: Kleopatra: Text pad for decryption and verification.
Jan 17 2018, 4:12 PM · gpg4win, kleopatra
aheinecke created T3742: Gpg4win 3.1.0.
Jan 17 2018, 4:09 PM · gpg4win
aheinecke committed rKLEOPATRA20ba50d44c28: Add initial version of a notepad (authored by aheinecke).
Add initial version of a notepad
Jan 17 2018, 3:42 PM
aheinecke committed rKLEOPATRA35cee091d236: Add generic output support to sigencfilestask (authored by aheinecke).
Add generic output support to sigencfilestask
Jan 17 2018, 3:42 PM
aheinecke committed rKLEOPATRA195edef93442: Add classification support for BA input (authored by aheinecke).
Add classification support for BA input
Jan 17 2018, 3:42 PM
aheinecke committed rKLEOPATRA98c86cfa0d85: Add ByteArray based Input and Output classes (authored by aheinecke).
Add ByteArray based Input and Output classes
Jan 17 2018, 3:42 PM
aheinecke committed rKLEOPATRA86c08db66dca: Add option to filter signencryptwidget by protocol (authored by aheinecke).
Add option to filter signencryptwidget by protocol
Jan 17 2018, 3:42 PM
aheinecke committed rKLEOPATRAb04c0b108b98: Use Monospace directly as fixed font (authored by aheinecke).
Use Monospace directly as fixed font
Jan 17 2018, 3:42 PM
aheinecke closed T3741: dirmngr, GnuPG: WKD lookup unexpectedly slow as Resolved.

Indeed with debug dns I can see that what takes so long is the resolve_dns_name. After the debug output prints that line the key comes nearly instant.

Jan 17 2018, 12:28 PM · dirmngr, gnupg
bernhard added a comment to T3725: jabber.quux.de certificate ran out 2018-01-09.

Still not solved.

Jan 17 2018, 10:48 AM
herzmut added a comment to T3739: pinentry: manual type enforcement degrades security of passwords and emails.

The default Pinentry for Windows is pinentry-qt it should both be accessible with descriptions and screenreader API support and it should allow you to paste in passphrases. The passphrase length is limited at 255 characters.

Jan 17 2018, 9:54 AM · pinentry, Bug Report, gpg4win
werner added a comment to T3739: pinentry: manual type enforcement degrades security of passwords and emails.

BTW, using a long passphrase for public key encryption is in almost all cases useless. The passphrase is there to protect the private key, the passphrase is never sent to another site and will only be seen by gpg-agent, pinentry and the tty I/O software of the OS.

Jan 17 2018, 9:37 AM · pinentry, Bug Report, gpg4win
werner added a comment to T3739: pinentry: manual type enforcement degrades security of passwords and emails.

FWIW, Running gpg from the commandline with option -v shows the pinentry flavor.

Jan 17 2018, 9:21 AM · pinentry, Bug Report, gpg4win
werner added a comment to T3741: dirmngr, GnuPG: WKD lookup unexpectedly slow.

I can't replicate it here. With my key it takes
real 0m0.346s
user 0m0.080s
sys 0m0.004s
and for your key it takes a few 10ms longer (more hops). Is one of your DNS responder failing? Can you please run dirmngr with --debug dns ?

Jan 17 2018, 9:19 AM · dirmngr, gnupg
aheinecke closed T3614: GpgOL: Wrong plaintext body part when saved / sent from drafts as Resolved.

The fix was released with Gpg4win-3.0.3

Jan 17 2018, 9:08 AM · gpg4win, gpgol
aheinecke created T3741: dirmngr, GnuPG: WKD lookup unexpectedly slow.
Jan 17 2018, 8:48 AM · dirmngr, gnupg
aheinecke triaged T3739: pinentry: manual type enforcement degrades security of passwords and emails as Normal priority.

The default Pinentry for Windows is pinentry-qt it should both be accessible with descriptions and screenreader API support and it should allow you to paste in passphrases. The passphrase length is limited at 255 characters. This limitation comes from GnuPG and is there both for Windows and Linux. Have you tested Pinentry-qt with a screenreader?

Jan 17 2018, 8:34 AM · pinentry, Bug Report, gpg4win
aheinecke triaged T3740: Outlook unable to send encrypted or signed emails as Normal priority.

as your behavior is unusual please verify that no other Addons interfere, we are still trying to figure out if there are incompatible other addons. So please try to disable any other addons and try again.

Jan 17 2018, 8:29 AM · gpgol, Bug Report
aa added a comment to P4 verify bitcoin address for campaign.

Bravo1, take off; control tower

Jan 17 2018, 6:25 AM

Jan 16 2018

aa added a comment to P5 bak.

'bit commit',

Jan 16 2018, 4:10 PM · Feature Request
aa created P5 bak in the S1 Public space.
Jan 16 2018, 4:06 PM · Feature Request
grichardnewell created T3740: Outlook unable to send encrypted or signed emails.
Jan 16 2018, 11:04 AM · gpgol, Bug Report
aa added a comment to T3731: gcry_pk_genkey() segfaults for ecdsa 384.
Jan 16 2018, 1:44 AM · libgcrypt, Bug Report
herzmut updated the task description for T3739: pinentry: manual type enforcement degrades security of passwords and emails.
Jan 16 2018, 12:16 AM · pinentry, Bug Report, gpg4win
herzmut created T3739: pinentry: manual type enforcement degrades security of passwords and emails.
Jan 16 2018, 12:09 AM · pinentry, Bug Report, gpg4win

Jan 15 2018

werner added a comment to T3731: gcry_pk_genkey() segfaults for ecdsa 384.

I already talked with the upstream author and we figured a possible problem due to an non-locked use of the core function. The cause of this is

unsigned char *tmpval = ec->mem + ec->memlocation;
*tmpval = (*tmpval + 1) & 0xff;
ec->memlocation = ec->memlocation + ec->memblocksize - 1;
ec->memlocation = ec->memlocation % wrap;

which is non-atomic and will thus leads to the out-of-bounds deref. The EC object may only be used by one thread at a time.

Jan 15 2018, 10:44 AM · libgcrypt, Bug Report
gniibe added a comment to T3731: gcry_pk_genkey() segfaults for ecdsa 384.

It is reproducible on my Debian (stretch). I'm going to minimize the case.

Jan 15 2018, 10:36 AM · libgcrypt, Bug Report
aheinecke closed T3607: Gpg4win 3.0.3 as Resolved.

Gpg4win-3.0.3 has been released.

Jan 15 2018, 8:54 AM · gpg4win
aheinecke closed T3523: GpgOL - Outlook running out of resorces as Resolved.

No more reports of this since 3.0.2. With 3.0.3 I fixed an additional memleak which should further improve this. Resolved for now.

Jan 15 2018, 8:53 AM · gpgol, Bug Report, gpg4win
aheinecke lowered the priority of T3616: Gpg4Win 3.0.2 hangs if replying to an encrypted message in Outlook 2010 from High to Normal.

For the 3.0.3 I tested more with Microsoft Exchange Online, an Exchange 2012 Server and could not reproduce such problems. So I'm lowering the priority to normal as I don't think many users are affected.

Jan 15 2018, 8:53 AM · Info Needed, Bug Report, gpg4win
aheinecke closed T3736: GpgOL: Invalid Signature for signed only mails with attachment as Resolved.
Jan 15 2018, 8:51 AM · gpgol
aheinecke closed T3736: GpgOL: Invalid Signature for signed only mails with attachment, a subtask of T3607: Gpg4win 3.0.3, as Resolved.
Jan 15 2018, 8:51 AM · gpg4win
RouL added a comment to T3381: dirmngr won't start on Windows 10 with admin level account.

I have exactly the same problem on my Windows 10 machine. I am using bitdefender as virus scanner, but it doesn't work no matter if it is active or not. Windows is fully updated and I am using gpg4win 3.0.3.

Jan 15 2018, 8:30 AM · libassuan, Restricted Project, gpg4win, dirmngr, Windows, Bug Report
werner reopened T1967: GnuPG should select a key for signing without trying to use missing subkeys as "Open".
Jan 15 2018, 8:28 AM · gnupg (gpg22), Feature Request
aheinecke created T3738: Kleopatra: Key text export should contain information about subkeys.
Jan 15 2018, 8:12 AM · kleopatra

Jan 14 2018

theirix added a comment to T1967: GnuPG should select a key for signing without trying to use missing subkeys.

@gniibe just checking – any news for 2.2 support? Should I reopen this bug or report a new one against 2.2?

Jan 14 2018, 3:39 PM · gnupg (gpg22), Feature Request
lbandlav added a comment to T3737: libgcrypt's gcry_kdf_scrypt has incorrectly set N and P values.

Have posted in gcrypt-devel mailer.. thanks

Jan 14 2018, 2:47 PM · libgcrypt, Bug Report

Jan 13 2018

lbandlav added a member for libgcrypt: lbandlav.
Jan 13 2018, 8:51 PM
werner reopened T3354: gpgme only builds against two versions of python at once as "Open".
Jan 13 2018, 5:01 PM · Python, gpgme, Bug Report
werner raised the priority of T3354: gpgme only builds against two versions of python at once from Wishlist to Normal.

The actual problem is that justus quit his job to work for pEp. Thus we have no maintainer for the python port. There is one candidate for this job but don't expect any fast fixes because one of the near term goals will be to replace swig so that we can provide the bindings also for WIndows. Maybe that will also solve the problem with different Python versions.

Jan 13 2018, 5:01 PM · Python, gpgme, Bug Report

Jan 12 2018

dkg added a comment to T3354: gpgme only builds against two versions of python at once.

it's too bad that this is not considered something worth fixing upstream -- at the moment, debian's python3-gpg will only work with one specific version of python3 because of this, which makes package transitions more complex than they should be.

Jan 12 2018, 8:14 PM · Python, gpgme, Bug Report
jukivili committed rCa518b6680ea8: Move AMD64 MS to SysV calling convention conversion to assembly side (authored by jukivili).
Move AMD64 MS to SysV calling convention conversion to assembly side
Jan 12 2018, 6:39 PM
jukivili committed rCc3d60acc3ab5: rijndael-ssse3: call assembly functions directly (authored by jukivili).
rijndael-ssse3: call assembly functions directly
Jan 12 2018, 6:39 PM
jukivili committed rC135250e3060e: Make BMI2 inline assembly check more robust (authored by jukivili).
Make BMI2 inline assembly check more robust
Jan 12 2018, 6:39 PM
lbandlav added a comment to T3737: libgcrypt's gcry_kdf_scrypt has incorrectly set N and P values.

Will be posting it in gcrypt-devel shortly.

Jan 12 2018, 6:14 PM · libgcrypt, Bug Report
lbandlav added a comment to T3737: libgcrypt's gcry_kdf_scrypt has incorrectly set N and P values.

Hope you've got the problem with the current naming conventions for arguments and the result by going them. We should either document the arguments properly or change the code as i have pointed out. Since the iterations argument used properly in the case PBKDF2 (type8) within the same wrapper api gcry_kdf_derive.

Jan 12 2018, 5:51 PM · libgcrypt, Bug Report
werner added a comment to T3737: libgcrypt's gcry_kdf_scrypt has incorrectly set N and P values.

I would also suggest to discuss this at the gcrypt-devel list so that you can get get comments from others as well.

Jan 12 2018, 5:21 PM · libgcrypt, Bug Report
werner added a comment to T3737: libgcrypt's gcry_kdf_scrypt has incorrectly set N and P values.

Your are looking at the libgcrypt code. Unfortunately that does not help us. What I would like to see are two protocol implementations, using sccryptone with libgcrypt and one with anoter scruypt implementation. Do they both work? If so, there is no bug in libgcrypt's code - at best the parameter have been given different names and we can point other name use in the docs.

Jan 12 2018, 5:18 PM · libgcrypt, Bug Report
lbandlav added a comment to T3737: libgcrypt's gcry_kdf_scrypt has incorrectly set N and P values.

Here's what i got from 1.8.1 code (downloaded from gnupg).

Jan 12 2018, 3:16 PM · libgcrypt, Bug Report
werner edited the content of Wiki Home.
Jan 12 2018, 3:03 PM
werner edited the content of Wiki Home.
Jan 12 2018, 3:03 PM
werner edited the content of Wiki Home.
Jan 12 2018, 3:03 PM
werner edited the content of Wiki Home.
Jan 12 2018, 3:02 PM
werner edited the content of Wiki Home.
Jan 12 2018, 3:01 PM
werner edited the content of Wiki Home.
Jan 12 2018, 3:01 PM
werner edited the content of Wiki Home.
Jan 12 2018, 3:00 PM
werner edited the content of Wiki Home.
Jan 12 2018, 3:00 PM
werner edited the content of Wiki Home.
Jan 12 2018, 2:59 PM
werner changed the Can Use Application policy for application Phriction from Public (No Login Required) to Administrators.
Jan 12 2018, 2:58 PM
werner edited the content of Wiki Home.
Jan 12 2018, 2:56 PM
werner added a project to T3737: libgcrypt's gcry_kdf_scrypt has incorrectly set N and P values: libgcrypt.

tests/t-kdf uses test vectors from an I-D and obviously works fine. Maybe that I-D has a different parameter naming than what is used in your examples. I simply can't say without researching the whole thing. Please let t me know a concrete bug where that KDF is not compatible with other implementations. As an example here is one of our test vectors:

Jan 12 2018, 2:45 PM · libgcrypt, Bug Report
bernhard committed rWf57154d6b692: Fixes build-history.awk's version number output. (authored by bernhard).
Fixes build-history.awk's version number output.
Jan 12 2018, 2:24 PM
aheinecke committed rW50793fd4377e: Fix news date (authored by aheinecke).
Fix news date
Jan 12 2018, 2:05 PM
aheinecke committed rD76802d1db0d7: SWDB: Update for gpg4win-3.0.3 (authored by aheinecke).
SWDB: Update for gpg4win-3.0.3
Jan 12 2018, 1:47 PM
aheinecke committed rW774eea8f0bb9: web: Update for 3.0.3 (authored by aheinecke).
web: Update for 3.0.3
Jan 12 2018, 1:41 PM
lbandlav added a comment to T3737: libgcrypt's gcry_kdf_scrypt has incorrectly set N and P values.

With the current implementation when the r is set to GCRY_KDF_SCRYPT, on a 3 core system, it almost took 35 minutes to generate the hash, where as with r=41 it was around 4 minutes and 20 seconds.
when i corrected the the values, i.e. N=16384, p=1 and r=GCRY_KDF_SCRYPT, it took less than a second to generate the hash.

Jan 12 2018, 1:28 PM · libgcrypt, Bug Report
aheinecke committed rWa2ed9d1803fc: Update NEWS and READMEs (authored by aheinecke).
Update NEWS and READMEs
Jan 12 2018, 1:10 PM
aheinecke committed rWd7b28ca4d64e: Post release version bump (authored by aheinecke).
Post release version bump
Jan 12 2018, 1:10 PM
aheinecke committed rWd80fc0c34557: Potential fixes for directory race conds (authored by aheinecke).
Potential fixes for directory race conds
Jan 12 2018, 1:10 PM
aheinecke committed rW28c5f22ad81a: Update Kleopatra and GpgOL (authored by aheinecke).
Update Kleopatra and GpgOL
Jan 12 2018, 1:10 PM
aheinecke committed rW77c454a71647: Delete obsolete gpgol patch (authored by aheinecke).
Delete obsolete gpgol patch
Jan 12 2018, 1:10 PM
lbandlav triaged T3737: libgcrypt's gcry_kdf_scrypt has incorrectly set N and P values as Normal priority.
Jan 12 2018, 1:03 PM · libgcrypt, Bug Report
lbandlav created T3737: libgcrypt's gcry_kdf_scrypt has incorrectly set N and P values.
Jan 12 2018, 1:02 PM · libgcrypt, Bug Report
werner added a comment to T3728: error: sign+encrypt failed: unusable public key.

Let me comment this

Jan 12 2018, 11:49 AM · Support