Page MenuHome GnuPG
Feed All Stories

May 5 2022

ikloecker committed rM3519d6117332: cpp: Allow retrieving import result of key listing with locate mode (authored by ikloecker).
cpp: Allow retrieving import result of key listing with locate mode
May 5 2022, 10:53 AM
ikloecker committed rMc64a8daf507a: qt: Emit import result when refreshing OpenPGP keys (authored by ikloecker).
qt: Emit import result when refreshing OpenPGP keys
May 5 2022, 10:53 AM
ikloecker committed rMd911a1536488: cpp: Allow merging the results of two imports (authored by ikloecker).
cpp: Allow merging the results of two imports
May 5 2022, 10:53 AM
ikloecker committed rMf3ca57dfd7af: core: Handle import status lines during keylist operation (authored by ikloecker).
core: Handle import status lines during keylist operation
May 5 2022, 10:53 AM
werner added a comment to T5963: Yubikey: scdaemon causes libc segfault and clashes with ECC keys.

Ours are even newer (5.4.3). Did you the Yubico tools to switch to curve443?
In any case, is it possible that you apply my fix and test again?

May 5 2022, 10:06 AM · backport, yubikey, scd, segv, Bug Report
werner committed rG385f4841330e: scd:openpgp: Fix a segv for cards supporting unknown curves. (authored by werner).
scd:openpgp: Fix a segv for cards supporting unknown curves.
May 5 2022, 9:55 AM
werner added a comment to T5963: Yubikey: scdaemon causes libc segfault and clashes with ECC keys.

Your Yubikey's firmware version is 5.2.7 - let me see what versions we have in stock to test my fix.

May 5 2022, 9:51 AM · backport, yubikey, scd, segv, Bug Report
aheinecke removed a project from T5864: Kleopatra: Configure min and max values for validity in Newcertificatewizard: Restricted Project.
May 5 2022, 8:54 AM · kleopatra, Restricted Project
aheinecke changed the status of T5864: Kleopatra: Configure min and max values for validity in Newcertificatewizard from Testing to Open.

This can be bypassed by entering the date manually, was reported by a customer and I have just confirmed this.

May 5 2022, 8:54 AM · kleopatra, Restricted Project
werner triaged T5952: Can't uninstall gpg4win with Ansible as Normal priority.
May 5 2022, 8:41 AM · Support, gpg4win
werner triaged T5964: gnupg should use the KDFs implemented in libgcrypt as Normal priority.

When we implemented this first, Libgcrypt had no appropriate KDF support. I recall that I considered to change this but it turned out the for 2.2 the changes are too large. For 2.3 we will consider such a change.

May 5 2022, 8:40 AM · gnupg26, FIPS, libgcrypt, Feature Request

May 4 2022

Laurent Montel <montel@kde.org> committed rKLEOPATRA6674f3752bec: Remove duplicate header between header cpp file (authored by Laurent Montel <montel@kde.org>).
Remove duplicate header between header cpp file
May 4 2022, 6:59 PM
oddlama added a comment to T5963: Yubikey: scdaemon causes libc segfault and clashes with ECC keys.

I've taken the liberty to regenerate the valgrind report including libc and gnupg debugsyms. Maybe it'll help.

May 4 2022, 4:47 PM · backport, yubikey, scd, segv, Bug Report
Jakuje created T5964: gnupg should use the KDFs implemented in libgcrypt.
May 4 2022, 3:16 PM · gnupg26, FIPS, libgcrypt, Feature Request
werner updated subscribers of T5963: Yubikey: scdaemon causes libc segfault and clashes with ECC keys.

I am not sure about the crash but the unknown curve is
1.3.6.1.4.1.11591.15.1.2 which seems to be a GNU OID for curve448

May 4 2022, 2:38 PM · backport, yubikey, scd, segv, Bug Report
oddlama added a comment to T5963: Yubikey: scdaemon causes libc segfault and clashes with ECC keys.

It segfaults on SERIALNO. Here's what valgrind outputs:

May 4 2022, 12:48 PM · backport, yubikey, scd, segv, Bug Report
werner added a comment to T5963: Yubikey: scdaemon causes libc segfault and clashes with ECC keys.

What I would do in this case is to stop the gnupg daemon amd anything whiuch might start them and run scdaemon under valgrind.

May 4 2022, 10:13 AM · backport, yubikey, scd, segv, Bug Report

May 3 2022

werner committed rW8d5439e75dca: Update binary version of GnuPG with Authenticode signed builds. (authored by werner).
Update binary version of GnuPG with Authenticode signed builds.
May 3 2022, 12:18 PM
werner committed rWa7e52329f0e5: Fix quoting in AUTHENTICODE_sign make template (authored by werner).
Fix quoting in AUTHENTICODE_sign make template
May 3 2022, 12:18 PM
werner committed rW032b1776dc8a: Fix use of osslsigncode along with stow (authored by werner).
Fix use of osslsigncode along with stow
May 3 2022, 12:18 PM
werner committed rW356765895426: appimage: Micro fix (authored by werner).
appimage: Micro fix
May 3 2022, 12:18 PM
gniibe added a project to T5933: libgcrypt: Simply use BSS (not secure heap) for DRBG instance: backport.
May 3 2022, 11:22 AM · backport, FIPS, libgcrypt
werner added a project to T5919: libgcrypt tests/basic.c and tests/keygen.c occasionally fail with "error generating RSA key: Number is not prime": backport.
May 3 2022, 11:21 AM · backport, FIPS, libgcrypt, Bug Report
werner added a project to T5918: Disable RSA PKCS #1.5 encryption in FIPS mode: backport.
May 3 2022, 11:17 AM · backport, libgcrypt, FIPS, Bug Report
gniibe moved T5933: libgcrypt: Simply use BSS (not secure heap) for DRBG instance from Backlog to Next on the FIPS board.
May 3 2022, 10:58 AM · backport, FIPS, libgcrypt
gniibe moved T5929: gnupg fails to add ssh key to control entry in FIPS mode with libgcrypt 1.10.1 from Next to Ready for release on the FIPS board.
May 3 2022, 10:58 AM · FIPS, gnupg (gpg23), Bug Report
gniibe removed a project from T5929: gnupg fails to add ssh key to control entry in FIPS mode with libgcrypt 1.10.1: Restricted Project.
May 3 2022, 10:57 AM · FIPS, gnupg (gpg23), Bug Report
gniibe added a comment to T5929: gnupg fails to add ssh key to control entry in FIPS mode with libgcrypt 1.10.1.

Fixed in GnuPG 2.3.5.

May 3 2022, 10:57 AM · FIPS, gnupg (gpg23), Bug Report
gniibe added a project to T5918: Disable RSA PKCS #1.5 encryption in FIPS mode: Restricted Project.
May 3 2022, 10:49 AM · backport, libgcrypt, FIPS, Bug Report
gniibe added a project to T5929: gnupg fails to add ssh key to control entry in FIPS mode with libgcrypt 1.10.1: Restricted Project.
May 3 2022, 10:48 AM · FIPS, gnupg (gpg23), Bug Report
gniibe added a project to T5919: libgcrypt tests/basic.c and tests/keygen.c occasionally fail with "error generating RSA key: Number is not prime": Restricted Project.
May 3 2022, 10:48 AM · backport, FIPS, libgcrypt, Bug Report
gniibe added a project to T5933: libgcrypt: Simply use BSS (not secure heap) for DRBG instance: Restricted Project.
May 3 2022, 10:46 AM · backport, FIPS, libgcrypt
gniibe added a comment to T5931: OpenSSH 8.9, 9.0, and 9.1 can't authenticate with gpg-agent and usb token (Gnuk >= 1.2.16 is required).

Nitrokey Start uses Gnuk as its firmware. You need to upgrade its firmware to version 1.2.16 or newer.
Please note that when upgrading the firmware, your keys will be removed.

May 3 2022, 10:43 AM · gnupg24, workaround, Documentation, gnupg (gpg23), ssh, gpgagent
ikloecker committed rLIBKLEO343b5bb4046a: GIT_SILENT Clear list of words to ignore by codespell (again) (authored by ikloecker).
GIT_SILENT Clear list of words to ignore by codespell (again)
May 3 2022, 10:05 AM
ikloecker committed rKLEOPATRAe94a4f7e1876: GIT_SILENT Clear list of words to ignore by codespell (again) (authored by ikloecker).
GIT_SILENT Clear list of words to ignore by codespell (again)
May 3 2022, 10:05 AM
Laurent Montel <montel@kde.org> committed rLIBKLEO5b8c1d5bfec8: GIT_SILENT: exclude .xml file (authored by Laurent Montel <montel@kde.org>).
GIT_SILENT: exclude .xml file
May 3 2022, 9:14 AM
Laurent Montel <montel@kde.org> committed rLIBKLEO744dcc2eb7eb: GIT_SILENT: compile fine without deprecated kf5.94 method (authored by Laurent Montel <montel@kde.org>).
GIT_SILENT: compile fine without deprecated kf5.94 method
May 3 2022, 9:14 AM
Laurent Montel <montel@kde.org> committed rKLEOPATRA5d7ef9b1dbd4: GIT_SILENT: compile fine without deprecated kf5.94 method (authored by Laurent Montel <montel@kde.org>).
GIT_SILENT: compile fine without deprecated kf5.94 method
May 3 2022, 9:11 AM
Laurent Montel <montel@kde.org> committed rKLEOPATRA86eb466e36f2: GIT_SILENT: exclude .xml file (authored by Laurent Montel <montel@kde.org>).
GIT_SILENT: exclude .xml file
May 3 2022, 9:11 AM

May 2 2022

oddlama created T5963: Yubikey: scdaemon causes libc segfault and clashes with ECC keys.
May 2 2022, 11:21 PM · backport, yubikey, scd, segv, Bug Report
amalon added a comment to T5931: OpenSSH 8.9, 9.0, and 9.1 can't authenticate with gpg-agent and usb token (Gnuk >= 1.2.16 is required).

Its a nitrokey start. I gave it another spin just to make sure, and again when updating to openssh 9.0 and "gpg (GnuPG) 2.3.6-unknown", it fails (again with careful gpgconf --kill gpg-agent etc. Double checked the downloaded source code by arch's makepkg, appears to have that patch applied. Also tried adding -o KexAlgorithms=-sntrup761x25519-sha512@openssh.com to the ssh command, which didn't help.

May 2 2022, 10:36 PM · gnupg24, workaround, Documentation, gnupg (gpg23), ssh, gpgagent
ikloecker added a comment to T5962: Kleopatra: Crash when quitting Application on Windows.

Looks like somebody is writing to the shared config after it has been destroyed already. Probably some global object that is destroyed by the runtime on shutdown.

May 2 2022, 6:06 PM · Restricted Project, kleopatra
dkg added a comment to T5954: Building for windows requires gpgrt (libgpg-error) 1.45, but configure.ac claims 1.27.

Debian requires all builds to use software that we have local copies of in the archive, which appears to rule out the use of speedo (it fetches source over the internet during build). So i've modified debian packaging to annotate that the Windows builds need a different version of libgpg-error than that defined in configure.ac.

May 2 2022, 6:03 PM · gnupg (gpg22), Bug Report
ikloecker committed rLIBKLEOa732f7990ad6: Return null subkey if there are no subkeys with the given key grip (authored by ikloecker).
Return null subkey if there are no subkeys with the given key grip
May 2 2022, 5:58 PM
ikloecker committed rKLEOPATRA9e2dc6246e20: Add possibility to refresh an individual certificate (authored by ikloecker).
Add possibility to refresh an individual certificate
May 2 2022, 5:45 PM
ikloecker committed rM540e7bf3d457: qt: Use GpgME::Locate alias (authored by ikloecker).
qt: Use GpgME::Locate alias
May 2 2022, 4:05 PM
ikloecker committed rMf1a354fd57d6: qt: Apply compiler hint (authored by ikloecker).
qt: Apply compiler hint
May 2 2022, 4:05 PM
ikloecker committed rMe12861f18c6b: qt: Add job for refreshing OpenPGP keys (authored by ikloecker).
qt: Add job for refreshing OpenPGP keys
May 2 2022, 3:57 PM
ikloecker committed rM97e09fb96400: qt,doc: Fix some API documentation (authored by ikloecker).
qt,doc: Fix some API documentation
May 2 2022, 3:57 PM
ikloecker committed rM0c304beeaab5: qt: Factor out helper for getting the fingerprints of some keys (authored by ikloecker).
qt: Factor out helper for getting the fingerprints of some keys
May 2 2022, 3:57 PM
ikloecker committed rM34786132fed0: cpp: Add RAII class for saving/restoring the key list mode (authored by ikloecker).
cpp: Add RAII class for saving/restoring the key list mode
May 2 2022, 3:57 PM
ikloecker committed rM99fd565889f3: qt: Add debug helper for Result classes with output stream operator (authored by ikloecker).
qt: Add debug helper for Result classes with output stream operator
May 2 2022, 3:57 PM
bernhard committed rWc0b798e6c041: Add EN version of privacy policy (authored by bernhard).
Add EN version of privacy policy
May 2 2022, 3:48 PM
aheinecke committed rW8053494b5a51: msi: Add installers target to prepare unsigned msi (authored by aheinecke).
msi: Add installers target to prepare unsigned msi
May 2 2022, 12:12 PM
aheinecke raised the priority of T5962: Kleopatra: Crash when quitting Application on Windows from Normal to High.
May 2 2022, 11:01 AM · Restricted Project, kleopatra
aheinecke triaged T5962: Kleopatra: Crash when quitting Application on Windows as Normal priority.
May 2 2022, 10:59 AM · Restricted Project, kleopatra
aheinecke closed T5715: Kleopatra: After importing a secret key and setting ownertrust in the dialog the key is not updated as Resolved.
May 2 2022, 10:24 AM · kleopatra, Restricted Project
werner added a project to T5935: scd: SSH emulation of gpg-agent doesn't work well with sntrup761x25519-sha512@openssh.com: workaround.
May 2 2022, 10:19 AM · workaround, gnupg (gpg23), ssh, Bug Report, scd
gniibe added a comment to T5935: scd: SSH emulation of gpg-agent doesn't work well with sntrup761x25519-sha512@openssh.com.
KexAlgorithms -sntrup761x25519-sha512@openssh.com
May 2 2022, 10:17 AM · workaround, gnupg (gpg23), ssh, Bug Report, scd
ikloecker committed rM54c4fd16d183: qt: Fix connection to readyReadStandardOutput signal (authored by ikloecker).
qt: Fix connection to readyReadStandardOutput signal
May 2 2022, 10:10 AM
ikloecker committed rM9686258bd167: qt: Add test runner for refresh job (authored by ikloecker).
qt: Add test runner for refresh job
May 2 2022, 10:10 AM
ikloecker committed rMf4c356092571: qt: Make RefreshKeysJob result compatible with standard job result (authored by ikloecker).
qt: Make RefreshKeysJob result compatible with standard job result
May 2 2022, 10:10 AM
ikloecker committed rM62e770971786: qt: Minor refactoring (authored by ikloecker).
qt: Minor refactoring
May 2 2022, 10:10 AM
ikloecker committed rMfd97cbaa44b8: qt: Allow refreshing a list of keys (authored by ikloecker).
qt: Allow refreshing a list of keys
May 2 2022, 10:10 AM
ikloecker committed rMf47bc992ae6c: qt: Rename QGpgMERefreshKeysJob to QGpgMERefreshSMIMEKeysJob (authored by ikloecker).
qt: Rename QGpgMERefreshKeysJob to QGpgMERefreshSMIMEKeysJob
May 2 2022, 10:10 AM
ikloecker committed rM359906c8bcde: cpp,tests: Verify that requested keylist mode is used (authored by ikloecker).
cpp,tests: Verify that requested keylist mode is used
May 2 2022, 10:10 AM
gniibe added a comment to rG4fe8859541d0: gpgscm: Fix handling an error for chdir..

Background: I encountered a problem error message shows irrelevant; While it should say 'No such file or directly', it says 'Unknown Packet'.

May 2 2022, 10:01 AM
werner added a comment to rG4fe8859541d0: gpgscm: Fix handling an error for chdir..

FWIW, the original idea with gpgscm was to provide code which does no rely on any gpg stuff so it can be merged back into upstream. I am not sure whether this still makes sense.

May 2 2022, 9:54 AM
gniibe committed rG4fe8859541d0: gpgscm: Fix handling an error for chdir. (authored by gniibe).
gpgscm: Fix handling an error for chdir.
May 2 2022, 7:17 AM
gniibe committed rG792374edb676: tests: Fix plain invocation of "make check". (authored by gniibe).
tests: Fix plain invocation of "make check".
May 2 2022, 7:05 AM
gniibe committed rG06e82e997a56: tests: Add a test for Ed25519 keys for non-protected secret. (authored by gniibe).
tests: Add a test for Ed25519 keys for non-protected secret.
May 2 2022, 3:41 AM
gniibe committed rG602c37ac0678: tests: Add a test for Ed25519 keys for non-protected secret. (authored by gniibe).
tests: Add a test for Ed25519 keys for non-protected secret.
May 2 2022, 3:40 AM
gniibe added a comment to T5931: OpenSSH 8.9, 9.0, and 9.1 can't authenticate with gpg-agent and usb token (Gnuk >= 1.2.16 is required).

Please describe what token is used. For my use cases with rGe8fb8e2b3e66: scd: Don't inhibit SSH authentication for larger data if it can., both of Gnuk (>= 1.2.16) and Yubikey (>= 5) work well.

May 2 2022, 1:53 AM · gnupg24, workaround, Documentation, gnupg (gpg23), ssh, gpgagent

May 1 2022

l10n daemon script <scripty@kde.org> committed rLIBKLEO7bce371453c3: SVN_SILENT made messages (.desktop file) - always resolve ours (authored by l10n daemon script <scripty@kde.org>).
SVN_SILENT made messages (.desktop file) - always resolve ours
May 1 2022, 5:09 AM
l10n daemon script <scripty@kde.org> committed rLIBKLEO628b00f20593: SVN_SILENT made messages (.desktop file) - always resolve ours (authored by l10n daemon script <scripty@kde.org>).
SVN_SILENT made messages (.desktop file) - always resolve ours
May 1 2022, 3:56 AM

Apr 30 2022

Ottileinchen added a comment to Gpg4win or GnuPG VS-Desktop Bug Report.
Apr 30 2022, 8:37 PM · gpg4win
Alexander Lohnau <alexander.lohnau@gmx.de> committed rKLEOPATRA6020c349d539: Remove ServiceTypes from context menu services (authored by Nicolas Fella <nicolas.fella@gmx.de>).
Remove ServiceTypes from context menu services
Apr 30 2022, 7:54 PM
Nicolas Fella <nicolas.fella@gmx.de> committed rKLEOPATRA3a4acbad14dc: Remove ServiceTypes from context menu services (authored by Nicolas Fella <nicolas.fella@gmx.de>).
Remove ServiceTypes from context menu services
Apr 30 2022, 6:59 PM
jukivili committed rC9ba1f0091ff4: tests/basic: add testing for partial bulk processing code paths (authored by jukivili).
tests/basic: add testing for partial bulk processing code paths
Apr 30 2022, 12:37 PM
jukivili committed rCaad3381e9384: sm4: add XTS bulk processing (authored by jukivili).
sm4: add XTS bulk processing
Apr 30 2022, 12:37 PM
jukivili committed rCe239738b4af2: sm4-aesni-avx2: add generic 1 to 16 block bulk processing function (authored by jukivili).
sm4-aesni-avx2: add generic 1 to 16 block bulk processing function
Apr 30 2022, 12:37 PM
jukivili committed rC32b18cdb87b7: camellia-avx2: add bulk processing for XTS mode (authored by jukivili).
camellia-avx2: add bulk processing for XTS mode
Apr 30 2022, 12:37 PM
jukivili committed rC5095d60af42d: Add SM4 x86-64/GFNI/AVX2 implementation (authored by jukivili).
Add SM4 x86-64/GFNI/AVX2 implementation
Apr 30 2022, 12:37 PM
jukivili committed rCe1c5f950838b: sm4: deduplicate bulk processing function selection (authored by jukivili).
sm4: deduplicate bulk processing function selection
Apr 30 2022, 12:37 PM
jukivili committed rC9388279803ff: Move bulk OCB L pointer array setup code to common header (authored by jukivili).
Move bulk OCB L pointer array setup code to common header
Apr 30 2022, 12:37 PM
jukivili committed rC754055ccd043: cipher/bulkhelp: add functions for CTR/CBC/CFB/OCB bulk processing (authored by jukivili).
cipher/bulkhelp: add functions for CTR/CBC/CFB/OCB bulk processing
Apr 30 2022, 12:37 PM
jukivili committed rCbacdc1de3f4f: camellia-avx2: add partial parallel block processing (authored by jukivili).
camellia-avx2: add partial parallel block processing
Apr 30 2022, 12:37 PM
jukivili committed rC3410d40996d8: Add detection for HW feature "intel-gfni" (authored by jukivili).
Add detection for HW feature "intel-gfni"
Apr 30 2022, 12:37 PM
jukivili committed rC4e6896eb9fce: Add GFNI/AVX2 implementation of Camellia (authored by jukivili).
Add GFNI/AVX2 implementation of Camellia
Apr 30 2022, 12:37 PM
gniibe added a comment to T5120: Incompatible Ed25519 secret key (no-encryption).

it would be useful to add a test

Apr 30 2022, 4:14 AM · gnupg (gpg22), Bug Report

Apr 29 2022

dkg added a comment to T5931: OpenSSH 8.9, 9.0, and 9.1 can't authenticate with gpg-agent and usb token (Gnuk >= 1.2.16 is required).

this looks similar to https://dev.gnupg.org/T5935 and https://bugs.debian.org/1008573

Apr 29 2022, 6:24 PM · gnupg24, workaround, Documentation, gnupg (gpg23), ssh, gpgagent
aheinecke committed rWc1f81d3d8930: Post relase version bump (authored by aheinecke).
Post relase version bump
Apr 29 2022, 3:17 PM
aheinecke committed rW98c550d0b1d4: Update NEWS and READMEs for todays release (authored by aheinecke).
Update NEWS and READMEs for todays release
Apr 29 2022, 3:17 PM
werner committed rW499a8e7ad93a: appimage: Minor fix (authored by werner).
appimage: Minor fix
Apr 29 2022, 2:58 PM
aheinecke triaged T5961: Kleopatra: S/MIME Details cannot be copied multiline on Windows as Normal priority.
Apr 29 2022, 2:23 PM · kleopatra, Restricted Project
aheinecke triaged T5960: Kleopatra: Encoding problems with GnuPG output on Windows as Normal priority.
Apr 29 2022, 2:19 PM · Restricted Project, kleopatra
aheinecke triaged T5959: Kleopatra: Show key source in details widget if it is not unkown as Wishlist priority.
Apr 29 2022, 2:12 PM · Restricted Project, kleopatra
aheinecke triaged T5958: Kleopatra: Change passphrase is enabled even when it is impossible as Normal priority.
Apr 29 2022, 2:09 PM · Restricted Project, kleopatra
aheinecke triaged T5957: Kleopatra: Usability improvement for Notepad as Wishlist priority.
Apr 29 2022, 1:08 PM · kleopatra, Restricted Project
aheinecke triaged T5956: Kleopatra: Disable backup secret key for smartcards as Normal priority.
Apr 29 2022, 1:04 PM · kleopatra, Restricted Project