Page MenuHome GnuPG
Feed All Stories

Jul 10 2022

vitusb created T6071: Duplicated output (repeated nearly once) of the GnuPG console-output to "stdout" on Windows-Console if "Legacy-Console" with any TrueType Fonts is activated under Windows.
Jul 10 2022, 4:47 PM · Windows, gnupg, Bug Report
ikloecker added a comment to T6047: Dirmngr - LDAP Schema V2 not used when Base DN is specified.

Due to vacation the review may take some time.

Jul 10 2022, 12:00 PM · LDAP, dirmngr, gnupg (gpg23), Feature Request
ikloecker added a comment to T6068: clarify what a line is in --passphrase-fd and --passphrase-file.

I suggest to submit a patch with the changes you'd like to see. Please read
https://dev.gnupg.org/source/gnupg/browse/master/doc/HACKING
for information how to contribute to gnupg.

Jul 10 2022, 11:58 AM · Documentation

Jul 9 2022

jinn added a comment to T6070: Yubikey 5C 'not available: card error' regression.

I can confirm this issue with a 5C Nano returning the error, but a 4C working successfully. Downgrading to 2.2.35 does resolve the issue.

Jul 9 2022, 10:13 AM · gnupg (gpg23), scd, Bug Report
l10n daemon script <scripty@kde.org> committed rKLEOPATRA068f9448f751: SVN_SILENT made messages (.desktop file) - always resolve ours (authored by l10n daemon script <scripty@kde.org>).
SVN_SILENT made messages (.desktop file) - always resolve ours
Jul 9 2022, 3:48 AM
OJFord created T6070: Yubikey 5C 'not available: card error' regression.
Jul 9 2022, 2:18 AM · gnupg (gpg23), scd, Bug Report

Jul 8 2022

ikloecker added a comment to T6067: dirmngr 2.2 does not ask keyservers for fingerprints.

It will hopefully be fixed in 2.2.37.

Jul 8 2022, 10:36 PM · gnupg (gpg22), Restricted Project, dirmngr
vitusb added a comment to T6067: dirmngr 2.2 does not ask keyservers for fingerprints.

Hello,
thanx for fixing this issue ...

Jul 8 2022, 8:30 PM · gnupg (gpg22), Restricted Project, dirmngr
joeyberkovitz added a comment to T6047: Dirmngr - LDAP Schema V2 not used when Base DN is specified.

Any chance someone is able to review the posted patch?

Jul 8 2022, 4:54 PM · LDAP, dirmngr, gnupg (gpg23), Feature Request
calestyo added a comment to T6068: clarify what a line is in --passphrase-fd and --passphrase-file.

I wouldn't call that particular thing technical specification, because it really has potentially a strong user visible impact (i.e. expected passphrase works or not - both cases, whether any other newline characters are included or not, as well as whether it would simply ignore any characters beyond a maximum length).

Jul 8 2022, 1:57 PM · Documentation
cklassen created T6069: Kleopatra crashes when creating UIServer socket.
Jul 8 2022, 12:36 PM · Info Needed, kleopatra, Windows, Bug Report
cklassen committed rW98547ee45b30: links lead now to html files (authored by cklassen).
links lead now to html files
Jul 8 2022, 12:01 PM
gniibe committed rT5d3d9d9904d2: Allow server's use of SHA256 hash with secpr384 key. (authored by gniibe).
Allow server's use of SHA256 hash with secpr384 key.
Jul 8 2022, 10:49 AM
gniibe added a project to T6059: ntbtls: use of shorter hash for ECC: Restricted Project.

Pushed the change.

Jul 8 2022, 9:53 AM · Feature Request, Restricted Project, ntbtls
ikloecker added a comment to T6068: clarify what a line is in --passphrase-fd and --passphrase-file.

I'm not sure whether the manual page should be blown up to a full technical specification.

Jul 8 2022, 9:37 AM · Documentation
ikloecker added a comment to T6061: pinentry-qt on wayland does not fallback to pinentry-curses.

It looks like having it set will stop fallback from working entirely? Would you say that this cannot be fixed if WAYLAND_DISPLAY is set like I do above?

Jul 8 2022, 9:19 AM · pinentry, Bug Report
quite added a comment to T6061: pinentry-qt on wayland does not fallback to pinentry-curses.

It looks like having it set will stop fallback from working entirely? Would you say that this cannot be fixed if WAYLAND_DISPLAY is set like I do above?

Jul 8 2022, 8:14 AM · pinentry, Bug Report
calestyo created T6068: clarify what a line is in --passphrase-fd and --passphrase-file.
Jul 8 2022, 2:51 AM · Documentation
gniibe added a comment to T6059: ntbtls: use of shorter hash for ECC.

There is a description: https://datatracker.ietf.org/doc/html/rfc8422#section-5.10

Jul 8 2022, 2:30 AM · Feature Request, Restricted Project, ntbtls

Jul 7 2022

ikloecker committed rLIBKLEO9a578ffc0b20: Unify order and style of includes (authored by ikloecker).
Unify order and style of includes
Jul 7 2022, 9:39 PM
ikloecker committed rLIBKLEO8fbcf6c949e8: Add missing camel case header (authored by ikloecker).
Add missing camel case header
Jul 7 2022, 9:39 PM
ikloecker committed rLIBKLEO3d23ab629a2a: Separate include of corresponding header from other includes (authored by ikloecker).
Separate include of corresponding header from other includes
Jul 7 2022, 9:39 PM
jukivili updated the task description for T4460: libgcrypt performance TODOs.
Jul 7 2022, 7:03 PM · libgcrypt
ikloecker committed rKLEOPATRAf840a014d265: Add helpers for checking properties of keys (authored by ikloecker).
Add helpers for checking properties of keys
Jul 7 2022, 6:33 PM
ikloecker committed rKLEOPATRAd09dad5872b8: Disable Show Issuer Certificate button for root certificates (authored by ikloecker).
Disable Show Issuer Certificate button for root certificates
Jul 7 2022, 5:37 PM
ikloecker committed rKLEOPATRAb93410ad0b05: Inform the user if the issuer certificate wasn't found (authored by ikloecker).
Inform the user if the issuer certificate wasn't found
Jul 7 2022, 5:37 PM
ikloecker committed rKLEOPATRAb4266fd62b73: Rework update of visibility and availability of UI elements (authored by ikloecker).
Rework update of visibility and availability of UI elements
Jul 7 2022, 5:37 PM
ikloecker committed rKLEOPATRAbc7c8c5840f6: Avoid duplicate entries in the S/MIME address list (authored by ikloecker).
Avoid duplicate entries in the S/MIME address list
Jul 7 2022, 5:37 PM
ikloecker committed rKLEOPATRAc5df2025e356: Use QGridLayout methods without row span and column span (authored by ikloecker).
Use QGridLayout methods without row span and column span
Jul 7 2022, 5:37 PM
ikloecker committed rKLEOPATRA11937d7232aa: Rename a few variables (authored by ikloecker).
Rename a few variables
Jul 7 2022, 5:37 PM
ikloecker committed rKLEOPATRA6d192722016a: Simplify hiding of user ID related UI elements for S/MIME certificates (authored by ikloecker).
Simplify hiding of user ID related UI elements for S/MIME certificates
Jul 7 2022, 5:37 PM
ikloecker committed rKLEOPATRA4845a167962f: Show the S/MIME attributes together with the common key properties (authored by ikloecker).
Show the S/MIME attributes together with the common key properties
Jul 7 2022, 5:37 PM
ikloecker changed the status of T6064: Kleopatra: Allow queries to list all certificates on the server from Open to Testing.

Lookups can now be started after entering a single character. Wildcards like * do not seem to be supported by OpenPGP key servers.

Jul 7 2022, 1:50 PM · Restricted Project, kleopatra
ikloecker committed rKLEOPATRA82bc75082fcc: Allow keyserver queries with a single character (authored by ikloecker).
Allow keyserver queries with a single character
Jul 7 2022, 1:43 PM
aheinecke committed rW03e1e8853a79: Update READMEs (authored by aheinecke).
Update READMEs
Jul 7 2022, 1:35 PM
aheinecke committed rW3bc6a440e9ba: Post release version bump (authored by aheinecke).
Post release version bump
Jul 7 2022, 1:35 PM
aheinecke committed rW84c36c8ea72f: Update GnuPG and prepare NEWS for release (authored by aheinecke).
Update GnuPG and prepare NEWS for release
Jul 7 2022, 1:35 PM
cklassen committed rWcb99f7c3c459: Documentation: HTML-links now refer to archive.org (authored by cklassen).
Documentation: HTML-links now refer to archive.org
Jul 7 2022, 1:35 PM
ikloecker reassigned T6067: dirmngr 2.2 does not ask keyservers for fingerprints from ikloecker to werner.
Jul 7 2022, 1:35 PM · gnupg (gpg22), Restricted Project, dirmngr
ikloecker added a comment to T6042: Cannot search on keyserver from kleopatra 3.1.22 inside an AppImage of GnuPG Desktop or GnuPG VS Desktop.

Thanks for the analysis!

Jul 7 2022, 1:32 PM · AppImage, gpg4win, Bug Report
ikloecker added a subtask for T6042: Cannot search on keyserver from kleopatra 3.1.22 inside an AppImage of GnuPG Desktop or GnuPG VS Desktop: T6067: dirmngr 2.2 does not ask keyservers for fingerprints.
Jul 7 2022, 1:31 PM · AppImage, gpg4win, Bug Report
ikloecker added a parent task for T6067: dirmngr 2.2 does not ask keyservers for fingerprints: T6042: Cannot search on keyserver from kleopatra 3.1.22 inside an AppImage of GnuPG Desktop or GnuPG VS Desktop.
Jul 7 2022, 1:31 PM · gnupg (gpg22), Restricted Project, dirmngr
ikloecker created T6067: dirmngr 2.2 does not ask keyservers for fingerprints.
Jul 7 2022, 1:30 PM · gnupg (gpg22), Restricted Project, dirmngr
vitusb added a comment to T6042: Cannot search on keyserver from kleopatra 3.1.22 inside an AppImage of GnuPG Desktop or GnuPG VS Desktop.

Hello, i did some debugging with my local sks keyserver version 1.1.6+ on Debian:

Jul 7 2022, 1:02 PM · AppImage, gpg4win, Bug Report
ikloecker renamed T6062: Kleopatra: Kleopatra fails with error if signed data is not found from Kleoaptra: On Windows Kleopatra fails with IO error if signed data is not found to Kleopatra: Kleopatra fails with error if signed data is not found.
Jul 7 2022, 12:03 PM · Restricted Project, kleopatra
ikloecker committed rKLEOPATRAa214bd6ffb2b: Properly terminate decrypt/verify operation if user cancels it (authored by ikloecker).
Properly terminate decrypt/verify operation if user cancels it
Jul 7 2022, 12:01 PM
ikloecker added a comment to T6062: Kleopatra: Kleopatra fails with error if signed data is not found.

I have also improved the workflow when verifying detached signatures without corresponding signed file from Kleopatras UI in "non-automatic" mode, i.e. if "Automatically start operation based on input detection for decrypt/verify." is disabled in the settings.

Jul 7 2022, 11:53 AM · Restricted Project, kleopatra
ikloecker committed rKLEOPATRA18bede6f4565: Disable Decrypt/Verify button if required files do not exist (authored by ikloecker).
Disable Decrypt/Verify button if required files do not exist
Jul 7 2022, 11:50 AM
ikloecker committed rKLEOPATRA1161f2addf73: Simplify code (authored by ikloecker).
Simplify code
Jul 7 2022, 11:50 AM
jukivili updated the task description for T4460: libgcrypt performance TODOs.
Jul 7 2022, 10:36 AM · libgcrypt
ikloecker changed the status of T6062: Kleopatra: Kleopatra fails with error if signed data is not found from Open to Testing.

Fixed. This was actually a regression introduced many years ago.

Jul 7 2022, 10:28 AM · Restricted Project, kleopatra
ikloecker committed rKLEOPATRAb427bfd5bd0f: Fix check if signed file corresponding to detached signature exists (authored by ikloecker).
Fix check if signed file corresponding to detached signature exists
Jul 7 2022, 10:24 AM
ikloecker committed rKLEOPATRAa3abf3ab1adf: Use correct folder when asking for file to verify (authored by ikloecker).
Use correct folder when asking for file to verify
Jul 7 2022, 10:24 AM
ikloecker added a comment to T6062: Kleopatra: Kleopatra fails with error if signed data is not found.

Actually, I get a very similar error message on Linux, if I run kleopatra --verify <detached signature file>

An error occurred: Kleopatra: Could not open file ".../detached-sig-with-different-name/verify-me-signatur.txt" for reading: No such file or directory (218136657)

Jul 7 2022, 9:55 AM · Restricted Project, kleopatra
ikloecker claimed T6062: Kleopatra: Kleopatra fails with error if signed data is not found.
Jul 7 2022, 9:46 AM · Restricted Project, kleopatra
ikloecker changed the status of T6056: Kleopatra: Improve handling of embedded filename from Open to Testing.

Ready for testing.

Jul 7 2022, 9:40 AM · Restricted Project, Restricted Project, kleopatra
gniibe closed T5953: batch signature fails with imported ed25519 signing key as of 2.2.34 as Resolved.
Jul 7 2022, 6:53 AM · gnupg (gpg22), Bug Report
gniibe closed T5120: Incompatible Ed25519 secret key (no-encryption), a subtask of T5114: GnuPG fails to import back generated and exported EdDSA secret key., as Resolved.
Jul 7 2022, 6:51 AM · gnupg, Restricted Project, gpgagent, Bug Report
gniibe closed T5120: Incompatible Ed25519 secret key (no-encryption) as Resolved.
Jul 7 2022, 6:51 AM · gnupg (gpg22), Bug Report
gniibe removed a project from T5953: batch signature fails with imported ed25519 signing key as of 2.2.34: Restricted Project.

Fixed in 2.2.36.

Jul 7 2022, 6:51 AM · gnupg (gpg22), Bug Report
gniibe closed T5979: SCardListReaders: Conditional jump or move depends on uninitialised value(s) as Resolved.
Jul 7 2022, 6:50 AM · backport, gnupg, scd, patch
gniibe closed T6033: Regression in GnuPG 2.2.34 with some ECC keys as Resolved.
Jul 7 2022, 6:50 AM · Bug Report, gnupg (gpg22)
gniibe removed a project from T6033: Regression in GnuPG 2.2.34 with some ECC keys: Restricted Project.

Fixed in 2.2.36.

Jul 7 2022, 6:50 AM · Bug Report, gnupg (gpg22)
gniibe committed rCb2a64ed4f34a: cipher: Fix gcry_pk_hash_verify for explicit hash. (authored by gniibe).
cipher: Fix gcry_pk_hash_verify for explicit hash.
Jul 7 2022, 5:16 AM
gniibe claimed T6066: gcry_pk_hash_verify() does not work with explicitly specified hash algorithm.

Thank you for your report. That's my badness (forgetting to implement in pk_verify_md function).

Jul 7 2022, 5:07 AM · backport, libgcrypt, Bug Report
gniibe committed rC37b812f5e2a3: tests/t-kdf: Test KDF FIPS indicator (authored by Clemens Lang via Gcrypt-devel <gcrypt-devel@lists.gnupg.org>).
tests/t-kdf: Test KDF FIPS indicator
Jul 7 2022, 4:47 AM
gniibe committed rC45a139b166a3: tests: Test gcry_pk_hash_sign w/explicit hash algo (authored by Clemens Lang via Gcrypt-devel <gcrypt-devel@lists.gnupg.org>).
tests: Test gcry_pk_hash_sign w/explicit hash algo
Jul 7 2022, 4:47 AM
calestyo added a comment to T6058: clarify need of --batch and/or --pinentry-mode looback with --passphrase-* options.

It's true for key generation, but not for all cases.

Jul 7 2022, 2:35 AM · gnupg, Documentation

Jul 6 2022

vitusb added a comment to T6042: Cannot search on keyserver from kleopatra 3.1.22 inside an AppImage of GnuPG Desktop or GnuPG VS Desktop.

Just to clarify: Does this only happen with self-built AppImages? Or does this also happen with AppImages provided by gnupg.com/gnupg.org?

Jul 6 2022, 11:26 PM · AppImage, gpg4win, Bug Report
ikloecker added a comment to T6042: Cannot search on keyserver from kleopatra 3.1.22 inside an AppImage of GnuPG Desktop or GnuPG VS Desktop.

Just to clarify: Does this only happen with self-built AppImages? Or does this also happen with AppImages provided by gnupg.com/gnupg.org? (I haven't found AppImages to download on gnupg.org.)

Jul 6 2022, 10:44 PM · AppImage, gpg4win, Bug Report
vitusb added a comment to T6042: Cannot search on keyserver from kleopatra 3.1.22 inside an AppImage of GnuPG Desktop or GnuPG VS Desktop.

Hello ...

I may report, that I've tested this behaviour with "kleopatra" with serveral keyservers.
Jul 6 2022, 10:03 PM · AppImage, gpg4win, Bug Report
werner committed rDaf411baa9c20: swdb: GnuPG 2.2.36 (authored by werner).
swdb: GnuPG 2.2.36
Jul 6 2022, 8:34 PM
werner added a comment to T5949: Release GnuPG 2.2.36.

Please note that due to vacation issues the signatures use the gnupg.com Brainpool based release key and some Linux distributions come with Brainpool removed from GnuPG.

Jul 6 2022, 8:33 PM · CVE, gnupg (gpg22), Release Info
werner updated the task description for T5949: Release GnuPG 2.2.36.
Jul 6 2022, 8:30 PM · CVE, gnupg (gpg22), Release Info
werner committed rG3777bc652879: Post release updates (authored by werner).
Post release updates
Jul 6 2022, 8:19 PM
werner committed rG491645b50ec9: Release 2.3.36 (authored by werner).
Release 2.3.36
Jul 6 2022, 8:19 PM
jukivili updated the task description for T4460: libgcrypt performance TODOs.
Jul 6 2022, 8:19 PM · libgcrypt
ikloecker committed rKLEOPATRAc6d235f2f34a: Store file name of result file in DecryptVerifyResult (authored by ikloecker).
Store file name of result file in DecryptVerifyResult
Jul 6 2022, 5:38 PM
ikloecker committed rKLEOPATRA5a2213de79be: On request, save decrypted file with embedded file name (authored by ikloecker).
On request, save decrypted file with embedded file name
Jul 6 2022, 5:38 PM
ikloecker committed rKLEOPATRAc5a5af14e9d1: Allow retrieving the file name of an Output (authored by ikloecker).
Allow retrieving the file name of an Output
Jul 6 2022, 5:38 PM
neverpanic added a comment to T6066: gcry_pk_hash_verify() does not work with explicitly specified hash algorithm.

For the record, the valgrind trace for the crash is:

Jul 6 2022, 5:00 PM · backport, libgcrypt, Bug Report
ikloecker added a comment to T6042: Cannot search on keyserver from kleopatra 3.1.22 inside an AppImage of GnuPG Desktop or GnuPG VS Desktop.

I guess the problem is that the fix for T5741: dirmngr does not ask keyservers for fingerprints wasn't backported to 2.2.

Jul 6 2022, 4:34 PM · AppImage, gpg4win, Bug Report
neverpanic created T6066: gcry_pk_hash_verify() does not work with explicitly specified hash algorithm.
Jul 6 2022, 4:26 PM · backport, libgcrypt, Bug Report
aheinecke added a comment to T6042: Cannot search on keyserver from kleopatra 3.1.22 inside an AppImage of GnuPG Desktop or GnuPG VS Desktop.

But this is with the default keyserver keys.ubuntu.com it shows the fingerprint if I do a search --with-colons with 2.3 and the same keyserver (addressed via IP) on the same machine returns results on Windows and says No Fingerprints in the app image. This is what I found so strange here.

Jul 6 2022, 3:30 PM · AppImage, gpg4win, Bug Report
ikloecker added a comment to T6064: Kleopatra: Allow queries to list all certificates on the server.

Many keyservers return a maximum number of results. I have seen results being capped at 100 keys.

Jul 6 2022, 2:56 PM · Restricted Project, kleopatra
ikloecker triaged T6061: pinentry-qt on wayland does not fallback to pinentry-curses as Low priority.

pinentry does the following to check if it's running in a GUI session:

// check a few environment variables that are usually set on X11 or Wayland sessions
const bool hasWaylandDisplay = qEnvironmentVariableIsSet("WAYLAND_DISPLAY");
const bool isWaylandSessionType = qgetenv("XDG_SESSION_TYPE") == "wayland";
const bool hasX11Display = pinentry_have_display(argc, argv);
const bool isX11SessionType = qgetenv("XDG_SESSION_TYPE") == "x11";
const bool isGUISession = hasWaylandDisplay || isWaylandSessionType || hasX11Display || isX11SessionType;

i.e. it checks if a few environment variables are set or have a specific value.

Jul 6 2022, 2:45 PM · pinentry, Bug Report
ikloecker merged T6042: Cannot search on keyserver from kleopatra 3.1.22 inside an AppImage of GnuPG Desktop or GnuPG VS Desktop into T5725: Kleopatra: Certificate lookup shows only one result even if there are 100s matches.
Jul 6 2022, 2:28 PM · Restricted Project, kleopatra, Bug Report
ikloecker merged task T6042: Cannot search on keyserver from kleopatra 3.1.22 inside an AppImage of GnuPG Desktop or GnuPG VS Desktop into T5725: Kleopatra: Certificate lookup shows only one result even if there are 100s matches.
Jul 6 2022, 2:28 PM · AppImage, gpg4win, Bug Report
ikloecker added a comment to T6042: Cannot search on keyserver from kleopatra 3.1.22 inside an AppImage of GnuPG Desktop or GnuPG VS Desktop.

Looks like a duplicate of T5725: Kleopatra: Certificate lookup shows only one result even if there are 100s matches. Solution: Use a key server that returns fingerprints.

Jul 6 2022, 2:28 PM · AppImage, gpg4win, Bug Report
aheinecke triaged T6008: Absturz von GPG4win in Outlook as Low priority.

Hier scheint es sich um ein individuelles Problem zu handeln. Ich bin irritiert das die Fehlermeldungen von "gpgsm" also unserem S/MIME tool. Tritt der Fehler auch so auf wenn in den Einstellungen von GpgOL der S/MIME Support deaktiviert ist?

Jul 6 2022, 2:07 PM · Bug Report, gpg4win
aheinecke triaged T6016: Verify Checksums seems to need file to be named correctly as Low priority.

I agree, we should look for additional names when verifying checksums.

Jul 6 2022, 1:39 PM · kleopatra, gpg4win
aheinecke reassigned T6042: Cannot search on keyserver from kleopatra 3.1.22 inside an AppImage of GnuPG Desktop or GnuPG VS Desktop from werner to ikloecker.

I can reproduce the problem. Under Windows it works, with my development setup with GnuPG 2.3 it works, but in the appimage I get the error that all keys were skipped.

Jul 6 2022, 1:09 PM · AppImage, gpg4win, Bug Report
ikloecker committed rKLEOPATRA57c73f6acd19: Use automatic memory management for temporary working directory (authored by ikloecker).
Use automatic memory management for temporary working directory
Jul 6 2022, 12:18 PM
ikloecker committed rKLEOPATRAdbc0e886d82a: Add missing include (authored by ikloecker).
Add missing include
Jul 6 2022, 12:18 PM
ikloecker committed rKLEOPATRA351c4730744e: Modernize: Inherit c'tors of base class with using-declaration (authored by ikloecker).
Modernize: Inherit c'tors of base class with using-declaration
Jul 6 2022, 12:18 PM
jukivili committed rC66ef99bb1804: sm4: fix wrong macro used for GFNI/AVX2 code-path (authored by jukivili).
sm4: fix wrong macro used for GFNI/AVX2 code-path
Jul 6 2022, 12:17 PM
jukivili committed rCfd3ed68754eb: tests/basic: enable IV checks for CBC/CFB/CTR bulk tests (authored by jukivili).
tests/basic: enable IV checks for CBC/CFB/CTR bulk tests
Jul 6 2022, 12:17 PM
jukivili committed rC935e211af145: sm4: fix use of GFNI/AVX2 accelerated key expansion (authored by jukivili).
sm4: fix use of GFNI/AVX2 accelerated key expansion
Jul 6 2022, 12:17 PM
jukivili committed rC99b7375bd616: camellia-gfni-avx512: remove copy-paste / leftover extra instructions (authored by jukivili).
camellia-gfni-avx512: remove copy-paste / leftover extra instructions
Jul 6 2022, 12:17 PM
jukivili committed rCac14d9ee7a09: camellia-gfni-avx512: add missing register clearing on function exits (authored by jukivili).
camellia-gfni-avx512: add missing register clearing on function exits
Jul 6 2022, 12:17 PM