Page MenuHome GnuPG
Feed All Stories

Sep 6 2021

Laurent Montel <montel@kde.org> committed rLIBKLEOcc4e2244e382: GIT_SILENT: add ecm as required too (authored by Laurent Montel <montel@kde.org>).
GIT_SILENT: add ecm as required too
Sep 6 2021, 1:46 PM
fvogt committed rKLEOPATRA966b5db50d72: Avoid use of private Qt API by dropping workaround in accessibleWidgetFactory (authored by fvogt).
Avoid use of private Qt API by dropping workaround in accessibleWidgetFactory
Sep 6 2021, 1:45 PM
Laurent Montel <montel@kde.org> committed rKLEOPATRA7a2e9b6719f8: GIT_SILENT: add ecm as required too (authored by Laurent Montel <montel@kde.org>).
GIT_SILENT: add ecm as required too
Sep 6 2021, 1:44 PM
Jakuje added a comment to T5520: Fix tests in FIPS mode.

looks good to me. Tested now with master 47e425e07995454573e28c13c08229d2f8a75642 and all tests pass for me in and out of FIPS mode as well as in the "soft" one.

Sep 6 2021, 1:08 PM · FIPS, libgcrypt, Bug Report
werner claimed T5540: Update fipsdrv and cavs_driver.pl.
Sep 6 2021, 11:25 AM · FIPS, libgcrypt
werner moved T5540: Update fipsdrv and cavs_driver.pl from Backlog to Next on the FIPS board.
Sep 6 2021, 11:25 AM · FIPS, libgcrypt
werner changed the status of T5541: Envvar LIBGCRYPT_FORCE_FIPS_MODE from Open to Testing.
Sep 6 2021, 11:22 AM · Feature Request, FIPS, libgcrypt
gniibe moved T5508: Allow hardware optimizations in FIPS from Backlog to Ready for release on the FIPS board.
Sep 6 2021, 11:21 AM · FIPS, libgcrypt, Bug Report
werner moved T5523: jitter entropy RNG update from Backlog to Next on the FIPS board.
Sep 6 2021, 11:19 AM · FIPS, libgcrypt
werner claimed T5523: jitter entropy RNG update.
Sep 6 2021, 11:19 AM · FIPS, libgcrypt
werner moved T5576: New set of API for public key cryptography from Backlog to Next on the FIPS board.
Sep 6 2021, 11:18 AM · libgcrypt, Feature Request
werner moved T5541: Envvar LIBGCRYPT_FORCE_FIPS_MODE from Backlog to Ready for release on the FIPS board.
Sep 6 2021, 11:17 AM · Feature Request, FIPS, libgcrypt
ikloecker committed rKLEOPATRAf59e713f708e: Avoid use of private Qt API by dropping workaround in accessibleWidgetFactory (authored by fvogt).
Avoid use of private Qt API by dropping workaround in accessibleWidgetFactory
Sep 6 2021, 10:08 AM
gniibe added a comment to T5576: New set of API for public key cryptography.

I created an experimental branch:
https://dev.gnupg.org/source/libgcrypt/history/gniibe%252Fnew-pk-api/

Sep 6 2021, 9:38 AM · libgcrypt, Feature Request
Laurent Montel <montel@kde.org> committed rLIBKLEO34d56b4127d2: GIT_SILENT: use same for pim* + latest for framework + stable for third party (authored by Laurent Montel <montel@kde.org>).
GIT_SILENT: use same for pim* + latest for framework + stable for third party
Sep 6 2021, 8:53 AM
Laurent Montel <montel@kde.org> committed rKLEOPATRAf781298fd345: GIT_SILENT: use same for pim* + latest for framework + stable for third party (authored by Laurent Montel <montel@kde.org>).
GIT_SILENT: use same for pim* + latest for framework + stable for third party
Sep 6 2021, 8:51 AM
Laurent Montel <montel@kde.org> committed rLIBKLEO7d9b93572e77: Add KDE CI file (authored by Laurent Montel <montel@kde.org>).
Add KDE CI file
Sep 6 2021, 7:38 AM
Laurent Montel <montel@kde.org> committed rKLEOPATRAc78fa963e87f: Add KDE CI file (authored by Laurent Montel <montel@kde.org>).
Add KDE CI file
Sep 6 2021, 7:35 AM
MaXi32 added a comment to T5076: [solved] gpg-agent respawn another process randomly and causes cached passphrase check failed / expired.

I think this issue is solved. For systemd, I need to run this as --supervised option not the --daemon option. The --daemon option has bug.

Sep 6 2021, 6:36 AM · gnupg (gpg22), Bug Report

Sep 5 2021

ffontaine added a comment to T5587: src/posix-io.c: fix build with glibc >= 2.34.

Nevermind, I found the appropriate link above, thanks again.

Sep 5 2021, 7:05 PM · gpgme
ffontaine added a comment to T5587: src/posix-io.c: fix build with glibc >= 2.34.

Thanks for noticing me but I can't access your git repository at https://dev.gnupg.org/source/gnupg.git and the github mirror at https://github.com/gpg/gpgme is not up to date. Do you have an other mirror?

Sep 5 2021, 7:03 PM · gpgme
werner added projects to T5588: GnuPG 2.3.2 --disable-tofu --disable-sqlite unusable: Gentoo, gnupg (gpg23).

You could use --disable-keyboxd which should fix this. However, there will eventually be no more way to build w/o Sqlite and thus I would suggest not to allow disabling of sqlite.

Sep 5 2021, 6:25 PM · gnupg (gpg23), Gentoo, Bug Report
fvogt committed rKLEOPATRA5bcf3d6b7bcb: Avoid use of private Qt API by dropping workaround in accessibleWidgetFactory (authored by fvogt).
Avoid use of private Qt API by dropping workaround in accessibleWidgetFactory
Sep 5 2021, 6:15 PM
soap created T5588: GnuPG 2.3.2 --disable-tofu --disable-sqlite unusable.
Sep 5 2021, 12:21 PM · gnupg (gpg23), Gentoo, Bug Report
werner closed T5587: src/posix-io.c: fix build with glibc >= 2.34 as Resolved.

Thanks. This has already been fixed in July with rM4b64774b6d13ffa4f59dddf947a97d61bcfa2f2e

Sep 5 2021, 11:47 AM · gpgme
ffontaine updated the task description for T5587: src/posix-io.c: fix build with glibc >= 2.34.
Sep 5 2021, 12:14 AM · gpgme
ffontaine created T5587: src/posix-io.c: fix build with glibc >= 2.34.
Sep 5 2021, 12:13 AM · gpgme

Sep 4 2021

ametzler1 added a comment to T5579: libksba parallel build error (windows).

This works for me:

Sep 4 2021, 2:11 PM · libksba, Bug Report
Laurent Montel <montel@kde.org> committed rLIBKLEO29c9ec5f415c: GIT_SILENT: prepare 21.08.2 (authored by Laurent Montel <montel@kde.org>).
GIT_SILENT: prepare 21.08.2
Sep 4 2021, 10:16 AM
Laurent Montel <montel@kde.org> committed rKLEOPATRA0d07294fc15e: GIT_SILENT: prepare 21.08.2 (authored by Laurent Montel <montel@kde.org>).
GIT_SILENT: prepare 21.08.2
Sep 4 2021, 10:12 AM

Sep 3 2021

bluepost added a comment to T5585: Passphrase File Carriage Return New Line \r\n Issue in Windows.

I think the behavior makes perfect sense for Unix but the default delimiter for .txt in Windows is \r\n.

Sep 3 2021, 8:19 PM · Documentation, gnupg, Bug Report
ikloecker committed rKLEOPATRAfb35f8a7d4b0: Ensure that the link is readable even on the blue "success" background (authored by ikloecker).
Ensure that the link is readable even on the blue "success" background
Sep 3 2021, 4:39 PM
ikloecker committed rKLEOPATRA2ac361b46f13: Allow setting the color of the rendered link (authored by ikloecker).
Allow setting the color of the rendered link
Sep 3 2021, 4:39 PM
ikloecker committed rKLEOPATRA3464ec148c3e: Ensure correct focus order of the result item widgets (authored by ikloecker).
Ensure correct focus order of the result item widgets
Sep 3 2021, 4:39 PM
ikloecker committed rKLEOPATRAcbbcbbfb6861: Show information about recipients also if decryption didn't succeed (authored by ikloecker).
Show information about recipients also if decryption didn't succeed
Sep 3 2021, 4:39 PM
ikloecker committed rKLEOPATRA49cd0070652f: Create scroll area together with the other child widgets (authored by ikloecker).
Create scroll area together with the other child widgets
Sep 3 2021, 4:39 PM
ikloecker committed rKLEOPATRAd031959ef156: Move "No MDC" hint before information on recipients (authored by ikloecker).
Move "No MDC" hint before information on recipients
Sep 3 2021, 4:39 PM
ikloecker committed rKLEOPATRAd0d25f717d5c: Exit early if decryption failed or was canceled (authored by ikloecker).
Exit early if decryption failed or was canceled
Sep 3 2021, 4:39 PM
ikloecker committed rKLEOPATRAcefdbaaeee23: Improve accessibility if no or multiple certificates match (authored by ikloecker).
Improve accessibility if no or multiple certificates match
Sep 3 2021, 4:39 PM
ikloecker committed rKLEOPATRA6c3c904a9b40: Show more decryption details if decryption was successful (authored by ikloecker).
Show more decryption details if decryption was successful
Sep 3 2021, 4:39 PM
raf created T5586: Please add dane lookup to --auto-key-retrieve.
Sep 3 2021, 12:53 PM · gnupg (gpg14), Feature Request
ikloecker added a comment to T5585: Passphrase File Carriage Return New Line \r\n Issue in Windows.

The OP wants to do symmetric encryption. This isn't about the passphrase that protects a key.

Sep 3 2021, 9:57 AM · Documentation, gnupg, Bug Report
werner added a comment to T5585: Passphrase File Carriage Return New Line \r\n Issue in Windows.

Yes, we read up to the first LF. This has been the traditional way of PGP2 and is still used by mail programs like Mutt.

Sep 3 2021, 8:42 AM · Documentation, gnupg, Bug Report

Sep 2 2021

bluepost added a comment to T5585: Passphrase File Carriage Return New Line \r\n Issue in Windows.

I'm guessing gpg in Unix has stripped the \n if present? I don't have access to a real Unix system at the moment.

Sep 2 2021, 8:49 PM · Documentation, gnupg, Bug Report
werner claimed T5585: Passphrase File Carriage Return New Line \r\n Issue in Windows.

I see that problem but gpg has traditionally not interpreted the passphrase in any way. Right, for Windows we could strip the CR but I fear that this might break other users scripts/passphrases. However there should be a warning in the manual.

Sep 2 2021, 7:25 PM · Documentation, gnupg, Bug Report
bluepost created T5585: Passphrase File Carriage Return New Line \r\n Issue in Windows.
Sep 2 2021, 4:46 PM · Documentation, gnupg, Bug Report
ikloecker added a comment to T5584: gpg --list-packets lists wrong packets.

The actual problem is not that --list-packets produces weird output, but that --decrypt fails with

gpg: [don't know]: invalid packet (ctb=4f)
[GNUPG:] NODATA 3

causing confusing errors in Kleopatra.

Sep 2 2021, 11:46 AM · gnupg (gpg22), Bug Report
ikloecker added a comment to T5584: gpg --list-packets lists wrong packets.

Sep 2 2021, 11:42 AM · gnupg (gpg22), Bug Report
ikloecker created T5584: gpg --list-packets lists wrong packets.
Sep 2 2021, 11:42 AM · gnupg (gpg22), Bug Report
gniibe closed T5415: YubiKey no longer recognized in GnuPG 2.3.1 on macOS 10.15.7 as Resolved.
Sep 2 2021, 8:29 AM · MacOS, yubikey, Bug Report
Laurent Montel <montel@kde.org> committed rLIBKLEO52c756e550eb: GIT_SILENT: prepare 5.18.2 (authored by Laurent Montel <montel@kde.org>).
GIT_SILENT: prepare 5.18.2
Sep 2 2021, 7:00 AM
ikloecker committed rKLEOPATRAeaae2c4754fd: Improve accessibility of Diagnostics/Show Audit Log label (authored by ikloecker).
Improve accessibility of Diagnostics/Show Audit Log label
Sep 2 2021, 12:10 AM

Sep 1 2021

jukivili added a comment to T5581: buf_eq_const() function in cipher/bufhelp.h may get wrong result.

Based on GCC bugzilla, affected released GCC versions are 11.1 and 11.2.

Sep 1 2021, 3:44 PM · toolchain, libgcrypt, Bug Report
jukivili added a comment to T5581: buf_eq_const() function in cipher/bufhelp.h may get wrong result.

(ab | ba) >= 0 is used to make optimization analysis for compiler more difficult. I see that with (ab | ba) == 0, it would be much easier for compiler to conclude than loop could exit early as soon as first a[i] != b[i] is seen.

Sep 1 2021, 3:39 PM · toolchain, libgcrypt, Bug Report
aheinecke awarded T5582: Kleopatra: Error when unchecking encrypt for others in file encryption dialog a Like token.
Sep 1 2021, 12:13 PM · kleopatra, Restricted Project
ikloecker closed T5582: Kleopatra: Error when unchecking encrypt for others in file encryption dialog as Resolved.
Sep 1 2021, 11:57 AM · kleopatra, Restricted Project
ikloecker committed rKLEOPATRA04170a835f8d: Fix validation of recipient keys (authored by ikloecker).
Fix validation of recipient keys
Sep 1 2021, 11:56 AM
ikloecker renamed T5582: Kleopatra: Error when unchecking encrypt for others in file encryption dialog from Kleopatra: Error when unchecking decrypt for others in file encryption dialog to Kleopatra: Error when unchecking encrypt for others in file encryption dialog.
Sep 1 2021, 11:52 AM · kleopatra, Restricted Project
gniibe closed T5440: _DARWIN_C_SOURCE kind of "must" be 1, not "900000L" as Resolved.
Sep 1 2021, 8:07 AM · MacOS, libgcrypt, Bug Report
gniibe set External Link to https://gcc.gnu.org/bugzilla/show_bug.cgi?id=102151 on T5556: Use of offsetof is better for allocation of flexible array.
Sep 1 2021, 3:44 AM · gnupg24, gpgme, libgcrypt
gniibe added a comment to T5556: Use of offsetof is better for allocation of flexible array.

I filed a bug report to GCC, with modified test case.
https://gcc.gnu.org/bugzilla/show_bug.cgi?id=102151

Sep 1 2021, 3:43 AM · gnupg24, gpgme, libgcrypt
gniibe claimed T5556: Use of offsetof is better for allocation of flexible array.
Sep 1 2021, 2:54 AM · gnupg24, gpgme, libgcrypt

Aug 31 2021

werner renamed T5583: Support RSCS dedicated OpenPGP for OID. from Support RSCS dedicated OpenPGP fpr OID. to Support RSCS dedicated OpenPGP for OID..
Aug 31 2021, 5:26 PM · gnupg26, Restricted Project, scd
werner triaged T5583: Support RSCS dedicated OpenPGP for OID. as Normal priority.
Aug 31 2021, 5:26 PM · gnupg26, Restricted Project, scd
aheinecke triaged T5582: Kleopatra: Error when unchecking encrypt for others in file encryption dialog as Normal priority.
Aug 31 2021, 1:45 PM · kleopatra, Restricted Project
changyp6 updated the task description for T5581: buf_eq_const() function in cipher/bufhelp.h may get wrong result.
Aug 31 2021, 9:57 AM · toolchain, libgcrypt, Bug Report
werner triaged T5581: buf_eq_const() function in cipher/bufhelp.h may get wrong result as High priority.
Aug 31 2021, 7:58 AM · toolchain, libgcrypt, Bug Report
werner closed T5580: gpg2 proves signature correct, even if empty file is removed as Resolved.

gpg verifies the content of the file and not its meta data (file name). Thus an empty file is identical to a non-existing file. The OpenPGP protocol does not allow to distinguish between a detached signature and an embedded signature if you sign an empty file.

Aug 31 2021, 7:53 AM · gnupg, FAQ
changyp6 updated the task description for T5581: buf_eq_const() function in cipher/bufhelp.h may get wrong result.
Aug 31 2021, 6:29 AM · toolchain, libgcrypt, Bug Report
changyp6 created T5581: buf_eq_const() function in cipher/bufhelp.h may get wrong result.
Aug 31 2021, 6:27 AM · toolchain, libgcrypt, Bug Report

Aug 30 2021

leder added a comment to T5580: gpg2 proves signature correct, even if empty file is removed.

I think this behaviour has something to do with "attached signature"?!

Aug 30 2021, 9:23 PM · gnupg, FAQ
leder updated the task description for T5580: gpg2 proves signature correct, even if empty file is removed.
Aug 30 2021, 9:06 PM · gnupg, FAQ
leder created T5580: gpg2 proves signature correct, even if empty file is removed.
Aug 30 2021, 9:06 PM · gnupg, FAQ
ametzler1 created T5579: libksba parallel build error (windows).
Aug 30 2021, 7:14 PM · libksba, Bug Report
werner closed T5577: Null ptr dereference in gpg-agent (gnupg 2.3.2) as Resolved.

Aihhh, my fault. seems that a new version it not too far away.

Aug 30 2021, 4:42 PM · segv, gnupg (gpg23), Bug Report
bernhard closed T5578: TLS certificate for https://gpg4win.de expired (2021-08-27) as Resolved.
Aug 30 2021, 3:05 PM · gpg4win
bernhard added a comment to T5578: TLS certificate for https://gpg4win.de expired (2021-08-27).

The problem was created during a migration of the host operating system and acme client tools.

Aug 30 2021, 3:05 PM · gpg4win
brad.kaiser updated the task description for T5577: Null ptr dereference in gpg-agent (gnupg 2.3.2).
Aug 30 2021, 2:31 PM · segv, gnupg (gpg23), Bug Report
brad.kaiser added a comment to T5577: Null ptr dereference in gpg-agent (gnupg 2.3.2).

See description above.

Aug 30 2021, 2:30 PM · segv, gnupg (gpg23), Bug Report
bernhard created T5578: TLS certificate for https://gpg4win.de expired (2021-08-27).
Aug 30 2021, 2:30 PM · gpg4win
brad.kaiser created T5577: Null ptr dereference in gpg-agent (gnupg 2.3.2).
Aug 30 2021, 2:29 PM · segv, gnupg (gpg23), Bug Report
Laurent Montel <montel@kde.org> committed rLIBKLEOb95f62e3e7db: Use qOverload directly (scripted) (authored by Laurent Montel <montel@kde.org>).
Use qOverload directly (scripted)
Aug 30 2021, 7:57 AM
Laurent Montel <montel@kde.org> committed rKLEOPATRAe9eedcca4603: GIT_SILENT: not necessary to include ECMGeneratePriFile (authored by Laurent Montel <montel@kde.org>).
GIT_SILENT: not necessary to include ECMGeneratePriFile
Aug 30 2021, 7:53 AM
Laurent Montel <montel@kde.org> committed rKLEOPATRA2552ed5352d2: Use qOverload directly (scripted) (authored by Laurent Montel <montel@kde.org>).
Use qOverload directly (scripted)
Aug 30 2021, 7:53 AM
gniibe closed T5365: --with-libgpg-error-prefix doesn't affect gpgrt-config path detection as Resolved.
Aug 30 2021, 7:05 AM · MacOS, gpgrt, Cross-Compiler, libgcrypt
gniibe triaged T5576: New set of API for public key cryptography as High priority.
Aug 30 2021, 5:07 AM · libgcrypt, Feature Request

Aug 29 2021

tari3x added a comment to T2749: gpg --secret-keyring is silently ignored.

Nah, I think I laid out all my arguments by now. I don't have more to add, so I'll just let it be.

Aug 29 2021, 6:11 PM · Support, gnupg
sunknudsen added a comment to T5575: Supplying more than one passphrase or PIN using passphrase-fd.

Thanks for helping out @werner.

Aug 29 2021, 5:23 PM · gnupg, yubikey, Feature Request
werner added a comment to T5574: Doubled characters in Windows console output.

We will look into it but nevertheless I have to remark that this this portable thing is dangerous to use and you should avoid it.

Aug 29 2021, 5:06 PM · gnupg, Windows, Bug Report
werner added a comment to T2749: gpg --secret-keyring is silently ignored.

Not at all. But 2.1 was such a large change that users really should have read the announcement and think about their use case. We have exensivly communicated the changes and can expect that users test their new installation. IF you have further comments, please use the mailing list.

Aug 29 2021, 5:03 PM · Support, gnupg
werner added projects to T5575: Supplying more than one passphrase or PIN using passphrase-fd: yubikey, gnupg.

You can write your own pinentry script instead of the loopback thing. The use the envvar PINENTRY-USER_DATA to communicate with the pinentry.

Aug 29 2021, 5:00 PM · gnupg, yubikey, Feature Request
sunknudsen created T5575: Supplying more than one passphrase or PIN using passphrase-fd.
Aug 29 2021, 4:38 PM · gnupg, yubikey, Feature Request
ajaja added a comment to T5574: Doubled characters in Windows console output.

The same problem. Portable mode is completely broken in v2.3.2 and v2.2.30 on Windows.

Aug 29 2021, 3:32 PM · gnupg, Windows, Bug Report
tari3x added a comment to T2749: gpg --secret-keyring is silently ignored.

I'm still sad that you don't acknowledge the problem I am describing. It seems that you are writing your software for the kind of user who reads all your documentation first. That kind of user does not exist.

Aug 29 2021, 12:02 PM · Support, gnupg

Aug 28 2021

Reiner added a comment to T5574: Doubled characters in Windows console output.

Hello Mr. Koch,

Aug 28 2021, 7:57 PM · gnupg, Windows, Bug Report
werner committed rGfdb726f77de5: gpg: Print a note about the obsolete option --secret-keyring. (authored by werner).
gpg: Print a note about the obsolete option --secret-keyring.
Aug 28 2021, 6:41 PM
werner committed rG1f726b412358: gpg: Print a note about the obsolete option --secret-keyring. (authored by werner).
gpg: Print a note about the obsolete option --secret-keyring.
Aug 28 2021, 6:41 PM
werner closed T2749: gpg --secret-keyring is silently ignored as Resolved.
Aug 28 2021, 6:40 PM · Support, gnupg
werner added a comment to T2749: gpg --secret-keyring is silently ignored.

The option has been removed form the repo more than 11 years ago and the gnupg with this changes (2.1.0) was released 7 years ago including an extensive writeup on all the major changes including notices that the secret keys will be converted and moved.

Aug 28 2021, 6:33 PM · Support, gnupg
werner added a comment to T5574: Doubled characters in Windows console output.

I wonder about the spelling errors. For particular

Aug 28 2021, 6:13 PM · gnupg, Windows, Bug Report