Page MenuHome GnuPG
Feed All Stories

May 3 2022

gniibe added a project to T5933: libgcrypt: Simply use BSS (not secure heap) for DRBG instance: Restricted Project.
May 3 2022, 10:46 AM · backport, FIPS, libgcrypt
gniibe added a comment to T5931: OpenSSH 8.9, 9.0, and 9.1 can't authenticate with gpg-agent and usb token (Gnuk >= 1.2.16 is required).

Nitrokey Start uses Gnuk as its firmware. You need to upgrade its firmware to version 1.2.16 or newer.
Please note that when upgrading the firmware, your keys will be removed.

May 3 2022, 10:43 AM · gnupg24, workaround, Documentation, gnupg (gpg23), ssh, gpgagent
ikloecker committed rLIBKLEO343b5bb4046a: GIT_SILENT Clear list of words to ignore by codespell (again) (authored by ikloecker).
GIT_SILENT Clear list of words to ignore by codespell (again)
May 3 2022, 10:05 AM
ikloecker committed rKLEOPATRAe94a4f7e1876: GIT_SILENT Clear list of words to ignore by codespell (again) (authored by ikloecker).
GIT_SILENT Clear list of words to ignore by codespell (again)
May 3 2022, 10:05 AM
Laurent Montel <montel@kde.org> committed rLIBKLEO5b8c1d5bfec8: GIT_SILENT: exclude .xml file (authored by Laurent Montel <montel@kde.org>).
GIT_SILENT: exclude .xml file
May 3 2022, 9:14 AM
Laurent Montel <montel@kde.org> committed rLIBKLEO744dcc2eb7eb: GIT_SILENT: compile fine without deprecated kf5.94 method (authored by Laurent Montel <montel@kde.org>).
GIT_SILENT: compile fine without deprecated kf5.94 method
May 3 2022, 9:14 AM
Laurent Montel <montel@kde.org> committed rKLEOPATRA5d7ef9b1dbd4: GIT_SILENT: compile fine without deprecated kf5.94 method (authored by Laurent Montel <montel@kde.org>).
GIT_SILENT: compile fine without deprecated kf5.94 method
May 3 2022, 9:11 AM
Laurent Montel <montel@kde.org> committed rKLEOPATRA86eb466e36f2: GIT_SILENT: exclude .xml file (authored by Laurent Montel <montel@kde.org>).
GIT_SILENT: exclude .xml file
May 3 2022, 9:11 AM

May 2 2022

oddlama created T5963: Yubikey: scdaemon causes libc segfault and clashes with ECC keys.
May 2 2022, 11:21 PM · backport, yubikey, scd, segv, Bug Report
amalon added a comment to T5931: OpenSSH 8.9, 9.0, and 9.1 can't authenticate with gpg-agent and usb token (Gnuk >= 1.2.16 is required).

Its a nitrokey start. I gave it another spin just to make sure, and again when updating to openssh 9.0 and "gpg (GnuPG) 2.3.6-unknown", it fails (again with careful gpgconf --kill gpg-agent etc. Double checked the downloaded source code by arch's makepkg, appears to have that patch applied. Also tried adding -o KexAlgorithms=-sntrup761x25519-sha512@openssh.com to the ssh command, which didn't help.

May 2 2022, 10:36 PM · gnupg24, workaround, Documentation, gnupg (gpg23), ssh, gpgagent
ikloecker added a comment to T5962: Kleopatra: Crash when quitting Application on Windows.

Looks like somebody is writing to the shared config after it has been destroyed already. Probably some global object that is destroyed by the runtime on shutdown.

May 2 2022, 6:06 PM · Restricted Project, kleopatra
dkg added a comment to T5954: Building for windows requires gpgrt (libgpg-error) 1.45, but configure.ac claims 1.27.

Debian requires all builds to use software that we have local copies of in the archive, which appears to rule out the use of speedo (it fetches source over the internet during build). So i've modified debian packaging to annotate that the Windows builds need a different version of libgpg-error than that defined in configure.ac.

May 2 2022, 6:03 PM · gnupg (gpg22), Bug Report
ikloecker committed rLIBKLEOa732f7990ad6: Return null subkey if there are no subkeys with the given key grip (authored by ikloecker).
Return null subkey if there are no subkeys with the given key grip
May 2 2022, 5:58 PM
ikloecker committed rKLEOPATRA9e2dc6246e20: Add possibility to refresh an individual certificate (authored by ikloecker).
Add possibility to refresh an individual certificate
May 2 2022, 5:45 PM
ikloecker committed rM540e7bf3d457: qt: Use GpgME::Locate alias (authored by ikloecker).
qt: Use GpgME::Locate alias
May 2 2022, 4:05 PM
ikloecker committed rMf1a354fd57d6: qt: Apply compiler hint (authored by ikloecker).
qt: Apply compiler hint
May 2 2022, 4:05 PM
ikloecker committed rMe12861f18c6b: qt: Add job for refreshing OpenPGP keys (authored by ikloecker).
qt: Add job for refreshing OpenPGP keys
May 2 2022, 3:57 PM
ikloecker committed rM97e09fb96400: qt,doc: Fix some API documentation (authored by ikloecker).
qt,doc: Fix some API documentation
May 2 2022, 3:57 PM
ikloecker committed rM0c304beeaab5: qt: Factor out helper for getting the fingerprints of some keys (authored by ikloecker).
qt: Factor out helper for getting the fingerprints of some keys
May 2 2022, 3:57 PM
ikloecker committed rM34786132fed0: cpp: Add RAII class for saving/restoring the key list mode (authored by ikloecker).
cpp: Add RAII class for saving/restoring the key list mode
May 2 2022, 3:57 PM
ikloecker committed rM99fd565889f3: qt: Add debug helper for Result classes with output stream operator (authored by ikloecker).
qt: Add debug helper for Result classes with output stream operator
May 2 2022, 3:57 PM
bernhard committed rWc0b798e6c041: Add EN version of privacy policy (authored by bernhard).
Add EN version of privacy policy
May 2 2022, 3:48 PM
aheinecke committed rW8053494b5a51: msi: Add installers target to prepare unsigned msi (authored by aheinecke).
msi: Add installers target to prepare unsigned msi
May 2 2022, 12:12 PM
aheinecke raised the priority of T5962: Kleopatra: Crash when quitting Application on Windows from Normal to High.
May 2 2022, 11:01 AM · Restricted Project, kleopatra
aheinecke triaged T5962: Kleopatra: Crash when quitting Application on Windows as Normal priority.
May 2 2022, 10:59 AM · Restricted Project, kleopatra
aheinecke closed T5715: Kleopatra: After importing a secret key and setting ownertrust in the dialog the key is not updated as Resolved.
May 2 2022, 10:24 AM · kleopatra, Restricted Project
werner added a project to T5935: scd: SSH emulation of gpg-agent doesn't work well with sntrup761x25519-sha512@openssh.com: workaround.
May 2 2022, 10:19 AM · workaround, gnupg (gpg23), ssh, Bug Report, scd
gniibe added a comment to T5935: scd: SSH emulation of gpg-agent doesn't work well with sntrup761x25519-sha512@openssh.com.
KexAlgorithms -sntrup761x25519-sha512@openssh.com
May 2 2022, 10:17 AM · workaround, gnupg (gpg23), ssh, Bug Report, scd
ikloecker committed rM54c4fd16d183: qt: Fix connection to readyReadStandardOutput signal (authored by ikloecker).
qt: Fix connection to readyReadStandardOutput signal
May 2 2022, 10:10 AM
ikloecker committed rM9686258bd167: qt: Add test runner for refresh job (authored by ikloecker).
qt: Add test runner for refresh job
May 2 2022, 10:10 AM
ikloecker committed rMf4c356092571: qt: Make RefreshKeysJob result compatible with standard job result (authored by ikloecker).
qt: Make RefreshKeysJob result compatible with standard job result
May 2 2022, 10:10 AM
ikloecker committed rM62e770971786: qt: Minor refactoring (authored by ikloecker).
qt: Minor refactoring
May 2 2022, 10:10 AM
ikloecker committed rMfd97cbaa44b8: qt: Allow refreshing a list of keys (authored by ikloecker).
qt: Allow refreshing a list of keys
May 2 2022, 10:10 AM
ikloecker committed rMf47bc992ae6c: qt: Rename QGpgMERefreshKeysJob to QGpgMERefreshSMIMEKeysJob (authored by ikloecker).
qt: Rename QGpgMERefreshKeysJob to QGpgMERefreshSMIMEKeysJob
May 2 2022, 10:10 AM
ikloecker committed rM359906c8bcde: cpp,tests: Verify that requested keylist mode is used (authored by ikloecker).
cpp,tests: Verify that requested keylist mode is used
May 2 2022, 10:10 AM
gniibe added a comment to rG4fe8859541d0: gpgscm: Fix handling an error for chdir..

Background: I encountered a problem error message shows irrelevant; While it should say 'No such file or directly', it says 'Unknown Packet'.

May 2 2022, 10:01 AM
werner added a comment to rG4fe8859541d0: gpgscm: Fix handling an error for chdir..

FWIW, the original idea with gpgscm was to provide code which does no rely on any gpg stuff so it can be merged back into upstream. I am not sure whether this still makes sense.

May 2 2022, 9:54 AM
gniibe committed rG4fe8859541d0: gpgscm: Fix handling an error for chdir. (authored by gniibe).
gpgscm: Fix handling an error for chdir.
May 2 2022, 7:17 AM
gniibe committed rG792374edb676: tests: Fix plain invocation of "make check". (authored by gniibe).
tests: Fix plain invocation of "make check".
May 2 2022, 7:05 AM
gniibe committed rG06e82e997a56: tests: Add a test for Ed25519 keys for non-protected secret. (authored by gniibe).
tests: Add a test for Ed25519 keys for non-protected secret.
May 2 2022, 3:41 AM
gniibe committed rG602c37ac0678: tests: Add a test for Ed25519 keys for non-protected secret. (authored by gniibe).
tests: Add a test for Ed25519 keys for non-protected secret.
May 2 2022, 3:40 AM
gniibe added a comment to T5931: OpenSSH 8.9, 9.0, and 9.1 can't authenticate with gpg-agent and usb token (Gnuk >= 1.2.16 is required).

Please describe what token is used. For my use cases with rGe8fb8e2b3e66: scd: Don't inhibit SSH authentication for larger data if it can., both of Gnuk (>= 1.2.16) and Yubikey (>= 5) work well.

May 2 2022, 1:53 AM · gnupg24, workaround, Documentation, gnupg (gpg23), ssh, gpgagent

May 1 2022

l10n daemon script <scripty@kde.org> committed rLIBKLEO7bce371453c3: SVN_SILENT made messages (.desktop file) - always resolve ours (authored by l10n daemon script <scripty@kde.org>).
SVN_SILENT made messages (.desktop file) - always resolve ours
May 1 2022, 5:09 AM
l10n daemon script <scripty@kde.org> committed rLIBKLEO628b00f20593: SVN_SILENT made messages (.desktop file) - always resolve ours (authored by l10n daemon script <scripty@kde.org>).
SVN_SILENT made messages (.desktop file) - always resolve ours
May 1 2022, 3:56 AM

Apr 30 2022

Ottileinchen added a comment to Gpg4win or GnuPG VS-Desktop Bug Report.
Apr 30 2022, 8:37 PM · gpg4win
Alexander Lohnau <alexander.lohnau@gmx.de> committed rKLEOPATRA6020c349d539: Remove ServiceTypes from context menu services (authored by Nicolas Fella <nicolas.fella@gmx.de>).
Remove ServiceTypes from context menu services
Apr 30 2022, 7:54 PM
Nicolas Fella <nicolas.fella@gmx.de> committed rKLEOPATRA3a4acbad14dc: Remove ServiceTypes from context menu services (authored by Nicolas Fella <nicolas.fella@gmx.de>).
Remove ServiceTypes from context menu services
Apr 30 2022, 6:59 PM
jukivili committed rC9ba1f0091ff4: tests/basic: add testing for partial bulk processing code paths (authored by jukivili).
tests/basic: add testing for partial bulk processing code paths
Apr 30 2022, 12:37 PM
jukivili committed rCaad3381e9384: sm4: add XTS bulk processing (authored by jukivili).
sm4: add XTS bulk processing
Apr 30 2022, 12:37 PM
jukivili committed rCe239738b4af2: sm4-aesni-avx2: add generic 1 to 16 block bulk processing function (authored by jukivili).
sm4-aesni-avx2: add generic 1 to 16 block bulk processing function
Apr 30 2022, 12:37 PM
jukivili committed rC32b18cdb87b7: camellia-avx2: add bulk processing for XTS mode (authored by jukivili).
camellia-avx2: add bulk processing for XTS mode
Apr 30 2022, 12:37 PM
jukivili committed rC5095d60af42d: Add SM4 x86-64/GFNI/AVX2 implementation (authored by jukivili).
Add SM4 x86-64/GFNI/AVX2 implementation
Apr 30 2022, 12:37 PM
jukivili committed rCe1c5f950838b: sm4: deduplicate bulk processing function selection (authored by jukivili).
sm4: deduplicate bulk processing function selection
Apr 30 2022, 12:37 PM
jukivili committed rC9388279803ff: Move bulk OCB L pointer array setup code to common header (authored by jukivili).
Move bulk OCB L pointer array setup code to common header
Apr 30 2022, 12:37 PM
jukivili committed rC754055ccd043: cipher/bulkhelp: add functions for CTR/CBC/CFB/OCB bulk processing (authored by jukivili).
cipher/bulkhelp: add functions for CTR/CBC/CFB/OCB bulk processing
Apr 30 2022, 12:37 PM
jukivili committed rCbacdc1de3f4f: camellia-avx2: add partial parallel block processing (authored by jukivili).
camellia-avx2: add partial parallel block processing
Apr 30 2022, 12:37 PM
jukivili committed rC3410d40996d8: Add detection for HW feature "intel-gfni" (authored by jukivili).
Add detection for HW feature "intel-gfni"
Apr 30 2022, 12:37 PM
jukivili committed rC4e6896eb9fce: Add GFNI/AVX2 implementation of Camellia (authored by jukivili).
Add GFNI/AVX2 implementation of Camellia
Apr 30 2022, 12:37 PM
gniibe added a comment to T5120: Incompatible Ed25519 secret key (no-encryption).

it would be useful to add a test

Apr 30 2022, 4:14 AM · gnupg (gpg22), Bug Report

Apr 29 2022

dkg added a comment to T5931: OpenSSH 8.9, 9.0, and 9.1 can't authenticate with gpg-agent and usb token (Gnuk >= 1.2.16 is required).

this looks similar to https://dev.gnupg.org/T5935 and https://bugs.debian.org/1008573

Apr 29 2022, 6:24 PM · gnupg24, workaround, Documentation, gnupg (gpg23), ssh, gpgagent
aheinecke committed rWc1f81d3d8930: Post relase version bump (authored by aheinecke).
Post relase version bump
Apr 29 2022, 3:17 PM
aheinecke committed rW98c550d0b1d4: Update NEWS and READMEs for todays release (authored by aheinecke).
Update NEWS and READMEs for todays release
Apr 29 2022, 3:17 PM
werner committed rW499a8e7ad93a: appimage: Minor fix (authored by werner).
appimage: Minor fix
Apr 29 2022, 2:58 PM
aheinecke triaged T5961: Kleopatra: S/MIME Details cannot be copied multiline on Windows as Normal priority.
Apr 29 2022, 2:23 PM · kleopatra, Restricted Project
aheinecke triaged T5960: Kleopatra: Encoding problems with GnuPG output on Windows as Normal priority.
Apr 29 2022, 2:19 PM · vsd33, Restricted Project, kleopatra
aheinecke triaged T5959: Kleopatra: Show key source in details widget if it is not unkown as Wishlist priority.
Apr 29 2022, 2:12 PM · Restricted Project, kleopatra
aheinecke triaged T5958: Kleopatra: Change passphrase is enabled even when it is impossible as Normal priority.
Apr 29 2022, 2:09 PM · Restricted Project, kleopatra
aheinecke triaged T5957: Kleopatra: Usability improvement for Notepad as Wishlist priority.
Apr 29 2022, 1:08 PM · gpd5x, kleopatra
aheinecke triaged T5956: Kleopatra: Disable backup secret key for smartcards as Normal priority.
Apr 29 2022, 1:04 PM · kleopatra, Restricted Project
aheinecke closed T5939: Kleopatra: Better error for wrong password in symmetric decryption as Resolved.

Tested

Apr 29 2022, 10:19 AM · Restricted Project, gpgme, kleopatra, Restricted Project
aheinecke committed rWfc0e1066b681: Update Kleopatra to latest master (authored by aheinecke).
Update Kleopatra to latest master
Apr 29 2022, 10:16 AM
aheinecke committed rKLEOPATRAff3c40d505e9: Do not always enable action after error (authored by aheinecke).
Do not always enable action after error
Apr 29 2022, 10:11 AM
aheinecke committed rKLEOPATRA1db344e1287e: Do not always enable crypt in notepad for de-vs (authored by aheinecke).
Do not always enable crypt in notepad for de-vs
Apr 29 2022, 10:11 AM
aheinecke added a comment to rKLEOPATRA96928c1e4501: Enable encrypt/sign button if GnuPG is compliant.

Uhm. This enabled the button always in VS-NfD mode. Fixing.

Apr 29 2022, 10:09 AM
werner triaged T5955: pinentry-efl sends warnings to stderr, does not close windows during getpin as Normal priority.
Apr 29 2022, 9:46 AM · efl, pinentry, Bug Report
werner created efl.
Apr 29 2022, 9:45 AM
aheinecke committed rW31c9060dbc66: Prepare NEWS for 3.1.22 (authored by aheinecke).
Prepare NEWS for 3.1.22
Apr 29 2022, 9:26 AM
Yuri Chornoivan <yurchor@ukr.net> committed rKLEOPATRA54358942931f: Fix minor typo (authored by Yuri Chornoivan <yurchor@ukr.net>).
Fix minor typo
Apr 29 2022, 7:27 AM
dschulman-repay added a comment to T5406: gnupg-2.3.1: 'make check' on all tests tries to use installed 'keyboxd'.

I'm seeing something just like this when attempting to install gnupg-2.3.6 on Ubuntu 22.04 LTS (running under WSL 2, if it matters).

Apr 29 2022, 3:58 AM · gnupg (gpg23), Bug Report

Apr 28 2022

dkg created T5955: pinentry-efl sends warnings to stderr, does not close windows during getpin.
Apr 28 2022, 11:04 PM · efl, pinentry, Bug Report
dkg added a comment to T5120: Incompatible Ed25519 secret key (no-encryption).

Thanks for working on this, @gniibe! Maybe it would be useful to add a test to the test suite that tries to import and use a secret key of this particular structure.

Apr 28 2022, 10:07 PM · gnupg (gpg22), Bug Report
aheinecke committed rWcb0b88270489: Update libkleo to latest master (authored by aheinecke).
Update libkleo to latest master
Apr 28 2022, 1:48 PM
aheinecke committed rLIBKLEOcf0130036f91: Fix findSubkeyByKeygrip for unknwon protocol (authored by aheinecke).
Fix findSubkeyByKeygrip for unknwon protocol
Apr 28 2022, 1:47 PM
aheinecke committed rW75e96164c51f: Update kleopatra to latest snapshot (authored by aheinecke).
Update kleopatra to latest snapshot
Apr 28 2022, 11:44 AM
aheinecke committed rKLEOPATRAa365ef17e97e: Always start gpg-agent on startup (authored by aheinecke).
Always start gpg-agent on startup
Apr 28 2022, 11:41 AM
ikloecker added a comment to T5942: scdaemon is blocking system shutdown.

FWIW, your comments about the autostart script do not match with the running processes. Obviously, the autostart script starts gpg-agent with different command line options than the running process. My conclusion is that the autostart script isn't used. Or maybe it is started, but gpg-agent immediately terminates because it notices that another instance is already running.

Apr 28 2022, 10:12 AM · Support, scd, gpgagent
aheinecke committed rD086f031cc2d0: swdb: Update Gpg4win to 4.0.2 (authored by aheinecke).
swdb: Update Gpg4win to 4.0.2
Apr 28 2022, 10:09 AM
ikloecker added a comment to T5942: scdaemon is blocking system shutdown.

If you add an autostart script then you may have to add a corresponding shutdown script as well, e.g. a script running gpgconf --kill all. You cannot expect that daemons, that you start via an autostart script, magically know when they should terminate.

Apr 28 2022, 10:01 AM · Support, scd, gpgagent
aheinecke committed rWf2ffd559f892: Update kleopatra to latest snapshot (authored by aheinecke).
Update kleopatra to latest snapshot
Apr 28 2022, 10:00 AM
aheinecke committed rKLEOPATRA3fd2d2c6fa4d: Move AutoLoadP15Certs to Smartcard group (authored by aheinecke).
Move AutoLoadP15Certs to Smartcard group
Apr 28 2022, 9:59 AM
aheinecke committed rW695d0b20b69b: Update kleopatra to latest snapshot (authored by aheinecke).
Update kleopatra to latest snapshot
Apr 28 2022, 9:53 AM
aheinecke committed rKLEOPATRA06912808c6c7: p15: Change load CMS certs btn to automatic (authored by aheinecke).
p15: Change load CMS certs btn to automatic
Apr 28 2022, 9:45 AM
aheinecke committed rKLEOPATRA13b8d0bec62f: Make setShowsOutputWindow public for GnuPG CMD (authored by aheinecke).
Make setShowsOutputWindow public for GnuPG CMD
Apr 28 2022, 9:45 AM
amalon added a comment to T5931: OpenSSH 8.9, 9.0, and 9.1 can't authenticate with gpg-agent and usb token (Gnuk >= 1.2.16 is required).

FYI, I built 2.3.6 using a modified archlinux PKGBUILD (& disabling patches to avoid conflicts), then did:
gpgconf --kill gpg-agent
gpgconf --launch gpg-agent
but ssh still fails as before

Apr 28 2022, 9:16 AM · gnupg24, workaround, Documentation, gnupg (gpg23), ssh, gpgagent
werner triaged T5575: Supplying more than one passphrase or PIN using passphrase-fd as Low priority.
Apr 28 2022, 9:12 AM · gnupg, yubikey, Feature Request
werner closed T5513: Outlook download external content crash as Resolved.

Please try a decent version of Gpg4win - we have fixed dozens of bugs in the mean time If the problems persists, please re-open this bug.

Apr 28 2022, 9:05 AM · Too Old, gpgol, Bug Report, gpg4win
werner triaged T5798: Empty emails in Outlook - conflict between gpgOl & ESET (antivirus add-in) as Low priority.

Conflicts between Add-Ins are often unavoidable. We have a list of known issues at:
https://wiki.gnupg.org/GpgOL/IncompatibleAddons
If you have more information on that ESET thingy please enter it into the above wiki or leave some description here.

Apr 28 2022, 9:04 AM · Add-In-conflict, gpgol, gpg4win
werner created Add-In-conflict.
Apr 28 2022, 9:00 AM
werner lowered the priority of T5931: OpenSSH 8.9, 9.0, and 9.1 can't authenticate with gpg-agent and usb token (Gnuk >= 1.2.16 is required) from High to Normal.
Apr 28 2022, 8:55 AM · gnupg24, workaround, Documentation, gnupg (gpg23), ssh, gpgagent
werner closed T5801: Kleopatra: Add support for the new dirmngr/ldapserver option to configure X.509 servers as Resolved.
Apr 28 2022, 8:53 AM · Restricted Project, kleopatra