Page MenuHome GnuPG
Feed All Stories

Dec 22 2021

gniibe committed rE973dbdbfc901: build: Recover and update *.m4. (authored by gniibe).
build: Recover and update *.m4.
Dec 22 2021, 3:42 AM
gniibe committed rK51b565054096: build: Update for newer autoconf. (authored by gniibe).
build: Update for newer autoconf.
Dec 22 2021, 3:40 AM
gniibe committed rG6b4441a7de9d: build: Update for newer autoconf. (authored by gniibe).
build: Update for newer autoconf.
Dec 22 2021, 2:40 AM
gniibe committed rE980e4410bb0a: build: Remove obsolete m4 files. (authored by gniibe).
build: Remove obsolete m4 files.
Dec 22 2021, 2:19 AM
gniibe committed rA66d5fe281c8d: build: Update for newer autoconf. (authored by gniibe).
build: Update for newer autoconf.
Dec 22 2021, 2:17 AM
gniibe committed rC3204c3827e98: build: Update for newer autoconf. (authored by gniibe).
build: Update for newer autoconf.
Dec 22 2021, 2:03 AM
gniibe committed rT2f2a787ac6b4: build: Update for newer autoconf. (authored by gniibe).
build: Update for newer autoconf.
Dec 22 2021, 1:56 AM
gniibe triaged T5748: Adding poll/ppoll to NPTH as High priority.
Dec 22 2021, 1:51 AM · npth, Feature Request
gniibe committed rM0636e229d7ed: build: Update for newer autoconf. (authored by gniibe).
build: Update for newer autoconf.
Dec 22 2021, 1:51 AM

Dec 21 2021

Laurent Montel <montel@kde.org> committed rKLEOPATRA439028ce08cd: GIT_SILENT: AA_EnableHighDpiScaling is by default in qt6 now (authored by Laurent Montel <montel@kde.org>).
GIT_SILENT: AA_EnableHighDpiScaling is by default in qt6 now
Dec 21 2021, 6:48 PM
werner added a comment to T5747: Provide a way to request non-FIPS service in FIPS mode.

FWIW, We have a similar mechanism for the secure memory

Dec 21 2021, 6:12 PM · Feature Request, FIPS, libgcrypt
werner closed T5746: Pinetry always loses focus after popping up under Windows as Resolved.

That is a security feature of WIndows. We can't do much about it except for bad hacks. Checkout Kleopatra to see how you can improve this.

Dec 21 2021, 6:11 PM · Not A Bug, pinentry
aheinecke committed rWe6cb55a04403: Fix mistakes in version-4 update (authored by aheinecke).
Fix mistakes in version-4 update
Dec 21 2021, 5:22 PM
Jakuje added a comment to T5692: New entropy gatherer using the genentropy system call..

We talked today about the renaming the current "linux" entropy module to "oldlinux" would make sense.

Dec 21 2021, 5:13 PM · libgcrypt, FIPS
ikloecker changed the status of T5745: Kleopatra: Card holder name is not correctly decoded from Open to Testing.
Dec 21 2021, 5:02 PM · Restricted Project, kleopatra, Bug Report
Jakuje created T5747: Provide a way to request non-FIPS service in FIPS mode.
Dec 21 2021, 4:58 PM · Feature Request, FIPS, libgcrypt
jukivili committed rC7205c715b3e0: AES-GCM: Bulk implementation of AES-GCM acceleration for ppc64le (authored by dannytsen).
AES-GCM: Bulk implementation of AES-GCM acceleration for ppc64le
Dec 21 2021, 4:42 PM
jukivili committed rCf23634f9141b: Register DCO for Danny Tsen (authored by jukivili).
Register DCO for Danny Tsen
Dec 21 2021, 4:42 PM
jukivili committed rC3b9f746c2fb1: cipher: Fix SM3 avx/bmi2 compilation error (authored by Tianjia Zhang <tianjia.zhang@linux.alibaba.com>).
cipher: Fix SM3 avx/bmi2 compilation error
Dec 21 2021, 4:42 PM
jukivili added a comment to T5700: libgcrypt: bulk AES-GCM acceleration for ppc64le.

Ok, I'll add.

Dec 21 2021, 4:03 PM · patch, ppc, libgcrypt, Feature Request
aheinecke committed rW4bfc011b25df: appimage: Dist rsync-filters (authored by aheinecke).
appimage: Dist rsync-filters
Dec 21 2021, 3:58 PM
aheinecke committed rW05ad5b672eb0: Change inmenulogo back to version with whatsnew (authored by aheinecke).
Change inmenulogo back to version with whatsnew
Dec 21 2021, 3:58 PM
bernhard committed rWf104240b29b8: Improve version4 announcement (EN) (authored by bernhard).
Improve version4 announcement (EN)
Dec 21 2021, 3:41 PM
aheinecke committed rW72055cd68343: web: Prepare gpg4win-4.0 page (authored by aheinecke).
web: Prepare gpg4win-4.0 page
Dec 21 2021, 3:07 PM
aheinecke committed rW3b54a19fa542: Add english variant of updated version4 page (authored by aheinecke).
Add english variant of updated version4 page
Dec 21 2021, 3:07 PM
ikloecker committed rKLEOPATRA367ca863d20d: Do not crash if primary fingerprint is nullptr (authored by ikloecker).
Do not crash if primary fingerprint is nullptr
Dec 21 2021, 2:59 PM
ikloecker committed rKLEOPATRA235335a14e06: Unescape space characters in the display name (authored by ikloecker).
Unescape space characters in the display name
Dec 21 2021, 2:59 PM
ikloecker added a comment to T5639: dirmngr uses the wrong Let's encrypt chain.

@alexnadtoka, did you do what Werner wrote in T5639#150626?

Dec 21 2021, 2:57 PM · gnupg (gpg22), dirmngr
Saturneric updated the task description for T5746: Pinetry always loses focus after popping up under Windows.
Dec 21 2021, 2:52 PM · Not A Bug, pinentry
Saturneric created T5746: Pinetry always loses focus after popping up under Windows.
Dec 21 2021, 2:49 PM · Not A Bug, pinentry
bernhard committed rWb3357e952c36: Improve v4 announcement (authored by bernhard).
Improve v4 announcement
Dec 21 2021, 2:48 PM
Saturneric added a comment to T5712: Yubikey 5 NFC only recognized immediately after it is inserted.

Recently, I have encountered many problems in adapting the graphical interface interaction between Yubikey and gnupg. I am thinking about why some settings need to be manually added to some additional settings. I found that there are many such solutions on the Internet. Is there any way that scdaemon can automatically recognize these situations and add appropriate settings.

Dec 21 2021, 2:42 PM · Documentation, Bug Report
ikloecker claimed T5745: Kleopatra: Card holder name is not correctly decoded.
Dec 21 2021, 2:33 PM · Restricted Project, kleopatra, Bug Report
ikloecker created T5745: Kleopatra: Card holder name is not correctly decoded.
Dec 21 2021, 2:32 PM · Restricted Project, kleopatra, Bug Report
aheinecke committed rWa1b7a02509ca: Update NEWS and READMEs for 4.0 (authored by aheinecke).
Update NEWS and READMEs for 4.0
Dec 21 2021, 12:08 PM
aheinecke committed rWb272f588cd76: appimage: Fixup rpath also for 2.3 libexec bins (authored by aheinecke).
appimage: Fixup rpath also for 2.3 libexec bins
Dec 21 2021, 11:44 AM
aheinecke committed rW953d8e539df9: Update gnupg in packages.4 (authored by aheinecke).
Update gnupg in packages.4
Dec 21 2021, 11:44 AM
werner edited projects for T5742: Apparent regressions between 2.2.32 and 2.2.33 of GnuPG, added: gnupg (gpg23), Bug Report; removed gnupg (gpg22).

Things are not that easy. I actually introduced a bug in 2.3.4. Here is a comment from my working copy:

Dec 21 2021, 11:22 AM · Restricted Project, Bug Report, gnupg (gpg23)
alexnadtoka added a comment to T5744: Issue with connecting to GPG server.

@werner Thank you for the answer. Please advise mailing list address.

Dec 21 2021, 10:44 AM · Bug Report, gpg4win
werner added a comment to T5744: Issue with connecting to GPG server.

For support please use the mailing list and not the bug tracker.

Dec 21 2021, 10:26 AM · Bug Report, gpg4win
werner added a comment to T5700: libgcrypt: bulk AES-GCM acceleration for ppc64le.

Seen. @jukivili can you please add it to the AUTHORS file?

Dec 21 2021, 10:13 AM · patch, ppc, libgcrypt, Feature Request
alexnadtoka added a comment to T5744: Issue with connecting to GPG server.

GNUpg version 2.3.4 was installed but did not help

Dec 21 2021, 9:41 AM · Bug Report, gpg4win
alexnadtoka added a comment to T5744: Issue with connecting to GPG server.

Is there a way to ignore SSL check during connection? This might work. We have internal server for our users only.

Dec 21 2021, 9:39 AM · Bug Report, gpg4win
alexnadtoka created T5744: Issue with connecting to GPG server.
Dec 21 2021, 9:38 AM · Bug Report, gpg4win
alexnadtoka added a comment to T5639: dirmngr uses the wrong Let's encrypt chain.

Guys I am facing similar issue but my Lets ecnrypt certificates are all ok. What is the problem with my gpg4win client? When connecting to openpgp server it says certificate is expired. Anybody can help me?

Dec 21 2021, 9:28 AM · gnupg (gpg22), dirmngr
gniibe committed rG82b289328d85: po: Update Japanese Translation. (authored by gniibe).
po: Update Japanese Translation.
Dec 21 2021, 2:13 AM
gniibe committed rGc3db27fa8520: agent: Fix comment for .po generation. (authored by gniibe).
agent: Fix comment for .po generation.
Dec 21 2021, 2:13 AM
gniibe committed rDe2b04c5b8a7d: security: Address our stance for libgcrypt Threat Model. (authored by gniibe).
security: Address our stance for libgcrypt Threat Model.
Dec 21 2021, 1:18 AM
gniibe edited projects for T5742: Apparent regressions between 2.2.32 and 2.2.33 of GnuPG, added: gnupg (gpg22); removed gnupg.
Dec 21 2021, 1:06 AM · Restricted Project, Bug Report, gnupg (gpg23)

Dec 20 2021

werner set External Link to https://lists.gnupg.org/pipermail/gnupg-announce/2021q4/000468.html on T5654: Release GnuPG 2.3.4.
Dec 20 2021, 11:29 PM · gnupg (gpg23), Release Info
werner committed rD989d56412afa: swdb: GnuPG 2.3.4 (authored by werner).
swdb: GnuPG 2.3.4
Dec 20 2021, 11:14 PM
werner closed T5654: Release GnuPG 2.3.4 as Resolved.
Dec 20 2021, 11:09 PM · gnupg (gpg23), Release Info
werner committed rG69195ab2550e: po: auto update (authored by werner).
po: auto update
Dec 20 2021, 11:03 PM
werner committed rG02b59e282eb3: Post release updates. (authored by werner).
Post release updates.
Dec 20 2021, 11:03 PM
werner committed rGf74c65fd9bbb: Release 2.3.4 (authored by werner).
Release 2.3.4
Dec 20 2021, 11:03 PM
werner committed rG610528725290: gpg: Correctly set the ownertrust for a new key. (authored by werner).
gpg: Correctly set the ownertrust for a new key.
Dec 20 2021, 11:03 PM
werner committed rG2559407c952a: po: Update German translation (authored by werner).
po: Update German translation
Dec 20 2021, 11:03 PM
werner added a comment to T5742: Apparent regressions between 2.2.32 and 2.2.33 of GnuPG.

We can even remove the hexfingerrprint call. Will go into 2.3.4. Thanks.

Dec 20 2021, 10:18 PM · Restricted Project, Bug Report, gnupg (gpg23)
werner triaged T5743: Release GnuPG 2.3.5 as Low priority.
Dec 20 2021, 7:45 PM · Release Info, gnupg (gpg23)
werner committed rGafe5fcda52e8: gpg: Add unfinished code for --export-secret-ssh-key. (authored by werner).
gpg: Add unfinished code for --export-secret-ssh-key.
Dec 20 2021, 7:43 PM
werner committed rG038136ea48ae: wkd: Don't beg for donations (authored by werner).
wkd: Don't beg for donations
Dec 20 2021, 7:43 PM
werner committed rGda3910221608: common: Add set_membuf_err. (authored by werner).
common: Add set_membuf_err.
Dec 20 2021, 7:43 PM
werner committed rGace15e1b09dc: gpg: Allow passing a keygrip as description to pinentry. (authored by werner).
gpg: Allow passing a keygrip as description to pinentry.
Dec 20 2021, 7:43 PM
bernhard committed rW04e6b739ed2f: Improve draft v4 what's new document (authored by bernhard).
Improve draft v4 what's new document
Dec 20 2021, 5:16 PM
werner added a comment to T5713: Kleopatra: PKCS#12 Import no Error on bad passphrase.

It would be easier to educate gpgme about the 11.

Dec 20 2021, 4:37 PM · Restricted Project, kleopatra
aheinecke committed rWeb35a54353c3: web: Add pages for Version 4 (authored by aheinecke).
web: Add pages for Version 4
Dec 20 2021, 12:12 PM
aheinecke committed rWc37d1848794d: Update NEWS for Version 4 (authored by aheinecke).
Update NEWS for Version 4
Dec 20 2021, 12:12 PM
gniibe added a comment to T5742: Apparent regressions between 2.2.32 and 2.2.33 of GnuPG.

So, this is the patch. Note that this is for master.

diff --git a/g10/keygen.c b/g10/keygen.c
index 7f15027a2..a452ab6d6 100644
--- a/g10/keygen.c
+++ b/g10/keygen.c
@@ -5619,7 +5619,7 @@ do_generate_keypair (ctrl_t ctrl, struct para_data_s *para,
           pk = find_kbnode (pub_root, PKT_PUBLIC_KEY)->pkt->pkt.public_key;
Dec 20 2021, 11:37 AM · Restricted Project, Bug Report, gnupg (gpg23)
ikloecker added a comment to T5713: Kleopatra: PKCS#12 Import no Error on bad passphrase.

Actually, the "11" at the end of the "ERROR" status line means "bad passphrase". But I think gpgme ignores this status line.

Dec 20 2021, 11:03 AM · Restricted Project, kleopatra
ikloecker added a comment to T5713: Kleopatra: PKCS#12 Import no Error on bad passphrase.

Okay. gpgsm even logs "gpgsm: possibly bad passphrase given" internally.

Dec 20 2021, 10:45 AM · Restricted Project, kleopatra
aheinecke added a comment to T5713: Kleopatra: PKCS#12 Import no Error on bad passphrase.

Because, as a user, what do you do if you see "invalid object" you think that something is wrong with your data instead of trying to type the passphrase again.

Dec 20 2021, 10:41 AM · Restricted Project, kleopatra
aheinecke added a comment to T5713: Kleopatra: PKCS#12 Import no Error on bad passphrase.

As I understand it after the p12 decryption the output is just tried to be imported. With the wrong passphrase this is just garbage and can lead to different errors.

Dec 20 2021, 10:40 AM · Restricted Project, kleopatra
ikloecker added a comment to T5713: Kleopatra: PKCS#12 Import no Error on bad passphrase.

gpgsm 2.3.4 sends the result:

S ERROR import.parsep12 11
S IMPORT_RES 0 0 0 0 0 0 0 0 0 0 0 0 0 0
ERR 50331713 Invalid object <GpgSM>
Dec 20 2021, 10:36 AM · Restricted Project, kleopatra
ikloecker moved T5713: Kleopatra: PKCS#12 Import no Error on bad passphrase from Restricted Project Column to Restricted Project Column on the Restricted Project board.
Dec 20 2021, 10:23 AM · Restricted Project, kleopatra
ikloecker added a comment to T5713: Kleopatra: PKCS#12 Import no Error on bad passphrase.

With Kleopatra 3.1.20.220370+git20211216T120053~68b4545e (22.03.70) using GnuPG 2.3.4-beta24 and Libgcrypt 1.9.4-beta152 I get the error message Invalid object when I import only berta-enc.p12 and enter a wrong password. I'll have to check with GnuPG 2.2.33.

Dec 20 2021, 10:22 AM · Restricted Project, kleopatra
aheinecke added a comment to T5713: Kleopatra: PKCS#12 Import no Error on bad passphrase.

I've uploaded my testcerts to: https://heinecke.or.at/div/testzertifikate.tar.gz.gpg

Dec 20 2021, 9:42 AM · Restricted Project, kleopatra
ikloecker added a comment to T5725: Kleopatra: Certificate lookup shows only one result even if there are 100s matches.

That KeyListJob returns keys which have fingerprint NULL is caused by keyservers returning just key IDs instead of fingerprints. The change for T5741: dirmngr does not ask keyservers for fingerprints should fix this. Still keyservers are only guaranteed to return key IDs, so we cannot assume that keys returned by KeyListJob have fingerprints.

Dec 20 2021, 9:38 AM · Restricted Project, kleopatra, Bug Report
ikloecker closed T5741: dirmngr does not ask keyservers for fingerprints as Resolved.
Dec 20 2021, 9:32 AM · Restricted Project, dirmngr
ikloecker committed rGc7fa4c7f8bf3: dirmngr: Ask keyservers to provide the key fingerprints (authored by ikloecker).
dirmngr: Ask keyservers to provide the key fingerprints
Dec 20 2021, 9:29 AM
werner added a comment to T5742: Apparent regressions between 2.2.32 and 2.2.33 of GnuPG.

The use of register_trusted_key in do_generate_keypair was a dirty hack utilizing a bug in --trusted-key ; it would be better to set the key as ultimately trusted.

Dec 20 2021, 7:29 AM · Restricted Project, Bug Report, gnupg (gpg23)
gniibe added a comment to T5742: Apparent regressions between 2.2.32 and 2.2.33 of GnuPG.

I think that the change for T5685 introduced the issue.

Dec 20 2021, 3:32 AM · Restricted Project, Bug Report, gnupg (gpg23)
gniibe added a comment to T5685: Clear stale --trusted-key records from the trustdb.
Dec 20 2021, 3:31 AM · gnupg

Dec 19 2021

vsajip updated the task description for T5742: Apparent regressions between 2.2.32 and 2.2.33 of GnuPG.
Dec 19 2021, 8:04 PM · Restricted Project, Bug Report, gnupg (gpg23)
vsajip added a comment to T5742: Apparent regressions between 2.2.32 and 2.2.33 of GnuPG.

Okay, sorry. In the first two cases (encryption), GnuPG 2.2.33 generates

[GNUPG:] INV_RECP 10 F3C987C36C5C6343C9A5D5A1A3F494F6028E4866
[GNUPG:] FAILURE encrypt 53
gpg: [stdin]: encryption failed: Unusable public key

and exits with error code 2, whereas 2.2.32 doesn't display these messages and exits with return code 0.

Dec 19 2021, 7:59 PM · Restricted Project, Bug Report, gnupg (gpg23)
werner added a comment to T5742: Apparent regressions between 2.2.32 and 2.2.33 of GnuPG.

Please be so kind and describe the regressions you see. 3 log files from your software are not very helpful.

Dec 19 2021, 4:10 PM · Restricted Project, Bug Report, gnupg (gpg23)
vsajip renamed T5742: Apparent regressions between 2.2.32 and 2.2.33 of GnuPG from Apparent regressions between 2.2.30 and 2.2.33 of GnuPG to Apparent regressions between 2.2.32 and 2.2.33 of GnuPG.
Dec 19 2021, 3:18 PM · Restricted Project, Bug Report, gnupg (gpg23)
vsajip created T5742: Apparent regressions between 2.2.32 and 2.2.33 of GnuPG.
Dec 19 2021, 2:33 PM · Restricted Project, Bug Report, gnupg (gpg23)

Dec 18 2021

werner added a comment to T5741: dirmngr does not ask keyservers for fingerprints.

ikloecker: Please go ahead

Dec 18 2021, 12:04 PM · Restricted Project, dirmngr

Dec 17 2021

werner closed T5737: last_update in gpgme_key_t always be nullptr as Resolved.
Dec 17 2021, 4:14 PM · Support, gpgme
werner closed T5729: Crypto tokens for GnuPG maintainers - an offer as Resolved.
Dec 17 2021, 4:13 PM · dev.gnupg.org
werner added a comment to T5741: dirmngr does not ask keyservers for fingerprints.

IIRC, the problem is/was that this breaks some old keyservers. But there are no more old keyservers - if there are useful keyservers at all.

Dec 17 2021, 4:11 PM · Restricted Project, dirmngr
ikloecker committed rKLEOPATRAb4f5f2f4dbd5: Require GpgME version 1.15.0 (authored by ikloecker).
Require GpgME version 1.15.0
Dec 17 2021, 2:35 PM
ikloecker committed rKLEOPATRAf98cbbb78493: Require GpgME version 1.14.0 (authored by ikloecker).
Require GpgME version 1.14.0
Dec 17 2021, 2:35 PM
ikloecker committed rLIBKLEO3488e56daffc: Require GpgME version 1.14.0 (authored by ikloecker).
Require GpgME version 1.14.0
Dec 17 2021, 2:29 PM
ikloecker committed rLIBKLEOeefdd2851fe1: Require GpgME version 1.15.0 (authored by ikloecker).
Require GpgME version 1.15.0
Dec 17 2021, 2:29 PM
gniibe committed rTc2900c4f1d2b: build,w32: Fix configure script. (authored by gniibe).
build,w32: Fix configure script.
Dec 17 2021, 9:42 AM
gniibe committed rA576fbb033805: build,w32: Update configure script. (authored by gniibe).
build,w32: Update configure script.
Dec 17 2021, 9:34 AM
Saturneric added a comment to T5737: last_update in gpgme_key_t always be nullptr.

Thanks!
I will study it soon.

Dec 17 2021, 8:13 AM · Support, gpgme
gniibe added a comment to T5731: libgcrypt,w32: Possible API change for include file(s).

GnuPG needs to be fixed. Done by rGe08225030dfb: w32: Prepare for the case gcrypt.h will not include winsock2.h..

Dec 17 2021, 5:41 AM · libgcrypt
gniibe committed rGa9b95b20a8c3: dirmngr: Fix ldap-url.c. (authored by gniibe).
dirmngr: Fix ldap-url.c.
Dec 17 2021, 5:39 AM