Page MenuHome GnuPG
Feed All Stories

Nov 10 2019

Laurent Montel <montel@kde.org> committed rLIBKLEO77ad10a780d8: GIT_SILENT: Prepare 5.13.0beta1 (authored by Laurent Montel <montel@kde.org>).
GIT_SILENT: Prepare 5.13.0beta1
Nov 10 2019, 8:15 PM
Laurent Montel <montel@kde.org> committed rKLEOPATRA1d45a8c1928c: GIT_SILENT: Prepare 5.13.0beta1 (authored by Laurent Montel <montel@kde.org>).
GIT_SILENT: Prepare 5.13.0beta1
Nov 10 2019, 8:12 PM
David Faure <faure@kde.org> committed rKLEOPATRAe4f8f853f4e3: GIT_SILENT ensure non-null windowHandle() (authored by David Faure <faure@kde.org>).
GIT_SILENT ensure non-null windowHandle()
Nov 10 2019, 2:09 PM

Nov 9 2019

doronbehar added a comment to T4744: Password is _never_ prompted in an X session but is in a bare tty.

BTW, since I start my X session with startx, these are the relevant parts I have in my .xinitrc:

Nov 9 2019, 5:21 PM · Bug Report
doronbehar added a comment to T4744: Password is _never_ prompted in an X session but is in a bare tty.

So my gpg-agent.conf file looks like this now:

Nov 9 2019, 5:01 PM · Bug Report
werner added a comment to D495: gpg: Fall back on keyid for --auto-key-retrieve..

auto key retrieve using just the key id is dangerous because it can lead to a DoS. It is too easy to flood keyservers with several keys have the same keyid. Let's don't give an incentive to the script kiddies trying to pull down the OpenPGP keyservers.

Nov 9 2019, 4:44 PM
werner added a comment to T4744: Password is _never_ prompted in an X session but is in a bare tty.

Please add

Nov 9 2019, 4:39 PM · Bug Report
werner committed rG6e1c99bc3973: gpgsm: Allow sepcification of ldaps servers. (authored by werner).
gpgsm: Allow sepcification of ldaps servers.
Nov 9 2019, 11:38 AM
werner committed rG2b9d399cf0c7: doc: Document gpgsm's --keyserver option. (authored by werner).
doc: Document gpgsm's --keyserver option.
Nov 9 2019, 11:38 AM
djpohly added a reviewer for D495: gpg: Fall back on keyid for --auto-key-retrieve.: werner.

Adding werner to reviewers since this references his commit.

Nov 9 2019, 12:05 AM

Nov 8 2019

slandden added a comment to T4630: libgcrypt: POWER GHASH Vector Acceleration.

El vie., 8 nov. 2019 8:19, johnmar (John Martinez) <noreply@dev.gnupg.org>
escribió:

Nov 8 2019, 5:29 PM · Feature Request, libgcrypt
johnmar added a comment to T4630: libgcrypt: POWER GHASH Vector Acceleration.

Allow me to clarify. For bounty purposes, as long as the intrinsic implementation matches or beats OpenSSL performance, it is acceptable. There have been cases where the use of certain intrinsics may yield better performing, but sub optimal results.

Nov 8 2019, 5:18 PM · Feature Request, libgcrypt
doronbehar created T4744: Password is _never_ prompted in an X session but is in a bare tty.
Nov 8 2019, 3:42 PM · Bug Report
Valodim added a comment to rG6701a38f8e4a: gpg: Fix a potential loss of key sigs during import with self-sigs-only..

Sorry, I don't know which source code comment you are referring to. You mention the comment at https://dev.gnupg.org/T4628#128529 as well, but neither this commit nor be99eec2b105eb5f8e3759147ae351dcc40560ad contain such comment.

Nov 8 2019, 11:13 AM
jukivili added a comment to T4630: libgcrypt: POWER GHASH Vector Acceleration.

Please note that C-based intrinsic implementation is the way to go now as that is the path chosen for PowerPC implementations in libgcrypt.

Nov 8 2019, 9:23 AM · Feature Request, libgcrypt
werner added a comment to rG6701a38f8e4a: gpg: Fix a potential loss of key sigs during import with self-sigs-only..

As I already stated: Please read the source comments on why we do this

Nov 8 2019, 9:16 AM
slandden added a comment to T4630: libgcrypt: POWER GHASH Vector Acceleration.

C-based intrinsic implementations are discouraged.

Nov 8 2019, 12:16 AM · Feature Request, libgcrypt
gniibe committed rMc49324200734: qt,tests: Take care for old DSA key using deprecated digest algo. (authored by gniibe).
qt,tests: Take care for old DSA key using deprecated digest algo.
Nov 8 2019, 12:10 AM

Nov 7 2019

johnmar updated the task description for T4630: libgcrypt: POWER GHASH Vector Acceleration.
Nov 7 2019, 11:14 PM · Feature Request, libgcrypt
Valodim added a comment to rG6701a38f8e4a: gpg: Fix a potential loss of key sigs during import with self-sigs-only..

I'm confused by this commit: Third-party sigs were the ones used for flooding, and those are dropped with self-sigs-only. Is the additional clean operation still necessary for the mitigation? Wouldn't it be easier to just not set the import-clean flag in the first place for the default keyserver options?

Nov 7 2019, 7:03 PM
feinstein created T4743: Kleopatra: Verify from Signature in Clipboard in the S1 Public space.
Nov 7 2019, 5:36 PM · Feature Request, kleopatra
ringelkrat added a comment to T4726: auto-key-locate only works with raw e-mail addresses (not angle-brackets).
-r  STRING

does a remote key lookup only if STRING is a valid addr-spec. No extraction of the addr-spec from STRING is done and thus angle brackets inhibit the use of a remote lookup.

Nov 7 2019, 4:51 PM · gnupg (gpg22), wkd, Bug Report
werner added a comment to T4726: auto-key-locate only works with raw e-mail addresses (not angle-brackets).

does a remote key lookup only if STRING is a valid addr-spec. No extraction of the addr-spec from STRING is done and thus angle brackets inhibit the use of a remote lookup. This was implemented in this way to be as much as possible backward compatible.

Nov 7 2019, 4:02 PM · gnupg (gpg22), wkd, Bug Report
werner added a project to T4670: Key expiration time ignored for zero creation date keys: patch.
Nov 7 2019, 3:51 PM · patch, gnupg (gpg22), Bug Report
werner closed T4741: PLAINTEXT_LENGTH is sometimes incorrect as Resolved.
Nov 7 2019, 3:46 PM · gnupg (gpg22), Bug Report
werner committed rGeae1ea6f39c1: doc: Improved description of status PLAINTEXT_LENGTH. (authored by werner).
doc: Improved description of status PLAINTEXT_LENGTH.
Nov 7 2019, 3:46 PM
werner committed rG1d83f92fa928: doc: Improved description of status PLAINTEXT_LENGTH. (authored by werner).
doc: Improved description of status PLAINTEXT_LENGTH.
Nov 7 2019, 3:46 PM
werner added a project to T4677: Failure using pinentry-tty or pinentry-curses when GnuPG's standard input is a file: unreproducible.
Nov 7 2019, 3:38 PM · unreproducible, gnupg (gpg22), Bug Report
werner set the icon for unreproducible to Tag.
Nov 7 2019, 3:38 PM
dkg reopened T4741: PLAINTEXT_LENGTH is sometimes incorrect as "Open".

DETAILS says:

*** PLAINTEXT_LENGTH <length>
    This indicates the length of the plaintext that is about to be
    written.  Note that if the plaintext packet has partial length
    encoding it is not possible to know the length ahead of time.  In
    that case, this status tag does not appear.
Nov 7 2019, 3:36 PM · gnupg (gpg22), Bug Report
werner changed the edit policy for unreproducible.
Nov 7 2019, 3:36 PM
werner closed T4677: Failure using pinentry-tty or pinentry-curses when GnuPG's standard input is a file as Resolved.

Sorry, we can't replicate this with the current pinentry version.

Nov 7 2019, 3:23 PM · unreproducible, gnupg (gpg22), Bug Report
werner lowered the priority of T4696: Fresh certificate get's pulled into certificate chain with expired root certificate from High to Normal.
Nov 7 2019, 3:18 PM · gnupg (gpg22), S/MIME, Bug Report
werner moved T4628: new import-clean default for keys from keyservers modifies the local keyring when anything is returned from Backlog to For next release on the gnupg (gpg22) board.
Nov 7 2019, 3:15 PM · Keyserver, gnupg (gpg22), Bug Report
werner changed the status of T4628: new import-clean default for keys from keyservers modifies the local keyring when anything is returned from Open to Testing.
Nov 7 2019, 3:14 PM · Keyserver, gnupg (gpg22), Bug Report
werner committed rG2975868ede40: gpg: Fix a potential loss of key sigs during import with self-sigs-only. (authored by werner).
gpg: Fix a potential loss of key sigs during import with self-sigs-only.
Nov 7 2019, 3:13 PM
werner committed rG6701a38f8e4a: gpg: Fix a potential loss of key sigs during import with self-sigs-only. (authored by werner).
gpg: Fix a potential loss of key sigs during import with self-sigs-only.
Nov 7 2019, 3:10 PM
werner edited projects for T4619: Unable to decrypt symmetric-key encrypted data, added: gnupg (gpg23); removed gnupg (gpg22).
Nov 7 2019, 2:36 PM · gnupg24, gnupg (gpg23), Bug Report
werner closed T4741: PLAINTEXT_LENGTH is sometimes incorrect as Invalid.
Nov 7 2019, 2:32 PM · gnupg (gpg22), Bug Report
feinstein added a comment to T4739: Kleopatra Verification Duplicates Results.

I always select both files and click to verify, I thought that was the way
it was supposed to be done, that I should provide the file and the
signature to the program.

Nov 7 2019, 2:15 PM · kleopatra, Bug Report, gpg4win
aheinecke committed rW9602f321cfd3: Update copyright year (authored by aheinecke).
Update copyright year
Nov 7 2019, 11:29 AM
werner committed rGe624c41dbafd: gpg: Add option --allow-weak-key-signatures. (authored by werner).
gpg: Add option --allow-weak-key-signatures.
Nov 7 2019, 10:46 AM
aheinecke committed rW2b04ebf61487: Add patch to build kleopatra against older kf5 (authored by aheinecke).
Add patch to build kleopatra against older kf5
Nov 7 2019, 9:45 AM
aheinecke committed rWe1dec929b55f: Update libkleo and kleopatra to latest master (authored by aheinecke).
Update libkleo and kleopatra to latest master
Nov 7 2019, 9:45 AM
werner committed rGf4047f56058c: gpg: Print rfc4880bis note only in verbose mode. (authored by werner).
gpg: Print rfc4880bis note only in verbose mode.
Nov 7 2019, 9:25 AM
aheinecke added a comment to T4739: Kleopatra Verification Duplicates Results.

Just downloaded the file and signature and there is only one signature. Just verifying the signature also does not result in duplicated results.

Nov 7 2019, 9:16 AM · kleopatra, Bug Report, gpg4win
werner committed rGfd88b8847a37: gpg: Remove an unused variable. (authored by werner).
gpg: Remove an unused variable.
Nov 7 2019, 9:15 AM
werner committed rGa1f8ca7eee9b: doc: Make clear that by default RFC-4880bis features are used. (authored by werner).
doc: Make clear that by default RFC-4880bis features are used.
Nov 7 2019, 9:15 AM
werner committed rGc6be40725127: doc: Document the --unwrap command. (authored by werner).
doc: Document the --unwrap command.
Nov 7 2019, 9:15 AM
werner committed rG584b65ad7e93: gpg: Do not require --batch when using --log-file. (authored by werner).
gpg: Do not require --batch when using --log-file.
Nov 7 2019, 9:15 AM
werner edited projects for T4742: GnuPG, Kleopatra: Update --full-gen-key options for GnuPG-2.3, added: gnupg (gpg23); removed gnupg.
Nov 7 2019, 8:45 AM · gnupg24, gnupg (gpg23), kleopatra
werner added a comment to T4741: PLAINTEXT_LENGTH is sometimes incorrect.

"PLAINTEXT 75 ..." means UTF-8 encoding (u) which is not not binary (b) or MIME ('m') and thus on Unix the line endings are converted from CR,LF to LF. On Windows you should see a different length. See plaintext.c#handle_plaintext()

Nov 7 2019, 8:43 AM · gnupg (gpg22), Bug Report
aheinecke claimed T4739: Kleopatra Verification Duplicates Results.

Thanks for the report. I'm only giving it low priority because while it is ugly it is no loss of functionality.

Nov 7 2019, 8:41 AM · kleopatra, Bug Report, gpg4win
aheinecke added a comment to T4742: GnuPG, Kleopatra: Update --full-gen-key options for GnuPG-2.3.

Without --expert my proposal for full-gen-key would be:

Nov 7 2019, 8:37 AM · gnupg24, gnupg (gpg23), kleopatra
aheinecke created T4742: GnuPG, Kleopatra: Update --full-gen-key options for GnuPG-2.3.
Nov 7 2019, 8:30 AM · gnupg24, gnupg (gpg23), kleopatra
Laurent Montel <montel@kde.org> committed rLIBKLEO9e8fe676dc77: GIT_SILENT: Prepare 5.13.0beta1 (authored by Laurent Montel <montel@kde.org>).
GIT_SILENT: Prepare 5.13.0beta1
Nov 7 2019, 7:49 AM
Laurent Montel <montel@kde.org> committed rKLEOPATRAf170d520e4be: GIT_SILENT: Prepare 5.13.0beta1 (authored by Laurent Montel <montel@kde.org>).
GIT_SILENT: Prepare 5.13.0beta1
Nov 7 2019, 7:42 AM
dkg created T4741: PLAINTEXT_LENGTH is sometimes incorrect.
Nov 7 2019, 6:02 AM · gnupg (gpg22), Bug Report

Nov 6 2019

werner added a project to T4740: GnuPG: Invalid digest algorithm for new certifications made by old keys with GnuPG master: CVE.

That is due to the mitigation for CVE-2019-14855. I need to see how to find a more specific mitigation.

Nov 6 2019, 4:25 PM · CVE, gnupg
aheinecke created T4740: GnuPG: Invalid digest algorithm for new certifications made by old keys with GnuPG master.
Nov 6 2019, 2:52 PM · CVE, gnupg
aheinecke committed rMe7b5c6405da5: qt, tests: Add check for supported versions (authored by aheinecke).
qt, tests: Add check for supported versions
Nov 6 2019, 9:23 AM
aheinecke committed rM024edbbd3c00: qt, tests: Replace accidentally commited assert (authored by aheinecke).
qt, tests: Replace accidentally commited assert
Nov 6 2019, 9:14 AM
aheinecke committed rMa56f6015e951: qt,tests: Add test to add an exportable certify (authored by aheinecke).
qt,tests: Add test to add an exportable certify
Nov 6 2019, 9:11 AM
gniibe committed rM1b840a151ad7: python: Fix how to generate documentation. (authored by gniibe).
python: Fix how to generate documentation.
Nov 6 2019, 2:36 AM

Nov 5 2019

jukivili committed rCbdbd032d1626: ec: fix left shift overflows on WIN64 build (authored by jukivili).
ec: fix left shift overflows on WIN64 build
Nov 5 2019, 9:11 PM
jukivili committed rC1322c6a5d1e9: mpi/amd64: use SSE2 for shifting instead of MMX (authored by jukivili).
mpi/amd64: use SSE2 for shifting instead of MMX
Nov 5 2019, 9:11 PM
jukivili committed rCb52dde860963: Add i386/SSSE3 implementation of SHA512 (authored by jukivili).
Add i386/SSSE3 implementation of SHA512
Nov 5 2019, 9:11 PM
werner committed rCfbb26c3ac514: Change license of dumpsexp.c to LGPL. (authored by werner).
Change license of dumpsexp.c to LGPL.
Nov 5 2019, 12:45 PM
aheinecke committed rWc73fd3ec5304: Update libkleo / kleopatra (authored by aheinecke).
Update libkleo / kleopatra
Nov 5 2019, 11:45 AM
feinstein created T4739: Kleopatra Verification Duplicates Results.
Nov 5 2019, 2:55 AM · kleopatra, Bug Report, gpg4win

Nov 4 2019

aheinecke committed rWc6c0d62bbd22: Update dev versions to latest master (authored by aheinecke).
Update dev versions to latest master
Nov 4 2019, 4:46 PM
aheinecke committed rWf3608c02e423: MSI: Add code to launch kleo after exit (authored by aheinecke).
MSI: Add code to launch kleo after exit
Nov 4 2019, 4:46 PM
aheinecke committed rW8650308e311b: MSI: Auto update GUIDs (authored by aheinecke).
MSI: Auto update GUIDs
Nov 4 2019, 4:46 PM
aheinecke committed rWb30bb44741b7: MSI: Add registry keys for GpgOL (authored by aheinecke).
MSI: Add registry keys for GpgOL
Nov 4 2019, 4:46 PM
aheinecke committed rW8b8fce4cde0f: MSI: Ignore GPA and GTK (authored by aheinecke).
MSI: Ignore GPA and GTK
Nov 4 2019, 4:46 PM
aheinecke committed rW1d8a3aed43e2: MSI: Rename kde-l10n and gpg4win-tools sections (authored by aheinecke).
MSI: Rename kde-l10n and gpg4win-tools sections
Nov 4 2019, 4:46 PM
aheinecke committed rW6c99e7f46518: Remove obsolete libkleo patch (authored by aheinecke).
Remove obsolete libkleo patch
Nov 4 2019, 4:46 PM
aheinecke committed rW65904ead58f3: Update extra-cmake-modules (authored by aheinecke).
Update extra-cmake-modules
Nov 4 2019, 4:46 PM
aheinecke committed rW5d971bcead4e: Update gpgol (authored by aheinecke).
Update gpgol
Nov 4 2019, 4:46 PM
aheinecke committed rMcb7668caeb71: cpp: Add API to obtain mutliple remarks (authored by aheinecke).
cpp: Add API to obtain mutliple remarks
Nov 4 2019, 1:57 PM
aheinecke committed rM9cf4db1e5271: qt, tests: Add testcase for multiple remarsk (authored by aheinecke).
qt, tests: Add testcase for multiple remarsk
Nov 4 2019, 1:57 PM
aheinecke committed rMdb888b1cc057: qt,tests: Move remarks test out and extend it (authored by aheinecke).
qt,tests: Move remarks test out and extend it
Nov 4 2019, 11:20 AM
aheinecke committed rM08933c183a4c: cpp: Fix dupe_ok state for single uid (authored by aheinecke).
cpp: Fix dupe_ok state for single uid
Nov 4 2019, 11:20 AM
werner committed rG3ae5cefc64a8: po: Fix an accidentally translated keyword in zh_TW. (authored by werner).
po: Fix an accidentally translated keyword in zh_TW.
Nov 4 2019, 10:19 AM
werner closed T4737: gpg does not ask me again when an incorrect password is provided during `gpg --sign` on Chinese systems as Resolved.

Thanks for the report. I fixed this for the next 2.2 release and put a not in the source file to not translate the keyword.

Nov 4 2019, 9:52 AM · Bug Report
werner committed rM067b1a73d986: doc: Note the need for a base tag. (authored by werner).
doc: Note the need for a base tag.
Nov 4 2019, 9:22 AM
Laurent Montel <montel@kde.org> committed rKLEOPATRA1fc9c1488a46: Make it compile with last kf5 (authored by Laurent Montel <montel@kde.org>).
Make it compile with last kf5
Nov 4 2019, 6:57 AM

Nov 2 2019

Yuri Chornoivan <yurchor@ukr.net> committed rKLEOPATRA5981a9e07c9b: Fix minor issues found by EBN and typos (authored by Yuri Chornoivan <yurchor@ukr.net>).
Fix minor issues found by EBN and typos
Nov 2 2019, 3:45 PM
Yuri Chornoivan <yurchor@ukr.net> committed rLIBKLEOcd6e7ec4fdf7: Fix minor issues found by EBN and typos (authored by Yuri Chornoivan <yurchor@ukr.net>).
Fix minor issues found by EBN and typos
Nov 2 2019, 8:46 AM
olf added a comment to rW1d89f93b037d: Improve support page (minor).

Thanks.

Nov 2 2019, 12:09 AM

Nov 1 2019

gnupgpacker added a comment to T4736: Kleopatra: When generating an OpenPGP key the expiry is ignored.

Maybe it is the same issue described in https://dev.gnupg.org/T4717 ?

Nov 1 2019, 8:56 PM · gpg4win, kleopatra, g10code
gnupgpacker updated the task description for T4738: GpgOL deletes message body in S/Mime signed mails if Outlook is configured for .txt.
Nov 1 2019, 6:01 PM · gpgol, Bug Report
gnupgpacker updated the task description for T4738: GpgOL deletes message body in S/Mime signed mails if Outlook is configured for .txt.
Nov 1 2019, 6:01 PM · gpgol, Bug Report
gnupgpacker updated the task description for T4738: GpgOL deletes message body in S/Mime signed mails if Outlook is configured for .txt.
Nov 1 2019, 6:00 PM · gpgol, Bug Report
gnupgpacker created T4738: GpgOL deletes message body in S/Mime signed mails if Outlook is configured for .txt.
Nov 1 2019, 5:58 PM · gpgol, Bug Report
aheinecke committed rWa9ef490f790a: Post release version bump (authored by aheinecke).
Post release version bump
Nov 1 2019, 1:55 PM
bernhard committed rW1d89f93b037d: Improve support page (minor) (authored by bernhard).
Improve support page (minor)
Nov 1 2019, 12:45 PM
aheinecke committed rM266e05eee859: cpp: Fix adding duplicated sigs on multiple uids (authored by aheinecke).
cpp: Fix adding duplicated sigs on multiple uids
Nov 1 2019, 12:10 PM
aheinecke committed rMd61491dd25d8: qt: Allow adding empty remarks (authored by aheinecke).
qt: Allow adding empty remarks
Nov 1 2019, 12:10 PM
aheinecke committed rM174caaa6f53e: cpp: Minor optimization in remark lookup (authored by aheinecke).
cpp: Minor optimization in remark lookup
Nov 1 2019, 12:10 PM