Page MenuHome GnuPG
Feed All Stories

Apr 20 2023

mlaurent committed rLIBKLEO02bf926c7378: Merge remote-tracking branch 'origin/master' into kf6 (authored by mlaurent).
Merge remote-tracking branch 'origin/master' into kf6
Apr 20 2023, 10:24 PM
jukivili added a comment to T6451: libgcrypt | gcry_cipher_setkey: 3DES-CBC key returns GPG_ERR_WEAK even with GCRYCTL_SET_ALLOW_WEAK_KEY.

About error code. You need to use gcry_err_code(error_code) to get the GPG_ERR_WEAK_KEY value.

Apr 20 2023, 6:22 PM · Debian, libgcrypt, Bug Report
werner added a comment to rD81a281183ff9: Eliminare denoting.

I wonder why github did not automatically closed this pull request - after all exact that patch was commited.

Apr 20 2023, 4:43 PM
werner updated the task description for T6463: Release GPGME 1.20.0.
Apr 20 2023, 4:40 PM · gpgme, Release Info
olf added a comment to rD81a281183ff9: Eliminare denoting.

Commits & closes https://github.com/gpg/gnupg-doc/pull/2

Apr 20 2023, 3:29 PM
werner committed rD7fa2954c8434: swdb: gpgme 1.20.0 (authored by werner).
swdb: gpgme 1.20.0
Apr 20 2023, 2:19 PM
werner committed rW67bad41b0077: Update to gpgme 1.20.0 (authored by werner).
Update to gpgme 1.20.0
Apr 20 2023, 2:13 PM
werner committed rMd99156ff081c: Post release updates (authored by werner).
Post release updates
Apr 20 2023, 2:03 PM
werner committed rM451ed47434c5: Release 1.20.0 (authored by werner).
Release 1.20.0
Apr 20 2023, 2:03 PM
werner committed rM7351ef32ce7c: core: Support the new macOS Homebrew location. (authored by werner).
core: Support the new macOS Homebrew location.
Apr 20 2023, 2:03 PM
werner updated the task description for T6341: Release GPGME 1.19.0.
Apr 20 2023, 1:42 PM · gpgme, Release Info
werner triaged T6463: Release GPGME 1.20.0 as Normal priority.
Apr 20 2023, 1:42 PM · gpgme, Release Info
werner edited projects for T6303: Release GnuPG 2.4.0, added: gnupg; removed gnupg24, gnupg (gpg23).
Apr 20 2023, 1:37 PM · gnupg, Release Info
werner committed rGe60544520bc8: scd,p15: Enforce a min. PIN length for certain cards. (authored by werner).
scd,p15: Enforce a min. PIN length for certain cards.
Apr 20 2023, 12:42 PM
werner committed rGaf3724d38315: scd,p15: Enforce a min. PIN length for certain cards. (authored by werner).
scd,p15: Enforce a min. PIN length for certain cards.
Apr 20 2023, 12:42 PM
werner moved T6455: Bug in regexp library may lead to out-of-bounds read from QA to gnupg-2.2.42 on the gnupg22 board.
Apr 20 2023, 12:30 PM · gnupg22 (gnupg-2.2.42), gnupg24 (gnupg-2.4.1), Bug Report
werner moved T6455: Bug in regexp library may lead to out-of-bounds read from QA to gnupg-2.4.1 on the gnupg24 board.
Apr 20 2023, 12:29 PM · gnupg22 (gnupg-2.2.42), gnupg24 (gnupg-2.4.1), Bug Report
werner moved T6455: Bug in regexp library may lead to out-of-bounds read from Backlog to QA on the gnupg24 board.
Apr 20 2023, 12:29 PM · gnupg22 (gnupg-2.2.42), gnupg24 (gnupg-2.4.1), Bug Report
werner closed T6455: Bug in regexp library may lead to out-of-bounds read as Resolved.

Okay, that was easy to check.

Apr 20 2023, 12:29 PM · gnupg22 (gnupg-2.2.42), gnupg24 (gnupg-2.4.1), Bug Report
werner committed rG3ad4b339b886: common: Fix minor bug in the jimregexp code. (authored by werner).
common: Fix minor bug in the jimregexp code.
Apr 20 2023, 12:28 PM
werner committed rGa82e6f310a03: common: Fix minor bug in the jimregexp code. (authored by werner).
common: Fix minor bug in the jimregexp code.
Apr 20 2023, 12:28 PM
ikloecker committed rKLEOPATRA2c8ab3cfaed0: Fix/unify conversion of GpgME::Error description to Unicode (authored by ikloecker).
Fix/unify conversion of GpgME::Error description to Unicode
Apr 20 2023, 12:19 PM
ikloecker committed rKLEOPATRA01ef7ba08287: Make display of expiration notifications configurable (authored by ikloecker).
Make display of expiration notifications configurable
Apr 20 2023, 12:19 PM
ikloecker committed rKLEOPATRAcd2009b999b0: Add setting to disable the expiration notifications (authored by ikloecker).
Add setting to disable the expiration notifications
Apr 20 2023, 12:19 PM
ikloecker committed rKLEOPATRA323aacabe728: Put tags and tooltips settings on new General tab (authored by ikloecker).
Put tags and tooltips settings on new General tab
Apr 20 2023, 12:19 PM
ikloecker committed rKLEOPATRA38c0ab526717: Create UI of Appearance config in code (authored by ikloecker).
Create UI of Appearance config in code
Apr 20 2023, 12:19 PM
werner claimed T6455: Bug in regexp library may lead to out-of-bounds read.
Apr 20 2023, 12:17 PM · gnupg22 (gnupg-2.2.42), gnupg24 (gnupg-2.4.1), Bug Report
werner changed the status of T6462: gpg --edit-card does not display openpgp info on connected card from Open to Testing.

Not easy to fix because gpg --card-edit/-status has some support form other cards. Eventually these commands will be replaced by gpg-card. In the meantime we can use this hack:

Apr 20 2023, 12:14 PM · gnupg24 (gnupg-2.4.1), scd, Restricted Project
werner committed rGe1663c045049: gpg: New command "openpgp" for --card-edit. (authored by werner).
gpg: New command "openpgp" for --card-edit.
Apr 20 2023, 12:12 PM
ebo created T6462: gpg --edit-card does not display openpgp info on connected card .
Apr 20 2023, 10:55 AM · gnupg24 (gnupg-2.4.1), scd, Restricted Project
ikloecker committed rLIBKLEOd671ac349072: Bump library version (authored by ikloecker).
Bump library version
Apr 20 2023, 10:45 AM
ikloecker committed rLIBKLEO026797ff38b4: Add helper for converting description of GpgME::Error to Unicode (authored by ikloecker).
Add helper for converting description of GpgME::Error to Unicode
Apr 20 2023, 10:45 AM
werner triaged T6459: KOrganizer: Invitations are not signed with GPG although signing is enabled by default as Normal priority.
Apr 20 2023, 9:03 AM · Restricted Project, KDE
werner triaged T6460: KOrganizer: unable to display events with the same UID in multiple calendars as Normal priority.
Apr 20 2023, 9:02 AM · Restricted Project, KDE
werner triaged T6461: KOrganizer: Remote ICS file doesn't populate calendar as Normal priority.
Apr 20 2023, 9:02 AM · Restricted Project, KDE
werner triaged T6457: delete-secret-key does not delete all secret keys, when primary secret key is stripped in keyring as Normal priority.
Apr 20 2023, 9:01 AM · gnupg24, Feature Request
l10n daemon script <scripty@kde.org> committed rLIBKLEO061f605f6ce6: GIT_SILENT Sync po/docbooks with svn (authored by l10n daemon script <scripty@kde.org>).
GIT_SILENT Sync po/docbooks with svn
Apr 20 2023, 4:10 AM
l10n daemon script <scripty@kde.org> committed rKLEOPATRA8addf59ca7d5: GIT_SILENT Sync po/docbooks with svn (authored by l10n daemon script <scripty@kde.org>).
GIT_SILENT Sync po/docbooks with svn
Apr 20 2023, 4:09 AM

Apr 19 2023

werner committed rW742f50c7b2e2: More g4wihelp fixes for newer Unicode mingw API. (authored by werner).
More g4wihelp fixes for newer Unicode mingw API.
Apr 19 2023, 6:00 PM
aheinecke added a comment to T6452: Kleopatra: Configurable default for certification expiry.

This can be a fixed validity period of the certifications. So like 3 years. Even if the user has set the certificate to be valid for only one year the user could then extend it in my opinion to the full 3 years before the certification loses the validity.

Apr 19 2023, 4:24 PM · Restricted Project, kleopatra
ebo closed T6380: Kleopatra: SignEncryptWidget::isDeVsAndValid does not skip revoked UIds as Resolved.

works, a key with a revoked uid is accepted as VS-NfD compliant, VS-Desktop-3.1.27.0-beta44

Apr 19 2023, 3:21 PM · gpgol, Restricted Project, kleopatra
dvratil claimed T6459: KOrganizer: Invitations are not signed with GPG although signing is enabled by default.
Apr 19 2023, 2:49 PM · Restricted Project, KDE
dvratil created T6461: KOrganizer: Remote ICS file doesn't populate calendar.
Apr 19 2023, 12:57 PM · Restricted Project, KDE
dvratil created T6460: KOrganizer: unable to display events with the same UID in multiple calendars.
Apr 19 2023, 12:56 PM · Restricted Project, KDE
dvratil created T6459: KOrganizer: Invitations are not signed with GPG although signing is enabled by default.
Apr 19 2023, 12:55 PM · Restricted Project, KDE
ebo added a comment to T6420: Kleopatra: improve layout of and text in smartcard management view.

The generate keys etc. actions in the keys part of the view are debatable. At least for VSD I think they should not be shown or greyed out for not VS-NfD compliant cards -> see T6786
(I think there were even algorithms offered for generation on card which would result in an error, but I won't investigate further at the moment.)

Apr 19 2023, 12:34 PM · vsd33 (vsd-3.3.0), Feature Request, Restricted Project, kleopatra
ebo added a comment to T6116: Draft: Kleopatra: Card personalization workflow.

I already commented in T5836 which should be discussed here, instead:

Apr 19 2023, 12:17 PM · gpd5x, kleopatra
ebo closed T5836: Kleopatra: Optionally, delete private key locally after moving a key to a smartcard as Resolved.

The options for key backup+delete, delete and keep all work now, tested with VS-Desktop-3.1.27.0-beta44

Apr 19 2023, 11:59 AM · Bug Report, kleopatra, Restricted Project
aheinecke committed rW1881c5191017: Commit missing exdll.c from exdll.h (authored by aheinecke).
Commit missing exdll.c from exdll.h
Apr 19 2023, 11:28 AM
werner committed rG80d4ae121565: Use keyboxd on a fresh install also on Windows. (authored by werner).
Use keyboxd on a fresh install also on Windows.
Apr 19 2023, 11:06 AM
aheinecke committed rW1a604edc5514: Update g4wihelp for newer Unicode mingw api (authored by aheinecke).
Update g4wihelp for newer Unicode mingw api
Apr 19 2023, 10:57 AM
ikloecker moved T6456: Kleopatra: Offers encryption-only OpenPGP keys as signing key from Backlog to QA for next release on the gpgme board.
Apr 19 2023, 10:21 AM · gpgme (gpgme 1.23.x), Restricted Project, kleopatra, Bug Report
ikloecker changed the status of T6456: Kleopatra: Offers encryption-only OpenPGP keys as signing key from Open to Testing.

To test this you need to create an OpenPGP key without signing capability.

Apr 19 2023, 10:21 AM · gpgme (gpgme 1.23.x), Restricted Project, kleopatra, Bug Report
alexk added a comment to T6211: KMail should process "Confirm your key publication" messages from WKS-Server.

I will re-test it with KDE neon.

Apr 19 2023, 10:19 AM · KMail, Restricted Project, Feature Request
ikloecker committed rKLEOPATRA70c08d88a093: Use Key::canSign instead of Key::canReallySign with new gpgme++ (authored by ikloecker).
Use Key::canSign instead of Key::canReallySign with new gpgme++
Apr 19 2023, 10:18 AM
ikloecker committed rLIBKLEO632057ae9c55: Use Key::canSign instead of Key::canReallySign with new gpgme++ (authored by ikloecker).
Use Key::canSign instead of Key::canReallySign with new gpgme++
Apr 19 2023, 10:15 AM
aheinecke added a comment to T6211: KMail should process "Confirm your key publication" messages from WKS-Server.

@dvratil I think the message has changed a bit with recent versions of the WKS server. Or is this maybe in a plugin that might not be installed on some distributions? At least when alexk tried it it was not processed on a fairly recent ArchLinux but he had such issues like plugin for crypto settings in KAdressbook not installed etc. so it might just be that. I can test this again but its probably best if we get you a test mail address with a forward for gnupg.org (which has WKS)

Apr 19 2023, 9:48 AM · KMail, Restricted Project, Feature Request
ebo added a project to T6380: Kleopatra: SignEncryptWidget::isDeVsAndValid does not skip revoked UIds: gpgol.
Apr 19 2023, 9:44 AM · gpgol, Restricted Project, kleopatra
ikloecker committed rMa14155d2c1b2: build,qt: Simplify check for moc (authored by ikloecker).
build,qt: Simplify check for moc
Apr 19 2023, 9:39 AM
ikloecker committed rMe80bf34bf86f: Update NEWS (authored by ikloecker).
Update NEWS
Apr 19 2023, 9:39 AM
ebo moved T6163: Kleopatra: Fetch missing keys broken from Restricted Project Column to Restricted Project Column on the Restricted Project board.
Apr 19 2023, 9:26 AM · Restricted Project, kleopatra
ebo closed T6163: Kleopatra: Fetch missing keys broken as Resolved.

Because of the imported certificates tab I mention T6447 and T6183 for the certify question. Closing.

Apr 19 2023, 9:24 AM · Restricted Project, kleopatra
ebo changed the status of T6437: Kleopatra: sign/encrypt folder results in general error from Open to Testing.
Apr 19 2023, 8:58 AM · gpgme (gpgme 1.23.x), Bug Report, Restricted Project
ebo changed the status of T6378: keytocard: invalid value from Open to Testing.
Apr 19 2023, 8:57 AM · gnupg24 (gnupg-2.4.1), gnupg22 (gnupg-2.2.42), Bug Report, Restricted Project
l10n daemon script <scripty@kde.org> committed rKLEOPATRAd145f433178e: GIT_SILENT Sync po/docbooks with svn (authored by l10n daemon script <scripty@kde.org>).
GIT_SILENT Sync po/docbooks with svn
Apr 19 2023, 5:42 AM
l10n daemon script <scripty@kde.org> committed rLIBKLEO9a7a654b3a99: GIT_SILENT Sync po/docbooks with svn (authored by l10n daemon script <scripty@kde.org>).
GIT_SILENT Sync po/docbooks with svn
Apr 19 2023, 4:08 AM
l10n daemon script <scripty@kde.org> committed rKLEOPATRA6d211b7c6dc2: GIT_SILENT Sync po/docbooks with svn (authored by l10n daemon script <scripty@kde.org>).
GIT_SILENT Sync po/docbooks with svn
Apr 19 2023, 4:07 AM
pert created T6458: Support looking up userSMIMECertificate in LDAP.
Apr 19 2023, 3:43 AM · LDAP, dirmngr, Feature Request

Apr 18 2023

ionum created T6457: delete-secret-key does not delete all secret keys, when primary secret key is stripped in keyring.
Apr 18 2023, 9:04 PM · gnupg24, Feature Request
werner assigned T6455: Bug in regexp library may lead to out-of-bounds read to gniibe.

@gniibe, will you be so kind an check the provided patches

Apr 18 2023, 5:12 PM · gnupg22 (gnupg-2.2.42), gnupg24 (gnupg-2.4.1), Bug Report
werner triaged T6455: Bug in regexp library may lead to out-of-bounds read as High priority.
Apr 18 2023, 5:11 PM · gnupg22 (gnupg-2.2.42), gnupg24 (gnupg-2.4.1), Bug Report
werner added a comment to T6378: keytocard: invalid value.

To replicate the problem it is best to use Windows. Should be solved with my commit. Note that the bug is specific to 2.4 dues to irts multi-card and app support. There was no problem on 2.2.

Apr 18 2023, 5:09 PM · gnupg24 (gnupg-2.4.1), gnupg22 (gnupg-2.2.42), Bug Report, Restricted Project
werner committed rGfa4f716917e5: gpg: Make sure that we are not accidently working with the PIV app. (authored by werner).
gpg: Make sure that we are not accidently working with the PIV app.
Apr 18 2023, 5:07 PM
ebo closed T6386: gpg-agent 2.2: Command "READKEY --card --no-data -- OPENPGP.1" overwrites protected-private-key with shadowed-private-key as Resolved.
Apr 18 2023, 1:36 PM · gnupg22 (gnupg-2.2.42), Bug Report
ikloecker committed rKLEOPATRAc79d94ed0ac7: Handle case that no suitable subkey was found (authored by ikloecker).
Handle case that no suitable subkey was found
Apr 18 2023, 1:24 PM
ikloecker committed rM5bd84cfd3f09: cpp: Fix Key::canSign() (authored by ikloecker).
cpp: Fix Key::canSign()
Apr 18 2023, 1:17 PM
ikloecker claimed T6456: Kleopatra: Offers encryption-only OpenPGP keys as signing key.
Apr 18 2023, 1:14 PM · gpgme (gpgme 1.23.x), Restricted Project, kleopatra, Bug Report
ikloecker created T6456: Kleopatra: Offers encryption-only OpenPGP keys as signing key.
Apr 18 2023, 1:13 PM · gpgme (gpgme 1.23.x), Restricted Project, kleopatra, Bug Report
ebo added a comment to T6386: gpg-agent 2.2: Command "READKEY --card --no-data -- OPENPGP.1" overwrites protected-private-key with shadowed-private-key.
gpg --edit-key; keytocard; save

work as expected.

Apr 18 2023, 12:47 PM · gnupg22 (gnupg-2.2.42), Bug Report
Guldrelokk added a comment to T6455: Bug in regexp library may lead to out-of-bounds read.

Another miscellaneous correction for jimregexp. A condition was copy-pasted from another section without the necessary changes, resulting in incorrect logic. This seems harmless apart from inconsistent error reporting.

diff --git a/regexp/jimregexp.c b/regexp/jimregexp.c
index 1a8b8aae6..1b6e1b49c 100644
--- a/regexp/jimregexp.c
+++ b/regexp/jimregexp.c
@@ -778,7 +778,7 @@ static int regatom(regex_t *preg, int *flagp)
                                                        preg->err = REG_ERR_NULL_CHAR;
                                                        return 0;
                                                }
-                                               if (start == '\\' && *pattern == 0) {
+                                               if (end == '\\' && *pattern == 0) {
                                                        preg->err = REG_ERR_INVALID_ESCAPE;
                                                        return 0;
                                                }
Apr 18 2023, 12:24 PM · gnupg22 (gnupg-2.2.42), gnupg24 (gnupg-2.4.1), Bug Report
dvratil reopened T6211: KMail should process "Confirm your key publication" messages from WKS-Server as "Open".
Apr 18 2023, 12:21 PM · KMail, Restricted Project, Feature Request
Guldrelokk created T6455: Bug in regexp library may lead to out-of-bounds read.
Apr 18 2023, 12:20 PM · gnupg22 (gnupg-2.2.42), gnupg24 (gnupg-2.4.1), Bug Report
dvratil closed T6211: KMail should process "Confirm your key publication" messages from WKS-Server as Resolved.

From https://phabricator.kde.org/D3140 the "Confirm your key registration" (see last screenshot) button seems to be what this is about, right?

Apr 18 2023, 12:10 PM · KMail, Restricted Project, Feature Request
dvratil moved T6211: KMail should process "Confirm your key publication" messages from WKS-Server from Restricted Project Column to Restricted Project Column on the Restricted Project board.
Apr 18 2023, 12:07 PM · KMail, Restricted Project, Feature Request
dvratil claimed T6211: KMail should process "Confirm your key publication" messages from WKS-Server.

I have yet to test this, but just by looking at the code in kdepim-addons this seems to already be implemented since the beginning. When we were implementing this back in 2016, we were using some testing WKD server that @aheinecke operated (the presence of testuser10@test.gnug.org and key-submissions@test.gnupg.org keys in my Kleopatra is most likely from that time and instance).

Apr 18 2023, 12:07 PM · KMail, Restricted Project, Feature Request
werner committed rGf7e00dc73dd0: scd: On a Yubikey re-select the last app after the use of APDU. (authored by werner).
scd: On a Yubikey re-select the last app after the use of APDU.
Apr 18 2023, 12:05 PM
ikloecker committed rLIBKLEOc884b9296917: Check expiration of suitable subkey instead of primary key (authored by ikloecker).
Check expiration of suitable subkey instead of primary key
Apr 18 2023, 11:58 AM
ikloecker committed rLIBKLEOb908aa48285b: Bump library version (authored by ikloecker).
Bump library version
Apr 18 2023, 11:58 AM
ikloecker committed rLIBKLEO98ff208f9f43: Check for null keys and invalid check flags (authored by ikloecker).
Check for null keys and invalid check flags
Apr 18 2023, 11:58 AM
ikloecker committed rLIBKLEO14e642c8faf1: Remove internally used enum value alias (authored by ikloecker).
Remove internally used enum value alias
Apr 18 2023, 11:58 AM
ebo added a comment to T6183: Kleopatra: on import own public key do not show "certify window" .

The reported issue is definitively fixed, didn't test the rest yet

Apr 18 2023, 10:11 AM · Restricted Project, kleopatra
werner moved T6212: The ssh keys are no longer returned in the order from control file after T5996 from QA to gnupg-2.4.1 on the gnupg24 board.
Apr 18 2023, 9:42 AM · gnupg24 (gnupg-2.4.1), ssh, Feature Request
werner moved T6437: Kleopatra: sign/encrypt folder results in general error from Backlog to QA for next release on the gpgme board.
Apr 18 2023, 9:20 AM · gpgme (gpgme 1.23.x), Bug Report, Restricted Project
werner edited projects for T6437: Kleopatra: sign/encrypt folder results in general error, added: gpgme, Bug Report; removed gnupg24, gnupg22.

The actual error is in gpgme. CreateProcess is called with "gpgtar" but "gpgtar.exe" must be used.
This has been fixed with commit rM0c29119e061c. The reason why we didn't noticed the real cause of the problem is that the CreateProcess error shows up in the gpgme-w32spawn helper which has no good way for returning errors.

Apr 18 2023, 9:20 AM · gpgme (gpgme 1.23.x), Bug Report, Restricted Project
werner committed rG98b8c518fa0b: ssh: Allow to prefer on-disk keys over active card keys. (authored by werner).
ssh: Allow to prefer on-disk keys over active card keys.
Apr 18 2023, 9:04 AM
werner triaged T6454: Release GnuPG 2.4.1 as Normal priority.
Apr 18 2023, 8:54 AM · gnupg24 (gnupg-2.4.1), Release Info
werner committed rGba67fea5b9bb: gpgtar: Read common.conf for the log-file option. (authored by werner).
gpgtar: Read common.conf for the log-file option.
Apr 18 2023, 8:07 AM
l10n daemon script <scripty@kde.org> committed rLIBKLEO7143b734397c: GIT_SILENT Sync po/docbooks with svn (authored by l10n daemon script <scripty@kde.org>).
GIT_SILENT Sync po/docbooks with svn
Apr 18 2023, 4:03 AM
l10n daemon script <scripty@kde.org> committed rKLEOPATRA66046a120db9: GIT_SILENT Sync po/docbooks with svn (authored by l10n daemon script <scripty@kde.org>).
GIT_SILENT Sync po/docbooks with svn
Apr 18 2023, 4:02 AM
gniibe changed the status of T3456: GPG does not import secret subkeys from --export-secret-subkeys output if subkey stubs existed before from Open to Testing.

Pushed the change not including OK_TO_CHANGE_ERROR_BEHAVIOR part.
Note that the modification affects main key case, too.

Apr 18 2023, 2:59 AM · gnupg22 (gnupg-2.2.42), Restricted Project