Page MenuHome GnuPG
Feed All Stories

Apr 26 2022

bobwxc updated the diff for D553: [2-2] po: Update Simplified Chinese Translation..

catch the newest version
full git formatted patch here: https://fars.ee/LN-i.patch

Apr 26 2022, 7:44 AM
gniibe added a comment to T5935: scd: SSH emulation of gpg-agent doesn't work well with sntrup761x25519-sha512@openssh.com.

My Yubikey (Yubico.com Yubikey 4/5 OTP+U2F+CCID) (key Ed25519) works fine with OpenSSH using kex of sntrup761x25519-sha512@openssh.com.

Apr 26 2022, 7:44 AM · workaround, gnupg (gpg23), ssh, Bug Report, scd
gniibe added a comment to T5948: Flaky test (<keyboxd>tests/openpgp/use-exact-key.scm) failure with gnupg 2.3.5, 2.3.6.

Thank you. I can replicate the issue.

Apr 26 2022, 5:58 AM · gnupg (gpg23), Bug Report
gniibe committed rGd6eb27613305: dirmngr: Fix for C90 compiler. (authored by gniibe).
dirmngr: Fix for C90 compiler.
Apr 26 2022, 5:55 AM
gniibe committed rGba2f2085a95b: tests: Support single invocation with variant. (authored by gniibe).
tests: Support single invocation with variant.
Apr 26 2022, 5:55 AM
gniibe committed rG03e8668dbb27: tests: Let make check-all work again. (authored by gniibe).
tests: Let make check-all work again.
Apr 26 2022, 5:55 AM
gniibe committed rGa9754879d127: tests: Use module_tests for testing agent/. (authored by gniibe).
tests: Use module_tests for testing agent/.
Apr 26 2022, 5:55 AM
gniibe committed rG16720e1f54db: tests: Fix check-all for tests/openpgp. (authored by gniibe).
tests: Fix check-all for tests/openpgp.
Apr 26 2022, 5:55 AM
gniibe committed rGadf24ce61828: tests: Skip testsing g13 when it's not enabled. (authored by gniibe).
tests: Skip testsing g13 when it's not enabled.
Apr 26 2022, 5:55 AM
geng created T5950: Allow viewing expired certificates more easily.
Apr 26 2022, 3:59 AM · Restricted Project, kleopatra, Feature Request

Apr 25 2022

werner committed rW4f78bdca8ebc: Update to GnuPG 2.2.35 (authored by werner).
Update to GnuPG 2.2.35
Apr 25 2022, 7:18 PM
werner closed T5928: Release GnuPG 2.2.35 as Resolved.
Apr 25 2022, 7:12 PM · Release Info, gnupg (gpg22)
werner added a project to T5948: Flaky test (<keyboxd>tests/openpgp/use-exact-key.scm) failure with gnupg 2.3.5, 2.3.6: gnupg (gpg23).
Apr 25 2022, 7:10 PM · gnupg (gpg23), Bug Report
werner committed rD3d2543843f4e: swdb: GnuPG 2.2.35 (authored by werner).
swdb: GnuPG 2.2.35
Apr 25 2022, 7:09 PM
werner committed rG740c02f33aa2: Post release updates (authored by werner).
Post release updates
Apr 25 2022, 7:05 PM
werner committed rGfd93b1a48f6c: po: Auto update (authored by werner).
po: Auto update
Apr 25 2022, 7:05 PM
werner committed rG47ee0101ddfd: po: Fix a fuzzy in the German translation (authored by werner).
po: Fix a fuzzy in the German translation
Apr 25 2022, 7:05 PM
werner committed rGf7bc6f50496b: Release 2.2.35 (authored by werner).
Release 2.2.35
Apr 25 2022, 7:05 PM
thesamesam added a comment to T5948: Flaky test (<keyboxd>tests/openpgp/use-exact-key.scm) failure with gnupg 2.3.5, 2.3.6.

After re-running myself a few times, I managed to hit it again. In tests/openpgp/report.xml, I see:

[...]
<testsuite name="&lt;keyboxd&gt;tests/openpgp/use-exact-key.scm" time="0" package="&lt;keyboxd&gt;tests/openpgp" id="0" timestamp="2022-04-25T16:18:27" hostname="unknown" tests="1" failures="0" errors="0" >
<properties/>
<testcase name="use-exact-key.scm" classname="&lt;keyboxd&gt;tests.openpgp" time="0" >
<failure message="Unknown error." />
</testcase>
<system-out>
Importing public key.
Checking that the most recent, valid signing subkey is used by default
    &gt; 8BC90111 3E880CFF F5F77B83 45117079 1EA97479 &lt;
Checking that we can select a specific signing key
    &gt; 8BC90111 F5F77B83 1EA97479 &lt;
</system-out>
<system-err>
</system-err>
[...]
Apr 25 2022, 6:20 PM · gnupg (gpg23), Bug Report
werner triaged T5949: Release GnuPG 2.2.36 as Low priority.
Apr 25 2022, 6:20 PM · CVE, gnupg (gpg22), Release Info
thesamesam created T5948: Flaky test (<keyboxd>tests/openpgp/use-exact-key.scm) failure with gnupg 2.3.5, 2.3.6.
Apr 25 2022, 6:14 PM · gnupg (gpg23), Bug Report
werner committed rD9c45ec252ad0: swdb: GnuPG 2.3.6 (authored by werner).
swdb: GnuPG 2.3.6
Apr 25 2022, 5:02 PM
werner committed rWef0d98d81372: Update to GnuPG 2.3.6 (authored by werner).
Update to GnuPG 2.3.6
Apr 25 2022, 4:56 PM
werner closed T4729: WKD via http_proxy does not work if DNS is broken/unavailable as Resolved.

Was fixed in 2.3.5

Apr 25 2022, 4:53 PM · gnupg (gpg22), Restricted Project, dns, dirmngr
werner committed rG3a8164e69c3e: Release 2.3.6 (authored by werner).
Release 2.3.6
Apr 25 2022, 4:38 PM
werner committed rG73ef575fe1e1: Post release updates (authored by werner).
Post release updates
Apr 25 2022, 4:38 PM
werner committed rG638354b1179d: po: Auto update (authored by werner).
po: Auto update
Apr 25 2022, 4:38 PM
werner committed rGd0a0c3f47908: po: Fixed two fuzzies in the Japanese translation (authored by werner).
po: Fixed two fuzzies in the Japanese translation
Apr 25 2022, 4:38 PM
werner committed rG12b3666ebd6c: po: Update German translation (authored by werner).
po: Update German translation
Apr 25 2022, 4:38 PM
eleh added a comment to D435: systemd-user: Add service file to create the socketdir.
In D435#3175, @dkg wrote:

aiui, the point here is to have the user "service" get triggered somehow (through pam's pam_systemd.so's session module?) before ssh goes ahead and forms the socket. is that right? If the pre-launch mechanism is pam, is there a reason to do it as a systemd user service? That won't work for systems that have pam but don't have systemd, whereas a pam module that creates these will work.

Apr 25 2022, 4:38 PM
werner updated the task description for T5937: Release GnuPG 2.3.6.
Apr 25 2022, 4:37 PM · Release Info, gnupg (gpg23)
werner triaged T5947: Release GnuPG 2.3.7 as Low priority.
Apr 25 2022, 4:35 PM · CVE, Release Info, gnupg (gpg23)
JHZ-Admin added a comment to T5803: outlook restarts on adding a address to a new email.

is there any update ? I having the same Issue here on Windows 11 Pro, Outlook Version 2203 (Microsoft 365) 64bit

Apr 25 2022, 3:56 PM · gpgol, Bug Report, gpg4win
werner committed rG9c0a24b4a55e: agent: Not writing password into file. (authored by gniibe).
agent: Not writing password into file.
Apr 25 2022, 3:29 PM
werner committed rG86d84464ae11: gpg: Avoid NULL ptr access due to corrupted packets. (authored by werner).
gpg: Avoid NULL ptr access due to corrupted packets.
Apr 25 2022, 3:29 PM
werner committed rGf6caf5b17366: gpg: Avoid NULL ptr access due to corrupted packets. (authored by werner).
gpg: Avoid NULL ptr access due to corrupted packets.
Apr 25 2022, 3:26 PM
werner triaged T5946: Make gcry_mpi_cmp more robust for opaque mpis as Normal priority.
Apr 25 2022, 3:10 PM · libgcrypt, Bug Report
werner claimed T5940: crash importing truncated subkeys.
Apr 25 2022, 2:48 PM · Bug Report, gnupg
werner added a project to T5941: gnupg 2.3.5 hangs on key import: Restricted Project.
Apr 25 2022, 2:32 PM · Restricted Project, gnupg (gpg23), Bug Report
ikloecker claimed T5945: Kleopatra: Recipient input briefly shows error until lookup is completed.
Apr 25 2022, 2:31 PM · Restricted Project, kleopatra
ikloecker triaged T5945: Kleopatra: Recipient input briefly shows error until lookup is completed as Normal priority.
Apr 25 2022, 2:31 PM · Restricted Project, kleopatra
ikloecker triaged T5944: Kleopatra: Recipient input is confused about secondary user IDs as Normal priority.
Apr 25 2022, 2:29 PM · Restricted Project, kleopatra, Bug Report
JoeDoe1000 added a comment to T5926: GPGOL - Leere Nachricht kann nicht signiert werden (empty message email can't be signed or encrypted).

Any idea? Any update?

Apr 25 2022, 2:26 PM · gpgol, Bug Report, gpg4win
ikloecker claimed T5944: Kleopatra: Recipient input is confused about secondary user IDs.
Apr 25 2022, 2:15 PM · Restricted Project, kleopatra, Bug Report
ikloecker updated the task description for T5944: Kleopatra: Recipient input is confused about secondary user IDs.
Apr 25 2022, 2:15 PM · Restricted Project, kleopatra, Bug Report
ikloecker created T5944: Kleopatra: Recipient input is confused about secondary user IDs.
Apr 25 2022, 2:13 PM · Restricted Project, kleopatra, Bug Report
ikloecker closed T5943: gpg: Report details about failed symmetric decrypt with ERROR status, a subtask of T5939: Kleopatra: Better error for wrong password in symmetric decryption, as Resolved.
Apr 25 2022, 12:25 PM · Restricted Project, gpgme, kleopatra, Restricted Project
ikloecker closed T5943: gpg: Report details about failed symmetric decrypt with ERROR status as Resolved.

Works together with the changes for T5939: Kleopatra: Better error for wrong password in symmetric decryption. Tested with symmetric encrypted file and with symmetric+pk encrypted file.

Apr 25 2022, 12:25 PM · Restricted Project, gnupg, gpgme, Restricted Project
ikloecker committed rM512f11b458d8: qt: Rely on the bad passphrase error reported by gpg (authored by ikloecker).
qt: Rely on the bad passphrase error reported by gpg
Apr 25 2022, 12:23 PM
ikloecker committed rMe21c3b559dfb: core: Return BAD_PASSPHRASE error code on symmetric decryption. (authored by ikloecker).
core: Return BAD_PASSPHRASE error code on symmetric decryption.
Apr 25 2022, 12:23 PM
ikloecker changed the status of T5939: Kleopatra: Better error for wrong password in symmetric decryption from Open to Testing.
Apr 25 2022, 12:22 PM · Restricted Project, gpgme, kleopatra, Restricted Project
werner added projects to T5821: gpgsm "certificate not found" error handling should use gpg_err_code() instead of -1: gnupg (gpg23), Restricted Project.
Apr 25 2022, 12:11 PM · Restricted Project, gnupg (gpg23), Bug Report
werner committed rGbeb79f2705ad: sm: Use gpg_err_code() instead of -1 (authored by tmzullinger).
sm: Use gpg_err_code() instead of -1
Apr 25 2022, 12:11 PM
werner committed rGca5d5142c6d6: Deprecate the --supervised options. (authored by werner).
Deprecate the --supervised options.
Apr 25 2022, 12:11 PM
werner added a comment to T5821: gpgsm "certificate not found" error handling should use gpg_err_code() instead of -1.

Thanks. Will go into 2.3.6

Apr 25 2022, 12:11 PM · Restricted Project, gnupg (gpg23), Bug Report
werner closed T5942: scdaemon is blocking system shutdown as Wontfix.

Please contact the Debian developers for any systemd/gnupg issues. We don't suggest the use of the --supervised option because it causes more problems than it claims to solve.

Apr 25 2022, 11:53 AM · Support, scd, gpgagent
werner added a project to T5943: gpg: Report details about failed symmetric decrypt with ERROR status: Restricted Project.
Apr 25 2022, 11:44 AM · Restricted Project, gnupg, gpgme, Restricted Project
werner edited projects for T5943: gpg: Report details about failed symmetric decrypt with ERROR status, added: gpgme, gnupg; removed gnupg (gpg23).
Apr 25 2022, 11:44 AM · Restricted Project, gnupg, gpgme, Restricted Project
werner committed rG0f8623d518d4: gpg: Emit an ERROR status as hint for a bad passphrase. (authored by werner).
gpg: Emit an ERROR status as hint for a bad passphrase.
Apr 25 2022, 11:43 AM
werner committed rGf021ecd57624: gpg: Emit an ERROR status as hint for a bad passphrase. (authored by werner).
gpg: Emit an ERROR status as hint for a bad passphrase.
Apr 25 2022, 11:19 AM
ikloecker claimed T5936: gpg: Support specifiying user ID to revoke as UID hash for --quick-revoke-uid.
Apr 25 2022, 11:10 AM · gnupg (gpg23), Restricted Project, Feature Request
gniibe committed rG2fc91e15c6be: common:iobuf: Exclude cases with IOBUF_INPUT_TEMP/IOBUF_OUTPUT_TEMP. (authored by gniibe).
common:iobuf: Exclude cases with IOBUF_INPUT_TEMP/IOBUF_OUTPUT_TEMP.
Apr 25 2022, 10:41 AM
gniibe added a comment to T5941: gnupg 2.3.5 hangs on key import.

I pushed the change above. I also pushed another change with IOBUF_INPUT_TEMP.

Apr 25 2022, 10:41 AM · Restricted Project, gnupg (gpg23), Bug Report
werner added a comment to T5939: Kleopatra: Better error for wrong password in symmetric decryption.

In this case it works, because the error messages are not translatable.

Apr 25 2022, 10:05 AM · Restricted Project, gpgme, kleopatra, Restricted Project
gniibe added a comment to T5935: scd: SSH emulation of gpg-agent doesn't work well with sntrup761x25519-sha512@openssh.com.

Sorry, I was confused. For RSA-4096, data is hashed by gpg-agent and hashed data is signed by a card.

Apr 25 2022, 9:51 AM · workaround, gnupg (gpg23), ssh, Bug Report, scd
ikloecker triaged T5943: gpg: Report details about failed symmetric decrypt with ERROR status as Normal priority.
Apr 25 2022, 9:23 AM · Restricted Project, gnupg, gpgme, Restricted Project
ikloecker changed the status of T5939: Kleopatra: Better error for wrong password in symmetric decryption from Testing to Open.

You should not use log messages because they are subject to change and they are translated. Let us return an ERROR status instead.

Apr 25 2022, 9:16 AM · Restricted Project, gpgme, kleopatra, Restricted Project
szotsaki created T5942: scdaemon is blocking system shutdown.
Apr 25 2022, 8:15 AM · Support, scd, gpgagent
werner added a comment to T5935: scd: SSH emulation of gpg-agent doesn't work well with sntrup761x25519-sha512@openssh.com.

We are using rsa-4096 on smartcard for quite some time; so I wonder what's the problem here. Is that that we don't use our Assuan hack for large key material with OpenPGP.3?

Apr 25 2022, 8:07 AM · workaround, gnupg (gpg23), ssh, Bug Report, scd
gniibe added a comment to T5935: scd: SSH emulation of gpg-agent doesn't work well with sntrup761x25519-sha512@openssh.com.

There is another case: RSA-4096 key. scdaemon rejects data by Invalid value. Unfortunately, there is no fix for this, as it's really too large. Even if scdaemon allows larger data, the card implementation rejects, when it conforms to PKCS #1 standard (data should not be larger than 40% of the modulus).

Apr 25 2022, 4:35 AM · workaround, gnupg (gpg23), ssh, Bug Report, scd
gniibe committed rG2848fe4c84e5: scd: Fix hard-coded constant for RSA auth. (authored by gniibe).
scd: Fix hard-coded constant for RSA auth.
Apr 25 2022, 4:21 AM
gniibe triaged T5941: gnupg 2.3.5 hangs on key import as High priority.

Thank you for the bug report.

Apr 25 2022, 3:14 AM · Restricted Project, gnupg (gpg23), Bug Report
gniibe renamed T5941: gnupg 2.3.5 hangs on key import from gnupg 1.3.5 hangs on key import to gnupg 2.3.5 hangs on key import.
Apr 25 2022, 2:20 AM · Restricted Project, gnupg (gpg23), Bug Report

Apr 24 2022

Carlo Vanini <silhusk@gmail.com> committed rKLEOPATRA19be93f095a4: File name extension can be longer than 3 character (authored by Carlo Vanini <silhusk@gmail.com>).
File name extension can be longer than 3 character
Apr 24 2022, 10:03 PM
werner added a comment to T5939: Kleopatra: Better error for wrong password in symmetric decryption.

You should not use log messages because they are subject to change and they are translated. Let us return an ERROR status instead.

Apr 24 2022, 1:05 PM · Restricted Project, gpgme, kleopatra, Restricted Project
Laurent Montel <montel@kde.org> committed rLIBKLEO7447a1b7ce68: GIT_SILENT: prepare 5.20.1 (authored by Laurent Montel <montel@kde.org>).
GIT_SILENT: prepare 5.20.1
Apr 24 2022, 9:06 AM
Laurent Montel <montel@kde.org> committed rKLEOPATRAb3161638fbfc: GIT_SILENT: prepare 5.20.1 (authored by Laurent Montel <montel@kde.org>).
GIT_SILENT: prepare 5.20.1
Apr 24 2022, 9:03 AM

Apr 23 2022

bobwxc requested review of D553: [2-2] po: Update Simplified Chinese Translation..
Apr 23 2022, 8:30 AM
alex19EP created T5941: gnupg 2.3.5 hangs on key import.
Apr 23 2022, 12:29 AM · Restricted Project, gnupg (gpg23), Bug Report

Apr 22 2022

Laurent Montel <montel@kde.org> committed rLIBKLEOb33b73518168: GIT_SILENT: prepare 5.20.1 (authored by Laurent Montel <montel@kde.org>).
GIT_SILENT: prepare 5.20.1
Apr 22 2022, 8:56 PM
werner triaged T5940: crash importing truncated subkeys as High priority.
Apr 22 2022, 8:32 PM · Bug Report, gnupg
werner closed T5868: Attached files as Invalid.
Apr 22 2022, 8:26 PM · No Response, gpgol, Bug Report, gpg4win
werner triaged T5936: gpg: Support specifiying user ID to revoke as UID hash for --quick-revoke-uid as High priority.

Should also go into 2.2

Apr 22 2022, 6:46 PM · gnupg (gpg23), Restricted Project, Feature Request
werner accepted D552: gpg: Support specifiying user ID to revoke as UID hash for --quick-revoke-uid.

The rest of the code looks fine.

Apr 22 2022, 6:45 PM · gnupg (gpg23)
ikloecker committed rMd8e5871dca94: qt: Report better error if decryption failed because of bad passphrase (authored by ikloecker).
qt: Report better error if decryption failed because of bad passphrase
Apr 22 2022, 6:29 PM
ikloecker committed rM321c8a0254f4: cpp: Allow changing the error of a result (authored by ikloecker).
cpp: Allow changing the error of a result
Apr 22 2022, 6:29 PM
ikloecker changed the status of T5939: Kleopatra: Better error for wrong password in symmetric decryption from Open to Testing.

I have added the check for a possibly wrong symmetric password to QGpgMEDecryptVerifyJob because it relies on logging messages emitted by gpg which are not part of gpg's status API.

Apr 22 2022, 5:53 PM · Restricted Project, gpgme, kleopatra, Restricted Project
ikloecker moved T5939: Kleopatra: Better error for wrong password in symmetric decryption from Restricted Project Column to Restricted Project Column on the Restricted Project board.
Apr 22 2022, 5:38 PM · Restricted Project, gpgme, kleopatra, Restricted Project
ikloecker added a comment to T5939: Kleopatra: Better error for wrong password in symmetric decryption.

The error

gpg: decryption failed: Bad session key

is only logged if the sanity check "algo given in decrypted session key is a valid OpenPGP algo" passes even though a wrong password was given (which happens with a chance of 11:256). If the sanity check detects a bad algo then gpg logs

gpg: decryption of the symmetrically encrypted session key failed: Checksum error

If AEAD is used, then other logging will happen.

Apr 22 2022, 3:01 PM · Restricted Project, gpgme, kleopatra, Restricted Project
aheinecke triaged T5939: Kleopatra: Better error for wrong password in symmetric decryption as Normal priority.
Apr 22 2022, 1:16 PM · Restricted Project, gpgme, kleopatra, Restricted Project
werner committed rWf3c245489733: Minor fix in gpg4win.mk.in (authored by werner).
Minor fix in gpg4win.mk.in
Apr 22 2022, 12:56 PM
aheinecke committed rW629c0eda02de: doc: Update READMEs (authored by aheinecke).
doc: Update READMEs
Apr 22 2022, 12:00 PM
werner committed rWbf6e321c0fb7: Allow authenticode signing using a card. (authored by werner).
Allow authenticode signing using a card.
Apr 22 2022, 11:25 AM
ikloecker changed the status of T4087: Kleopatra: Revoke User-ID from Open to Testing.
Apr 22 2022, 11:14 AM · Restricted Project, Restricted Project, gpg4win, kleopatra, Feature Request
ikloecker committed rKLEOPATRA670728a271d2: Share generally useful helpers (authored by ikloecker).
Share generally useful helpers
Apr 22 2022, 11:14 AM
aheinecke committed rW461e78689442: Update NEWS for todays release (authored by aheinecke).
Update NEWS for todays release
Apr 22 2022, 10:57 AM
aheinecke committed rWa75fd5c420b0: Bump 4.x Version to 4.0.1 (authored by aheinecke).
Bump 4.x Version to 4.0.1
Apr 22 2022, 10:57 AM
aheinecke committed rW966158b6fd3b: Update kde-l10n and kleopatra (authored by aheinecke).
Update kde-l10n and kleopatra
Apr 22 2022, 10:57 AM
aheinecke committed rW8655444076b6: Grammar and spelling fixes for NEWS (authored by aheinecke).
Grammar and spelling fixes for NEWS
Apr 22 2022, 10:57 AM
aheinecke committed rW2948d1cf816e: Add GpgEX NEWS entry (authored by aheinecke).
Add GpgEX NEWS entry
Apr 22 2022, 10:57 AM