Page MenuHome GnuPG

werner (Werner Koch)
EngineeringAdministrator

Projects

User Details

User Since
Mar 27 2017, 4:48 PM (465 w, 2 d)
Roles
Administrator
Availability
Busy Busy until Sep 9 2030.

Recent Activity

Today

werner committed rWd15d822b8c98: Skip vsd-include file as used with vsd >= 4 (authored by werner).
Skip vsd-include file as used with vsd >= 4
Wed, Feb 25, 2:41 PM
werner committed rWa7ed3fae3d05: msi: Introduce new include file vsd-include (authored by werner).
msi: Introduce new include file vsd-include
Wed, Feb 25, 2:36 PM
werner committed rDc2e8867a814f: Add a new signature key (authored by werner).
Add a new signature key
Wed, Feb 25, 11:34 AM
werner committed rG560dcc842d0e: Add new key to distsigkey.gpg (authored by werner).
Add new key to distsigkey.gpg
Wed, Feb 25, 11:17 AM
werner committed rG9673bbc47bc0: Add new key to distsigkey.gpg (authored by werner).
Add new key to distsigkey.gpg
Wed, Feb 25, 11:17 AM
werner awarded T8124: Kleopatra: Remove "Force Decryption" button shown if decryption failed due to missing integrity check (MDC) a Like token.
Wed, Feb 25, 8:51 AM · gpd5x, kleopatra

Yesterday

werner changed the status of T8045: Stack-based buffer overflow in TPM2 `PKDECRYPT` from Open to Testing.
Tue, Feb 24, 3:34 PM · gnupg26, CVE, TPM, Bug Report
werner updated the task description for T7999: Release GnuPG 2.5.18.
Tue, Feb 24, 3:33 PM · gnupg, Release Info
werner committed rW2eded38cd32b: Update gnupg to 2.5.18, update kleo stuff, update gpgoljs. (authored by werner).
Update gnupg to 2.5.18, update kleo stuff, update gpgoljs.
Tue, Feb 24, 2:38 PM
werner committed rW137cac1a783b: msi: Minor comment typo fix. (authored by werner).
msi: Minor comment typo fix.
Tue, Feb 24, 2:38 PM
werner committed rDed8d6140fa48: swdb: gnupg 2.5.18 (authored by werner).
swdb: gnupg 2.5.18
Tue, Feb 24, 2:22 PM
werner committed rG0cb3cbc98840: Post release updates (authored by werner).
Post release updates
Tue, Feb 24, 2:20 PM
werner committed rG1b8362889a52: Release 2.5.18 (authored by werner).
Release 2.5.18
Tue, Feb 24, 2:20 PM
werner assigned T8122: Instruction to install https://repos.gnupg.org/deb/gnupg/trixie/ fail in 1st variant because of keybox use (Error: Failed to parse keyring "/usr/share/keyrings/gnupg-keyring.gpg") to m.eik.
Tue, Feb 24, 2:11 PM · Bug Report, Debian
werner triaged T8122: Instruction to install https://repos.gnupg.org/deb/gnupg/trixie/ fail in 1st variant because of keybox use (Error: Failed to parse keyring "/usr/share/keyrings/gnupg-keyring.gpg") as Low priority.
Tue, Feb 24, 2:10 PM · Bug Report, Debian
werner changed the status of T7040: Make it possible to install GnuPG VSD and GPD in parallel from Open to Testing.
Tue, Feb 24, 2:06 PM · gpd5x, kleopatra
werner added a comment to T8122: Instruction to install https://repos.gnupg.org/deb/gnupg/trixie/ fail in 1st variant because of keybox use (Error: Failed to parse keyring "/usr/share/keyrings/gnupg-keyring.gpg").

IIRC, support for the keybox fomat was added on Debian's request with 2.1.7 in 2015 to gpgv. In fact gpgv was written on Debian's request (1.0.4 from fall 2000).

Tue, Feb 24, 10:06 AM · Bug Report, Debian

Mon, Feb 23

werner added projects to T8122: Instruction to install https://repos.gnupg.org/deb/gnupg/trixie/ fail in 1st variant because of keybox use (Error: Failed to parse keyring "/usr/share/keyrings/gnupg-keyring.gpg"): Debian, Bug Report.
Mon, Feb 23, 4:07 PM · Bug Report, Debian
werner added a comment to T8122: Instruction to install https://repos.gnupg.org/deb/gnupg/trixie/ fail in 1st variant because of keybox use (Error: Failed to parse keyring "/usr/share/keyrings/gnupg-keyring.gpg").

I guess you need to report this to Debian as their new sqv tools seems to be broken.

Mon, Feb 23, 4:06 PM · Bug Report, Debian
werner committed rWbd74b399e935: Update gpgme from 1.24 to 2.0 (authored by werner).
Update gpgme from 1.24 to 2.0
Mon, Feb 23, 3:52 PM
werner committed rWf10d83191710: Update gpgrt, libassuan, libksba, gpgol, gpgex to current versions. (authored by werner).
Update gpgrt, libassuan, libksba, gpgol, gpgex to current versions.
Mon, Feb 23, 3:44 PM
werner committed rW836e3188c517: Update of libpng to 1.6.53 (authored by werner).
Update of libpng to 1.6.53
Mon, Feb 23, 3:44 PM
werner committed rK39aa8435819d: Release 1.6.8 (authored by werner).
Release 1.6.8
Mon, Feb 23, 3:16 PM
werner committed rDff734a7bd75b: swdb: Libksba 1.6.8 (authored by werner).
swdb: Libksba 1.6.8
Mon, Feb 23, 3:02 PM
werner committed rW4f299a1fa732: Update libksba to 1.6.8 (authored by werner).
Update libksba to 1.6.8
Mon, Feb 23, 3:02 PM
werner committed rWc1199b5be7ea: Update libksba to 1.6.8 (authored by werner).
Update libksba to 1.6.8
Mon, Feb 23, 3:02 PM
werner committed rKfb554939cfcd: Post release updates (authored by werner).
Post release updates
Mon, Feb 23, 2:55 PM
werner closed T7624: libksba: __non_string for GCC 15 or later, a subtask of T7617: libgcrypt: Add __nonstring__ attribute for data for GCC 15 or later, as Resolved.
Mon, Feb 23, 2:51 PM · libgcrypt, Bug Report
werner closed T7624: libksba: __non_string for GCC 15 or later as Resolved.
Mon, Feb 23, 2:51 PM · libksba, Bug Report
werner closed T8111: Assertion failure in Libksba's ocsp.c as Resolved.
Mon, Feb 23, 2:50 PM · Bug Report, libksba
werner closed T8105: Memory leak in BER decoder tree expansion, a subtask of T8104: Heap oob read in libksba's parse_rdn, as Resolved.
Mon, Feb 23, 2:49 PM · Bug Report, libksba
werner closed T8105: Memory leak in BER decoder tree expansion as Resolved.
Mon, Feb 23, 2:49 PM · Bug Report, libksba
werner closed T8104: Heap oob read in libksba's parse_rdn as Resolved.
Mon, Feb 23, 2:48 PM · Bug Report, libksba
werner renamed T7174: Release libksba 1.6.8 from Release libksba 1.7.0 to Release libksba 1.6.8.
Mon, Feb 23, 2:33 PM · Release Info, libksba
werner triaged T8121: Release LibKSBA 1.6.9 as Low priority.
Mon, Feb 23, 2:33 PM · libksba, Release Info
werner edited Description on PQC.
Mon, Feb 23, 2:01 PM
werner edited Description on PQC.
Mon, Feb 23, 9:14 AM

Sat, Feb 21

werner triaged T8099: Kleopatra: no default OpenPGP server configured as Normal priority.
Sat, Feb 21, 5:35 PM · Keyserver, Support, gpg4win

Fri, Feb 20

werner committed rC995ba16ce63f: Post release updates (authored by werner).
Post release updates
Fri, Feb 20, 2:20 PM
werner committed rC7e91b2a334d5: Release 1.12.1 (authored by werner).
Release 1.12.1
Fri, Feb 20, 2:20 PM
werner closed T7643: Release Libgcrypt 1.12.0 as Resolved.
Fri, Feb 20, 2:19 PM · Release Info, libgcrypt
werner closed T8067: Release Libgcrypt 1.12.1 as Resolved.
Fri, Feb 20, 2:19 PM · libgcrypt, Release Info
werner committed rD6d87383172be: swdb: Libgcrypt 1.12.1 (authored by werner).
swdb: Libgcrypt 1.12.1
Fri, Feb 20, 2:17 PM
werner triaged T8114: Release Libgcrypt 1.12.2 as Low priority.
Fri, Feb 20, 2:12 PM · libgcrypt, Release Info
werner changed the status of T8094: libgcrypt: EC least leak failure from Open to Testing.
Fri, Feb 20, 1:55 PM · libgcrypt, Bug Report
werner closed T7071: gpg: Support of No CRC in ASCII armor as Resolved.

Cool. Works for me now.

Fri, Feb 20, 1:37 PM · gnupg, Bug Report
werner committed rG7fca79f0aae6: doc: Typo fix (authored by werner).
doc: Typo fix
Fri, Feb 20, 1:35 PM
werner committed rG9500b2c7762b: gpgsm: New option --assert-validsig. (authored by werner).
gpgsm: New option --assert-validsig.
Fri, Feb 20, 1:35 PM

Thu, Feb 19

werner reopened T7071: gpg: Support of No CRC in ASCII armor as "Open".

Using --enarmor and removing the checksum I sometimes get

Thu, Feb 19, 5:03 PM · gnupg, Bug Report

Wed, Feb 18

werner committed rD4b351162f074: swdb: gpgrt 1.59 (authored by werner).
swdb: gpgrt 1.59
Wed, Feb 18, 10:28 AM
werner committed rE3debf5485c4d: Release 1.59 (authored by werner).
Release 1.59
Wed, Feb 18, 10:27 AM
werner committed rE28752b4cd4a9: po: msgmerge (authored by werner).
po: msgmerge
Wed, Feb 18, 10:27 AM
werner committed rWd9559e9d3e2f: Update GpgRT to 1.59 (authored by werner).
Update GpgRT to 1.59
Wed, Feb 18, 10:10 AM
werner updated the task description for T7974: Release GpgRT 1.59.
Wed, Feb 18, 9:48 AM · gpgrt, Release Info
werner triaged T8112: Release GpgRT 1.60 as Normal priority.
Wed, Feb 18, 9:47 AM · gpgrt, Release Info
werner changed the status of T8111: Assertion failure in Libksba's ocsp.c from Open to Testing.
Wed, Feb 18, 9:39 AM · Bug Report, libksba
werner committed rK49a33f98ae4e: Do not let the assert do the work of the previous test. (authored by werner).
Do not let the assert do the work of the previous test.
Wed, Feb 18, 8:47 AM
werner triaged T8111: Assertion failure in Libksba's ocsp.c as Normal priority.
Wed, Feb 18, 8:39 AM · Bug Report, libksba

Tue, Feb 17

werner added a subtask for T4108: Support for verifying OpenPGP standalone and timestamp signatures: T4503: include extension for OpenPGP creation timestamp in X.509 output.
Tue, Feb 17, 9:57 AM · gnupg24, gnupg (gpg23), Feature Request
werner added a parent task for T4503: include extension for OpenPGP creation timestamp in X.509 output: T4108: Support for verifying OpenPGP standalone and timestamp signatures.
Tue, Feb 17, 9:57 AM · Feature Request, S/MIME
werner added a parent task for T4108: Support for verifying OpenPGP standalone and timestamp signatures: T4537: gpgsm support for timestamp signatures.
Tue, Feb 17, 9:56 AM · gnupg24, gnupg (gpg23), Feature Request
werner added a subtask for T4537: gpgsm support for timestamp signatures: T4108: Support for verifying OpenPGP standalone and timestamp signatures.
Tue, Feb 17, 9:56 AM · gnupg26, S/MIME, Feature Request
werner committed rG6d81e29392ed: po: Update Portuguese Translation. (authored by Daniel Cerqueira <dan.git@lispclub.com>).
po: Update Portuguese Translation.
Tue, Feb 17, 9:25 AM
werner committed rGac99481ee65a: g10: fix uninit use in aead filter. (authored by Sam James via Gnupg-devel <gnupg-devel@gnupg.org>).
g10: fix uninit use in aead filter.
Tue, Feb 17, 9:17 AM
werner committed rG0f5c9c845fda: g10: check null in assert (authored by Sam James via Gnupg-devel <gnupg-devel@gnupg.org>).
g10: check null in assert
Tue, Feb 17, 9:17 AM
werner committed rG1687dd35ee98: g10: fix uninit use (authored by Sam James via Gnupg-devel <gnupg-devel@gnupg.org>).
g10: fix uninit use
Tue, Feb 17, 9:17 AM

Sun, Feb 15

werner added a comment to T8094: libgcrypt: EC least leak failure.

FWIW: Okay, gmime is still a wrapper around gpgme. After decryption it has the ability to get the used session key from the gpgme result structure. Thus, I have been on the wrong trail. The actual problem is not gpgme but more GnuPG's use of Libgcrypt or an actual regression in Libgcrypt. Well, Friday 13th.

Sun, Feb 15, 4:37 PM · libgcrypt, Bug Report
werner added a comment to T8099: Kleopatra: no default OpenPGP server configured.

This has been specified in 1997 by PGP 5 for a good reason. We talked often enough about this and it does not help to repeat your ideas over and over again. RFC9580 specifies a different protocol than OpenPGP as specified by RFC2440 and RFC4880 but alas grabbed the name OpenPGP for this.

Sun, Feb 15, 3:26 PM · Keyserver, Support, gpg4win
werner added a comment to T8108: gpgmepp: Improve the getrandom API.

I can't speak for gpgmpp but for gpgme. And the gpgme manual says:

Sun, Feb 15, 3:21 PM · gpgmepp

Fri, Feb 13

werner committed rX146a0b455d69: po: Update Russian translation (authored by Ineiev <ineiev@gnu.org>).
po: Update Russian translation
Fri, Feb 13, 5:13 PM
werner committed rKb9e8f4b3d8d7: Fix double increment in DN parser while counting hexdigits. (authored by werner).
Fix double increment in DN parser while counting hexdigits.
Fri, Feb 13, 4:32 PM
werner moved T7133: Add feature to load designated revoker from LDAP from Backlog to WIP on the vsd34 board.
Fri, Feb 13, 3:35 PM · backport, vsd34, Feature Request, gnupg22
werner changed the status of T7133: Add feature to load designated revoker from LDAP from Open to Testing.
Fri, Feb 13, 3:35 PM · backport, vsd34, Feature Request, gnupg22
werner committed rG753175c74e9d: gpg: Autoload designated revoker key and ADSK when needed. (authored by werner).
gpg: Autoload designated revoker key and ADSK when needed.
Fri, Feb 13, 3:34 PM
werner added a comment to T7333: Allow gpg to auto-upload a new own key to LDAP servers.

Has now been backported to be released with 2.2.53

Fri, Feb 13, 2:55 PM · vsd34, gnupg26, gnupg22
werner moved T7333: Allow gpg to auto-upload a new own key to LDAP servers from Backlog to WIP on the vsd34 board.
Fri, Feb 13, 2:55 PM · vsd34, gnupg26, gnupg22
werner changed the status of T7333: Allow gpg to auto-upload a new own key to LDAP servers, a subtask of T6713: Kleopatra or GPG: Configuration to auto publish key changes, from Open to Testing.
Fri, Feb 13, 2:54 PM · kleopatra, Restricted Project
werner changed the status of T7333: Allow gpg to auto-upload a new own key to LDAP servers from Open to Testing.
Fri, Feb 13, 2:54 PM · vsd34, gnupg26, gnupg22
werner committed rG30ef06a56aa4: gpg: Add option --no-auto-key-upload. (authored by werner).
gpg: Add option --no-auto-key-upload.
Fri, Feb 13, 2:53 PM
werner committed rG780fac7788a8: gpg: Make --auto-upload also work for the --quick commands. (authored by werner).
gpg: Make --auto-upload also work for the --quick commands.
Fri, Feb 13, 2:53 PM
werner committed rG5feb3ba62cda: gpg: Make --auto-upload also work for --edit-key (authored by werner).
gpg: Make --auto-upload also work for --edit-key
Fri, Feb 13, 2:53 PM
werner committed rG5714ff20b4ac: gpg: New option --auto-key-upload (authored by werner).
gpg: New option --auto-key-upload
Fri, Feb 13, 2:53 PM
werner moved T7866: Allow separate LDAP keyserver for uploading from WIP to Done on the gnupg26 board.
Fri, Feb 13, 2:28 PM · gnupg22, vsd34, LDAP, Feature Request, gnupg26
werner moved T7866: Allow separate LDAP keyserver for uploading from Backlog to WiP on the gnupg22 board.
Fri, Feb 13, 2:28 PM · gnupg22, vsd34, LDAP, Feature Request, gnupg26
werner committed rG9c8232da83da: dirmngr: Improve LDAP debug output. (authored by werner).
dirmngr: Improve LDAP debug output.
Fri, Feb 13, 2:28 PM
werner committed rG39ca2f6dad38: dirmngr: New LDAP keyserver flag "upload" (authored by werner).
dirmngr: New LDAP keyserver flag "upload"
Fri, Feb 13, 2:28 PM
werner changed the status of T7866: Allow separate LDAP keyserver for uploading from Open to Testing.
Fri, Feb 13, 2:28 PM · gnupg22, vsd34, LDAP, Feature Request, gnupg26
werner committed rE57db619a0a69: po: Update Russian translation (authored by Ineiev <ineiev@gnu.org>).
po: Update Russian translation
Fri, Feb 13, 2:19 PM
werner added a comment to T8101: Upgrade of local (portable) installation failed.

Yeah sure.

Fri, Feb 13, 1:56 PM · Bug Report, gpg4win
werner committed rGPA181817bee9ee: po: Update Russian translation (authored by Ineiev <ineiev@gnu.org>).
po: Update Russian translation
Fri, Feb 13, 1:42 PM
werner changed the visibility for F35850780: x.
Fri, Feb 13, 11:39 AM
werner updated the task description for T8105: Memory leak in BER decoder tree expansion.
Fri, Feb 13, 11:34 AM · Bug Report, libksba
werner triaged T8105: Memory leak in BER decoder tree expansion as Normal priority.
Fri, Feb 13, 11:34 AM · Bug Report, libksba
werner triaged T8104: Heap oob read in libksba's parse_rdn as Normal priority.
Fri, Feb 13, 11:32 AM · Bug Report, libksba
werner edited projects for T8099: Kleopatra: no default OpenPGP server configured, added: Support, Keyserver; removed Bug Report.

keys.openpgp.org has two problems: a) it is a centralized service due to the requirement to confirm mail addresses. b) For non-confirmed keys it returns broken OpenPGP keys (ie. without a user id and thus without important information). For these reasons and the general problems with the keyserver-(networks) there is no more default.

Fri, Feb 13, 11:03 AM · Keyserver, Support, gpg4win
werner closed T8096: GnuPG: quick-key-manipulation regression test FTBFS-2038 as Resolved.
Fri, Feb 13, 10:56 AM · Bug Report
werner closed T6464: No error message if PIN wrong on keytocard as Wontfix.
Fri, Feb 13, 10:55 AM · Restricted Project
werner added a comment to T6464: No error message if PIN wrong on keytocard.

Shall we change log_* functions also emit message to console, when file/socket is specified?

Fri, Feb 13, 10:55 AM · Restricted Project
werner added a comment to T8094: libgcrypt: EC least leak failure.

Any hints where to find the actual crypto code which uses libgcrypt?

Fri, Feb 13, 10:16 AM · libgcrypt, Bug Report
werner closed T8101: Upgrade of local (portable) installation failed as Invalid.

I'm surprised that nobody did detect these problems during the long beta phase...

Fri, Feb 13, 9:52 AM · Bug Report, gpg4win