Page MenuHome GnuPG
Feed All Stories

Apr 21 2023

ikloecker committed rLIBKLEOcf5d0f76f525: Bump library version (authored by ikloecker).
Bump library version
Apr 21 2023, 12:48 PM
ikloecker committed rLIBKLEO551d9123a6a6: Add accessesors for the threshold config items (authored by ikloecker).
Add accessesors for the threshold config items
Apr 21 2023, 12:48 PM
ikloecker committed rLIBKLEO8ce422f5d4d1: Add minimum and maximum values for expiry notification thresholds (authored by ikloecker).
Add minimum and maximum values for expiry notification thresholds
Apr 21 2023, 12:47 PM
ebo added a comment to T6464: No error message if PIN wrong on keytocard.

In Kleopatra an error window comes up in this case:

Kopieren des Schlüssels auf Karte fehlgeschlagen: 
Falsche PIN
Apr 21 2023, 11:20 AM · Restricted Project
ebo created T6464: No error message if PIN wrong on keytocard.
Apr 21 2023, 11:15 AM · Restricted Project
werner triaged T6458: Support looking up userSMIMECertificate in LDAP as Normal priority.
Apr 21 2023, 11:13 AM · LDAP, dirmngr, Feature Request
werner added a parent task for T6458: Support looking up userSMIMECertificate in LDAP: T6416: Remove LDAP code duplication in dirmngr.
Apr 21 2023, 11:13 AM · LDAP, dirmngr, Feature Request
werner added a subtask for T6416: Remove LDAP code duplication in dirmngr: T6458: Support looking up userSMIMECertificate in LDAP.
Apr 21 2023, 11:13 AM · Feature Request, LDAP, dirmngr, gnupg24
mlaurent committed rLIBKLEOb22070a80232: GIT_SILENT: use specific version for pim6 before switch to 6.0.0 in the future… (authored by mlaurent).
GIT_SILENT: use specific version for pim6 before switch to 6.0.0 in the future…
Apr 21 2023, 10:35 AM
gniibe committed rSfafb681eab36: doc: Building working scute.info with images. (authored by gniibe).
doc: Building working scute.info with images.
Apr 21 2023, 9:59 AM
werner added a comment to T6451: libgcrypt | gcry_cipher_setkey: 3DES-CBC key returns GPG_ERR_WEAK even with GCRYCTL_SET_ALLOW_WEAK_KEY.

There is still a buglet because in some modes the weak key error can be swallowed by other errors. A fix would be something like:

Apr 21 2023, 9:09 AM · Debian, libgcrypt, Bug Report
jukivili added a reverting change for rC30840c2c45d7: cipher: Fix edge case for SET_ALLOW_WEAK_KEY.: rC7146b69b4905: Revert "cipher: Fix edge case for SET_ALLOW_WEAK_KEY.".
Apr 21 2023, 8:26 AM
jukivili committed rC7146b69b4905: Revert "cipher: Fix edge case for SET_ALLOW_WEAK_KEY." (authored by jukivili).
Revert "cipher: Fix edge case for SET_ALLOW_WEAK_KEY."
Apr 21 2023, 8:26 AM
jukivili committed rCf3ca9fa4f7e0: doc: add documentation for GCRYCTL_SET_ALLOW_WEAK_KEY (authored by jukivili).
doc: add documentation for GCRYCTL_SET_ALLOW_WEAK_KEY
Apr 21 2023, 8:26 AM
l10n daemon script <scripty@kde.org> committed rKLEOPATRA6f5930274eb1: GIT_SILENT Sync po/docbooks with svn (authored by l10n daemon script <scripty@kde.org>).
GIT_SILENT Sync po/docbooks with svn
Apr 21 2023, 5:40 AM
gniibe added a comment to T6451: libgcrypt | gcry_cipher_setkey: 3DES-CBC key returns GPG_ERR_WEAK even with GCRYCTL_SET_ALLOW_WEAK_KEY.

@jukivili Yes, please go ahead for both branches. Thank you.

Apr 21 2023, 5:06 AM · Debian, libgcrypt, Bug Report
gniibe committed rG762b7d07eaa8: common: Incorporate upstream changes of regexp. (authored by gniibe).
common: Incorporate upstream changes of regexp.
Apr 21 2023, 5:04 AM
gniibe committed rG464e85d43596: common: Incorporate upstream changes of regexp. (authored by gniibe).
common: Incorporate upstream changes of regexp.
Apr 21 2023, 5:04 AM
gniibe added a comment to T6455: Bug in regexp library may lead to out-of-bounds read.

I checked the upstream. For the reported issue, upstream version raises an error with REG_ERR_UNMATCHED_BRACKET.
That behavior is better (as we don't have particular reason to maintain different behavior from upstream version).
Also, I found another change from upstream for end of word check.

Apr 21 2023, 5:03 AM · gnupg22 (gnupg-2.2.42), gnupg24 (gnupg-2.4.1), Bug Report
l10n daemon script <scripty@kde.org> committed rLIBKLEO8c37502c1b90: GIT_SILENT Sync po/docbooks with svn (authored by l10n daemon script <scripty@kde.org>).
GIT_SILENT Sync po/docbooks with svn
Apr 21 2023, 4:02 AM
l10n daemon script <scripty@kde.org> committed rKLEOPATRA8337e75a6751: GIT_SILENT Sync po/docbooks with svn (authored by l10n daemon script <scripty@kde.org>).
GIT_SILENT Sync po/docbooks with svn
Apr 21 2023, 4:02 AM

Apr 20 2023

mlaurent committed rKLEOPATRA2311080083e0: Merge remote-tracking branch 'origin/master' into kf6 (authored by mlaurent).
Merge remote-tracking branch 'origin/master' into kf6
Apr 20 2023, 10:34 PM
mlaurent committed rLIBKLEO02bf926c7378: Merge remote-tracking branch 'origin/master' into kf6 (authored by mlaurent).
Merge remote-tracking branch 'origin/master' into kf6
Apr 20 2023, 10:24 PM
jukivili added a comment to T6451: libgcrypt | gcry_cipher_setkey: 3DES-CBC key returns GPG_ERR_WEAK even with GCRYCTL_SET_ALLOW_WEAK_KEY.

About error code. You need to use gcry_err_code(error_code) to get the GPG_ERR_WEAK_KEY value.

Apr 20 2023, 6:22 PM · Debian, libgcrypt, Bug Report
werner added a comment to rD81a281183ff9: Eliminare denoting.

I wonder why github did not automatically closed this pull request - after all exact that patch was commited.

Apr 20 2023, 4:43 PM
werner updated the task description for T6463: Release GPGME 1.20.0.
Apr 20 2023, 4:40 PM · gpgme, Release Info
olf added a comment to rD81a281183ff9: Eliminare denoting.

Commits & closes https://github.com/gpg/gnupg-doc/pull/2

Apr 20 2023, 3:29 PM
werner committed rD7fa2954c8434: swdb: gpgme 1.20.0 (authored by werner).
swdb: gpgme 1.20.0
Apr 20 2023, 2:19 PM
werner committed rW67bad41b0077: Update to gpgme 1.20.0 (authored by werner).
Update to gpgme 1.20.0
Apr 20 2023, 2:13 PM
werner committed rMd99156ff081c: Post release updates (authored by werner).
Post release updates
Apr 20 2023, 2:03 PM
werner committed rM451ed47434c5: Release 1.20.0 (authored by werner).
Release 1.20.0
Apr 20 2023, 2:03 PM
werner committed rM7351ef32ce7c: core: Support the new macOS Homebrew location. (authored by werner).
core: Support the new macOS Homebrew location.
Apr 20 2023, 2:03 PM
werner updated the task description for T6341: Release GPGME 1.19.0.
Apr 20 2023, 1:42 PM · gpgme, Release Info
werner triaged T6463: Release GPGME 1.20.0 as Normal priority.
Apr 20 2023, 1:42 PM · gpgme, Release Info
werner edited projects for T6303: Release GnuPG 2.4.0, added: gnupg; removed gnupg24, gnupg (gpg23).
Apr 20 2023, 1:37 PM · gnupg, Release Info
werner committed rGe60544520bc8: scd,p15: Enforce a min. PIN length for certain cards. (authored by werner).
scd,p15: Enforce a min. PIN length for certain cards.
Apr 20 2023, 12:42 PM
werner committed rGaf3724d38315: scd,p15: Enforce a min. PIN length for certain cards. (authored by werner).
scd,p15: Enforce a min. PIN length for certain cards.
Apr 20 2023, 12:42 PM
werner moved T6455: Bug in regexp library may lead to out-of-bounds read from QA to gnupg-2.2.42 on the gnupg22 board.
Apr 20 2023, 12:30 PM · gnupg22 (gnupg-2.2.42), gnupg24 (gnupg-2.4.1), Bug Report
werner moved T6455: Bug in regexp library may lead to out-of-bounds read from QA to gnupg-2.4.1 on the gnupg24 board.
Apr 20 2023, 12:29 PM · gnupg22 (gnupg-2.2.42), gnupg24 (gnupg-2.4.1), Bug Report
werner moved T6455: Bug in regexp library may lead to out-of-bounds read from Backlog to QA on the gnupg24 board.
Apr 20 2023, 12:29 PM · gnupg22 (gnupg-2.2.42), gnupg24 (gnupg-2.4.1), Bug Report
werner closed T6455: Bug in regexp library may lead to out-of-bounds read as Resolved.

Okay, that was easy to check.

Apr 20 2023, 12:29 PM · gnupg22 (gnupg-2.2.42), gnupg24 (gnupg-2.4.1), Bug Report
werner committed rG3ad4b339b886: common: Fix minor bug in the jimregexp code. (authored by werner).
common: Fix minor bug in the jimregexp code.
Apr 20 2023, 12:28 PM
werner committed rGa82e6f310a03: common: Fix minor bug in the jimregexp code. (authored by werner).
common: Fix minor bug in the jimregexp code.
Apr 20 2023, 12:28 PM
ikloecker committed rKLEOPATRA2c8ab3cfaed0: Fix/unify conversion of GpgME::Error description to Unicode (authored by ikloecker).
Fix/unify conversion of GpgME::Error description to Unicode
Apr 20 2023, 12:19 PM
ikloecker committed rKLEOPATRA01ef7ba08287: Make display of expiration notifications configurable (authored by ikloecker).
Make display of expiration notifications configurable
Apr 20 2023, 12:19 PM
ikloecker committed rKLEOPATRAcd2009b999b0: Add setting to disable the expiration notifications (authored by ikloecker).
Add setting to disable the expiration notifications
Apr 20 2023, 12:19 PM
ikloecker committed rKLEOPATRA323aacabe728: Put tags and tooltips settings on new General tab (authored by ikloecker).
Put tags and tooltips settings on new General tab
Apr 20 2023, 12:19 PM
ikloecker committed rKLEOPATRA38c0ab526717: Create UI of Appearance config in code (authored by ikloecker).
Create UI of Appearance config in code
Apr 20 2023, 12:19 PM
werner claimed T6455: Bug in regexp library may lead to out-of-bounds read.
Apr 20 2023, 12:17 PM · gnupg22 (gnupg-2.2.42), gnupg24 (gnupg-2.4.1), Bug Report
werner changed the status of T6462: gpg --edit-card does not display openpgp info on connected card from Open to Testing.

Not easy to fix because gpg --card-edit/-status has some support form other cards. Eventually these commands will be replaced by gpg-card. In the meantime we can use this hack:

Apr 20 2023, 12:14 PM · gnupg24 (gnupg-2.4.1), scd, Restricted Project
werner committed rGe1663c045049: gpg: New command "openpgp" for --card-edit. (authored by werner).
gpg: New command "openpgp" for --card-edit.
Apr 20 2023, 12:12 PM
ebo created T6462: gpg --edit-card does not display openpgp info on connected card .
Apr 20 2023, 10:55 AM · gnupg24 (gnupg-2.4.1), scd, Restricted Project
ikloecker committed rLIBKLEOd671ac349072: Bump library version (authored by ikloecker).
Bump library version
Apr 20 2023, 10:45 AM
ikloecker committed rLIBKLEO026797ff38b4: Add helper for converting description of GpgME::Error to Unicode (authored by ikloecker).
Add helper for converting description of GpgME::Error to Unicode
Apr 20 2023, 10:45 AM
werner triaged T6459: KOrganizer: Invitations are not signed with GPG although signing is enabled by default as Normal priority.
Apr 20 2023, 9:03 AM · Restricted Project, KDE
werner triaged T6460: KOrganizer: unable to display events with the same UID in multiple calendars as Normal priority.
Apr 20 2023, 9:02 AM · Restricted Project, KDE
werner triaged T6461: KOrganizer: Remote ICS file doesn't populate calendar as Normal priority.
Apr 20 2023, 9:02 AM · Restricted Project, KDE
werner triaged T6457: delete-secret-key does not delete all secret keys, when primary secret key is stripped in keyring as Normal priority.
Apr 20 2023, 9:01 AM · gnupg24, Feature Request
l10n daemon script <scripty@kde.org> committed rLIBKLEO061f605f6ce6: GIT_SILENT Sync po/docbooks with svn (authored by l10n daemon script <scripty@kde.org>).
GIT_SILENT Sync po/docbooks with svn
Apr 20 2023, 4:10 AM
l10n daemon script <scripty@kde.org> committed rKLEOPATRA8addf59ca7d5: GIT_SILENT Sync po/docbooks with svn (authored by l10n daemon script <scripty@kde.org>).
GIT_SILENT Sync po/docbooks with svn
Apr 20 2023, 4:09 AM

Apr 19 2023

werner committed rW742f50c7b2e2: More g4wihelp fixes for newer Unicode mingw API. (authored by werner).
More g4wihelp fixes for newer Unicode mingw API.
Apr 19 2023, 6:00 PM
aheinecke added a comment to T6452: Kleopatra: Configurable default for certification expiry.

This can be a fixed validity period of the certifications. So like 3 years. Even if the user has set the certificate to be valid for only one year the user could then extend it in my opinion to the full 3 years before the certification loses the validity.

Apr 19 2023, 4:24 PM · Restricted Project, kleopatra
ebo closed T6380: Kleopatra: SignEncryptWidget::isDeVsAndValid does not skip revoked UIds as Resolved.

works, a key with a revoked uid is accepted as VS-NfD compliant, VS-Desktop-3.1.27.0-beta44

Apr 19 2023, 3:21 PM · gpgol, Restricted Project, kleopatra
dvratil claimed T6459: KOrganizer: Invitations are not signed with GPG although signing is enabled by default.
Apr 19 2023, 2:49 PM · Restricted Project, KDE
dvratil created T6461: KOrganizer: Remote ICS file doesn't populate calendar.
Apr 19 2023, 12:57 PM · Restricted Project, KDE
dvratil created T6460: KOrganizer: unable to display events with the same UID in multiple calendars.
Apr 19 2023, 12:56 PM · Restricted Project, KDE
dvratil created T6459: KOrganizer: Invitations are not signed with GPG although signing is enabled by default.
Apr 19 2023, 12:55 PM · Restricted Project, KDE
ebo added a comment to T6420: Kleopatra: improve layout of and text in smartcard management view.

The generate keys etc. actions in the keys part of the view are debatable. At least for VSD I think they should not be shown or greyed out for not VS-NfD compliant cards -> see T6786
(I think there were even algorithms offered for generation on card which would result in an error, but I won't investigate further at the moment.)

Apr 19 2023, 12:34 PM · vsd33 (vsd-3.3.0), Feature Request, Restricted Project, kleopatra
ebo added a comment to T6116: Draft: Kleopatra: Card personalization workflow.

I already commented in T5836 which should be discussed here, instead:

Apr 19 2023, 12:17 PM · gpd5x, kleopatra
ebo closed T5836: Kleopatra: Optionally, delete private key locally after moving a key to a smartcard as Resolved.

The options for key backup+delete, delete and keep all work now, tested with VS-Desktop-3.1.27.0-beta44

Apr 19 2023, 11:59 AM · Bug Report, kleopatra, Restricted Project
aheinecke committed rW1881c5191017: Commit missing exdll.c from exdll.h (authored by aheinecke).
Commit missing exdll.c from exdll.h
Apr 19 2023, 11:28 AM
werner committed rG80d4ae121565: Use keyboxd on a fresh install also on Windows. (authored by werner).
Use keyboxd on a fresh install also on Windows.
Apr 19 2023, 11:06 AM
aheinecke committed rW1a604edc5514: Update g4wihelp for newer Unicode mingw api (authored by aheinecke).
Update g4wihelp for newer Unicode mingw api
Apr 19 2023, 10:57 AM
ikloecker moved T6456: Kleopatra: Offers encryption-only OpenPGP keys as signing key from Backlog to QA for next release on the gpgme board.
Apr 19 2023, 10:21 AM · gpgme (gpgme 1.23.x), Restricted Project, kleopatra, Bug Report
ikloecker changed the status of T6456: Kleopatra: Offers encryption-only OpenPGP keys as signing key from Open to Testing.

To test this you need to create an OpenPGP key without signing capability.

Apr 19 2023, 10:21 AM · gpgme (gpgme 1.23.x), Restricted Project, kleopatra, Bug Report
alexk added a comment to T6211: KMail should process "Confirm your key publication" messages from WKS-Server.

I will re-test it with KDE neon.

Apr 19 2023, 10:19 AM · KMail, Restricted Project, Feature Request
ikloecker committed rKLEOPATRA70c08d88a093: Use Key::canSign instead of Key::canReallySign with new gpgme++ (authored by ikloecker).
Use Key::canSign instead of Key::canReallySign with new gpgme++
Apr 19 2023, 10:18 AM
ikloecker committed rLIBKLEO632057ae9c55: Use Key::canSign instead of Key::canReallySign with new gpgme++ (authored by ikloecker).
Use Key::canSign instead of Key::canReallySign with new gpgme++
Apr 19 2023, 10:15 AM
aheinecke added a comment to T6211: KMail should process "Confirm your key publication" messages from WKS-Server.

@dvratil I think the message has changed a bit with recent versions of the WKS server. Or is this maybe in a plugin that might not be installed on some distributions? At least when alexk tried it it was not processed on a fairly recent ArchLinux but he had such issues like plugin for crypto settings in KAdressbook not installed etc. so it might just be that. I can test this again but its probably best if we get you a test mail address with a forward for gnupg.org (which has WKS)

Apr 19 2023, 9:48 AM · KMail, Restricted Project, Feature Request
ebo added a project to T6380: Kleopatra: SignEncryptWidget::isDeVsAndValid does not skip revoked UIds: gpgol.
Apr 19 2023, 9:44 AM · gpgol, Restricted Project, kleopatra
ikloecker committed rMa14155d2c1b2: build,qt: Simplify check for moc (authored by ikloecker).
build,qt: Simplify check for moc
Apr 19 2023, 9:39 AM
ikloecker committed rMe80bf34bf86f: Update NEWS (authored by ikloecker).
Update NEWS
Apr 19 2023, 9:39 AM
ebo moved T6163: Kleopatra: Fetch missing keys broken from Restricted Project Column to Restricted Project Column on the Restricted Project board.
Apr 19 2023, 9:26 AM · Restricted Project, kleopatra
ebo closed T6163: Kleopatra: Fetch missing keys broken as Resolved.

Because of the imported certificates tab I mention T6447 and T6183 for the certify question. Closing.

Apr 19 2023, 9:24 AM · Restricted Project, kleopatra
ebo changed the status of T6437: Kleopatra: sign/encrypt folder results in general error from Open to Testing.
Apr 19 2023, 8:58 AM · gpgme (gpgme 1.23.x), Bug Report, Restricted Project
ebo changed the status of T6378: keytocard: invalid value from Open to Testing.
Apr 19 2023, 8:57 AM · gnupg24 (gnupg-2.4.1), gnupg22 (gnupg-2.2.42), Bug Report, Restricted Project
l10n daemon script <scripty@kde.org> committed rKLEOPATRAd145f433178e: GIT_SILENT Sync po/docbooks with svn (authored by l10n daemon script <scripty@kde.org>).
GIT_SILENT Sync po/docbooks with svn
Apr 19 2023, 5:42 AM
l10n daemon script <scripty@kde.org> committed rLIBKLEO9a7a654b3a99: GIT_SILENT Sync po/docbooks with svn (authored by l10n daemon script <scripty@kde.org>).
GIT_SILENT Sync po/docbooks with svn
Apr 19 2023, 4:08 AM
l10n daemon script <scripty@kde.org> committed rKLEOPATRA6d211b7c6dc2: GIT_SILENT Sync po/docbooks with svn (authored by l10n daemon script <scripty@kde.org>).
GIT_SILENT Sync po/docbooks with svn
Apr 19 2023, 4:07 AM
pert created T6458: Support looking up userSMIMECertificate in LDAP.
Apr 19 2023, 3:43 AM · LDAP, dirmngr, Feature Request

Apr 18 2023

ionum created T6457: delete-secret-key does not delete all secret keys, when primary secret key is stripped in keyring.
Apr 18 2023, 9:04 PM · gnupg24, Feature Request
werner assigned T6455: Bug in regexp library may lead to out-of-bounds read to gniibe.

@gniibe, will you be so kind an check the provided patches

Apr 18 2023, 5:12 PM · gnupg22 (gnupg-2.2.42), gnupg24 (gnupg-2.4.1), Bug Report
werner triaged T6455: Bug in regexp library may lead to out-of-bounds read as High priority.
Apr 18 2023, 5:11 PM · gnupg22 (gnupg-2.2.42), gnupg24 (gnupg-2.4.1), Bug Report
werner added a comment to T6378: keytocard: invalid value.

To replicate the problem it is best to use Windows. Should be solved with my commit. Note that the bug is specific to 2.4 dues to irts multi-card and app support. There was no problem on 2.2.

Apr 18 2023, 5:09 PM · gnupg24 (gnupg-2.4.1), gnupg22 (gnupg-2.2.42), Bug Report, Restricted Project
werner committed rGfa4f716917e5: gpg: Make sure that we are not accidently working with the PIV app. (authored by werner).
gpg: Make sure that we are not accidently working with the PIV app.
Apr 18 2023, 5:07 PM
ebo closed T6386: gpg-agent 2.2: Command "READKEY --card --no-data -- OPENPGP.1" overwrites protected-private-key with shadowed-private-key as Resolved.
Apr 18 2023, 1:36 PM · gnupg22 (gnupg-2.2.42), Bug Report
ikloecker committed rKLEOPATRAc79d94ed0ac7: Handle case that no suitable subkey was found (authored by ikloecker).
Handle case that no suitable subkey was found
Apr 18 2023, 1:24 PM
ikloecker committed rM5bd84cfd3f09: cpp: Fix Key::canSign() (authored by ikloecker).
cpp: Fix Key::canSign()
Apr 18 2023, 1:17 PM
ikloecker claimed T6456: Kleopatra: Offers encryption-only OpenPGP keys as signing key.
Apr 18 2023, 1:14 PM · gpgme (gpgme 1.23.x), Restricted Project, kleopatra, Bug Report
ikloecker created T6456: Kleopatra: Offers encryption-only OpenPGP keys as signing key.
Apr 18 2023, 1:13 PM · gpgme (gpgme 1.23.x), Restricted Project, kleopatra, Bug Report