Page MenuHome GnuPG
Feed All Stories

Sep 8 2020

ikloecker committed rKLEOPATRAc1f9e5ad3280: Support transferring X.509 encryption keys to PIV cards (authored by ikloecker).
Support transferring X.509 encryption keys to PIV cards
Sep 8 2020, 3:42 PM
ikloecker committed rKLEOPATRA7828acd5e473: Remove obsolete check for gpgme(++) v1.8.1+ (authored by ikloecker).
Remove obsolete check for gpgme(++) v1.8.1+
Sep 8 2020, 3:42 PM
ikloecker committed rKLEOPATRAce81c052b594: Offer transfer to smartcard only for up-to-date gpgme (authored by ikloecker).
Offer transfer to smartcard only for up-to-date gpgme
Sep 8 2020, 3:42 PM
ikloecker committed rM973c8116c840: qt: Update the documentation of ListAllKeysJob (authored by ikloecker).
qt: Update the documentation of ListAllKeysJob
Sep 8 2020, 3:41 PM
ikloecker committed rM3dd7377e120f: cpp: Update key with --with-secret instead of updating it twice (authored by ikloecker).
cpp: Update key with --with-secret instead of updating it twice
Sep 8 2020, 3:41 PM
werner created T5058: Review --trusted-key.
Sep 8 2020, 3:27 PM · gnupg24, gnupg (gpg23)
aheinecke triaged T5055: APPCRASH with libKF5ConfigWidgets.dll as Normal priority.

thanks for the report. Between Gpg4win-3.1.12 and Gpg4win-3.1.11 KF5ConfigWidgets was indeed updated so your report might point to a regression in that library.

Sep 8 2020, 10:47 AM · Bug Report, gpg4win
leder added a comment to T5057: Smartcard's secret key cannot be found for decryption.

Hello Werner,

Sep 8 2020, 9:42 AM · gnupg (gpg22), Bug Report
gniibe committed rG2bc1ec294422: gpg,tools: Add handling of supported algorithms by a card. (authored by gniibe).
gpg,tools: Add handling of supported algorithms by a card.
Sep 8 2020, 8:42 AM
aheinecke raised the priority of T5056: About Kleopatra showing unknown version number from Low to Normal.

Argh, that will also be shown when Kleopatra first starts and no keys are visible. This is caused by a change in Gpg4win to check the integrity of the Version by verifying that the VERSION file is signed.

Sep 8 2020, 8:42 AM · kleopatra
werner added inline comments to rG0db9c83555b4: scd: Add a workaround for Yubikey..
Sep 8 2020, 8:24 AM
werner added a comment to T5057: Smartcard's secret key cannot be found for decryption.

Your problem seems to be that you don't have a copy of your public key anymore. The uni-mainz keyserver might be configured not to return expired keys (if I read the output above correctly). I was able to to retrieve your key using the standard pool (in particular from the server sks.pod02.fleetstreetops.com). The key is expired but that does hinder you to decrypt. Run "gpg --card-status" once tomake sure a stub file is available.

Sep 8 2020, 8:22 AM · gnupg (gpg22), Bug Report
Laurent Montel <montel@kde.org> committed rLIBKLEO0ff5e8b229e6: GIT_SILENT: prepare 5.15.2 (authored by Laurent Montel <montel@kde.org>).
GIT_SILENT: prepare 5.15.2
Sep 8 2020, 7:16 AM
Laurent Montel <montel@kde.org> committed rKLEOPATRA66e357e6d76d: GIT_SILENT: prepare 5.15.2 (authored by Laurent Montel <montel@kde.org>).
GIT_SILENT: prepare 5.15.2
Sep 8 2020, 7:09 AM
gniibe committed rG0db9c83555b4: scd: Add a workaround for Yubikey. (authored by gniibe).
scd: Add a workaround for Yubikey.
Sep 8 2020, 4:46 AM

Sep 7 2020

leder added a comment to T5057: Smartcard's secret key cannot be found for decryption.

Now I changed the gpg2 keyserver and can see my public keys on the public key server:

Sep 7 2020, 4:44 PM · gnupg (gpg22), Bug Report
leder set External Link to https://askubuntu.com/questions/1022982/gpg2-is-unaware-of-secret-and-public-key-on-smartcard on T5057: Smartcard's secret key cannot be found for decryption.
Sep 7 2020, 4:26 PM · gnupg (gpg22), Bug Report
leder created T5057: Smartcard's secret key cannot be found for decryption.
Sep 7 2020, 4:18 PM · gnupg (gpg22), Bug Report
Volker Krause <vkrause@kde.org> committed rKLEOPATRA19fc7104e6c7: Remove duplicate versions, to fix appdata validation failures (authored by Volker Krause <vkrause@kde.org>).
Remove duplicate versions, to fix appdata validation failures
Sep 7 2020, 1:58 PM
ikloecker committed rM13bcc6680ac2: qt: List keys once with --with-secret instead of twice (authored by ikloecker).
qt: List keys once with --with-secret instead of twice
Sep 7 2020, 12:27 PM
ikloecker committed rM188cc9e9b553: cpp: Add keylist mode WithSecret (authored by ikloecker).
cpp: Add keylist mode WithSecret
Sep 7 2020, 12:27 PM
ikloecker committed rMb714a6bbc803: cpp: Add missing keylist modes (authored by ikloecker).
cpp: Add missing keylist modes
Sep 7 2020, 12:27 PM
werner triaged T5054: Preservation of modification date upon decryption/extraction. as Normal priority.
Sep 7 2020, 10:30 AM · gnupg24, gnupg (gpg23), gpgtar, Feature Request
bernhard triaged T5056: About Kleopatra showing unknown version number as Low priority.
Sep 7 2020, 10:27 AM · kleopatra
bernhard created T5056: About Kleopatra showing unknown version number.
Sep 7 2020, 10:25 AM · kleopatra
bernhard renamed T5046: Exporting secret keys via gpgme from Exporting secret keys to Exporting secret keys via gpgme.
Sep 7 2020, 10:17 AM · gpgme, Bug Report
gniibe committed rG270c49b8c6ea: scd: Fix handling 0x00FA to support OpenPGP card 3.4. (authored by gniibe).
scd: Fix handling 0x00FA to support OpenPGP card 3.4.
Sep 7 2020, 7:33 AM
andfox created T5055: APPCRASH with libKF5ConfigWidgets.dll.
Sep 7 2020, 5:44 AM · Bug Report, gpg4win

Sep 6 2020

Laurent Montel <montel@kde.org> committed rLIBKLEOe53f4a7a1e81: Initialize variable in header (authored by Laurent Montel <montel@kde.org>).
Initialize variable in header
Sep 6 2020, 9:32 AM

Sep 5 2020

werner added projects to T5054: Preservation of modification date upon decryption/extraction.: gpgtar, gnupg (gpg23).

I will consider a -p option for gpgtar.

Sep 5 2020, 8:02 PM · gnupg24, gnupg (gpg23), gpgtar, Feature Request
dblouis added a comment to T5046: Exporting secret keys via gpgme.

The following patch make it work:

Sep 5 2020, 7:35 PM · gpgme, Bug Report
dblouis updated the task description for T5046: Exporting secret keys via gpgme.
Sep 5 2020, 7:03 PM · gpgme, Bug Report
Romans10910 created T5054: Preservation of modification date upon decryption/extraction..
Sep 5 2020, 1:45 PM · gnupg24, gnupg (gpg23), gpgtar, Feature Request
werner triaged T5053: More gpg arguments available for use with gpgtar as Normal priority.
Sep 5 2020, 12:35 PM · gnupg24, gnupg (gpg23), gpgtar, Feature Request
Romans10910 created T5053: More gpg arguments available for use with gpgtar.
Sep 5 2020, 12:21 PM · gnupg24, gnupg (gpg23), gpgtar, Feature Request

Sep 4 2020

werner closed T5045: Release GnuPG 2.2.23 as Resolved.

See
https://lists.wald.intevation.org/pipermail/gpg4win-announce/2020-September/000089.html
for the fixed Gpg4win 3.1.13

Sep 4 2020, 5:23 PM · gnupg, Release Info
werner closed T5050: AEAD preference list overflow in 2.2 as Resolved.

Gpg4win 3.113 has also been released. Thus closing this issue.

Sep 4 2020, 5:23 PM · gnupg (gpg22), CVE
aheinecke committed rW2adbde6ad670: web: Gpg4win-3.1.13 (authored by aheinecke).
web: Gpg4win-3.1.13
Sep 4 2020, 4:37 PM
aheinecke committed rD0033b9be00e0: SWDB: Relase Gpg4win-3.1.13 (authored by aheinecke).
SWDB: Relase Gpg4win-3.1.13
Sep 4 2020, 4:25 PM
werner added a comment to T4945: Windows builds use "winepath" when it is available.

Winepath starts calls the full Wine engine just convert file names to DOS format. This is used by libtool but if winepath can't be executed, it doesn't care. So the given solution (using /etc/alternatives/winepath -> /bin/false) can be used.

Sep 4 2020, 3:18 PM · gpgrt
aheinecke committed rWdca9d29d6638: Add uncommited files (authored by aheinecke).
Add uncommited files
Sep 4 2020, 3:16 PM
aheinecke committed rW53b6d5672266: Remove patch containted in GpgOL 2.6.7 (authored by aheinecke).
Remove patch containted in GpgOL 2.6.7
Sep 4 2020, 3:07 PM
aheinecke committed rWd8a277ea68b5: Reduce Version back to 3.1.13 (authored by aheinecke).
Reduce Version back to 3.1.13
Sep 4 2020, 3:00 PM
aheinecke committed rW645db0d5b211: Install 64 bit GPGME (authored by aheinecke).
Install 64 bit GPGME
Sep 4 2020, 3:00 PM
aheinecke committed rW0b35e4eca8b6: Update GpgOL and GnuPG (authored by aheinecke).
Update GpgOL and GnuPG
Sep 4 2020, 3:00 PM
aheinecke committed rW79e58a51a5ad: Update news for todays release (authored by aheinecke).
Update news for todays release
Sep 4 2020, 3:00 PM
Laurent Montel <montel@kde.org> committed rLIBKLEO50be5676ce47: GIT_SILENT: prepare 5.15.2 (authored by Laurent Montel <montel@kde.org>).
GIT_SILENT: prepare 5.15.2
Sep 4 2020, 2:42 PM
bvieira added a comment to T3883: Add Win32-OpenSSH support to gpg-agent's ssh-agent.

So, if there's no support for native OpenSSH yet, I'll wait for it. After it's supported, I should be able to get the scenery I described working, right?

Sep 4 2020, 1:52 PM · Not A Bug, workaround, gnupg24, Windows, ssh
aheinecke committed rDce0557224fa5: Add Gpgol-2.4.7 (authored by aheinecke).
Add Gpgol-2.4.7
Sep 4 2020, 1:17 PM
Laurent Montel <montel@kde.org> committed rKLEOPATRA4565b1b4f2c8: GIT_SILENT: prepare 5.15.2 (authored by Laurent Montel <montel@kde.org>).
GIT_SILENT: prepare 5.15.2
Sep 4 2020, 1:16 PM
aheinecke committed rO81fa80c58b5f: Post release version bump (authored by aheinecke).
Post release version bump
Sep 4 2020, 1:11 PM
aheinecke committed rOe839ad2eb4f5: Auto: Update l10n (authored by aheinecke).
Auto: Update l10n
Sep 4 2020, 1:10 PM
aheinecke committed rO80782101193f: Fix release date (authored by aheinecke).
Fix release date
Sep 4 2020, 1:10 PM
werner committed rG0e721b635d61: scd: Increase the number of supported readers from 4 to 16. (authored by werner).
scd: Increase the number of supported readers from 4 to 16.
Sep 4 2020, 12:52 PM
aheinecke committed rO1da8ce950401: Enforce sync_enc option (authored by aheinecke).
Enforce sync_enc option
Sep 4 2020, 12:20 PM
aheinecke committed rObf2c6ff4b4b0: Reduce version to 2.4.7 (authored by aheinecke).
Reduce version to 2.4.7
Sep 4 2020, 12:20 PM
aheinecke committed rO7d4c97bf7328: Update NEWS for todays release (authored by aheinecke).
Update NEWS for todays release
Sep 4 2020, 12:20 PM
aheinecke closed T4388: GpgOL: Add draft encryption as an option. as Resolved.
Sep 4 2020, 12:05 PM · Feature Request, gpg4win, gpgol
werner committed rG65eb1569809a: gpg: Initialize a parameter to silence valgrind. (authored by werner).
gpg: Initialize a parameter to silence valgrind.
Sep 4 2020, 11:33 AM
werner committed rGb7f56ba5e3cc: tests: New test run envvar to run gpg under valgrind. (authored by werner).
tests: New test run envvar to run gpg under valgrind.
Sep 4 2020, 11:33 AM
werner committed rG6ce8fdc4b2a0: gpg: Initialize a parameter to silence valgrind. (authored by werner).
gpg: Initialize a parameter to silence valgrind.
Sep 4 2020, 11:29 AM
werner committed rG8a2193380c07: tests: New test run envvar to run gpg under valgrind. (authored by werner).
tests: New test run envvar to run gpg under valgrind.
Sep 4 2020, 11:29 AM
gniibe committed rG43bbc25b0f57: scd: Support GET DATA response with no header for DO 0x00FA. (authored by gniibe).
scd: Support GET DATA response with no header for DO 0x00FA.
Sep 4 2020, 10:18 AM
werner added a comment to T5050: AEAD preference list overflow in 2.2.

Small correction: The fixed byte I talked about may have the values 1, 2, 3, or 4.

Sep 4 2020, 9:06 AM · gnupg (gpg22), CVE
l10n daemon script <scripty@kde.org> committed rKLEOPATRAcd2501a5a279: GIT_SILENT made messages (after extraction) (authored by l10n daemon script <scripty@kde.org>).
GIT_SILENT made messages (after extraction)
Sep 4 2020, 8:16 AM
werner added a comment to T3883: Add Win32-OpenSSH support to gpg-agent's ssh-agent.

Unfortunately you can't pass extra arguments.

Sep 4 2020, 7:47 AM · Not A Bug, workaround, gnupg24, Windows, ssh
gniibe committed rGeba2563dabbb: scd: Parse "Algorithm Information" data object in scdaemon. (authored by gniibe).
scd: Parse "Algorithm Information" data object in scdaemon.
Sep 4 2020, 7:46 AM
l10n daemon script <scripty@kde.org> committed rKLEOPATRAea2d083ae062: GIT_SILENT made messages (after extraction) (authored by l10n daemon script <scripty@kde.org>).
GIT_SILENT made messages (after extraction)
Sep 4 2020, 2:30 AM
gniibe added a comment to T5041: gpg-agent/scdaemon/gnuk unable to sign ssh certificate (Couldn't certify key … via agent: agent refused operation).

Thanks for your information. No debug output any more, as I already figured out things.

Sep 4 2020, 1:53 AM · Restricted Project, ssh, Bug Report
gpguser123 awarded T3883: Add Win32-OpenSSH support to gpg-agent's ssh-agent a Mountain of Wealth token.
Sep 4 2020, 1:00 AM · Not A Bug, workaround, gnupg24, Windows, ssh

Sep 3 2020

werner committed rDb371eb414522: web: Add CVE id. (authored by werner).
web: Add CVE id.
Sep 3 2020, 10:11 PM
werner updated the task description for T5045: Release GnuPG 2.2.23.
Sep 3 2020, 9:57 PM · gnupg, Release Info
werner added a comment to T5050: AEAD preference list overflow in 2.2.

This has CVE-2020-25125

Sep 3 2020, 9:56 PM · gnupg (gpg22), CVE
werner committed rDc36c66a4cba3: web: Announce gnupg 2.2.23 (authored by werner).
web: Announce gnupg 2.2.23
Sep 3 2020, 6:57 PM
werner added a comment to T5050: AEAD preference list overflow in 2.2.

2.2.23 has been released and announced.

Sep 3 2020, 6:49 PM · gnupg (gpg22), CVE
werner closed T5039: 2.2.22 regression: Nitrokey Pro 2 is no longer recognized automatically, requires --card-status as Resolved.
Sep 3 2020, 6:48 PM · Restricted Project, gnupg (gpg22), Bug Report
werner set Version to GnuPG 2.2.23 on T5045: Release GnuPG 2.2.23.
Sep 3 2020, 6:48 PM · gnupg, Release Info
werner shifted T5050: AEAD preference list overflow in 2.2 from the Restricted Space space to the S1 Public space.
Sep 3 2020, 6:44 PM · gnupg (gpg22), CVE
werner committed rDc11481827401: swdb: Release 2.2.23 (authored by werner).
swdb: Release 2.2.23
Sep 3 2020, 6:04 PM
werner committed rG390ae3c3099d: Post release updates (authored by werner).
Post release updates
Sep 3 2020, 5:54 PM
werner committed rGe234d04c3c91: Release 2.2.23 (authored by werner).
Release 2.2.23
Sep 3 2020, 5:54 PM
werner committed rGaeb8272ca8aa: gpg: Fix AEAD preference list overflow (authored by werner).
gpg: Fix AEAD preference list overflow
Sep 3 2020, 5:54 PM
werner committed rG038314665398: po: auto update (authored by werner).
po: auto update
Sep 3 2020, 5:54 PM
werner committed rG1a4b0fd793aa: po: Update Ukrainian translation (authored by Yuri Chornoivan <yurchor@ukr.net>).
po: Update Ukrainian translation
Sep 3 2020, 5:54 PM
werner committed rG93d10403adc6: po: Update Polish translation (authored by Jakub Bogusz <qboosh@pld-linux.org>).
po: Update Polish translation
Sep 3 2020, 5:54 PM
werner committed rGa8a8105bc756: po: Add key-check.c to the list of translatable sources. (authored by werner).
po: Add key-check.c to the list of translatable sources.
Sep 3 2020, 5:54 PM
werner committed rGcad9955ac999: po: Update Czech translation. (authored by petr_p).
po: Update Czech translation.
Sep 3 2020, 5:54 PM
werner created T5052: Release GnuPG 2.2.24.
Sep 3 2020, 5:48 PM · Release Info, gnupg (gpg22)
aheinecke created T5051: Kleopatra: Public key export not shown in Key Creation final dialog.
Sep 3 2020, 5:28 PM · kleopatra
werner added a comment to T5050: AEAD preference list overflow in 2.2.

The fix will be in the 2.2.23 release (T5045).

Sep 3 2020, 5:20 PM · gnupg (gpg22), CVE
ccx added a comment to T5041: gpg-agent/scdaemon/gnuk unable to sign ssh certificate (Couldn't certify key … via agent: agent refused operation).

In case of Ed25519 certificate signed by Ed25519 key with only few names and flags it seems to be just below 500 bytes. This could of course grow if names are added or larger public key is being signed.

Sep 3 2020, 5:14 PM · Restricted Project, ssh, Bug Report
gpguser123 added a comment to T3883: Add Win32-OpenSSH support to gpg-agent's ssh-agent.

@bvieira You need to set pinentry-mode=loopback for gpg program used in git.

Sep 3 2020, 4:22 PM · Not A Bug, workaround, gnupg24, Windows, ssh
werner created T5050: AEAD preference list overflow in 2.2 in the Restricted Space space.
Sep 3 2020, 3:21 PM · gnupg (gpg22), CVE
aheinecke created T5049: Kleopatra: Support search tags in certificate selection dialog for files.
Sep 3 2020, 2:26 PM · kleopatra
werner committed rGa7d006293ec8: sm: Add arg ctrl to keydb_new. (authored by werner).
sm: Add arg ctrl to keydb_new.
Sep 3 2020, 1:50 PM
werner committed rG046f419f8060: sm: New options to prepare the use of keyboxd. (authored by werner).
sm: New options to prepare the use of keyboxd.
Sep 3 2020, 1:50 PM
gniibe committed rG90d0072165cc: scd: Add handling of "Algorithm Information" DO. (authored by gniibe).
scd: Add handling of "Algorithm Information" DO.
Sep 3 2020, 1:03 PM
ikloecker committed rM4d87ea2851ae: cpp: Copy some more subkey properties when merging keys (authored by ikloecker).
cpp: Copy some more subkey properties when merging keys
Sep 3 2020, 12:33 PM
werner added a comment to T5048: Error handling in libassuan.

To implement this it would be best to have an gpg_strerror variant which does not call dgettext.

Sep 3 2020, 10:01 AM · gpgrt, libassuan
werner added a comment to T5048: Error handling in libassuan.

re 1: Correct utf-8 truncation would be quite some work. In this case the message is in the Assuan interface is a debugging aid. Translation is not necessary so we can try to disable it.

Sep 3 2020, 9:55 AM · gpgrt, libassuan