SHA256
1
0
forked from pool/gpg2

560 Commits

Author SHA256 Message Date
AutoGits PR Review Bot
e58fa19c79 Merge commit 'e8f7427535a8146e0b41cea1621a3aac62cac5ec991109d5d3f4513c3c333f11' into slfo-main 2026-01-29 14:21:00 +01:00
e8f7427535 Security fix 2026-01-28 17:17:23 +02:00
6c3820a8f6 Fix gpg.fail/filename
# Please enter the commit message for your changes. Lines starting
2026-01-28 16:51:03 +02:00
18e25d2ef3 Merge pull request 'CVE-2025-68973' (#1) from pmonrealgonzalez/gpg2:slfo-main into slfo-main
Reviewed-on: https://src.suse.de/ayankov/gpg2/pulls/1
2026-01-09 12:07:52 +01:00
Pedro Monreal
9c6ff60b4e CVE-2025-68973 2026-01-09 12:00:16 +01:00
7536b55ea9 Security fix: bsc#1256243 2026-01-09 10:41:44 +02:00
2a80230136 Security fix: bsc#1256390 2026-01-09 10:41:42 +02:00
32ede2ff3d Sync changes to SLFO-1.2 branch 2025-08-20 09:21:35 +02:00
c2775c7469 Accepting request 1297466 from Base:System
OBS-URL: https://build.opensuse.org/request/show/1297466
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=190
2025-08-06 12:31:18 +00:00
4316b63670 gpg2 2.5.11
OBS-URL: https://build.opensuse.org/package/show/Base:System/gpg2?expand=0&rev=336
2025-08-04 10:52:31 +00:00
dc67a6b728 Accepting request 1293223 from Base:System
gpg2 2.5.9 (forwarded request 1293215 from AndreasStieger)

OBS-URL: https://build.opensuse.org/request/show/1293223
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=189
2025-07-17 15:17:17 +00:00
001f15fe08 gpg2 2.5.9
OBS-URL: https://build.opensuse.org/package/show/Base:System/gpg2?expand=0&rev=334
2025-07-14 19:13:48 +00:00
4f81da96a5 Accepting request 1289186 from Base:System
OBS-URL: https://build.opensuse.org/request/show/1289186
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=188
2025-07-01 09:33:17 +00:00
e610c38039 fix build of qgpgme >= 2.0.0 boo#1244605
OBS-URL: https://build.opensuse.org/package/show/Base:System/gpg2?expand=0&rev=332
2025-06-30 07:10:23 +00:00
859f96c71f Accepting request 1287839 from Base:System
OBS-URL: https://build.opensuse.org/request/show/1287839
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=187
2025-06-24 18:45:58 +00:00
5030552bca Accepting request 1287470 from home:lmulling:branches:Base:System
- Update to 2.5.8:
  * gpg: Show revocation reason with a standard -k listing.  [T7083]
  * gpg: Emit a revocation reason as comment in a "pub" record.
    [T7083]
  * agent: Fix regression in 2.5.7 decrypting with a card based
    cv25519 key.  [T7676]
  * scd:openpgp: Fix a regression in exporting card based ed25519 ssh
    keys.  [T7589]
  * dirmngr: Do not require a keyserver for "gpg --fetch-key".
    [T7693]
- Remove patch:
  * gnupg-agent-fix-for-prefix-0x40-in-the-point-representation.patch

OBS-URL: https://build.opensuse.org/request/show/1287470
OBS-URL: https://build.opensuse.org/package/show/Base:System/gpg2?expand=0&rev=330
2025-06-23 06:25:56 +00:00
1405ece830 Accepting request 1283637 from Base:System
OBS-URL: https://build.opensuse.org/request/show/1283637
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=186
2025-06-10 06:59:27 +00:00
93f47a6bcf - Fix problems with decoding Curve25519
- Added patch
  * gnupg-agent-fix-for-prefix-0x40-in-the-point-representation.patch

OBS-URL: https://build.opensuse.org/package/show/Base:System/gpg2?expand=0&rev=328
2025-06-06 11:45:49 +00:00
488ac0217e Accepting request 1282303 from Base:System
OBS-URL: https://build.opensuse.org/request/show/1282303
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=185
2025-06-04 18:26:54 +00:00
ff6b59b967 - Update to 2.5.7:
* gpg: Allow updating a SHA-1 key certification w/o using
    the --force-sign-key option.  [T7663]
  * gpg: The group key flag has now been fully implemented.
    [rG8833a34bf0]
  * gpg: Make combination of show-only-fpr-mbox and show-unusable-uid
    work.  [rGd5a4a2dc89]
  * gpg: Do not allow compressed key packets on import.  [T7014]
  * gpgsm: Allow an empty subject DN also during import.  [T7171]
  * agent: Recover the old behavior with max-cache-ttl=0.  [T6681]
  * agent: Fix ECC key on smartcard for composite KEM with PQC.
    [T7648]
  * scd: Fix a harmless read buffer over-read in a function used by
    PKCS#15 cards.  [T7662]
  * gpg-mail-tube,wks: Support templates for mail content.  [T7381]
  * Use the KEM interface of Libgcrypt for encryption/decryption.
    [T7649]
- Remove patches:
  * gnupg-agent-Recover-the-old-behavior-with-max-cache-ttl-0.patch
  * gnupg-dirmngr-Don-t-install-expired-sks-certificate.patch
- Update gpg2.keyring

OBS-URL: https://build.opensuse.org/package/show/Base:System/gpg2?expand=0&rev=326
2025-06-03 12:06:53 +00:00
cc979e7f46 Accepting request 1277576 from Base:System
OBS-URL: https://build.opensuse.org/request/show/1277576
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=184
2025-05-23 12:29:17 +00:00
8026720bed - Don't install expired sks certificate [bsc#1243069]
* Add patch gnupg-dirmngr-Don-t-install-expired-sks-certificate.patch
- Revert old max-cache-ttl behavior [bsc#1241656]
  * Add patch gnupg-agent-Recover-the-old-behavior-with-max-cache-ttl-0.patch

OBS-URL: https://build.opensuse.org/package/show/Base:System/gpg2?expand=0&rev=324
2025-05-15 07:06:58 +00:00
2180b16f49 Accepting request 1275913 from Base:System
OBS-URL: https://build.opensuse.org/request/show/1275913
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=183
2025-05-12 14:45:29 +00:00
1df721705b - Update to 2.5.6:
* gpg: Add a flag to the filter expressions for left anchored
    substring match.  [rGc12b7d047e]
  * gpg: New list option "show-trustsig" to avoid resorting to colon
    mode for this info.  [rG41d6ae8f41]
  * gpg: New command --quick-tsign-key to create a trust signature.
    [rGd90b290f97]
  * gpg: New keygen parameter "User-Id".  [rGcfd597c603]
  * gpg: New list options "show-trustsig".  [rGrG41d6ae8f41]
  * gpg: Fix double free of internal data in no-sig-cache mode [T7547]
  * gpg: Signatures from revoked or expired keys do not anymore show
    up as missing keys.  Fixes regression in 2.5.5.  [T7583]
  * gpgsm: Extend --learn-card by an optional s/n argument.  [T7379]
  * gpgsm: Skip expired certificates when selection a certificate by
    subject.  [rG4cf83273e8]
  * card: New command "ll" as alias for "list --cards".  [rGd6ee7adebe]
  * scd:p15: Accept P15 cards with a zero-length label.  [rGdb25aa9887]
  * keyboxd: Use case-insensitive search for mail addresses.  [T7576]
  * dirmngr: Fix a problem in libdns related to an address change from
    127.0.0.1.  [T4021]
  * gpgconf: Fix reload and kill of keyboxd.  [T7569]
  * Fix logic for certain recsel conditions.  [rG8968e84903]
  * Add Solaris support to get_signal_name.  [T7638]
  * Fix build error of the test shell on AIX.  [T7632]
- Release-info: https://dev.gnupg.org/T7586
- Rebase patch gnupg-nobetasuffix.patch
- Remove patch gnupg-CVE-2025-30258-fix.patch

OBS-URL: https://build.opensuse.org/package/show/Base:System/gpg2?expand=0&rev=322
2025-05-08 19:18:57 +00:00
23376f49fa Accepting request 1255641 from home:pmonrealgonzalez:branches:Base:System
- Fix a regression introduced in CVE-2025-30258 [bsc#1239875]
  * Upstream task: dev.gnupg.org/T7547
  * gpg: Fix double free of internal data.
  * Add gnupg-CVE-2025-30258-fix.patch

- Update to 2.5.5: [bsc#1236931, bsc#1239119, CVE-2025-30258]

OBS-URL: https://build.opensuse.org/request/show/1255641
OBS-URL: https://build.opensuse.org/package/show/Base:System/gpg2?expand=0&rev=321
2025-03-24 14:02:22 +00:00
92a7acf48d Accepting request 1251267 from Base:System
OBS-URL: https://build.opensuse.org/request/show/1251267
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=182
2025-03-10 16:57:32 +00:00
ff3895645a - Update to 2.5.5: [bsc#1236931, bsc#1239119]
* gpg: Fix a verification DoS due to a malicious subkey in the
    keyring.  [T7527]
  * dirmngr: Fix possible hangs due to blocking connection requests.
    [T6606, T7434]
  Release-info: https://dev.gnupg.org/T7530

OBS-URL: https://build.opensuse.org/package/show/Base:System/gpg2?expand=0&rev=319
2025-03-07 19:23:04 +00:00
f6a9df7e71 Accepting request 1248748 from Base:System
OBS-URL: https://build.opensuse.org/request/show/1248748
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=181
2025-02-27 13:49:55 +00:00
3d82e3acf3 - Fixing gpg-agent integration by changing --supervised to
--deprecated-supervised in service files.

Most likely not the final solution, but unbreak ssh usage for
me at least for now.

OBS-URL: https://build.opensuse.org/package/show/Base:System/gpg2?expand=0&rev=317
2025-02-26 14:31:40 +00:00
6a3d8af788 Accepting request 1247136 from Base:System
OBS-URL: https://build.opensuse.org/request/show/1247136
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=180
2025-02-20 15:27:36 +00:00
b5c8bbca87 - Update to 2.5.4:
* gpg: New option --disable-pqc-encryption. [rG00c31f8b04]
  * gpg: Fix --quick-add-key for Weierstrass ECC with usage given. [T7506]
  * gpg: Fix handling with no CRC armor. [T7071]
  * gpg: New private Kyber keys are now cross-referenced using a new
    Link attribute. [T6638]
  * gpg: Fix an import problem with keys having another primary key as
    a subkey. [T7527]
  * gpgsm: Allow unattended PKCS#12 export without passphrase. [rG159e801043]
  * gpgsm: Allow CSR generation with an unprotected key. [rG89055f24f4]
  * agent: New option --change-std-env-name. [T7522]
  * agent: Fix ssh-agent's request_identities for skipped Brainpool
    keys. [rG2469dc5aae]
  * Do not package zlib and bzip2 object files in a speedo release build. [T7442]
  * Rebase patches:
    - gnupg-add_legacy_FIPS_mode_option.patch
    - gnupg-allow-import-of-previously-known-keys-even-without-UIDs.patch
    - gnupg-revert-rfc4880bis.patch

OBS-URL: https://build.opensuse.org/package/show/Base:System/gpg2?expand=0&rev=315
2025-02-19 15:02:23 +00:00
149f801869 Accepting request 1237873 from Base:System
OBS-URL: https://build.opensuse.org/request/show/1237873
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=179
2025-01-16 17:30:58 +00:00
304a894420 - Update to 2.5.3
* gpg: Allow for signature subpackets of up to 30000 octets.
    [rG36dbca3e69]
  * gpg: Silence expired trusted-key diagnostics in quiet mode.  [T7351]
  * gpg: Allow smaller session keys with Kyber and enforce the use of
    AES-256 if useful.  [T7472]
  * gpg: Fix regression in key generation from existing card key.
    [T7309,T7457]
  * gpg: Print a warning if the card backup key could not be written.
    [T2169]
  * The --supervised options of gpg-agent and dirmngr have been
    renamed to --deprecated-supervised as preparation for their removal.
    [rGa019a0fcd8]
  * There is no more default for a keyserver.

OBS-URL: https://build.opensuse.org/package/show/Base:System/gpg2?expand=0&rev=313
2025-01-14 16:14:12 +00:00
63e215bf35 Accepting request 1235795 from Base:System
OBS-URL: https://build.opensuse.org/request/show/1235795
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=178
2025-01-09 14:05:23 +00:00
5a59d6538d - note updated 2.5.x build dependencies
OBS-URL: https://build.opensuse.org/package/show/Base:System/gpg2?expand=0&rev=311
2025-01-08 07:02:53 +00:00
9d71403c8b Accepting request 1230100 from Base:System
OBS-URL: https://build.opensuse.org/request/show/1230100
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=177
2024-12-13 21:31:20 +00:00
72807f89b1 Accepting request 1230099 from home:lmulling:branches:Base:System
- Update to 2.5.2:
  * gpg: Add option 16 to --full-gen-key to create ECC+Kyber.  [T6638]
  * gpg: For composite algos add the algo string to the colons
    listings.  [T6638]
  * gpg: Validate the trustdb after the import of a trusted key.
    [T7200]
  * gpg: Exclude expired trusted keys from the key validation process.
    [T7200]
  * gpg: Fix a wrong decryption failed status for signed and OCB
    encrypted messages without a signature verification key.  [T7042]
  * gpg: Retain binary representation for import->export with Ed25519
    key signatures.  [T7426]
  * gpg: Fix comparing ed448 to ed25519 with --assert-pubkey-algo.
    [T7425]
  * gpg: Avoid a failure exit code for expired ultimately trusted
    keys.  [T7351]
  * gpg: Emit status error for an invalid ADSK.  [T7322]
  * gpg: Allow the use of an ADSK subkey as ADSK subkey.  [T6882]
  * gpg: Fix --quick-set-expire for V5 subkey fingerprints.  [T7298]
  * gpg: Robust error handling for SCD READKEY.  [T7309]
  * gpg: Fix cv25519 v5 export regression.  [T7316]
  * gpgsm: Nearly fourfold speedup of validated certificate listings.
    [T7308]
  * gpgsm: Improvement for some rare P12 files.  [rGf50dde6269]
  * gpgsm: Terminate key listing on output write error.  [T6185]
  * agent: Add option --status to the LISTRUSTED command.
    [rG4275d5fa7a]
  * agent: Fix detection of the yet unused trustflag de-vs.  [T5079]
  * agent: Allow ssh to sign data larger than the Assuan line length.
    [T7436]

OBS-URL: https://build.opensuse.org/request/show/1230099
OBS-URL: https://build.opensuse.org/package/show/Base:System/gpg2?expand=0&rev=309
2024-12-11 12:42:25 +00:00
a37d32780e Accepting request 1228586 from devel:LoongArch:Factory
- Disable ibmswtpm2 on LoongArch64

OBS-URL: https://build.opensuse.org/request/show/1228586
OBS-URL: https://build.opensuse.org/package/show/Base:System/gpg2?expand=0&rev=308
2024-12-11 08:24:55 +00:00
ac9f481e74 Accepting request 1217152 from Base:System
OBS-URL: https://build.opensuse.org/request/show/1217152
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=176
2024-10-25 17:18:26 +00:00
c957356fce - Update to 2.5.1:
* gpg: The support for composite Kyber+ECC public key algorithms
    does now use the final FIPS-203 and LibrePGP specifications. The
    experimental keys from 2.5.0 are no longer supported. [T6815]
  * gpg: New commands --add-recipients and --change-recipients. [T1825]
  * gpg: New option --proc-all-sigs. [T7261]
  * gpg: Fix a regression in 2.5.0 in gpgme's tests. [T7195]
  * gpg: Make --no-literal work again for -c and --store. [T5852]
  * gpg: Improve detection of input data read errors. [T6528]
  * gpg: Fix getting key by IPGP record (rfc-4398). [T7288]
  * gpgsm: New option --assert-signer. [T7286]
  * gpgsm: More improvements to PKCS#12 parsing to cope with latest
    IVBB changes. [T7213]
  * agent: Fix KEYTOCARD command when used with a loopback pinentry. [T7283]
  * gpg-mail-tube: Make sure GNUPGHOME is set in vsd mode.  New option
    --as-attach. [rG4511997e9e1b]
  * Now uses the process spawn API from libgpg-error. [T7192,T7194]
  * Removed the --enable-gpg-is-gpg2 configure time option.
    [rG2125f228d36c]
  * Rebase patches:
    - gnupg-add_legacy_FIPS_mode_option.patch
    - gnupg-revert-rfc4880bis.patch
    - gnupg-nobetasuffix.patch

OBS-URL: https://build.opensuse.org/package/show/Base:System/gpg2?expand=0&rev=306
2024-10-23 06:41:50 +00:00
fec1c85c21 Accepting request 1193388 from Base:System
OBS-URL: https://build.opensuse.org/request/show/1193388
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=175
2024-08-13 11:22:21 +00:00
adfcc45b23 Accepting request 1156460 from Base:System
OBS-URL: https://build.opensuse.org/request/show/1156460
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=174
2024-03-09 19:54:13 +00:00
9cc9b61229 Accepting request 1156367 from home:pmonrealgonzalez:branches:Base:System
- Update to 2.4.5:
  * gpg,gpgv: New option --assert-pubkey-algo. [T6946]
  * gpg: Emit status lines for errors in the compression layer. [T6977]
  * gpg: Fix invocation with --trusted-keys and --no-options. [T7025]
  * gpgsm: Allow for a longer salt in PKCS#12 files. [T6757]
  * gpgtar: Make --status-fd=2 work on Windows. [T6961]
  * scd: Support for the ACR-122U NFC reader. [rG1682ca9f01]
  * scd: Suport D-TRUST ECC cards. [T7000,T7001]
  * scd: Allow auto detaching of kernel drivers; can be disabled with
    the new compatibility-flag ccid-no-auto-detach. [rGa1ea3b13e0]
  * scd: Allow setting a PIN length of 6 also with a reset code for
    openpgp cards. [T6843]
  * agent: Allow GET_PASSPHRASE in restricted mode. [rGadf4db6e20]
  * dirmngr: Trust system's root CAs for checking CRL issuers. [T6963]
  * dirmngr: Fix regression in 2.4.4 in fetching keys via hkps. [T6997]
  * gpg-wks-client: Make option --mirror work properly w/o specifying
    domains. [rG37cc255e49]
  * g13,gpg-wks-client: Allow command style options as in "g13 mount
    foo". [rGa09157ccb2]
  * Allow tilde expansion for the foo-program options. [T7017]
  * Make the getswdb.sh tool usable outside the GnuPG tree.
  * Release-info: https://dev.gnupg.org/T6960
  * Update the required versions for the dependencies.

OBS-URL: https://build.opensuse.org/request/show/1156367
OBS-URL: https://build.opensuse.org/package/show/Base:System/gpg2?expand=0&rev=302
2024-03-08 21:44:56 +00:00
ca6530f919 Accepting request 1141713 from Base:System
OBS-URL: https://build.opensuse.org/request/show/1141713
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=173
2024-01-26 21:46:20 +00:00
756f25929a Accepting request 1141611 from home:pmonrealgonzalez:branches:Base:System
- Update to 2.4.4: [bsc#1219191]
  * gpg: Do not keep an unprotected smartcard backup key on disk.
    See https://gnupg.org/blog/20240125-smartcard-backup-key.html
    for a security advisory. [T6944]
  * gpg: Allow to specify seconds since Epoch beyond 2038 on 32-bit
    platforms. [T6736]
  * gpg: Fix expiration time when Creation-Date is specified. [T5252]
  * gpg: Add support for Subkey-Expire-Date. [rG96b69c1866]
  * gpg: Add option --with-v5-fingerprint. [T6705]
  * gpg: Add sub-option ignore-attributes to --import-options.
  * gpg: Add --list-filter properties sig_expires/sig_expires_d.
  * gpg: Fix validity of re-imported keys. [T6399]
  * gpg: Report BEGIN_ status before examining the input. [T6481]
  * gpg: Don't try to compress a read-only keybox. [T6811]
  * gpg: Choose key from inserted card over a non-inserted card. [T6831]
  * gpg: Allow to create revocations even with non-compliant algos. [T6929]
  * gpg: Fix regression in the Revoker keyword of the parameter file. [T6923]
  * gpg: Improve error message for expired default keys. [T4704]
  * gpgsm: Add --always-trust feature. [T6559]
  * gpgsm: Support ECC certificates in de-vs mode. [T6802]
  * gpgsm: Major rewrite of the PKCS#12 parser. [T6536]
  * gpgsm: No not show the pkcs#12 passphrase in debug output. [T6654]
  * keyboxd: Timeout on failure to get the database lock. [T6838]
  * agent: Update the key stubs only if really modified. [T6829]
  * scd: Add support for certain Starcos 3.2 cards. [rG5304c9b080]
  * scd: Add support for CardOS 5.4 cards. [rG812f988059]
  * scd: Add support for D-Trust 4.1/4.4 cards. [rG0b85a9ac09]
  * scd: Add support for Smartcafe Expert 7.0 cards. [T6919]
  * scd: Add a length check for a new PIN. [T6843]
  * tpm: Fix keytotpm handling in the agent. [rG9909f622f6]

OBS-URL: https://build.opensuse.org/request/show/1141611
OBS-URL: https://build.opensuse.org/package/show/Base:System/gpg2?expand=0&rev=300
2024-01-26 10:36:00 +00:00
9e56a72fd1 Accepting request 1121440 from Base:System
OBS-URL: https://build.opensuse.org/request/show/1121440
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=172
2023-11-02 19:20:41 +00:00
66cef8f95a Accepting request 1121439 from security:privacy
OBS-URL: https://build.opensuse.org/request/show/1121439
OBS-URL: https://build.opensuse.org/package/show/Base:System/gpg2?expand=0&rev=298
2023-10-31 12:55:15 +00:00
8642aa53ea Accepting request 1118846 from Base:System
OBS-URL: https://build.opensuse.org/request/show/1118846
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=171
2023-10-20 21:15:36 +00:00
eb82e4c4b9 Accepting request 1118845 from security:privacy
OBS-URL: https://build.opensuse.org/request/show/1118845
OBS-URL: https://build.opensuse.org/package/show/Base:System/gpg2?expand=0&rev=296
2023-10-19 08:12:17 +00:00
747644e50a Accepting request 1118131 from Base:System
OBS-URL: https://build.opensuse.org/request/show/1118131
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=170
2023-10-17 18:22:32 +00:00
478e599991 Accepting request 1118104 from security:privacy
OBS-URL: https://build.opensuse.org/request/show/1118104
OBS-URL: https://build.opensuse.org/package/show/Base:System/gpg2?expand=0&rev=294
2023-10-17 02:51:08 +00:00
1c8feecfe7 Accepting request 1116712 from Base:System
OBS-URL: https://build.opensuse.org/request/show/1116712
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=169
2023-10-11 21:54:10 +00:00
4eafdb296b Accepting request 1116649 from security:privacy
- Install the internal executables in the /usr/libexec dir instead
  of /usr/lib64. These files are keyboxd, scdaemon, gpg-auth
  gpg-check-pattern, gpg-pair-tool, gpg-preset-passphrase,
  gpg-protect-tool, gpg-wks-client, dirmngr_ldap and tpm2daemon.

- Provide the systemd-user files since they have been removed
  upstream since version 2.4.1. [bsc#1201564]
  * Add gpg2-systemd-user.tar.xz

- Revert back to use the IBM TPM Software stack.

- Update to 2.4.3:
  * gpg: Set default expiration date to 3 years. [T2701]
  * gpg: Add --list-filter properties "key_expires" and
    "key_expires_d". [T6529]
  * gpg: Emit status line and proper diagnostics for write errors. [T6528]
  * gpg: Make progress work for large files on Windows. [T6534]
  * gpg: New option --no-compress as alias for -z0.
  * gpgsm: Print PROGRESS status lines. Add new --input-size-hint. [T6534]
  * gpgsm: Support SENDCERT_SKI for --call-dirmngr. [rG701a8b30f0]
  * gpgsm: Major rewrite of the PKCS#12 parser. [T6536]
  * gpgtar: New option --no-compress.
  * dirmngr: Extend the AD_QUERY command. [rG207c99567c]
  * dirmngr: Disable the HTTP redirect rewriting. [T6477]
  * dirmngr: New option --compatibility-flags. [rGbf04b07327]
  * dirmngr: New option --ignore-crl-extensions. [T6545]
  * wkd: Use export-clean for gpg-wks-client's --mirror and --create
    commands. [rG2c7f7a5a27]
  * wkd: Make --add-revocs the default in gpg-wks-client. New option
    --no-add-revocs. [rG10c937ee68]

OBS-URL: https://build.opensuse.org/request/show/1116649
OBS-URL: https://build.opensuse.org/package/show/Base:System/gpg2?expand=0&rev=292
2023-10-10 15:00:55 +00:00
446cd84511 Accepting request 1113652 from Base:System
OBS-URL: https://build.opensuse.org/request/show/1113652
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=168
2023-09-27 22:24:56 +00:00
97910ac5da Accepting request 1113650 from home:pmonrealgonzalez:branches:Base:System
* Rework excludes in the spec's files section.

OBS-URL: https://build.opensuse.org/request/show/1113650
OBS-URL: https://build.opensuse.org/package/show/Base:System/gpg2?expand=0&rev=290
2023-09-26 10:55:09 +00:00
fb0ed03b15 Accepting request 1112814 from home:pmonrealgonzalez:branches:Base:System
- Install the systemd user units in the _userunitdir [bsc#1201564]
  * Note that, there is no activation by default.

- Temporarily revert back to the pre-2.4 default for key generation.
  The new rfc4880bis has been set as the default in 2.4 version and
  might create incompatible keys. Note that, rfc4880bis can still
  be used with the option flag --rfc4880bis as in previous versions.
  * More info in the gnupg-devel ML:
    https://lists.gnupg.org/pipermail/gnupg-devel/2022-December/035183.html
  * Reverted commit https://dev.gnupg.org/rGcaf4b3fc16e9
  * Add gnupg-revert-rfc4880bis.patch

- Allow 8192 bit RSA keys in keygen UI when large_rsa is set
  * Add gnupg-allow-large-rsa.patch

- Fix broken GPGME QT tests: Upstram dev task dev.gnupg.org/T6313
  * The original patch has been modified to expand the changes
    also to the tests/gpgme/Makefile.in file.
  * Add gnupg-tests-Fix-tests-gpgme-for-in-source-tree-builds.patch

- Updated to require libgpg-error-devel >= 1.46
- Rebased patches:
  * gnupg-allow-import-of-previously-known-keys-even-without-UIDs.patch
  * gnupg-add_legacy_FIPS_mode_option.patch
- GnuPG 2.4.0:
  * common: Fix translations in --help for gpgrt < 1.47.
  * gpg: Do not continue the export after a cancel for the primary key.
  * gpg: Replace use of PRIu64 in log_debug.
  * Update NEWS for 2.4.0.
  * tests: Fix make check with GPGME.

OBS-URL: https://build.opensuse.org/request/show/1112814
OBS-URL: https://build.opensuse.org/package/show/Base:System/gpg2?expand=0&rev=289
2023-09-25 10:24:20 +00:00
d7015d9b6d Accepting request 1091340 from openSUSE:Factory
https://bugzilla.opensuse.org/show_bug.cgi?id=1211456
https://bugzilla.opensuse.org/show_bug.cgi?id=1211444

Still valid

OBS-URL: https://build.opensuse.org/request/show/1091340
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=167
2023-06-07 21:06:41 +00:00
OBS User buildservice-autocommit
52cb54ea3e Updating link to change in openSUSE:Factory/gpg2 revision 167
OBS-URL: https://build.opensuse.org/package/show/Base:System/gpg2?expand=0&rev=1d9a4b6c8cbfc2ef506e5c9a5f4e8e09
2023-06-07 21:06:41 +00:00
5fac642654 Accepting request 1091340 from openSUSE:Factory
https://bugzilla.opensuse.org/show_bug.cgi?id=1211456
https://bugzilla.opensuse.org/show_bug.cgi?id=1211444

Still valid

OBS-URL: https://build.opensuse.org/request/show/1091340
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=167
2023-06-07 21:06:41 +00:00
848ac5d6a6 Accepting request 1090818 from Base:System
OBS-URL: https://build.opensuse.org/request/show/1090818
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=166
2023-06-06 17:55:08 +00:00
88bac69b31 Accepting request 1090818 from Base:System
OBS-URL: https://build.opensuse.org/request/show/1090818
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=166
2023-06-06 17:55:08 +00:00
8386d6f0f3 Accepting request 1089861 from home:pmonrealgonzalez:branches:Base:System
- Update to 2.4.2:
  * gpg: Print a warning if no more encryption subkeys are left over
    after changing the expiration date.  [rGef2c3d50fa]
  * gpg: Fix searching for the ADSK key when adding an ADSK.  [T6504]
  * gpgsm: Speed up key listings on Windows.  [rG08ff55bd44]
  * gpgsm: Reduce the number of "failed to open policy file"
    diagnostics.  [rG68613a6a9d]
  * agent: Make updating of private key files more robust and track
    display S/N.  [T6135]
  * keyboxd: Avoid longish delays on Windows when listing keys.
    [rG6944aefa3c]
  * gpgtar: Emit extra status lines to help GPGME.  [T6497]
  * w32: Avoid using the VirtualStore.  [T6403]
  * Rebase gnupg-add_legacy_FIPS_mode_option.patch

- Update to 2.4.1:
  * If the ~/.gnupg directory does not exist, the keyboxd is now
    automagically enabled. [rGd9e7488b17]
  * gpg: New option --add-desig-revoker. [rG3d094e2bcf]
  * gpg: New option --assert-signer. [rGc9e95b8dee]
  * gpg: New command --quick-add-adsk and other ADSK features.
    [T6395, https://gnupg.org/blog/20230321-adsk.html]
  * gpg: New list-option "show-unusable-sigs". Also show "[self-signature]"
    instead of the user-id in key signature listings. [rG103acfe9ca]
  * gpg: For symmetric encryption the default S2K hash is now SHA256. [T6367]
  * gpg: Detect already compressed data also when using a pipe. Also
    detect JPEG and PNG file formats. [T6332]
  * gpg: New subcommand "openpgp" for --card-edit. [T6462]
  * gpgsm: Verification of detached signatures does now strip trailing
    zeroes from the input if --assume-binary is used. [rG2a13f7f9dc]

OBS-URL: https://build.opensuse.org/request/show/1089861
OBS-URL: https://build.opensuse.org/package/show/Base:System/gpg2?expand=0&rev=287
2023-06-05 06:26:02 +00:00
cdf77d08c3 Accepting request 1087520 from openSUSE:Factory
https://bugzilla.opensuse.org/show_bug.cgi?id=1211456
https://bugzilla.opensuse.org/show_bug.cgi?id=1211444

OBS-URL: https://build.opensuse.org/request/show/1087520
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=165
2023-05-17 08:52:48 +00:00
1991155811 Accepting request 1087520 from openSUSE:Factory
https://bugzilla.opensuse.org/show_bug.cgi?id=1211456
https://bugzilla.opensuse.org/show_bug.cgi?id=1211444

OBS-URL: https://build.opensuse.org/request/show/1087520
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=165
2023-05-17 08:52:48 +00:00
OBS User buildservice-autocommit
6391641db2 Updating link to change in openSUSE:Factory/gpg2 revision 165
OBS-URL: https://build.opensuse.org/package/show/Base:System/gpg2?expand=0&rev=470148cd26498127ebe3c310690037d6
2023-05-17 08:52:48 +00:00
0ee86cb849 Accepting request 1087238 from Base:System
OBS-URL: https://build.opensuse.org/request/show/1087238
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=164
2023-05-16 12:15:56 +00:00
7a614d5a54 Accepting request 1087238 from Base:System
OBS-URL: https://build.opensuse.org/request/show/1087238
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=164
2023-05-16 12:15:56 +00:00
7b529e951d Accepting request 1083635 from home:pmonrealgonzalez:branches:Base:System
- Temporarily revert back to the pre-2.4 default for key generation.
  The new rfc4880bis has been set as the default in 2.4 version and
  might create incompatible keys. Note that, rfc4880bis can still
  be used with the option flag --rfc4880bis as in previous versions.
  * More info in the gnupg-devel ML:
    https://lists.gnupg.org/pipermail/gnupg-devel/2022-December/035183.html
  * Reverted commit https://dev.gnupg.org/rGcaf4b3fc16e9
  * Add gnupg-revert-rfc4880bis.patch

- Allow 8192 bit RSA keys in keygen UI when large_rsa is set
  * Add gnupg-allow-large-rsa.patch

- Enable the regression tests: Fix the regression test suite that
  fails with the IBM TPM Software stack. Builds fine using the Intel
  TPM; use the swtpm and tpm2-0-tss-devel packages instead of
  ibmswtpm2 and ibmtss-devel.

OBS-URL: https://build.opensuse.org/request/show/1083635
OBS-URL: https://build.opensuse.org/package/show/Base:System/gpg2?expand=0&rev=285
2023-05-15 13:48:44 +00:00
0f5ef67105 Accepting request 1083567 from home:david.anes:branches:Base:System
- Rebased patches:
  * gnupg-add_legacy_FIPS_mode_option.patch
- Removed patches (already upstream):
  * gnupg-tests-Fix-tests-gpgme-for-in-source-tree-builds.patch 
- Don't ship systemd examples, as they are removed from upstream
  release tarball.
- Update to 2.4.1:
  * If the ~/.gnupg directory does not exist, the keyboxd is now
    automagically enabled.
  * gpg: New option --add-desig-revoker.
  * gpg: New option --assert-signer.
  * gpg: New command --quick-add-adsk and other ADSK features.
  * gpg: New list-option "show-unusable-sigs".  Also show
    "[self-signature]" instead of the user-id in key signature
    listings. 
  * gpg: For symmetric encryption the default S2K hash is now SHA256.
  * gpg: Detect already compressed data also when using a pipe.  Also
    detect JPEG and PNG file formats.
  * gpg: New subcommand "openpgp" for --card-edit.
  * gpgsm: Verification of detached signatures does now strip trailing
    zeroes from the input if --assume-binary is used.
  * gpgsm: Non-armored detached signature are now created without
    using indefinite form length octets.  This improves compatibility
    with some PDF signature verification software.
  * gpgtar: Emit progress status lines in create mode.
  * dirmngr: The LDAP modifyTimestamp is now returned by some
    keyserver commands.
  * ssh: Allow specification of the order keys are presented to ssh.
    See the man page entry for --enable-ssh-support.
  * gpg: Make list-options "show-sig-subpackets" work again.

OBS-URL: https://build.opensuse.org/request/show/1083567
OBS-URL: https://build.opensuse.org/package/show/Base:System/gpg2?expand=0&rev=284
2023-04-29 07:28:45 +00:00
bcc05eb282 Accepting request 1059898 from home:pmonrealgonzalez:branches:Base:System
- Fix broken GPGME QT tests: Upstram dev task dev.gnupg.org/T6313
  * The original patch has been modified to expand the changes
    also to the tests/gpgme/Makefile.in file.
  * Add gnupg-tests-Fix-tests-gpgme-for-in-source-tree-builds.patch

OBS-URL: https://build.opensuse.org/request/show/1059898
OBS-URL: https://build.opensuse.org/package/show/Base:System/gpg2?expand=0&rev=283
2023-01-20 20:00:59 +00:00
90cb1f61d3 Accepting request 1046530 from home:david.anes:branches:Base:System
- Updated to require libgpg-error-devel >= 1.46
- Rebased patches:
  * gnupg-allow-import-of-previously-known-keys-even-without-UIDs.patch
  * gnupg-add_legacy_FIPS_mode_option.patch
- GnuPG 2.4.0:
  * common: Fix translations in --help for gpgrt < 1.47.
  * gpg: Do not continue the export after a cancel for the primary key.
  * gpg: Replace use of PRIu64 in log_debug.
  * Update NEWS for 2.4.0.
  * tests: Fix make check with GPGME.
  * agent: Allow arguments to "scd serialno" in restricted mode.
  * scd:p15: Skip deleted records.
  * build: Remove Windows CE support.
  * wkd: Do not send/install/mirror expired user ids.
  * gpgsm: Print the revocation time also with --verify.
  * gpgsm: Fix "problem re-searching certificate" case.
  * gpgsm: Print revocation date and reason in cert listings.
  * gpgsm: Silence the "non-critical certificate policy not allowed".
  * gpgsm: Always use the chain model if the root-CA requests this.
  * gpg: New export option "mode1003".
  * gpg: Remove a mostly duplicated function.
  * tests: Simplify fake-pinentry to use the option only.
  * tests: Fix fake-pinentry for Windows.
  * tests: Fix make check-all.
  * agent: Fix import of protected v5 keys.
  * gpgsm: Change default algo to AES-256.
  * tests: Put a workaround for semihosted environment.
  * tests: More fix for semihosted environment.
  * tests: Support semihosted environment.
  * tests: Fix tests under cms.

OBS-URL: https://build.opensuse.org/request/show/1046530
OBS-URL: https://build.opensuse.org/package/show/Base:System/gpg2?expand=0&rev=282
2023-01-03 14:26:43 +00:00
c2d783816a Accepting request 1029595 from Base:System
OBS-URL: https://build.opensuse.org/request/show/1029595
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=163
2022-10-18 10:44:45 +00:00
2411675e0b Accepting request 1029595 from Base:System
OBS-URL: https://build.opensuse.org/request/show/1029595
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=163
2022-10-18 10:44:45 +00:00
1567d49408 Accepting request 1012076 from home:pmonrealgonzalez:branches:Base:System
- GnuPG 2.3.8:
  * gpg: Do not consider unknown public keys as non-compliant while
    decrypting.
  * gpg: Avoid to emit a compliance mode line if Libgcrypt is
    non-compliant.
  * gpg: Improve --edit-key setpref command to ease c+p.
  * gpg: Emit an ERROR status if --quick-set-primary-uid fails and
    allow to pass the user ID by hash.
  * gpg: Actually show symmetric+pubkey encrypted data as de-vs
    compliant.  Add extra compliance checks for symkey_enc packets.
  * gpg: In de-vs mode use SHA-256 instead of SHA-1 as implicit
    preference.
  * gpgsm: Fix reporting of bad passphrase error during PKCS#11
    import.
  * agent: Fix a regression in "READKEY --format=ssh".
  * agent: New option --need-attr for KEYINFO.
  * agent: New attribute "Remote-list" for use by KEYINFO.
  * scd: Fix problem with Yubikey 5.4 firmware.
  * dirmngr: Fix CRL Distribution Point fallback to other schemes.
  * dirmngr: New LDAP server flag "areconly" (A-record-only).
  * dirmngr: Fix upload of multiple keys for an LDAP server specified
    using the colon format.
  * dirmngr: Use LDAP schema v2 when a Base DN is specified.
  * dirmngr: Avoid caching expired certificates.
  * wkd: Fix path traversal attack in gpg-wks-server. Add the mail
    address to the pending request data.
  * wkd: New command --mirror for gpg-wks-client.
  * gpg-auth: New tool for authentication.
  * New common.conf option no-autostart.
  * Silence warnings from AllowSetForegroundWindow unless

OBS-URL: https://build.opensuse.org/request/show/1012076
OBS-URL: https://build.opensuse.org/package/show/Base:System/gpg2?expand=0&rev=280
2022-10-17 18:43:45 +00:00
0fc8cb4de7 Accepting request 993850 from Base:System
OBS-URL: https://build.opensuse.org/request/show/993850
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=162
2022-08-10 15:12:29 +00:00
f755af3d44 Accepting request 993850 from Base:System
OBS-URL: https://build.opensuse.org/request/show/993850
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=162
2022-08-10 15:12:29 +00:00
a47f80ec30 Accepting request 993834 from security:privacy
Fix YubiKey 5 Nano support (boo#1202201)

OBS-URL: https://build.opensuse.org/request/show/993834
OBS-URL: https://build.opensuse.org/package/show/Base:System/gpg2?expand=0&rev=278
2022-08-08 20:32:26 +00:00
898e3e4872 Accepting request 989805 from Base:System
GnuPG 2.3.7 CVE-2022-34903 boo#1201225 (forwarded request 988764 from AndreasStieger)

OBS-URL: https://build.opensuse.org/request/show/989805
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=161
2022-07-31 21:00:18 +00:00
dcafaab052 Accepting request 989805 from Base:System
GnuPG 2.3.7 CVE-2022-34903 boo#1201225 (forwarded request 988764 from AndreasStieger)

OBS-URL: https://build.opensuse.org/request/show/989805
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=161
2022-07-31 21:00:18 +00:00
5d908c5a8d Accepting request 988764 from home:AndreasStieger:branches:Base:System
GnuPG 2.3.7 CVE-2022-34903 boo#1201225

OBS-URL: https://build.opensuse.org/request/show/988764
OBS-URL: https://build.opensuse.org/package/show/Base:System/gpg2?expand=0&rev=276
2022-07-18 07:38:55 +00:00
49a00d0ab3 Accepting request 978674 from Base:System
Automatic submission by obs-autosubmit

OBS-URL: https://build.opensuse.org/request/show/978674
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=160
2022-05-24 18:30:53 +00:00
66a81fcf63 Accepting request 978674 from Base:System
Automatic submission by obs-autosubmit

OBS-URL: https://build.opensuse.org/request/show/978674
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=160
2022-05-24 18:30:53 +00:00
3e92c112c1 - added tpm support, added a new subpackage gpg2-tpm
OBS-URL: https://build.opensuse.org/package/show/Base:System/gpg2?expand=0&rev=274
2022-05-16 09:13:17 +00:00
f51bd484ac Accepting request 976484 from home:jejb1:gpg2
Enable tpm2 support which now exists in gpg2

This request enables tpm2 as a separate packaged add on (so the original gpg2 package and its dependencies is unchanged and the new gpg2-tpm package contains all the tpm2 dependencies).  To enable tpm2 support in
gpg2, you simply install gpg2-tpm and the keytotpm command will then just work

OBS-URL: https://build.opensuse.org/request/show/976484
OBS-URL: https://build.opensuse.org/package/show/Base:System/gpg2?expand=0&rev=273
2022-05-16 08:30:58 +00:00
aef28deec0 Accepting request 975336 from Base:System
OBS-URL: https://build.opensuse.org/request/show/975336
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=159
2022-05-08 19:52:27 +00:00
2e7366ea03 Accepting request 975336 from Base:System
OBS-URL: https://build.opensuse.org/request/show/975336
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=159
2022-05-08 19:52:27 +00:00
5f351f08d1 Accepting request 972712 from home:AndreasStieger:branches:Base:System
GnuPG 2.3.6

OBS-URL: https://build.opensuse.org/request/show/972712
OBS-URL: https://build.opensuse.org/package/show/Base:System/gpg2?expand=0&rev=271
2022-05-06 07:34:40 +00:00
13f71e7745 Accepting request 942136 from Base:System
OBS-URL: https://build.opensuse.org/request/show/942136
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=158
2021-12-23 16:53:35 +00:00
6eee475d18 Accepting request 942136 from Base:System
OBS-URL: https://build.opensuse.org/request/show/942136
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=158
2021-12-23 16:53:35 +00:00
fba2d943b4 Accepting request 942132 from home:AndreasStieger:branches:Base:System
GnuPG 2.3.4

OBS-URL: https://build.opensuse.org/request/show/942132
OBS-URL: https://build.opensuse.org/package/show/Base:System/gpg2?expand=0&rev=270
2021-12-22 16:48:47 +00:00
d659f4259e Accepting request 933499 from Base:System
Automatic submission by obs-autosubmit

OBS-URL: https://build.opensuse.org/request/show/933499
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=157
2021-11-26 23:50:50 +00:00
4b5604403c Accepting request 933499 from Base:System
Automatic submission by obs-autosubmit

OBS-URL: https://build.opensuse.org/request/show/933499
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=157
2021-11-26 23:50:50 +00:00
b06e69ae55 https://progress.opensuse.org/issues/101358
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=156
2021-10-22 12:39:51 +00:00
fc18aa63e0 https://progress.opensuse.org/issues/101358
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=156
2021-10-22 12:39:51 +00:00
3ce12af435 Accepting request 925429 from Base:System
OBS-URL: https://build.opensuse.org/request/show/925429
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=155
2021-10-20 18:23:18 +00:00
32fedc8808 Accepting request 925429 from Base:System
OBS-URL: https://build.opensuse.org/request/show/925429
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=155
2021-10-20 18:23:18 +00:00
92a47f5ddd Accepting request 924947 from home:AndreasStieger:branches:Base:System
GnuPG 2.3.3

OBS-URL: https://build.opensuse.org/request/show/924947
OBS-URL: https://build.opensuse.org/package/show/Base:System/gpg2?expand=0&rev=269
2021-10-15 12:24:25 +00:00
929791d8d3 Accepting request 914200 from home:pmonrealgonzalez:branches:Base:System
- GnuPG 2.3.2:
  * gpg: Allow fingerprint based lookup with --locate-external-key.
  * gpg: Allow decryption w/o public key but with correct card inserted.
  * gpg: Auto import keys specified with --trusted-keys.
  * gpg: Do not use import-clean for LDAP keyserver imports.
  * gpg: Fix mailbox based search via AKL keyserver method.
  * gpg: Fix memory corruption with --clearsign introduced with 2.3.1.
  * gpg: Use a more descriptive prompt for symmetric decryption.
  * gpg: Improve speed of secret key listing.
  * gpg: Support keygrip search with traditional keyring.
  * gpg: Let --fetch-key return an exit code on failure.
  * gpg: Emit the NO_SECKEY status again for decryption.
  * gpgsm: Support decryption of password based encryption (pwri).
  * gpgsm: Support AES-GCM decryption.
  * gpgsm: Let --dump-cert --show-cert also print an OpenPGP fingerprint.
  * gpgsm: Fix finding of issuer in use-keyboxd mode.
  * gpgsm: New option --ldapserver as an alias for --keyserver.
  * agent: Use SHA-256 for SSH fingerprint by default.
  * agent: Fix calling handle_pincache_put.
  * agent: Fix importing protected secret key.
  * agent: Fix a regression in agent_get_shadow_info_type.
  * agent: Add translatable text for Caps Lock hint.
  * agent: New option --pinentry-formatted-passphrase.
  * agent: Add checkpin inquiry for pinentry.
  * agent: New option --check-sym-passphrase-pattern.
  * agent: Use the sysconfdir for a pattern file.
  * agent: Make QT_QPA_PLATFORMTHEME=qt5ct work for the pinentry.
  * dirmngr: LDAP search by a mailbox now ignores revoked keys.
  * dirmngr: For KS_SEARCH return the fingerprint also with LDAP.
  * dirmngr: Allow for non-URL specified ldap keyservers.

OBS-URL: https://build.opensuse.org/request/show/914200
OBS-URL: https://build.opensuse.org/package/show/Base:System/gpg2?expand=0&rev=268
2021-08-27 11:48:41 +00:00
0b19f2992d Accepting request 899451 from home:pmonrealgonzalez:branches:Base:System
- GnuPG 2.3.1:
  * The new configuration file common.conf is now used to enable
    the use of the key database daemon with "use-keyboxd". Using
    this option in gpg.conf and gpgsm.conf is supported for a
    transitional period. See doc/example/common.conf for more.
  * gpg: Force version 5 key creation for ed448 and cv448 algorithms.
  * gpg: By default do not use the self-sigs-only option when
    importing from an LDAP keyserver.
  * gpg: Lookup a missing public key of the active card via LDAP.
  * gpgsm: New command --show-certs.
  * scd: Fix CCID driver for SCM SPR332/SPR532.
  * scd: Further improvements for PKCS#15 cards.
  * New configure option --with-tss to allow the selection of the
    TSS library.
- Rebase patches:
  * gnupg-add_legacy_FIPS_mode_option.patch
  * gnupg-allow-import-of-previously-known-keys-even-without-UIDs.patch
  * gnupg-dont-fail-with-seahorse-agent.patch
  * gnupg-set_umask_before_open_outfile.patch

- GnuPG 2.3.0:
  * A new experimental key database daemon is provided.  To enable
    it put "use-keyboxd" into gpg.conf and gpgsm.conf.  Keys are stored
    in a SQLite database and make key lookup much faster.
  * New tool gpg-card as a flexible frontend for all types of
    supported smartcards.
  * New option --chuid for gpg, gpgsm, gpgconf, gpg-card, and
    gpg-connect-agent.
  * The gpg-wks-client tool is now installed under bin; a wrapper for
    its old location at libexec is also installed.

OBS-URL: https://build.opensuse.org/request/show/899451
OBS-URL: https://build.opensuse.org/package/show/Base:System/gpg2?expand=0&rev=267
2021-06-21 14:51:47 +00:00
c059daa1fb Accepting request 899427 from Base:System
OBS-URL: https://build.opensuse.org/request/show/899427
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=154
2021-06-15 14:36:49 +00:00
e6cd570008 Accepting request 899427 from Base:System
OBS-URL: https://build.opensuse.org/request/show/899427
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=154
2021-06-15 14:36:49 +00:00
8c6498bf40 Accepting request 899100 from home:AndreasStieger:branches:Base:System
- Remove the "files-are-digests" option from the openSUSE package.
  This feature was not upstream and only used in the OBS signing
  daemon. The recommended upstream feature for separating the data
  to be signed from the private keys is gpg agent forwarding,
  available from 2.1. Drop gnupg-2.2.8-files-are-digests.patch

OBS-URL: https://build.opensuse.org/request/show/899100
OBS-URL: https://build.opensuse.org/package/show/Base:System/gpg2?expand=0&rev=265
2021-06-11 09:17:32 +00:00
e859003726 Accepting request 888302 from home:AndreasStieger:branches:Base:System
Let's leave Factory at 2.2.x, and put 2.3.x into security:privacy until it becomes stable at 2.4.x. See SR#888300

OBS-URL: https://build.opensuse.org/request/show/888302
OBS-URL: https://build.opensuse.org/package/show/Base:System/gpg2?expand=0&rev=264
2021-04-26 09:47:29 +00:00
58d8332fde Accepting request 883690 from home:AndreasStieger:branches:Base:System
GnuPG 2.3.0

OBS-URL: https://build.opensuse.org/request/show/883690
OBS-URL: https://build.opensuse.org/package/show/Base:System/gpg2?expand=0&rev=263
2021-04-17 14:15:27 +00:00
724eecab26 Accepting request 863296 from Base:System
OBS-URL: https://build.opensuse.org/request/show/863296
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=153
2021-01-19 14:59:07 +00:00
701c59566b Accepting request 863296 from Base:System
OBS-URL: https://build.opensuse.org/request/show/863296
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=153
2021-01-19 14:59:07 +00:00
c9e0dcf362 Accepting request 862726 from home:AndreasStieger:branches:Base:System
GnuPG 2.2.27

OBS-URL: https://build.opensuse.org/request/show/862726
OBS-URL: https://build.opensuse.org/package/show/Base:System/gpg2?expand=0&rev=261
2021-01-15 10:22:29 +00:00
29229a7371 Accepting request 850962 from Base:System
OBS-URL: https://build.opensuse.org/request/show/850962
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=152
2020-11-29 11:20:02 +00:00
5beb87ca97 Accepting request 850962 from Base:System
OBS-URL: https://build.opensuse.org/request/show/850962
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=152
2020-11-29 11:20:02 +00:00
0de8e05766 Accepting request 850318 from home:AndreasStieger:branches:Base:System
GnuPG 2.2.25

OBS-URL: https://build.opensuse.org/request/show/850318
OBS-URL: https://build.opensuse.org/package/show/Base:System/gpg2?expand=0&rev=259
2020-11-26 09:55:58 +00:00
d2b698216f Accepting request 849250 from Base:System
OBS-URL: https://build.opensuse.org/request/show/849250
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=151
2020-11-21 11:40:12 +00:00
150b6370b8 Accepting request 849250 from Base:System
OBS-URL: https://build.opensuse.org/request/show/849250
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=151
2020-11-21 11:40:12 +00:00
441b25f76d Accepting request 849176 from home:AndreasStieger:branches:Base:System
GnuPG 2.2.24

OBS-URL: https://build.opensuse.org/request/show/849176
OBS-URL: https://build.opensuse.org/package/show/Base:System/gpg2?expand=0&rev=257
2020-11-18 09:45:38 +00:00
3cc7b17b94 Accepting request 831939 from Base:System
- GnuPG 2.2.23: 
  * gpg: fix AHEAD preference list overflow boo#1176034 /  CVE-2020-25125
  * gpg: fix possible segv in the key cleaning code
  * gpgsm: fix a minor RFC2253 parser gub
  * scdaemon: Fix a PIN verify failure on certain OpenPGP card
    implementations

- GnuPG 2.2.22:
  * gpg: Change the default key algorithm to rsa3072
  * gpg: Add regular expression support for Trust Signatures on
    all platforms
  * gpg: Ignore --personal-digest-prefs for ECDSA keys
  * gpgsm: Make rsaPSS a de-vs compliant scheme
  * gpgsm: Show also the SHA256 fingerprint in key listings
  * gpgsm: Do not require a default keyring for --gpgconf-list
  * gpg-agent: Default to extended key format and record the
    creation time of keys
    Add new option --disable-extended-key-format
  * gpg-agent: Support the WAYLAND_DISPLAY envvar
  * gpg-agent: Allow using --gpgconf-list even if HOME does not
    exist
  * gpg-agent: Make the Pinentry work even if the envvar TERM is
    set to the empty string
  * scdaemon: Add a workaround for Gnuk tokens <= 2.15 which
    wrongly incremented the error counter when using the
    "verify" command of "gpg --edit-key" with only the signature
    key being present
   * dirmngr: Better handle systems with disabled IPv6
   * gpgpslit: Install tool.  It was not installed in the past to
     avoid conflicts with the version installed by GnuPG 1.4

OBS-URL: https://build.opensuse.org/request/show/831939
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=150
2020-09-05 22:00:15 +00:00
bfc3caa7a2 Accepting request 831939 from Base:System
- GnuPG 2.2.23: 
  * gpg: fix AHEAD preference list overflow boo#1176034 /  CVE-2020-25125
  * gpg: fix possible segv in the key cleaning code
  * gpgsm: fix a minor RFC2253 parser gub
  * scdaemon: Fix a PIN verify failure on certain OpenPGP card
    implementations

- GnuPG 2.2.22:
  * gpg: Change the default key algorithm to rsa3072
  * gpg: Add regular expression support for Trust Signatures on
    all platforms
  * gpg: Ignore --personal-digest-prefs for ECDSA keys
  * gpgsm: Make rsaPSS a de-vs compliant scheme
  * gpgsm: Show also the SHA256 fingerprint in key listings
  * gpgsm: Do not require a default keyring for --gpgconf-list
  * gpg-agent: Default to extended key format and record the
    creation time of keys
    Add new option --disable-extended-key-format
  * gpg-agent: Support the WAYLAND_DISPLAY envvar
  * gpg-agent: Allow using --gpgconf-list even if HOME does not
    exist
  * gpg-agent: Make the Pinentry work even if the envvar TERM is
    set to the empty string
  * scdaemon: Add a workaround for Gnuk tokens <= 2.15 which
    wrongly incremented the error counter when using the
    "verify" command of "gpg --edit-key" with only the signature
    key being present
   * dirmngr: Better handle systems with disabled IPv6
   * gpgpslit: Install tool.  It was not installed in the past to
     avoid conflicts with the version installed by GnuPG 1.4

OBS-URL: https://build.opensuse.org/request/show/831939
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=150
2020-09-05 22:00:15 +00:00
d42a10b126 * gpg: fix AHEAD preference list overflow boo#1176034 / CVE-2020-25125
OBS-URL: https://build.opensuse.org/package/show/Base:System/gpg2?expand=0&rev=255
2020-09-03 18:07:32 +00:00
03802fc910 Accepting request 831935 from home:AndreasStieger:branches:Base:System
GnuPG 2.2.23
with security fix gpg: fix AHEAD preference list overflow boo#1176034

OBS-URL: https://build.opensuse.org/request/show/831935
OBS-URL: https://build.opensuse.org/package/show/Base:System/gpg2?expand=0&rev=254
2020-09-03 17:55:58 +00:00
3c3e528fd8 Accepting request 831325 from home:AndreasStieger:branches:Base:System
GnuPG 2.2.22, with keyring refresh

OBS-URL: https://build.opensuse.org/request/show/831325
OBS-URL: https://build.opensuse.org/package/show/Base:System/gpg2?expand=0&rev=253
2020-09-02 15:10:22 +00:00
44a10ba7d0 Accepting request 820863 from Base:System
OBS-URL: https://build.opensuse.org/request/show/820863
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=149
2020-07-15 09:13:43 +00:00
15352e8d90 Accepting request 820863 from Base:System
OBS-URL: https://build.opensuse.org/request/show/820863
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=149
2020-07-15 09:13:43 +00:00
87317a4d5e Accepting request 820859 from home:pmonrealgonzalez:branches:Base:System
- Fix regression in latest gpg2 that makes gpgme fail to build [bsc#1174007]
- Add gnupg-gpgme-t-encrypt-sym.patch

OBS-URL: https://build.opensuse.org/request/show/820859
OBS-URL: https://build.opensuse.org/package/show/Base:System/gpg2?expand=0&rev=251
2020-07-14 11:02:45 +00:00
a1dcded9f7 Accepting request 819712 from home:AndreasStieger:branches:Base:System
GnuPG 2.2.21

OBS-URL: https://build.opensuse.org/request/show/819712
OBS-URL: https://build.opensuse.org/package/show/Base:System/gpg2?expand=0&rev=250
2020-07-09 11:50:14 +00:00
a2674ccd66 Accepting request 799268 from Base:System
OBS-URL: https://build.opensuse.org/request/show/799268
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=148
2020-05-02 20:15:35 +00:00
bdad601634 Accepting request 799268 from Base:System
OBS-URL: https://build.opensuse.org/request/show/799268
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=148
2020-05-02 20:15:35 +00:00
d54932d177 Accepting request 799267 from home:pmonrealgonzalez:branches:Base:System
- Fix gpgme and gpgme-qt builds on gpg2 2.2.20 update [bsc#1170811]
- Refresh patches:
  * gnupg-2.2.8-files-are-digests.patch
  * gnupg-add_legacy_FIPS_mode_option.patch

OBS-URL: https://build.opensuse.org/request/show/799267
OBS-URL: https://build.opensuse.org/package/show/Base:System/gpg2?expand=0&rev=248
2020-04-30 14:04:35 +00:00
Tomáš Chvátal
166cc8d6b6 Accepting request 786987 from home:AndreasStieger:branches:Base:System
GnuPG 2.2.20

OBS-URL: https://build.opensuse.org/request/show/786987
OBS-URL: https://build.opensuse.org/package/show/Base:System/gpg2?expand=0&rev=247
2020-03-21 08:06:35 +00:00
5f24045378 Accepting request 784634 from Base:System
OBS-URL: https://build.opensuse.org/request/show/784634
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=147
2020-03-16 09:16:15 +00:00
0dfd85574c Accepting request 784634 from Base:System
OBS-URL: https://build.opensuse.org/request/show/784634
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=147
2020-03-16 09:16:15 +00:00
Tomáš Chvátal
24f6e57c6d Accepting request 784621 from home:favogt:rpmsmalle
- Split dirmngr into a subpackage to avoid a hard dependency of
  gpg2 on libgnutls

OBS-URL: https://build.opensuse.org/request/show/784621
OBS-URL: https://build.opensuse.org/package/show/Base:System/gpg2?expand=0&rev=245
2020-03-13 12:49:16 +00:00
a975a5f562 Accepting request 776240 from Base:System
OBS-URL: https://build.opensuse.org/request/show/776240
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=146
2020-02-22 18:03:23 +00:00
cabc9804da Accepting request 776240 from Base:System
OBS-URL: https://build.opensuse.org/request/show/776240
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=146
2020-02-22 18:03:23 +00:00
Tomáš Chvátal
85543adb99 Accepting request 776234 from home:pmonrealgonzalez:branches:Base:System
- Fix build with GCC-10: [bsc#1160394]
  * Always use EXTERN_UNLESS_MAIN_MODULE pattern
  * In GCC-10, the default option -fcommon will change to -fno-common
- Add gpg2-gcc10-build-fno-common.patch

OBS-URL: https://build.opensuse.org/request/show/776234
OBS-URL: https://build.opensuse.org/package/show/Base:System/gpg2?expand=0&rev=243
2020-02-19 09:09:05 +00:00
612e4e8495 Accepting request 763816 from Base:System
OBS-URL: https://build.opensuse.org/request/show/763816
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=145
2020-01-16 17:17:49 +00:00
5c994d3178 Accepting request 763816 from Base:System
OBS-URL: https://build.opensuse.org/request/show/763816
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=145
2020-01-16 17:17:49 +00:00
Tomáš Chvátal
0905c56a1b Accepting request 762902 from home:pmonrealgonzalez:branches:Base:System
- Accept key updates even without UIDs [bsc#1143158]
- Add patches:
  * gnupg-allow-import-of-previously-known-keys-even-without-UIDs.patch
  * gnupg-accept_subkeys_with_a_good_revocation_but_no_self-sig_during_import.patch
  * gnupg-add-test-cases-for-import-without-uid.patch

OBS-URL: https://build.opensuse.org/request/show/762902
OBS-URL: https://build.opensuse.org/package/show/Base:System/gpg2?expand=0&rev=241
2020-01-13 08:40:05 +00:00
788edd5d53 Accepting request 755139 from Base:System
OBS-URL: https://build.opensuse.org/request/show/755139
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=144
2019-12-23 21:33:57 +00:00
b301325c2e Accepting request 755139 from Base:System
OBS-URL: https://build.opensuse.org/request/show/755139
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=144
2019-12-23 21:33:57 +00:00
Tomáš Chvátal
e32388cbf9 Accepting request 755072 from home:AndreasStieger:branches:Base:System
GnuPG 2.2.19

OBS-URL: https://build.opensuse.org/request/show/755072
OBS-URL: https://build.opensuse.org/package/show/Base:System/gpg2?expand=0&rev=239
2019-12-09 07:32:12 +00:00
438a2afdee Accepting request 751577 from Base:System
OBS-URL: https://build.opensuse.org/request/show/751577
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=143
2019-12-07 14:17:14 +00:00
9cd89e12e5 Accepting request 751577 from Base:System
OBS-URL: https://build.opensuse.org/request/show/751577
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=143
2019-12-07 14:17:14 +00:00
d539c287c5 Accepting request 751408 from home:pmonrealgonzalez:branches:Base:System
- Update to 2.2.18 [bsc#1157900, CVE-2019-14855]
  * gpg: Changed the way keys are detected on a smartcards; this
    allows the use of non-OpenPGP cards.  In the case of a not very
    likely regression the new option --use-only-openpgp-card is
    available.  [#4681]
  * gpg: The commands --full-gen-key and --quick-gen-key now allow
    direct key generation from supported cards.  [#4681]
  * gpg: Prepare against chosen-prefix SHA-1 collisions in key
    signatures.  This change removes all SHA-1 based key signature
    newer than 2019-01-19 from the web-of-trust.  Note that this
    includes all key signature created with dsa1024 keys.  The new
    option --allow-weak-key-signatues can be used to override the new
    and safer behaviour.  [#4755,CVE-2019-14855]
  * gpg: Improve performance for import of large keyblocks.  [#4592]
  * gpg: Implement a keybox compression run.  [#4644]
  * gpg: Show warnings from dirmngr about redirect and certificate
    problems (details require --verbose as usual).
  * gpg: Allow to pass the empty string for the passphrase if the
    '--passphase=' syntax is used.  [#4633]
  * gpg: Fix printing of the KDF object attributes.
  * gpg: Avoid surprises with --locate-external-key and certain
    --auto-key-locate settings.  [#4662]
  * gpg: Improve selection of best matching key.  [#4713]
  * gpg: Delete key binding signature when deletring a subkey.
    [#4665,#4457]
  * gpg: Fix a potential loss of key sigantures during import with
    self-sigs-only active.  [#4628]
  * gpg: Silence "marked as ultimately trusted" diagnostics if
    option --quiet is used.  [#4634]
  * gpg: Silence some diagnostics during in key listsing even with

OBS-URL: https://build.opensuse.org/request/show/751408
OBS-URL: https://build.opensuse.org/package/show/Base:System/gpg2?expand=0&rev=237
2019-11-28 11:22:11 +00:00
b385328d51 Accepting request 741459 from Base:System
OBS-URL: https://build.opensuse.org/request/show/741459
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=142
2019-10-22 13:43:14 +00:00
3919b9adf3 Accepting request 741459 from Base:System
OBS-URL: https://build.opensuse.org/request/show/741459
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=142
2019-10-22 13:43:14 +00:00
Tomáš Chvátal
9fd70b3f74 Accepting request 741446 from home:lnussel:branches:Base:System
- Do not recommend lang package. The lang package already has a
  supplements.

OBS-URL: https://build.opensuse.org/request/show/741446
OBS-URL: https://build.opensuse.org/package/show/Base:System/gpg2?expand=0&rev=235
2019-10-21 09:54:11 +00:00
acfa9ea7eb Accepting request 714631 from Base:System
OBS-URL: https://build.opensuse.org/request/show/714631
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=141
2019-07-16 06:37:45 +00:00
19acfa1f11 Accepting request 714631 from Base:System
OBS-URL: https://build.opensuse.org/request/show/714631
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=141
2019-07-16 06:37:45 +00:00
Tomáš Chvátal
02187aebb9 Accepting request 714630 from home:pmonrealgonzalez:branches:Base:System
- Update to 2.2.17 [bsc#1141093]
  * gpg: Do not try the import fallback if the options are already used.
  * gpg: Fix regression in option "self-sigs-only".
  * gpg: With --auto-key-retrieve prefer WKD over keyservers.
  * gpg: Add "self-sigs-only" and "import-clean" to the keyserver options.
  * gpg: Avoid printing false AKL error message.
  * gpg: New command --locate-external-key.
  * gpg: Make the get_pubkey_byname interface easier to understand.
  * gpg: Fallback to import with self-sigs-only on too large keyblocks.
  * gpg: New import and keyserver option "self-sigs-only"
  * gpg: Make read_block in import.c more flexible.
  * dirmngr: fix handling of HTTPS redirections during HKP.
  * dirmngr: Avoid endless loop in case of HTTP error 503.
  * dirmngr: Do not rewrite the redirection for the "openpgpkey" subdomain.
  * dirmngr: Support the new WKD draft with the openpgpkey subdomain.
  * wkd: Change client/server limit back to 64 KiB.
  * tools: gpgconf: Killing order is children-first.
  * Return better error code for some getinfo IPC commands.
  * po: Update Russian translation.

OBS-URL: https://build.opensuse.org/request/show/714630
OBS-URL: https://build.opensuse.org/package/show/Base:System/gpg2?expand=0&rev=233
2019-07-11 11:35:13 +00:00
3875ba47bd Accepting request 710989 from Base:System
OBS-URL: https://build.opensuse.org/request/show/710989
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=140
2019-06-27 13:53:26 +00:00
3fe760ae39 Accepting request 710989 from Base:System
OBS-URL: https://build.opensuse.org/request/show/710989
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=140
2019-06-27 13:53:26 +00:00
Tomáš Chvátal
bb500be7ab Accepting request 710973 from home:jsikes:branches:Base:System
Finally fixed boo#1137307. Finally! ... Enjoy!

OBS-URL: https://build.opensuse.org/request/show/710973
OBS-URL: https://build.opensuse.org/package/show/Base:System/gpg2?expand=0&rev=231
2019-06-20 04:09:17 +00:00
0f0de156e2 Accepting request 706484 from Base:System
OBS-URL: https://build.opensuse.org/request/show/706484
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=139
2019-06-02 13:15:31 +00:00
6cee522ee4 Accepting request 706484 from Base:System
OBS-URL: https://build.opensuse.org/request/show/706484
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=139
2019-06-02 13:15:31 +00:00
Tomáš Chvátal
147effa398 Accepting request 706483 from home:pmonrealgonzalez:branches:Base:System
- Update to 2.2.16
  * gpg: Fixed i18n markup of some strings.
  * gpg: Allow deletion of subkeys with --delete-[secret-]key.
  * gpg: Do not bail on an invalid packet in the local keyring.
  * gpg: Do not allow creation of user ids larger than our parser allows.
  * gpg: Do not delete any keys if --dry-run is passed.
  * gpg: Fix using --decrypt along with --use-embedded-filename.
  * gpg: Improve the photo image viewer selection.
  * gpg: enable OpenPGP export of cleartext keys with comments.
  * gpg: Do not print a hint to use the deprecated --keyserver option.
  * gpg: Change update_keysig_packet to replace SHA-1 by SHA-256.
  * gpg: Use just the addrspec from the Signer's UID.
  * gpg: Accept also armored data from the WKD.
  * gpg: Set a limit of 5 to the number of keys imported from the WKD.
  * gpg: Don't use EdDSA algo ID for ECDSA curves.
  * agent: Stop scdaemon after reload when disable_scdaemon.
  * agent: For SSH key, don't put NUL-byte at the end.
  * agent: correct length for uri and comment on 64-bit big-endian platforms
  * dirmngr: Allow for other hash algorithms than SHA-1 in OCSP.
  * dirmngr: Improve domaininfo cache update algorithm.
  * dirmngr: Better error code for http status 413.
  * g10: Fix possible null dereference.
  * g10: Fix double free when locating by mbox.
  * g10: Fix symmetric cipher algo constant for ECDH.
  * sm: Avoid confusing diagnostic for the default key.
  * sm: Fix a warning in an es_fopencooie function.
  * gpgconf: Before --launch check that the config file is fine.
  * gpgconf: Support --homedir for --launch.
  * build: Update m4/iconv.m4.
  * doc: correct documentation for gpgconf --kill.

OBS-URL: https://build.opensuse.org/request/show/706483
OBS-URL: https://build.opensuse.org/package/show/Base:System/gpg2?expand=0&rev=229
2019-05-30 08:23:36 +00:00
f3a24c8fc3 Accepting request 689296 from Base:System
OBS-URL: https://build.opensuse.org/request/show/689296
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=138
2019-03-29 19:33:03 +00:00
ed6f0b9044 Accepting request 689296 from Base:System
OBS-URL: https://build.opensuse.org/request/show/689296
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=138
2019-03-29 19:33:03 +00:00
Tomáš Chvátal
dfebaf9022 Accepting request 689283 from home:kbabioch:branches:Base:System
Fixed changes file

OBS-URL: https://build.opensuse.org/request/show/689283
OBS-URL: https://build.opensuse.org/package/show/Base:System/gpg2?expand=0&rev=227
2019-03-28 10:26:54 +00:00
Tomáš Chvátal
d9db15d33e Accepting request 689265 from home:kbabioch:branches:Base:System
- Update to 2.2.14
  * sm: Allow decryption even if expired keys are configured.
  * agent: Change command KEYINFO to print ssh fingerprints with other
    hash algos.
  * dirmngr: Fix build problems on Solaris due to the use of reserved
    symbol names.
  * wkd: New commands --print-wkd-hash and --print-wkd-url for
    gpg-wks-client.

OBS-URL: https://build.opensuse.org/request/show/689265
OBS-URL: https://build.opensuse.org/package/show/Base:System/gpg2?expand=0&rev=226
2019-03-28 09:20:17 +00:00
c53ee1e93e Accepting request 686408 from Base:System
OBS-URL: https://build.opensuse.org/request/show/686408
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=137
2019-03-24 13:56:19 +00:00
3ef4f8ebb3 Accepting request 686408 from Base:System
OBS-URL: https://build.opensuse.org/request/show/686408
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=137
2019-03-24 13:56:19 +00:00
Tomáš Chvátal
6dfbd8614c Accepting request 686406 from home:kbabioch:branches:Base:System
- Update to 2.2.14:
  * gpg: Allow import of PGP desktop exported secret keys. Also avoid
    importing secret keys if the secret keyblock is not valid.
  * gpg: Do not error out on version 5 keys in the local keyring.
  * gpg: Make invalid primary key algo obvious in key listings.
  * sm: Do not mark a certificate in a key listing as de-vs compliant
    if its use for a signature will not be possible.
  * sm: Fix certificate creation with key on card.
  * sm: Create rsa3072 bit certificates by default.
  * sm: Print Yubikey attestation extensions with --dump-cert.
  * agent: Fix cancellation handling for scdaemon.
  * agent: Support --mode=ssh option for CLEAR_PASSPHRASE.
  * scd: Fix flushing of the CA-FPR DOs in app-openpgp.
  * scd: Avoid a conflict error with the "undefined" app.
  * dirmngr: Add CSRF protection exception for protonmail.
  * dirmngr: Fix build problems with gcc 9 in libdns.
  * gpgconf: New option --show-socket for use wity --launch.
  * gpgtar: Make option -C work for archive creation.
- Removed patches that are included upstream by now:
  - 0001-libdns-Avoid-using-compound-literals.patch
  - 0002-libdns-Avoid-using-compound-literals-2.patch
  - 0003-libdns-Avoid-using-compound-literals-3.patch
  - 0004-libdns-Avoid-using-compound-literals-4.patch
  - 0005-libdns-Avoid-using-compound-literals-5.patch
  - 0006-libdns-Avoid-using-compound-literals-6.patch
  - 0007-libdns-Avoid-using-compound-literals-7.patch
  - 0008-libdns-Avoid-using-compound-literals-8.patch

OBS-URL: https://build.opensuse.org/request/show/686406
OBS-URL: https://build.opensuse.org/package/show/Base:System/gpg2?expand=0&rev=224
2019-03-19 12:28:29 +00:00
Stephan Kulow
1ee36e1df8 Accepting request 679738 from Base:System
OBS-URL: https://build.opensuse.org/request/show/679738
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=136
2019-03-01 19:25:43 +00:00
Stephan Kulow
2de02a0a4a Accepting request 679738 from Base:System
OBS-URL: https://build.opensuse.org/request/show/679738
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=136
2019-03-01 19:25:43 +00:00
Tomáš Chvátal
6a078f40f8 Accepting request 679660 from home:pmonrealgonzalez:branches:Base:System
- Fix build with gcc9 [bsc#1121223]
  * Avoid using compound literals
    - Upstream bug: https://dev.gnupg.org/T4367
  * Added upstream patches:
    - 0001-libdns-Avoid-using-compound-literals.patch
    - 0002-libdns-Avoid-using-compound-literals-2.patch
    - 0003-libdns-Avoid-using-compound-literals-3.patch
    - 0004-libdns-Avoid-using-compound-literals-4.patch
    - 0005-libdns-Avoid-using-compound-literals-5.patch
    - 0006-libdns-Avoid-using-compound-literals-6.patch
    - 0007-libdns-Avoid-using-compound-literals-7.patch
    - 0008-libdns-Avoid-using-compound-literals-8.patch

OBS-URL: https://build.opensuse.org/request/show/679660
OBS-URL: https://build.opensuse.org/package/show/Base:System/gpg2?expand=0&rev=222
2019-02-27 08:22:45 +00:00
637188eb82 Accepting request 678281 from home:olh:branches:Base:System
- Allow coredumps in X11 desktop sessions (bsc#1124847)
  gpg-agent unconditionally disables coredumps, which is not
  supposed to happen in the code path that does just exec(argv[])
  gnupg-gpg-agent-ulimit.patch

OBS-URL: https://build.opensuse.org/request/show/678281
OBS-URL: https://build.opensuse.org/package/show/Base:System/gpg2?expand=0&rev=221
2019-02-26 17:21:53 +00:00
Stephan Kulow
b8ce6fe557 Accepting request 674400 from Base:System
- Update to 2.2.13:
  * gpg: Implement key lookup via keygrip (using the &amp; prefix).
  * gpg: Allow generating Ed25519 key from existing key.
  * gpg: Emit an ERROR status line if no key was found with -k.
  * gpg: Stop early when trying to create a primary Elgamal key.
  * gpgsm: Print the card's key algorithms along with their keygrips
    in interactive key generation.
  * agent: Clear bogus pinentry cache in the error case.
  * scd: Support "acknowledge button" feature.
  * scd: Fix for USB INTERRUPT transfer.
  * wks: Do no use compression for the the encrypted challenge and response.
Release-info: https://dev.gnupg.org/T4290
See-also: gnupg-announce/2019q1/000434.html

- Update to 2.2.12: (forwarded request 674396 from kbabioch)

OBS-URL: https://build.opensuse.org/request/show/674400
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=135
2019-02-24 16:04:59 +00:00
Stephan Kulow
dedd09cfda Accepting request 674400 from Base:System
- Update to 2.2.13:
  * gpg: Implement key lookup via keygrip (using the &amp; prefix).
  * gpg: Allow generating Ed25519 key from existing key.
  * gpg: Emit an ERROR status line if no key was found with -k.
  * gpg: Stop early when trying to create a primary Elgamal key.
  * gpgsm: Print the card's key algorithms along with their keygrips
    in interactive key generation.
  * agent: Clear bogus pinentry cache in the error case.
  * scd: Support "acknowledge button" feature.
  * scd: Fix for USB INTERRUPT transfer.
  * wks: Do no use compression for the the encrypted challenge and response.
Release-info: https://dev.gnupg.org/T4290
See-also: gnupg-announce/2019q1/000434.html

- Update to 2.2.12: (forwarded request 674396 from kbabioch)

OBS-URL: https://build.opensuse.org/request/show/674400
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=135
2019-02-24 16:04:59 +00:00
b8b9908935 Accepting request 674396 from home:kbabioch:branches:Base:System
- Update to 2.2.13:
  * gpg: Implement key lookup via keygrip (using the & prefix).
  * gpg: Allow generating Ed25519 key from existing key.
  * gpg: Emit an ERROR status line if no key was found with -k.
  * gpg: Stop early when trying to create a primary Elgamal key.
  * gpgsm: Print the card's key algorithms along with their keygrips
    in interactive key generation.
  * agent: Clear bogus pinentry cache in the error case.
  * scd: Support "acknowledge button" feature.
  * scd: Fix for USB INTERRUPT transfer.
  * wks: Do no use compression for the the encrypted challenge and response.
Release-info: https://dev.gnupg.org/T4290
See-also: gnupg-announce/2019q1/000434.html

- Update to 2.2.12:

OBS-URL: https://build.opensuse.org/request/show/674396
OBS-URL: https://build.opensuse.org/package/show/Base:System/gpg2?expand=0&rev=219
2019-02-13 06:56:04 +00:00
850abb6ff2 Accepting request 658514 from Base:System
OBS-URL: https://build.opensuse.org/request/show/658514
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=134
2018-12-19 12:48:14 +00:00
a39f5d7a79 Accepting request 658514 from Base:System
OBS-URL: https://build.opensuse.org/request/show/658514
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=134
2018-12-19 12:48:14 +00:00
Tomáš Chvátal
e8a2e1cb86 Accepting request 658084 from home:atopt:branches:Base:System
-Update to 2.2.12:
  * tools: New commands --install-key and --remove-key for
    gpg-wks-client.  This allows to prepare a Web Key Directory on a
    local file system for later upload to a web server.
  * gpg: New --list-option "show-only-fpr-mbox".  This makes the use
    of the new gpg-wks-client --install-key command easier on Windows.
  * gpg: Improve processing speed when --skip-verify is used.
  * gpg: Fix a bug where a LF was accidentally written to the console.
  * gpg: --card-status now shwos whether a card has the new KDF
    feature enabled.
  * agent: New runtime option --s2k-calibration=MSEC.  New configure
    option --with-agent-s2k-calibration=MSEC.  [#3399]
  * dirmngr: Try another keyserver from the pool on receiving a 502,
    503, or 504 error.  [#4175]
  * dirmngr: Avoid possible CSRF attacks via http redirects.  A HTTP
    query will not anymore follow a 3xx redirect unless the Location
    header gives the same host.  If the host is different only the
    host and port is taken from the Location header and the original
    path and query parts are kept.
  * dirmngr: New command FLUSHCRL to flush all CRLS from disk and
    memory.  [#3967]

OBS-URL: https://build.opensuse.org/request/show/658084
OBS-URL: https://build.opensuse.org/package/show/Base:System/gpg2?expand=0&rev=217
2018-12-15 09:09:24 +00:00
a34d4b3592 Accepting request 648382 from Base:System
- Code no longer uses libcurl, remove from buildrequires. 

- Update to 2.2.11:
  * gpgsm: Fix CRL loading when intermediate certicates are not yet trusted.
  * gpgsm: Fix an error message about the digest algo.
  * gpg: Fix a wrong warning due to new sign usage check introduced with 2.2.9.
  * gpg: Print the "data source" even for an unsuccessful keyserver query.
  * gpg: Do not store the TOFU trust model in the trustdb.
  * scd: Fix cases of "Bad PIN" after using "forcesig".
  * agent: Fix possible hang in the ssh handler.
  * dirmngr: Tack the unmodified mail address to a WKD request.
  * dirmngr: Tweak diagnostic about missing LDAP server file.
  * dirmngr: In verbose mode print the OCSP responder id.
  * dirmngr: Fix parsing of the LDAP port.
  * wks: Add option --directory/-C to the server.
  * wks: Add option --with-colons to the client. 
  * Fix EBADF when gpg et al. are called by broken CGI scripts.
  * Fix some minor memory leaks and bugs.

OBS-URL: https://build.opensuse.org/request/show/648382
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=133
2018-11-14 13:29:28 +00:00
dfe6c7c028 Accepting request 648382 from Base:System
- Code no longer uses libcurl, remove from buildrequires. 

- Update to 2.2.11:
  * gpgsm: Fix CRL loading when intermediate certicates are not yet trusted.
  * gpgsm: Fix an error message about the digest algo.
  * gpg: Fix a wrong warning due to new sign usage check introduced with 2.2.9.
  * gpg: Print the "data source" even for an unsuccessful keyserver query.
  * gpg: Do not store the TOFU trust model in the trustdb.
  * scd: Fix cases of "Bad PIN" after using "forcesig".
  * agent: Fix possible hang in the ssh handler.
  * dirmngr: Tack the unmodified mail address to a WKD request.
  * dirmngr: Tweak diagnostic about missing LDAP server file.
  * dirmngr: In verbose mode print the OCSP responder id.
  * dirmngr: Fix parsing of the LDAP port.
  * wks: Add option --directory/-C to the server.
  * wks: Add option --with-colons to the client. 
  * Fix EBADF when gpg et al. are called by broken CGI scripts.
  * Fix some minor memory leaks and bugs.

OBS-URL: https://build.opensuse.org/request/show/648382
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=133
2018-11-14 13:29:28 +00:00
Tomáš Chvátal
15416dc96c OBS-URL: https://build.opensuse.org/package/show/Base:System/gpg2?expand=0&rev=215 2018-11-12 07:39:44 +00:00
Tomáš Chvátal
72a4d09e3e Accepting request 647368 from home:elvigia:branches:Base:System
- Code no longer uses libcurl, remove from buildrequires.

OBS-URL: https://build.opensuse.org/request/show/647368
OBS-URL: https://build.opensuse.org/package/show/Base:System/gpg2?expand=0&rev=214
2018-11-08 20:43:23 +00:00
234678ce30 Accepting request 646642 from home:kbabioch:branches:Base:System
- Update to 2.2.11:
  * gpgsm: Fix CRL loading when intermediate certicates are not yet trusted.
  * gpgsm: Fix an error message about the digest algo.
  * gpg: Fix a wrong warning due to new sign usage check introduced with 2.2.9.
  * gpg: Print the "data source" even for an unsuccessful keyserver query.
  * gpg: Do not store the TOFU trust model in the trustdb.
  * scd: Fix cases of "Bad PIN" after using "forcesig".
  * agent: Fix possible hang in the ssh handler.
  * dirmngr: Tack the unmodified mail address to a WKD request.
  * dirmngr: Tweak diagnostic about missing LDAP server file.
  * dirmngr: In verbose mode print the OCSP responder id.
  * dirmngr: Fix parsing of the LDAP port.
  * wks: Add option --directory/-C to the server.
  * wks: Add option --with-colons to the client. 
  * Fix EBADF when gpg et al. are called by broken CGI scripts.
  * Fix some minor memory leaks and bugs.

OBS-URL: https://build.opensuse.org/request/show/646642
OBS-URL: https://build.opensuse.org/package/show/Base:System/gpg2?expand=0&rev=213
2018-11-07 07:22:17 +00:00
42912526e1 Accepting request 640771 from Base:System
OBS-URL: https://build.opensuse.org/request/show/640771
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=132
2018-10-12 11:08:02 +00:00
0697758c1b Accepting request 640771 from Base:System
OBS-URL: https://build.opensuse.org/request/show/640771
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=132
2018-10-12 11:08:02 +00:00
9327ae7cc9 Accepting request 639831 from home:bmwiedemann:branches:Base:System
Make package build reproducible (boo#1047218)

doc/mkdefsinc.c used the mtime for info file date

doc/Makefile.am:180 would empty defsincdate and thereby change date in man pages

OBS-URL: https://build.opensuse.org/request/show/639831
OBS-URL: https://build.opensuse.org/package/show/Base:System/gpg2?expand=0&rev=211
2018-10-09 09:24:41 +00:00
d6735024d8 Accepting request 632346 from Base:System
GnuPG 2.2.10

OBS-URL: https://build.opensuse.org/request/show/632346
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=131
2018-09-04 20:48:23 +00:00
7bf2729c3b Accepting request 632346 from Base:System
GnuPG 2.2.10

OBS-URL: https://build.opensuse.org/request/show/632346
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=131
2018-09-04 20:48:23 +00:00
4a257d029e OBS-URL: https://build.opensuse.org/package/show/Base:System/gpg2?expand=0&rev=209 2018-08-30 14:24:22 +00:00
2ede4f9497 Accepting request 632343 from home:kbabioch:branches:Base:System
- Update to 2.2.10:
- Refresh expired keys originating from the WKD.
- Use a 256 KiB limit for a WKD imported key.
- New option --known-notation.
- dirmngr: Validate SRV records in WKD queries.

OBS-URL: https://build.opensuse.org/request/show/632343
OBS-URL: https://build.opensuse.org/package/show/Base:System/gpg2?expand=0&rev=208
2018-08-30 14:23:51 +00:00
eb77957ba1 Accepting request 625188 from Base:System
- Add basic udev rules for smartcards to be used with
  scdaemon, taken from debian:
  * scdaemon.udev

OBS-URL: https://build.opensuse.org/request/show/625188
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=130
2018-07-26 08:16:32 +00:00
212147741a Accepting request 625188 from Base:System
- Add basic udev rules for smartcards to be used with
  scdaemon, taken from debian:
  * scdaemon.udev

OBS-URL: https://build.opensuse.org/request/show/625188
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=130
2018-07-26 08:16:32 +00:00
Tomáš Chvátal
d5b2e196b6 - Add basic udev rules for smartcards to be used with
scdaemon, taken from debian:
  * scdaemon.udev

OBS-URL: https://build.opensuse.org/package/show/Base:System/gpg2?expand=0&rev=206
2018-07-25 06:15:59 +00:00
025eaa326f Accepting request 622429 from Base:System
OBS-URL: https://build.opensuse.org/request/show/622429
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=129
2018-07-17 07:38:39 +00:00
cd58797a77 Accepting request 622429 from Base:System
OBS-URL: https://build.opensuse.org/request/show/622429
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=129
2018-07-17 07:38:39 +00:00
b97c394713 Accepting request 622428 from security:privacy
GnuPG 2.2.9

OBS-URL: https://build.opensuse.org/request/show/622428
OBS-URL: https://build.opensuse.org/package/show/Base:System/gpg2?expand=0&rev=204
2018-07-13 07:19:53 +00:00
a1f44c9762 Accepting request 615264 from Base:System
GnuPG 2.2.8 (bsc#1096745, CVE-2018-12020)

OBS-URL: https://build.opensuse.org/request/show/615264
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=128
2018-06-22 11:11:25 +00:00
4dae542981 Accepting request 615264 from Base:System
GnuPG 2.2.8 (bsc#1096745, CVE-2018-12020)

OBS-URL: https://build.opensuse.org/request/show/615264
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=128
2018-06-22 11:11:25 +00:00
a1f48048e7 tweak patches
OBS-URL: https://build.opensuse.org/package/show/Base:System/gpg2?expand=0&rev=202
2018-06-08 14:38:26 +00:00
539c3348ab OBS-URL: https://build.opensuse.org/package/show/Base:System/gpg2?expand=0&rev=201 2018-06-08 14:30:19 +00:00
ab3b40ddff OBS-URL: https://build.opensuse.org/package/show/Base:System/gpg2?expand=0&rev=200 2018-06-08 13:06:08 +00:00
4e0530a4d3 Accepting request 615235 from home:kbabioch:branches:Base:System
- Fix URL

OBS-URL: https://build.opensuse.org/request/show/615235
OBS-URL: https://build.opensuse.org/package/show/Base:System/gpg2?expand=0&rev=199
2018-06-08 13:05:19 +00:00
Tomáš Chvátal
e04faea002 Accepting request 615233 from home:kbabioch:branches:Base:System
- Applied spec-cleaner
- Refreshed patches
- Update to version 2.2.8:
  * gpg: Decryption of messages not using the MDC mode will now lead to a
    hard failure even if a legacy cipher algorithm was used. The option
    --ignore-mdc-error can be used to turn this failure into a warning. Take
    care: Never use that option unconditionally or without a prior warning.
  * gpg: The MDC encryption mode is now always used regardless of the
    cipher algorithm or any preferences.  For testing --rfc2440 can be
    used to create a message without an MDC.
  * gpg: Sanitize the diagnostic output of the original file name in
    verbose mode.
  * gpg: Detect suspicious multiple plaintext packets in a more reliable way.
  * gpg: Fix the duplicate key signature detection code.
  * gpg: The options --no-mdc-warn, --force-mdc, --no-force-mdc,
    --disable-mdc and --no-disable-mdc have no more effect.
  * agent: Add DBUS_SESSION_BUS_ADDRESS and a few other envvars to the
    list of startup environment variables.

OBS-URL: https://build.opensuse.org/request/show/615233
OBS-URL: https://build.opensuse.org/package/show/Base:System/gpg2?expand=0&rev=198
2018-06-08 12:49:21 +00:00
53bf96003a Accepting request 604049 from Base:System
OBS-URL: https://build.opensuse.org/request/show/604049
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=127
2018-05-08 11:32:14 +00:00
9cdea5fadb Accepting request 604049 from Base:System
OBS-URL: https://build.opensuse.org/request/show/604049
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=127
2018-05-08 11:32:14 +00:00
87351cd06c Accepting request 604047 from security:privacy
GnuPG 2.2.7

OBS-URL: https://build.opensuse.org/request/show/604047
OBS-URL: https://build.opensuse.org/package/show/Base:System/gpg2?expand=0&rev=196
2018-05-04 14:24:16 +00:00
d0d76d3741 Accepting request 597193 from Base:System
GnuPG 2.2.6

OBS-URL: https://build.opensuse.org/request/show/597193
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=126
2018-04-17 09:15:25 +00:00
e37ba65b10 Accepting request 597193 from Base:System
GnuPG 2.2.6

OBS-URL: https://build.opensuse.org/request/show/597193
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=126
2018-04-17 09:15:25 +00:00
dbd0d99859 refresh signature file
OBS-URL: https://build.opensuse.org/package/show/Base:System/gpg2?expand=0&rev=194
2018-04-16 18:29:24 +00:00
848549204f fix
OBS-URL: https://build.opensuse.org/package/show/Base:System/gpg2?expand=0&rev=193
2018-04-10 07:13:37 +00:00
32812df37d Accepting request 595099 from security:privacy
GnuPG 2.2.6

OBS-URL: https://build.opensuse.org/request/show/595099
OBS-URL: https://build.opensuse.org/package/show/Base:System/gpg2?expand=0&rev=192
2018-04-10 07:10:42 +00:00
9c43332e8e Accepting request 593728 from Base:System
OBS-URL: https://build.opensuse.org/request/show/593728
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=125
2018-04-07 18:47:23 +00:00
519f73a4dd Accepting request 593728 from Base:System
OBS-URL: https://build.opensuse.org/request/show/593728
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=125
2018-04-07 18:47:23 +00:00
Tomáš Chvátal
4f103a2a39 Accepting request 593727 from home:kbabioch:branches:Base:System
- Added gnupg-CVE-2018-9234.patch: Enforce that key certification
  can only be done with the master key, and not a signing subkey.
  (bnc#1088255 CVE-2018-9234)

OBS-URL: https://build.opensuse.org/request/show/593727
OBS-URL: https://build.opensuse.org/package/show/Base:System/gpg2?expand=0&rev=190
2018-04-05 08:51:46 +00:00
04939356d7 Accepting request 580131 from Base:System
OBS-URL: https://build.opensuse.org/request/show/580131
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=124
2018-02-28 18:54:31 +00:00
968facf567 Accepting request 580131 from Base:System
OBS-URL: https://build.opensuse.org/request/show/580131
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=124
2018-02-28 18:54:31 +00:00
Tomáš Chvátal
66dd7fdb56 Accepting request 580089 from home:favogt:licensetag
Use %license (boo#1082318). Please forward to SLE, if possible

OBS-URL: https://build.opensuse.org/request/show/580089
OBS-URL: https://build.opensuse.org/package/show/Base:System/gpg2?expand=0&rev=188
2018-02-26 09:33:35 +00:00
b3c008d868 Accepting request 579922 from security:privacy
GnuPG 2.2.5

OBS-URL: https://build.opensuse.org/request/show/579922
OBS-URL: https://build.opensuse.org/package/show/Base:System/gpg2?expand=0&rev=187
2018-02-25 12:21:00 +00:00
2cef8c8e7d Accepting request 559114 from Base:System
OBS-URL: https://build.opensuse.org/request/show/559114
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=123
2017-12-23 11:11:05 +00:00
e9cd6d333f Accepting request 559114 from Base:System
OBS-URL: https://build.opensuse.org/request/show/559114
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=123
2017-12-23 11:11:05 +00:00
Vítězslav Čížek
fa4e59419e Accepting request 559111 from security:privacy
GnuPG 2.2.4

OBS-URL: https://build.opensuse.org/request/show/559111
OBS-URL: https://build.opensuse.org/package/show/Base:System/gpg2?expand=0&rev=185
2017-12-21 15:21:47 +00:00
a1986d73a7 Accepting request 544086 from Base:System
OBS-URL: https://build.opensuse.org/request/show/544086
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=122
2017-11-25 07:40:01 +00:00
4ee5d76e2d Accepting request 544086 from Base:System
OBS-URL: https://build.opensuse.org/request/show/544086
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=122
2017-11-25 07:40:01 +00:00
0ba37ca37d Accepting request 544085 from security:privacy
GnuPG 2.2.3

OBS-URL: https://build.opensuse.org/request/show/544085
OBS-URL: https://build.opensuse.org/package/show/Base:System/gpg2?expand=0&rev=183
2017-11-21 08:28:41 +00:00
98dcca50ca Accepting request 539677 from Base:System
GnuPG 2.2.2 (forwarded request 539676 from AndreasStieger)

OBS-URL: https://build.opensuse.org/request/show/539677
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=121
2017-11-14 11:36:43 +00:00
1760a59f26 Accepting request 539677 from Base:System
GnuPG 2.2.2 (forwarded request 539676 from AndreasStieger)

OBS-URL: https://build.opensuse.org/request/show/539677
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=121
2017-11-14 11:36:43 +00:00
439525295c Accepting request 539676 from security:privacy
GnuPG 2.2.2

OBS-URL: https://build.opensuse.org/request/show/539676
OBS-URL: https://build.opensuse.org/package/show/Base:System/gpg2?expand=0&rev=181
2017-11-07 20:16:25 +00:00
b79f82dcb1 Accepting request 527382 from Base:System
1

OBS-URL: https://build.opensuse.org/request/show/527382
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=120
2017-09-22 19:32:08 +00:00
312ce911aa Accepting request 527382 from Base:System
1

OBS-URL: https://build.opensuse.org/request/show/527382
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=120
2017-09-22 19:32:08 +00:00
b42b9a2f21 Accepting request 527381 from security:privacy
GnuPG 2.2.1

OBS-URL: https://build.opensuse.org/request/show/527381
OBS-URL: https://build.opensuse.org/package/show/Base:System/gpg2?expand=0&rev=179
2017-09-19 20:27:32 +00:00
fe59f87a33 Accepting request 519193 from Base:System
GnuPG 2.2.0 bsc#1054088 (forwarded request 519191 from AndreasStieger)

OBS-URL: https://build.opensuse.org/request/show/519193
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=119
2017-09-04 10:26:32 +00:00
ebcbfcc429 Accepting request 519193 from Base:System
GnuPG 2.2.0 bsc#1054088 (forwarded request 519191 from AndreasStieger)

OBS-URL: https://build.opensuse.org/request/show/519193
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=119
2017-09-04 10:26:32 +00:00
8912df4de5 Accepting request 519191 from security:privacy
GnuPG 2.2.0 bsc#1054088

OBS-URL: https://build.opensuse.org/request/show/519191
OBS-URL: https://build.opensuse.org/package/show/Base:System/gpg2?expand=0&rev=177
2017-08-28 17:36:56 +00:00
ae9e40c895 Accepting request 512957 from Base:System
1

OBS-URL: https://build.opensuse.org/request/show/512957
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=118
2017-08-04 09:56:51 +00:00
867a852207 Accepting request 512957 from Base:System
1

OBS-URL: https://build.opensuse.org/request/show/512957
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=118
2017-08-04 09:56:51 +00:00
0eae918f19 Accepting request 512955 from security:privacy
GnuPG 2.1.22

OBS-URL: https://build.opensuse.org/request/show/512955
OBS-URL: https://build.opensuse.org/package/show/Base:System/gpg2?expand=0&rev=175
2017-07-28 19:33:18 +00:00
086354e0d0 Accepting request 497286 from Base:System
(forwarded request 496742 from mstrigl)

OBS-URL: https://build.opensuse.org/request/show/497286
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=117
2017-06-01 14:28:24 +00:00
07680c0f3a Accepting request 497286 from Base:System
(forwarded request 496742 from mstrigl)

OBS-URL: https://build.opensuse.org/request/show/497286
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=117
2017-06-01 14:28:24 +00:00
9b6c062d14 Accepting request 496742 from home:mstrigl:branches:Base:System
OBS-URL: https://build.opensuse.org/request/show/496742
OBS-URL: https://build.opensuse.org/package/show/Base:System/gpg2?expand=0&rev=173
2017-05-22 09:46:20 +00:00
1ac5df053a Accepting request 495114 from Base:System
1

OBS-URL: https://build.opensuse.org/request/show/495114
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=116
2017-05-20 12:29:25 +00:00
7da7bdd699 Accepting request 495114 from Base:System
1

OBS-URL: https://build.opensuse.org/request/show/495114
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=116
2017-05-20 12:29:25 +00:00
740fd300fc Accepting request 495113 from security:privacy
GnuPG 2.1.21

OBS-URL: https://build.opensuse.org/request/show/495113
OBS-URL: https://build.opensuse.org/package/show/Base:System/gpg2?expand=0&rev=171
2017-05-15 20:55:07 +00:00
0544a28f0a Accepting request 485787 from Base:System
GnuPG 2.1.20

OBS-URL: https://build.opensuse.org/request/show/485787
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=115
2017-04-11 07:29:46 +00:00
0782bfbfd8 Accepting request 485787 from Base:System
GnuPG 2.1.20

OBS-URL: https://build.opensuse.org/request/show/485787
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=115
2017-04-11 07:29:46 +00:00
c4a7c33b02 fetch updated sig
OBS-URL: https://build.opensuse.org/package/show/Base:System/gpg2?expand=0&rev=169
2017-04-05 10:33:06 +00:00
fecfc4efdd Accepting request 485777 from security:privacy
2.1.20

OBS-URL: https://build.opensuse.org/request/show/485777
OBS-URL: https://build.opensuse.org/package/show/Base:System/gpg2?expand=0&rev=168
2017-04-05 09:54:08 +00:00
35cf81bb34 Accepting request 479947 from Base:System
- Use stronger defaults for new users, using SHA-2 digest family
  for certificates and message signatures - FATE#323084
  adding gnupg-2.1.19-stronger-defaults.patch (forwarded request 479376 from AndreasStieger)

OBS-URL: https://build.opensuse.org/request/show/479947
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=114
2017-03-18 19:48:59 +00:00
bac078244d Accepting request 479947 from Base:System
- Use stronger defaults for new users, using SHA-2 digest family
  for certificates and message signatures - FATE#323084
  adding gnupg-2.1.19-stronger-defaults.patch (forwarded request 479376 from AndreasStieger)

OBS-URL: https://build.opensuse.org/request/show/479947
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=114
2017-03-18 19:48:59 +00:00
4a38996a40 Accepting request 479376 from security:privacy
- Use stronger defaults for new users, using SHA-2 digest family
  for certificates and message signatures - FATE#323084
  adding gnupg-2.1.19-stronger-defaults.patch

OBS-URL: https://build.opensuse.org/request/show/479376
OBS-URL: https://build.opensuse.org/package/show/Base:System/gpg2?expand=0&rev=166
2017-03-16 09:35:18 +00:00
3ca16e693a Accepting request 477543 from Base:System
GnuPG 2.1.19

OBS-URL: https://build.opensuse.org/request/show/477543
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=113
2017-03-11 14:18:43 +00:00
bcf4b2989d Accepting request 477543 from Base:System
GnuPG 2.1.19

OBS-URL: https://build.opensuse.org/request/show/477543
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=113
2017-03-11 14:18:43 +00:00
5b7f1aaff5 new sig
OBS-URL: https://build.opensuse.org/package/show/Base:System/gpg2?expand=0&rev=164
2017-03-07 14:37:31 +00:00
bb3d768ed0 Accepting request 477540 from security:privacy
GnuPG 2.1.19

OBS-URL: https://build.opensuse.org/request/show/477540
OBS-URL: https://build.opensuse.org/package/show/Base:System/gpg2?expand=0&rev=163
2017-03-07 14:31:11 +00:00
Tomáš Chvátal
d31e3b9a79 Accepting request 461849 from home:jengelh:branches:Base:System
- Rewrite descriptions

OBS-URL: https://build.opensuse.org/request/show/461849
OBS-URL: https://build.opensuse.org/package/show/Base:System/gpg2?expand=0&rev=162
2017-03-02 12:53:32 +00:00
92db918fd4 Accepting request 452272 from Base:System
1

OBS-URL: https://build.opensuse.org/request/show/452272
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=112
2017-02-01 08:48:26 +00:00
50535566eb Accepting request 452272 from Base:System
1

OBS-URL: https://build.opensuse.org/request/show/452272
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=112
2017-02-01 08:48:26 +00:00
45f3b6e466 Accepting request 452271 from security:privacy
GnuPG 2.1.18

OBS-URL: https://build.opensuse.org/request/show/452271
OBS-URL: https://build.opensuse.org/package/show/Base:System/gpg2?expand=0&rev=160
2017-01-24 19:38:21 +00:00
14b081e8dd Accepting request 449308 from Base:System
- Remove the fixme, condition around fdupes

- add runtime dependency to match runtime version check for libksba

OBS-URL: https://build.opensuse.org/request/show/449308
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=111
2017-01-10 09:36:57 +00:00
91f2b8f045 Accepting request 449308 from Base:System
- Remove the fixme, condition around fdupes

- add runtime dependency to match runtime version check for libksba

OBS-URL: https://build.opensuse.org/request/show/449308
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=111
2017-01-10 09:36:57 +00:00
Tomáš Chvátal
ef8e11c2a7 - Remove the fixme, condition around fdupes
OBS-URL: https://build.opensuse.org/package/show/Base:System/gpg2?expand=0&rev=158
2017-01-09 09:54:30 +00:00
Tomáš Chvátal
7be46568df - Remove the fixme, condition around fdupes and enable tests
OBS-URL: https://build.opensuse.org/package/show/Base:System/gpg2?expand=0&rev=157
2017-01-09 09:33:05 +00:00
Ludwig Nussel
6d9777a541 Accepting request 447204 from Base:System
GnuPG 2.1.17 (forwarded request 447203 from AndreasStieger)

OBS-URL: https://build.opensuse.org/request/show/447204
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=110
2016-12-29 21:41:42 +00:00
Ludwig Nussel
d57bf5c845 Accepting request 447204 from Base:System
GnuPG 2.1.17 (forwarded request 447203 from AndreasStieger)

OBS-URL: https://build.opensuse.org/request/show/447204
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=110
2016-12-29 21:41:42 +00:00
941260323c Accepting request 447928 from security:privacy
add runtime dependency to match runtime version check for libksba

OBS-URL: https://build.opensuse.org/request/show/447928
OBS-URL: https://build.opensuse.org/package/show/Base:System/gpg2?expand=0&rev=155
2016-12-27 18:34:21 +00:00
8cc55ed8a4 Accepting request 447203 from security:privacy
GnuPG 2.1.17

OBS-URL: https://build.opensuse.org/request/show/447203
OBS-URL: https://build.opensuse.org/package/show/Base:System/gpg2?expand=0&rev=154
2016-12-20 19:34:32 +00:00
0e9bf32cb9 osc copypac from project:Base:System package:gpg2 revision:151, using keep-link, using expand
OBS-URL: https://build.opensuse.org/package/show/Base:System/gpg2?expand=0&rev=153
2016-11-29 16:50:26 +00:00
Tomáš Chvátal
beb01c83d0 - Add --enable-large-rsa to allow large size keys bnc#1012536
OBS-URL: https://build.opensuse.org/package/show/Base:System/gpg2?expand=0&rev=152
2016-11-29 12:34:26 +00:00
077318b018 Accepting request 441009 from Base:System
GnuPG 2.1.16 (forwarded request 441007 from AndreasStieger)

OBS-URL: https://build.opensuse.org/request/show/441009
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=109
2016-11-22 17:57:36 +00:00
6d2701f439 Accepting request 441009 from Base:System
GnuPG 2.1.16 (forwarded request 441007 from AndreasStieger)

OBS-URL: https://build.opensuse.org/request/show/441009
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=109
2016-11-22 17:57:36 +00:00
5cd70f3b2e Accepting request 441007 from security:privacy
GnuPG 2.1.16

OBS-URL: https://build.opensuse.org/request/show/441007
OBS-URL: https://build.opensuse.org/package/show/Base:System/gpg2?expand=0&rev=150
2016-11-19 22:26:09 +00:00
4159ec1770 Accepting request 427261 from Base:System
- avoid mixing up status and colon line output - bsc#993324
- enable web key discovery tools
- Add an explicit runtime dependency on libgcrypt >= 1.7.0 to match runtime version check

OBS-URL: https://build.opensuse.org/request/show/427261
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=108
2016-09-17 12:32:21 +00:00
a85e7f0481 Accepting request 427261 from Base:System
- avoid mixing up status and colon line output - bsc#993324
- enable web key discovery tools
- Add an explicit runtime dependency on libgcrypt >= 1.7.0 to match runtime version check

OBS-URL: https://build.opensuse.org/request/show/427261
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=108
2016-09-17 12:32:21 +00:00
5058b5ebe2 Accepting request 427260 from security:privacy
- avoid mixing up status and colon line output - bsc#993324
- enable web key discovery tools
- Add an explicit runtime dependency on libgcrypt >= 1.7.0 to
  match runtime version check

OBS-URL: https://build.opensuse.org/request/show/427260
OBS-URL: https://build.opensuse.org/package/show/Base:System/gpg2?expand=0&rev=149
2016-09-13 13:56:48 +00:00
f88d4275c3 rev
OBS-URL: https://build.opensuse.org/package/show/Base:System/gpg2?expand=0&rev=148
2016-08-31 20:02:41 +00:00
2b9e294fda Accepting request 424000 from security:privacy
- Add an explicit runtime dependency on libgcrypt >= 1.7.0 to
  match runtime version check

OBS-URL: https://build.opensuse.org/request/show/424000
OBS-URL: https://build.opensuse.org/package/show/Base:System/gpg2?expand=0&rev=147
2016-08-31 13:18:54 +00:00
77a5f649db Accepting request 420990 from Base:System
1

OBS-URL: https://build.opensuse.org/request/show/420990
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=107
2016-08-30 22:00:37 +00:00
bfbf6949a8 Accepting request 420990 from Base:System
1

OBS-URL: https://build.opensuse.org/request/show/420990
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=107
2016-08-30 22:00:37 +00:00
P. Janouch
c121f5f68c Accepting request 420625 from security:privacy
GnuPG 2.1.15

OBS-URL: https://build.opensuse.org/request/show/420625
OBS-URL: https://build.opensuse.org/package/show/Base:System/gpg2?expand=0&rev=145
2016-08-22 09:24:09 +00:00
db6923e8b6 Accepting request 416968 from Base:System
1

OBS-URL: https://build.opensuse.org/request/show/416968
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=106
2016-08-06 18:36:23 +00:00
677e15e75e Accepting request 416968 from Base:System
1

OBS-URL: https://build.opensuse.org/request/show/416968
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=106
2016-08-06 18:36:23 +00:00
P. Janouch
5b257985f5 Accepting request 416910 from home:scarabeus_iv:branches:Base:System
- Fix date call as the curlified parameter for sure are not parsed
  correctly by escaping it with %

OBS-URL: https://build.opensuse.org/request/show/416910
OBS-URL: https://build.opensuse.org/package/show/Base:System/gpg2?expand=0&rev=143
2016-08-04 15:57:29 +00:00
P. Janouch
95a7c69a10 Accepting request 416713 from security:privacy
- Fix upstream bug 1985: --try-all-secrets doesn't work when
  decrypting messages encrypted with --hidden-recipient, fixes unit
  tests of the duplicity package.
  Adding gnupg-make_--try-all-secrets_work.patch
- record the fact that gpg-error 1.21 is required

OBS-URL: https://build.opensuse.org/request/show/416713
OBS-URL: https://build.opensuse.org/package/show/Base:System/gpg2?expand=0&rev=142
2016-08-04 10:12:03 +00:00
66e681e30c Accepting request 402817 from Base:System
1

OBS-URL: https://build.opensuse.org/request/show/402817
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=105
2016-07-09 07:17:21 +00:00
b9bb071952 Accepting request 402817 from Base:System
1

OBS-URL: https://build.opensuse.org/request/show/402817
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=105
2016-07-09 07:17:21 +00:00
b446cc7747 Accepting request 402813 from security:privacy
GnuPG 2.1.13

OBS-URL: https://build.opensuse.org/request/show/402813
OBS-URL: https://build.opensuse.org/package/show/Base:System/gpg2?expand=0&rev=140
2016-06-16 20:47:53 +00:00
b45f87c748 Accepting request 399868 from Base:System
- add gnupg-fix-signature-checking.patch (bsc#981020)
  https://bugs.gnupg.org/gnupg/issue2351

OBS-URL: https://build.opensuse.org/request/show/399868
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=104
2016-06-07 21:43:36 +00:00
3578bdf698 Accepting request 399868 from Base:System
- add gnupg-fix-signature-checking.patch (bsc#981020)
  https://bugs.gnupg.org/gnupg/issue2351

OBS-URL: https://build.opensuse.org/request/show/399868
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=104
2016-06-07 21:43:36 +00:00
P. Janouch
50d1dfe332 - add gnupg-fix-signature-checking.patch (bsc#981020)
https://bugs.gnupg.org/gnupg/issue2351

OBS-URL: https://build.opensuse.org/package/show/Base:System/gpg2?expand=0&rev=138
2016-06-02 16:46:05 +00:00
98ce26024d Accepting request 394637 from Base:System
1

OBS-URL: https://build.opensuse.org/request/show/394637
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=103
2016-05-17 15:07:00 +00:00
7db1ff1a06 Accepting request 394637 from Base:System
1

OBS-URL: https://build.opensuse.org/request/show/394637
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=103
2016-05-17 15:07:00 +00:00
P. Janouch
d9d1c12fb9 Accepting request 394635 from security:privacy
updated sig

OBS-URL: https://build.opensuse.org/request/show/394635
OBS-URL: https://build.opensuse.org/package/show/Base:System/gpg2?expand=0&rev=136
2016-05-10 12:16:45 +00:00
P. Janouch
62deae5dd4 Accepting request 394632 from security:privacy
GnuPG 2.1.12

OBS-URL: https://build.opensuse.org/request/show/394632
OBS-URL: https://build.opensuse.org/package/show/Base:System/gpg2?expand=0&rev=135
2016-05-10 11:27:26 +00:00
88a6479146 Accepting request 367545 from Base:System
1

OBS-URL: https://build.opensuse.org/request/show/367545
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=102
2016-03-09 14:16:27 +00:00
1d142dbbfb Accepting request 367545 from Base:System
1

OBS-URL: https://build.opensuse.org/request/show/367545
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=102
2016-03-09 14:16:27 +00:00
c320566b5a Accepting request 366921 from security:privacy
GnuPG 2.1.11

OBS-URL: https://build.opensuse.org/request/show/366921
OBS-URL: https://build.opensuse.org/package/show/Base:System/gpg2?expand=0&rev=133
2016-03-07 12:44:00 +00:00
9bdb1a2985 Accepting request 356125 from Base:System
1

OBS-URL: https://build.opensuse.org/request/show/356125
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=101
2016-01-28 16:20:05 +00:00
009fb9ad0b Accepting request 356125 from Base:System
1

OBS-URL: https://build.opensuse.org/request/show/356125
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=101
2016-01-28 16:20:05 +00:00
Vítězslav Čížek
677efa819f Accepting request 356121 from security:privacy
add g13, an experimental tool for accessing encrypted storage with with GnuPG (cards)

OBS-URL: https://build.opensuse.org/request/show/356121
OBS-URL: https://build.opensuse.org/package/show/Base:System/gpg2?expand=0&rev=131
2016-01-26 22:08:25 +00:00
1d82ff8160 Accepting request 354788 from home:vitezslav_cizek:branches:Base:System
- fix fingerprint ambiguity (bsc#958891)
  * https://bugs.gnupg.org/gnupg/issue2198
  * add 0001-gpg-Improve-the-keyblock-cache-s-transparency.patch

OBS-URL: https://build.opensuse.org/request/show/354788
OBS-URL: https://build.opensuse.org/package/show/Base:System/gpg2?expand=0&rev=130
2016-01-20 10:38:30 +00:00
59a7ec0ac5 Accepting request 350481 from Base:System
Automatic submission by obs-autosubmit

OBS-URL: https://build.opensuse.org/request/show/350481
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=100
2015-12-25 12:05:41 +00:00
a1ba7ab59c Accepting request 350481 from Base:System
Automatic submission by obs-autosubmit

OBS-URL: https://build.opensuse.org/request/show/350481
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=100
2015-12-25 12:05:41 +00:00
aa46062d11 remove last change, it did not fix the bug as reported and caused a loop
OBS-URL: https://build.opensuse.org/package/show/Base:System/gpg2?expand=0&rev=128
2015-12-16 09:54:15 +00:00
44d4d916a9 fix diff
OBS-URL: https://build.opensuse.org/package/show/Base:System/gpg2?expand=0&rev=127
2015-12-14 09:24:02 +00:00
b5801d2025 Accepting request 347481 from Base:System
GnuPG 2.1.10

OBS-URL: https://build.opensuse.org/request/show/347481
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=99
2015-12-09 19:33:47 +00:00
0de22e52c5 Accepting request 347481 from Base:System
GnuPG 2.1.10

OBS-URL: https://build.opensuse.org/request/show/347481
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=99
2015-12-09 19:33:47 +00:00
0d2fd56a5a Accepting request 347663 from home:posophe:branches:Base:System
prefer pkgconfig() style;

OBS-URL: https://build.opensuse.org/request/show/347663
OBS-URL: https://build.opensuse.org/package/show/Base:System/gpg2?expand=0&rev=124
2015-12-08 14:36:53 +00:00
0705547006 download
OBS-URL: https://build.opensuse.org/package/show/Base:System/gpg2?expand=0&rev=123
2015-12-04 17:28:56 +00:00
0febbaf009 Accepting request 347464 from security:privacy
2.1.10

OBS-URL: https://build.opensuse.org/request/show/347464
OBS-URL: https://build.opensuse.org/package/show/Base:System/gpg2?expand=0&rev=122
2015-12-04 15:26:14 +00:00
6a0d44af54 Accepting request 346197 from Base:System
1

OBS-URL: https://build.opensuse.org/request/show/346197
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=98
2015-12-01 08:16:50 +00:00
5ef3326c25 Accepting request 346197 from Base:System
1

OBS-URL: https://build.opensuse.org/request/show/346197
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=98
2015-12-01 08:16:50 +00:00
bcc045f104 Accepting request 346022 from home:vitezslav_cizek:branches:Base:System
- enable tests for PPC64 again,
  the problem from bsc#935887 went away

OBS-URL: https://build.opensuse.org/request/show/346022
OBS-URL: https://build.opensuse.org/package/show/Base:System/gpg2?expand=0&rev=120
2015-11-25 10:09:52 +00:00
a5bf922780 Accepting request 337606 from Base:System
1

OBS-URL: https://build.opensuse.org/request/show/337606
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=97
2015-10-20 14:20:54 +00:00
b4ed140455 Accepting request 337606 from Base:System
1

OBS-URL: https://build.opensuse.org/request/show/337606
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=97
2015-10-20 14:20:54 +00:00
65fd32d037 Accepting request 337605 from security:privacy
GnuPG 2.1.9

OBS-URL: https://build.opensuse.org/request/show/337605
OBS-URL: https://build.opensuse.org/package/show/Base:System/gpg2?expand=0&rev=118
2015-10-10 11:48:45 +00:00
9e7f95cc7a Accepting request 330468 from Base:System
1

OBS-URL: https://build.opensuse.org/request/show/330468
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=96
2015-09-16 08:37:06 +00:00
af6426da45 Accepting request 330468 from Base:System
1

OBS-URL: https://build.opensuse.org/request/show/330468
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=96
2015-09-16 08:37:06 +00:00
be180c1615 Accepting request 330467 from home:AndreasStieger:branches:Base:System
gnupg 2.1.8

OBS-URL: https://build.opensuse.org/request/show/330467
OBS-URL: https://build.opensuse.org/package/show/Base:System/gpg2?expand=0&rev=116
2015-09-11 07:41:47 +00:00
0a0a86b032 Accepting request 322235 from Base:System
GnuPG 2.1.7

OBS-URL: https://build.opensuse.org/request/show/322235
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=95
2015-08-17 13:33:41 +00:00
448ceec4c9 Accepting request 322235 from Base:System
GnuPG 2.1.7

OBS-URL: https://build.opensuse.org/request/show/322235
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=95
2015-08-17 13:33:41 +00:00
389631ebcd complete signature
OBS-URL: https://build.opensuse.org/package/show/Base:System/gpg2?expand=0&rev=115
2015-08-12 21:12:13 +00:00
958b428a99 Accepting request 322066 from security:privacy
GnuPG 2.1.7

OBS-URL: https://build.opensuse.org/request/show/322066
OBS-URL: https://build.opensuse.org/package/show/Base:System/gpg2?expand=0&rev=114
2015-08-12 19:49:22 +00:00
Stephan Kulow
0713080f88 Accepting request 315691 from Base:System
Automatic submission by obs-autosubmit

OBS-URL: https://build.opensuse.org/request/show/315691
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=94
2015-07-16 15:18:47 +00:00
Stephan Kulow
df32d905d5 Accepting request 315691 from Base:System
Automatic submission by obs-autosubmit

OBS-URL: https://build.opensuse.org/request/show/315691
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=94
2015-07-16 15:18:47 +00:00
86a02bab39 - do not run checks on ppc64 for now
OBS-URL: https://build.opensuse.org/package/show/Base:System/gpg2?expand=0&rev=112
2015-07-02 14:27:52 +00:00
e533137688 Accepting request 314742 from home:AndreasStieger:branches:Base:System
GnuPG 2.1.6

OBS-URL: https://build.opensuse.org/request/show/314742
OBS-URL: https://build.opensuse.org/package/show/Base:System/gpg2?expand=0&rev=111
2015-07-01 14:21:08 +00:00
d6b37098b2 Accepting request 314247 from home:AndreasSchwab:f
- Enable workaround for missing dependencies everywhere

OBS-URL: https://build.opensuse.org/request/show/314247
OBS-URL: https://build.opensuse.org/package/show/Base:System/gpg2?expand=0&rev=110
2015-06-28 15:25:17 +00:00
6aff149b2b Accepting request 312215 from Base:System
1

OBS-URL: https://build.opensuse.org/request/show/312215
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=93
2015-06-24 18:28:22 +00:00
0e6fe26bee Accepting request 312215 from Base:System
1

OBS-URL: https://build.opensuse.org/request/show/312215
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=93
2015-06-24 18:28:22 +00:00
Vítězslav Čížek
63a29de940 Accepting request 312115 from security:privacy
Fix SLE 12 ... 13.2 build

OBS-URL: https://build.opensuse.org/request/show/312115
OBS-URL: https://build.opensuse.org/package/show/Base:System/gpg2?expand=0&rev=108
2015-06-16 07:33:46 +00:00
51eaf366cc Accepting request 311649 from Base:System
1

OBS-URL: https://build.opensuse.org/request/show/311649
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=92
2015-06-12 18:24:45 +00:00
0a3267cb33 Accepting request 311649 from Base:System
1

OBS-URL: https://build.opensuse.org/request/show/311649
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=92
2015-06-12 18:24:45 +00:00
Vítězslav Čížek
09805239dc Accepting request 311645 from home:AndreasStieger:branches:Base:System
GnuPG 2.1.5

OBS-URL: https://build.opensuse.org/request/show/311645
OBS-URL: https://build.opensuse.org/package/show/Base:System/gpg2?expand=0&rev=106
2015-06-11 14:52:46 +00:00
8316e31033 Accepting request 307582 from Base:System
1

OBS-URL: https://build.opensuse.org/request/show/307582
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=91
2015-05-19 21:28:47 +00:00
3a17da160b Accepting request 307582 from Base:System
1

OBS-URL: https://build.opensuse.org/request/show/307582
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=91
2015-05-19 21:28:47 +00:00
0bdb56eec6 Accepting request 307556 from home:msmeissn:branches:Base:System
- info deinstall needs to be in %preun

OBS-URL: https://build.opensuse.org/request/show/307556
OBS-URL: https://build.opensuse.org/package/show/Base:System/gpg2?expand=0&rev=104
2015-05-17 11:50:57 +00:00
Stephan Kulow
37223e018a Accepting request 306640 from Base:System
1

OBS-URL: https://build.opensuse.org/request/show/306640
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=90
2015-05-15 07:02:43 +00:00
Stephan Kulow
7eb4e7afaf Accepting request 306640 from Base:System
1

OBS-URL: https://build.opensuse.org/request/show/306640
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=90
2015-05-15 07:02:43 +00:00
0e490919bd Accepting request 306636 from security:privacy
gnupg 2.1.4

OBS-URL: https://build.opensuse.org/request/show/306636
OBS-URL: https://build.opensuse.org/package/show/Base:System/gpg2?expand=0&rev=102
2015-05-12 18:59:59 +00:00
c74bcffa40 Accepting request 295424 from Base:System
1

OBS-URL: https://build.opensuse.org/request/show/295424
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=89
2015-04-13 18:29:46 +00:00
822eaec7c6 Accepting request 295424 from Base:System
1

OBS-URL: https://build.opensuse.org/request/show/295424
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=89
2015-04-13 18:29:46 +00:00
036bc4ce34 Accepting request 295423 from security:privacy
1

OBS-URL: https://build.opensuse.org/request/show/295423
OBS-URL: https://build.opensuse.org/package/show/Base:System/gpg2?expand=0&rev=100
2015-04-11 19:08:10 +00:00
9f298fd601 Accepting request 292455 from Base:System
1

OBS-URL: https://build.opensuse.org/request/show/292455
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=88
2015-03-27 08:38:00 +00:00
9376dc9a88 Accepting request 292455 from Base:System
1

OBS-URL: https://build.opensuse.org/request/show/292455
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=88
2015-03-27 08:38:00 +00:00
16ae325256 Accepting request 292435 from home:namtrac:branches:Base:System
- Add hkps-fix-host-name-verification-when-using-pools.patch to
  fix hkps support w/ pools. Upstream commit dc10d46.

OBS-URL: https://build.opensuse.org/request/show/292435
OBS-URL: https://build.opensuse.org/package/show/Base:System/gpg2?expand=0&rev=98
2015-03-23 13:47:16 +00:00
0bc6cb4535 Accepting request 291614 from Base:System
1

OBS-URL: https://build.opensuse.org/request/show/291614
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=87
2015-03-23 11:16:22 +00:00
cbc35ec5fd Accepting request 291614 from Base:System
1

OBS-URL: https://build.opensuse.org/request/show/291614
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=87
2015-03-23 11:16:22 +00:00
53705b7c8f Accepting request 291611 from security:privacy
1

OBS-URL: https://build.opensuse.org/request/show/291611
OBS-URL: https://build.opensuse.org/package/show/Base:System/gpg2?expand=0&rev=96
2015-03-19 16:30:03 +00:00
d067f85965 Accepting request 287682 from Base:System
1

OBS-URL: https://build.opensuse.org/request/show/287682
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=86
2015-03-01 13:52:09 +00:00
1e59d0bb1e Accepting request 287682 from Base:System
1

OBS-URL: https://build.opensuse.org/request/show/287682
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=86
2015-03-01 13:52:09 +00:00
129cca34ec Accepting request 287676 from home:AndreasStieger:branches:Base:System
Fix invalid packet read error when reading keyrings [boo#914625]

OBS-URL: https://build.opensuse.org/request/show/287676
OBS-URL: https://build.opensuse.org/package/show/Base:System/gpg2?expand=0&rev=94
2015-02-25 10:39:14 +00:00
4f581be7e1 Accepting request 285756 from Base:System
1

OBS-URL: https://build.opensuse.org/request/show/285756
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=85
2015-02-14 12:54:21 +00:00
914c259adf Accepting request 285756 from Base:System
1

OBS-URL: https://build.opensuse.org/request/show/285756
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=85
2015-02-14 12:54:21 +00:00
1b4695482d Accepting request 285737 from home:AndreasStieger:branches:Base:System
GnuPG 2.1.2

OBS-URL: https://build.opensuse.org/request/show/285737
OBS-URL: https://build.opensuse.org/package/show/Base:System/gpg2?expand=0&rev=92
2015-02-12 08:37:54 +00:00
Stephan Kulow
372453258c Accepting request 266596 from Base:System
1

OBS-URL: https://build.opensuse.org/request/show/266596
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=84
2015-01-21 20:50:33 +00:00
Stephan Kulow
d7a20ca9d3 Accepting request 266596 from Base:System
1

OBS-URL: https://build.opensuse.org/request/show/266596
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=84
2015-01-21 20:50:33 +00:00
974f2ce095 Accepting request 266475 from home:AndreasStieger:branches:Base:System
gnupg 2.1.1

OBS-URL: https://build.opensuse.org/request/show/266475
OBS-URL: https://build.opensuse.org/package/show/Base:System/gpg2?expand=0&rev=90
2014-12-29 06:05:14 +00:00
22eb023940 Accepting request 266408 from Base:System
Support for large RSA keys (changelog fixed)

OBS-URL: https://build.opensuse.org/request/show/266408
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=83
2014-12-28 23:31:59 +00:00
072a03eda8 Accepting request 266408 from Base:System
Support for large RSA keys (changelog fixed)

OBS-URL: https://build.opensuse.org/request/show/266408
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=83
2014-12-28 23:31:59 +00:00
4c7be29c4c OBS-URL: https://build.opensuse.org/package/show/Base:System/gpg2?expand=0&rev=89 2014-12-25 18:12:17 +00:00
Tomáš Chvátal
1100fdfb69 Accepting request 264264 from home:lorenz:branches:Base:System
Attempt to incorporate the requested changes from the comments on the declined request 263170

OBS-URL: https://build.opensuse.org/request/show/264264
OBS-URL: https://build.opensuse.org/package/show/Base:System/gpg2?expand=0&rev=88
2014-12-25 17:08:58 +00:00
3e2d315cd6 Accepting request 264728 from Base:System
Automatic submission by obs-autosubmit

OBS-URL: https://build.opensuse.org/request/show/264728
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=82
2014-12-16 13:50:42 +00:00
65b54e4967 Accepting request 264728 from Base:System
Automatic submission by obs-autosubmit

OBS-URL: https://build.opensuse.org/request/show/264728
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=82
2014-12-16 13:50:42 +00:00
1bc6662a95 Accepting request 263909 from Base:System
Automatic submission by obs-autosubmit

OBS-URL: https://build.opensuse.org/request/show/263909
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=81
2014-12-09 08:13:50 +00:00
140f494826 Accepting request 263909 from Base:System
Automatic submission by obs-autosubmit

OBS-URL: https://build.opensuse.org/request/show/263909
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=81
2014-12-09 08:13:50 +00:00
526873c248 Accepting request 263917 from home:AndreasStieger:branches:Base:System
update build requirement versions that changed with 2.1.0

OBS-URL: https://build.opensuse.org/request/show/263917
OBS-URL: https://build.opensuse.org/package/show/Base:System/gpg2?expand=0&rev=85
2014-12-03 22:40:59 +00:00
f26c508bf1 Accepting request 263168 from home:AndreasStieger:branches:Base:System
fix buffer overflow in OID to string conversion function [boo#907198]

OBS-URL: https://build.opensuse.org/request/show/263168
OBS-URL: https://build.opensuse.org/package/show/Base:System/gpg2?expand=0&rev=84
2014-11-26 19:36:09 +00:00
56c2acf961 Accepting request 261410 from home:vitezslav_cizek:branches:Base:System
created delete request for dirmngr: #261401
also a pull request for source validator,
because --pgp2 option which it uses is no longer supported:
https://github.com/openSUSE/obs-service-source_validator/pull/13/files

- obsolete dirmngr (shipped with gpg since 2.1.0)
- spec cleanup after previous update
- get rid of "THIS IS A DEVELOPMENT VERSION" warning
  http://lists.gnupg.org/pipermail/gnupg-devel/2014-November/029065.html
  * added gnupg-remove_development_version_warning.patch

OBS-URL: https://build.opensuse.org/request/show/261410
OBS-URL: https://build.opensuse.org/package/show/Base:System/gpg2?expand=0&rev=83
2014-11-13 21:15:23 +00:00
5a51467ce2 OBS-URL: https://build.opensuse.org/package/show/Base:System/gpg2?expand=0&rev=82 2014-11-11 11:37:31 +00:00
0dcd044ac8 OBS-URL: https://build.opensuse.org/package/show/Base:System/gpg2?expand=0&rev=81 2014-11-11 11:21:13 +00:00
687d5e8ce3 OBS-URL: https://build.opensuse.org/package/show/Base:System/gpg2?expand=0&rev=80 2014-11-11 11:21:07 +00:00
b4e8b7fb1e Accepting request 260826 from home:vitezslav_cizek:branches:Base:System
- upgrade to 2.1.0 (modern)
  - The file "secring.gpg" is not anymore used to store the secret
    keys.  Merging of secret keys is now supported.
  - All support for PGP-2 keys has been removed for security reasons.
  - The standard key generation interface is now much leaner.  This
    will help a new user to quickly generate a suitable key.
  - Support for Elliptic Curve Cryptography (ECC) is now available.
  - Commands to create and sign keys from the command line without any
    extra prompts are now available.
  - The Pinentry may now show the new passphrase entry and the
    passphrase confirmation entry in one dialog.
  - There is no more need to manually start the gpg-agent.  It is now
    started by any part of GnuPG as needed.
  - Problems with importing keys with the same long key id have been
    addressed.
  - The Dirmngr is now part of GnuPG proper and also takes care of
    accessing keyserver.
  - Keyserver pools are now handled in a smarter way.
  - A new format for locally storing the public keys is now used.
    This considerable speeds up operations on large keyrings.
  - Revocation certificates are now created by default.
  - Card support has been updated, new readers and token types are
    supported.
  - The format of the key listing has been changed to better identify
    the properties of a key.
  - The gpg-agent may now be used on Windows as a Pageant replacement
    for Putty in the same way it is used for years on Unix as
    ssh-agent replacement.
  - Creation of X.509 certificates has been improved.  It is now also
    possible to export them directly in PKCS#8 and PEM format for use

OBS-URL: https://build.opensuse.org/request/show/260826
OBS-URL: https://build.opensuse.org/package/show/Base:System/gpg2?expand=0&rev=79
2014-11-11 10:52:31 +00:00
98b561471b Accepting request 244478 from Base:System
1

OBS-URL: https://build.opensuse.org/request/show/244478
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=79
2014-08-15 07:58:15 +00:00
558d7dd776 Accepting request 244478 from Base:System
1

OBS-URL: https://build.opensuse.org/request/show/244478
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=79
2014-08-15 07:58:15 +00:00
94e5edb36b Accepting request 244477 from home:AndreasStieger:branches:Base:System
GnuPG 2.0.26

OBS-URL: https://build.opensuse.org/request/show/244477
OBS-URL: https://build.opensuse.org/package/show/Base:System/gpg2?expand=0&rev=77
2014-08-12 20:32:53 +00:00
Stephan Kulow
7a7d1dc8e8 Accepting request 239236 from Base:System
GnuPG 2.0.25, and a BuildRequires fix to move 13.1 fails up to the scheduler, or build with gcrypt 1.6.1

OBS-URL: https://build.opensuse.org/request/show/239236
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=78
2014-07-08 11:01:50 +00:00
Stephan Kulow
9859988188 Accepting request 239236 from Base:System
GnuPG 2.0.25, and a BuildRequires fix to move 13.1 fails up to the scheduler, or build with gcrypt 1.6.1

OBS-URL: https://build.opensuse.org/request/show/239236
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=78
2014-07-08 11:01:50 +00:00
b93524f027 Accepting request 239235 from home:AndreasStieger:branches:Base:System
- gnupg-add_legacy_FIPS_mode_option.patch (part of [bnc#856312])
  mentions GCRYCTL_INACTIVATE_FIPS_FLAG, raising the requirement
  for gcrypt from 1.4.0 (from configure) to 1.6.1 where said flag
  was introduced. Require this version to build.

OBS-URL: https://build.opensuse.org/request/show/239235
OBS-URL: https://build.opensuse.org/package/show/Base:System/gpg2?expand=0&rev=76
2014-07-01 21:33:00 +00:00
fb7584ea2b Accepting request 238995 from home:AndreasStieger:branches:Base:System
GnuPG 2.0.25

OBS-URL: https://build.opensuse.org/request/show/238995
OBS-URL: https://build.opensuse.org/package/show/Base:System/gpg2?expand=0&rev=75
2014-06-30 19:09:15 +00:00
Stephan Kulow
da24e9f5f7 Accepting request 238560 from Base:System
1

OBS-URL: https://build.opensuse.org/request/show/238560
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=77
2014-06-25 19:19:59 +00:00
Stephan Kulow
d8460bfa6b Accepting request 238560 from Base:System
1

OBS-URL: https://build.opensuse.org/request/show/238560
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=77
2014-06-25 19:19:59 +00:00
Stephan Kulow
b5050335d4 Accepting request 238555 from home:AndreasStieger:branches:Base:System
GnuPG 2.0.24 [bnc#884130] [CVE-2014-4617]

OBS-URL: https://build.opensuse.org/request/show/238555
OBS-URL: https://build.opensuse.org/package/show/Base:System/gpg2?expand=0&rev=73
2014-06-25 05:12:17 +00:00
Stephan Kulow
2836263c8a Accepting request 236186 from Base:System
update to 2.0.23 (forwarded request 236179 from AndreasStieger)

OBS-URL: https://build.opensuse.org/request/show/236186
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=76
2014-06-18 08:59:08 +00:00
Stephan Kulow
0eb530bef3 Accepting request 236186 from Base:System
update to 2.0.23 (forwarded request 236179 from AndreasStieger)

OBS-URL: https://build.opensuse.org/request/show/236186
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=76
2014-06-18 08:59:08 +00:00
bc78af366e Accepting request 236179 from home:AndreasStieger:branches:Base:System
update to 2.0.23

OBS-URL: https://build.opensuse.org/request/show/236179
OBS-URL: https://build.opensuse.org/package/show/Base:System/gpg2?expand=0&rev=71
2014-06-04 07:49:19 +00:00
Stephan Kulow
90a9368344 Accepting request 232310 from Base:System
- add patch by Stephan Mueller which adds an option to enable
  legacy ciphers in FIPS mode
  * added gnupg-add_legacy_FIPS_mode_option.patch
  (part of bnc#856312)
- added BuildRequires: makeinfo (to build info pages from the
  patched gnupg.texi) (forwarded request 232207 from vitezslav_cizek)

OBS-URL: https://build.opensuse.org/request/show/232310
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=75
2014-05-02 17:21:25 +00:00
Stephan Kulow
6dc88a678a Accepting request 232310 from Base:System
- add patch by Stephan Mueller which adds an option to enable
  legacy ciphers in FIPS mode
  * added gnupg-add_legacy_FIPS_mode_option.patch
  (part of bnc#856312)
- added BuildRequires: makeinfo (to build info pages from the
  patched gnupg.texi) (forwarded request 232207 from vitezslav_cizek)

OBS-URL: https://build.opensuse.org/request/show/232310
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=75
2014-05-02 17:21:25 +00:00
Stephan Kulow
dd3835954b Accepting request 232207 from home:vitezslav_cizek:branches:Base:System
- add patch by Stephan Mueller which adds an option to enable
  legacy ciphers in FIPS mode
  * added gnupg-add_legacy_FIPS_mode_option.patch
  (part of bnc#856312)
- added BuildRequires: makeinfo (to build info pages from the
  patched gnupg.texi)

OBS-URL: https://build.opensuse.org/request/show/232207
OBS-URL: https://build.opensuse.org/package/show/Base:System/gpg2?expand=0&rev=69
2014-05-01 10:48:32 +00:00
Stephan Kulow
2d4413b0e0 Accepting request 222429 from Base:System
- install scdaemon to /usr/bin (bnc#863645) (forwarded request 222380 from vitezslav_cizek)

OBS-URL: https://build.opensuse.org/request/show/222429
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=74
2014-02-17 06:18:17 +00:00
Stephan Kulow
8b70a61e67 Accepting request 222429 from Base:System
- install scdaemon to /usr/bin (bnc#863645) (forwarded request 222380 from vitezslav_cizek)

OBS-URL: https://build.opensuse.org/request/show/222429
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=74
2014-02-17 06:18:17 +00:00
664021a9ed Accepting request 222380 from home:vitezslav_cizek:branches:Base:System
- install scdaemon to /usr/bin (bnc#863645)

OBS-URL: https://build.opensuse.org/request/show/222380
OBS-URL: https://build.opensuse.org/package/show/Base:System/gpg2?expand=0&rev=67
2014-02-15 10:10:41 +00:00
Tomáš Chvátal
f710426bfd Accepting request 202374 from Base:System
update to 2.0.22 [bnc#844175] [CVE-2013-4402] (forwarded request 202365 from AndreasStieger)

OBS-URL: https://build.opensuse.org/request/show/202374
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=73
2013-10-06 12:52:46 +00:00
Tomáš Chvátal
3118e2007a Accepting request 202374 from Base:System
update to 2.0.22 [bnc#844175] [CVE-2013-4402] (forwarded request 202365 from AndreasStieger)

OBS-URL: https://build.opensuse.org/request/show/202374
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=73
2013-10-06 12:52:46 +00:00
Vítězslav Čížek
be1a8efbc3 Accepting request 202365 from home:AndreasStieger:branches:Base:System
update to 2.0.22 [bnc#844175] [CVE-2013-4402]

OBS-URL: https://build.opensuse.org/request/show/202365
OBS-URL: https://build.opensuse.org/package/show/Base:System/gpg2?expand=0&rev=65
2013-10-05 15:00:23 +00:00
Stephan Kulow
cf7364f2f8 Accepting request 199283 from Base:System
- fix CVE-2013-4351 (bnc#840510) (forwarded request 199274 from vitezslav_cizek)

OBS-URL: https://build.opensuse.org/request/show/199283
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=71
2013-09-17 13:02:35 +00:00
Stephan Kulow
3179981c14 Accepting request 199283 from Base:System
- fix CVE-2013-4351 (bnc#840510) (forwarded request 199274 from vitezslav_cizek)

OBS-URL: https://build.opensuse.org/request/show/199283
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=71
2013-09-17 13:02:35 +00:00
Stephan Kulow
9c07c5a07b Accepting request 199274 from home:vitezslav_cizek:branches:Base:System
- fix CVE-2013-4351 (bnc#840510)

OBS-URL: https://build.opensuse.org/request/show/199274
OBS-URL: https://build.opensuse.org/package/show/Base:System/gpg2?expand=0&rev=63
2013-09-16 17:37:29 +00:00
Tomáš Chvátal
91aea4deca Accepting request 195696 from Base:System
update to 2.0.21 (forwarded request 195623 from AndreasStieger)

OBS-URL: https://build.opensuse.org/request/show/195696
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=70
2013-08-21 11:45:37 +00:00
Tomáš Chvátal
9eeb3a48b5 Accepting request 195696 from Base:System
update to 2.0.21 (forwarded request 195623 from AndreasStieger)

OBS-URL: https://build.opensuse.org/request/show/195696
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=70
2013-08-21 11:45:37 +00:00
Vítězslav Čížek
ccf09f118d Accepting request 195623 from home:AndreasStieger:branches:Base:System
update to 2.0.21

OBS-URL: https://build.opensuse.org/request/show/195623
OBS-URL: https://build.opensuse.org/package/show/Base:System/gpg2?expand=0&rev=61
2013-08-20 12:21:25 +00:00
Stephan Kulow
165235e0ac Accepting request 179317 from Base:System
- revert usage of gpg-offline to avoid cycles

- add gnupg-2.0.20-automake113.diff to fix build with automake 1.13

OBS-URL: https://build.opensuse.org/request/show/179317
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=69
2013-06-18 08:20:25 +00:00
Stephan Kulow
eb8cf1f04c Accepting request 179317 from Base:System
- revert usage of gpg-offline to avoid cycles

- add gnupg-2.0.20-automake113.diff to fix build with automake 1.13

OBS-URL: https://build.opensuse.org/request/show/179317
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=69
2013-06-18 08:20:25 +00:00
Stephan Kulow
f442cf1eab - revert usage of gpg-offline to avoid cycles
OBS-URL: https://build.opensuse.org/package/show/Base:System/gpg2?expand=0&rev=59
2013-06-17 12:50:36 +00:00
Stephan Kulow
19791fc189 - add gnupg-2.0.20-automake113.diff to fix build with automake 1.13
OBS-URL: https://build.opensuse.org/package/show/Base:System/gpg2?expand=0&rev=58
2013-06-17 12:41:39 +00:00
Stephan Kulow
75a602ee46 Accepting request 175847 from Base:System
- set safe umask before creating a plaintext file (bnc#780943)
  added gpg2-set_umask_before_open_outfile.patch
- select proper ciphers when running in FIPS mode (bnc#808958)
  added gnupg-detect_FIPS_mode.patch (forwarded request 175573 from vitezslav_cizek)

OBS-URL: https://build.opensuse.org/request/show/175847
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=68
2013-05-16 13:35:19 +00:00
Stephan Kulow
453e639477 Accepting request 175847 from Base:System
- set safe umask before creating a plaintext file (bnc#780943)
  added gpg2-set_umask_before_open_outfile.patch
- select proper ciphers when running in FIPS mode (bnc#808958)
  added gnupg-detect_FIPS_mode.patch (forwarded request 175573 from vitezslav_cizek)

OBS-URL: https://build.opensuse.org/request/show/175847
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=68
2013-05-16 13:35:19 +00:00
d7e7e54938 Accepting request 175573 from home:vitezslav_cizek:branches:Base:System
- set safe umask before creating a plaintext file (bnc#780943)
  added gpg2-set_umask_before_open_outfile.patch
- select proper ciphers when running in FIPS mode (bnc#808958)
  added gnupg-detect_FIPS_mode.patch

OBS-URL: https://build.opensuse.org/request/show/175573
OBS-URL: https://build.opensuse.org/package/show/Base:System/gpg2?expand=0&rev=56
2013-05-16 10:06:39 +00:00
Stephan Kulow
5a7763f112 Accepting request 175189 from Base:System
update to 2.0.20 (forwarded request 175003 from AndreasStieger)

OBS-URL: https://build.opensuse.org/request/show/175189
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=67
2013-05-16 08:59:32 +00:00
Stephan Kulow
3c7b2e6c08 Accepting request 175189 from Base:System
update to 2.0.20 (forwarded request 175003 from AndreasStieger)

OBS-URL: https://build.opensuse.org/request/show/175189
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=67
2013-05-16 08:59:32 +00:00
Vítězslav Čížek
63ecb964f5 Accepting request 175003 from home:AndreasStieger:branches:Base:System
update to 2.0.20

OBS-URL: https://build.opensuse.org/request/show/175003
OBS-URL: https://build.opensuse.org/package/show/Base:System/gpg2?expand=0&rev=54
2013-05-12 16:46:27 +00:00
Stephan Kulow
e014d3e46d Accepting request 161454 from Base:System
- Added url as source.
  Please see http://en.opensuse.org/SourceUrls (forwarded request 161391 from m_meister)

OBS-URL: https://build.opensuse.org/request/show/161454
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=66
2013-03-28 12:16:11 +00:00
Stephan Kulow
6ea1cafb40 Accepting request 161454 from Base:System
- Added url as source.
  Please see http://en.opensuse.org/SourceUrls (forwarded request 161391 from m_meister)

OBS-URL: https://build.opensuse.org/request/show/161454
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=66
2013-03-28 12:16:11 +00:00
34b3b2c907 Accepting request 161391 from home:m_meister:branches:openSUSE:Factory
- Added url as source.
  Please see http://en.opensuse.org/SourceUrls

OBS-URL: https://build.opensuse.org/request/show/161391
OBS-URL: https://build.opensuse.org/package/show/Base:System/gpg2?expand=0&rev=52
2013-03-27 15:24:40 +00:00
Stephan Kulow
0043012f29 Accepting request 148677 from Base:System
Add support for BZIP2 compression algorithm (bnc#798175). (forwarded request 148630 from Lazy_Kent)

OBS-URL: https://build.opensuse.org/request/show/148677
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=64
2013-01-17 08:39:23 +00:00
Stephan Kulow
a40879d29d Accepting request 148677 from Base:System
Add support for BZIP2 compression algorithm (bnc#798175). (forwarded request 148630 from Lazy_Kent)

OBS-URL: https://build.opensuse.org/request/show/148677
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=64
2013-01-17 08:39:23 +00:00
0809ba4377 Accepting request 148630 from home:Lazy_Kent:branches:Base:System
Add support for BZIP2 compression algorithm (bnc#798175).

OBS-URL: https://build.opensuse.org/request/show/148630
OBS-URL: https://build.opensuse.org/package/show/Base:System/gpg2?expand=0&rev=50
2013-01-16 08:24:58 +00:00
Stephan Kulow
645bf6ac63 Accepting request 114364 from Base:System
- Mention some of the changes in Greg's version update

  * GPG now accepts a space separated fingerprint as a user ID.  This
    allows to copy and paste the fingerprint from the key listing.
  * GPG now uses the longest key ID available.  Removed support for the
    original HKP keyserver which is not anymore used by any site.
  * Rebuild the trustdb after changing the option --min-cert-level.
  * Ukrainian translation.
  * Honor option --cert-digest-algo when creating a cert.
  * Emit a DECRYPTION_INFO status line.
  * Improved detection of JPEG files. (forwarded request 114352 from vitezslav_cizek)

OBS-URL: https://build.opensuse.org/request/show/114364
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=62
2012-04-19 06:48:48 +00:00
Stephan Kulow
9c954dc517 Accepting request 114364 from Base:System
- Mention some of the changes in Greg's version update

  * GPG now accepts a space separated fingerprint as a user ID.  This
    allows to copy and paste the fingerprint from the key listing.
  * GPG now uses the longest key ID available.  Removed support for the
    original HKP keyserver which is not anymore used by any site.
  * Rebuild the trustdb after changing the option --min-cert-level.
  * Ukrainian translation.
  * Honor option --cert-digest-algo when creating a cert.
  * Emit a DECRYPTION_INFO status line.
  * Improved detection of JPEG files. (forwarded request 114352 from vitezslav_cizek)

OBS-URL: https://build.opensuse.org/request/show/114364
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=62
2012-04-19 06:48:48 +00:00
2ac949b496 Accepting request 114352 from home:vitezslav_cizek:branches:Base:System
- Mention some of the changes in Greg's version update

  * GPG now accepts a space separated fingerprint as a user ID.  This
    allows to copy and paste the fingerprint from the key listing.
  * GPG now uses the longest key ID available.  Removed support for the
    original HKP keyserver which is not anymore used by any site.
  * Rebuild the trustdb after changing the option --min-cert-level.
  * Ukrainian translation.
  * Honor option --cert-digest-algo when creating a cert.
  * Emit a DECRYPTION_INFO status line.
  * Improved detection of JPEG files.

OBS-URL: https://build.opensuse.org/request/show/114352
OBS-URL: https://build.opensuse.org/package/show/Base:System/gpg2?expand=0&rev=48
2012-04-18 11:28:18 +00:00
Greg Kroah-Hartman
f55d8e2066 Accepting request 111472 from home:gregkh:branches:Base:System
Update to 2.0.19 version

OBS-URL: https://build.opensuse.org/request/show/111472
OBS-URL: https://build.opensuse.org/package/show/Base:System/gpg2?expand=0&rev=47
2012-03-27 20:59:37 +00:00
Stephan Kulow
1212af3f21 Accepting request 95545 from Base:System
- fixed licence to GPL-3.0+ (bnc#734878)

- add automake as buildrequire to avoid implicit dependency

OBS-URL: https://build.opensuse.org/request/show/95545
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=61
2011-12-06 16:58:48 +00:00
Stephan Kulow
1a6c198858 Accepting request 95545 from Base:System
- fixed licence to GPL-3.0+ (bnc#734878)

- add automake as buildrequire to avoid implicit dependency

OBS-URL: https://build.opensuse.org/request/show/95545
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=61
2011-12-06 16:58:48 +00:00
Vítězslav Čížek
506630496b Accepting request 95544 from home:vitezslav_cizek:branches:Base:System
- fixed licence to GPL-3.0+ (bnc#734878)

OBS-URL: https://build.opensuse.org/request/show/95544
OBS-URL: https://build.opensuse.org/package/show/Base:System/gpg2?expand=0&rev=45
2011-12-06 11:07:42 +00:00
0dad5b45ed Accepting request 94463 from home:coolo:removeautomake
add automake to buildrequires

OBS-URL: https://build.opensuse.org/request/show/94463
OBS-URL: https://build.opensuse.org/package/show/Base:System/gpg2?expand=0&rev=44
2011-11-30 13:14:30 +00:00
Lars Vogdt
70a6b48718 Accepting request 85893 from Base:System
- Test suite hangs in qemu-arm, workaround. (forwarded request 85884 from elvigia)

OBS-URL: https://build.opensuse.org/request/show/85893
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=59
2011-10-02 08:09:58 +00:00
Lars Vogdt
dfa052edde Accepting request 85893 from Base:System
- Test suite hangs in qemu-arm, workaround. (forwarded request 85884 from elvigia)

OBS-URL: https://build.opensuse.org/request/show/85893
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=59
2011-10-02 08:09:58 +00:00
51fa71d4e9 Accepting request 85884 from home:elvigia:branches:Base:System
- Test suite hangs in qemu-arm, workaround.

OBS-URL: https://build.opensuse.org/request/show/85884
OBS-URL: https://build.opensuse.org/package/show/Base:System/gpg2?expand=0&rev=42
2011-10-01 19:41:38 +00:00
Sascha Peilicke
b9870172c5 Autobuild autoformatter for 80347
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=58
2011-09-01 12:51:04 +00:00
Sascha Peilicke
2c31785e83 Autobuild autoformatter for 80347
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=58
2011-09-01 12:51:04 +00:00
OBS User buildservice-autocommit
9a8a65bdc2 Updating link to change in openSUSE:Factory/gpg2 revision 58.0
OBS-URL: https://build.opensuse.org/package/show/Base:System/gpg2?expand=0&rev=3614127b0da6adc0ee96365bfed478eb
2011-09-01 12:51:04 +00:00
Sascha Peilicke
066b4dcbed Accepting request 80347 from Base:System
link with pie

OBS-URL: https://build.opensuse.org/request/show/80347
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=57
2011-09-01 12:50:55 +00:00
Sascha Peilicke
dc8762f02a Accepting request 80347 from Base:System
link with pie

OBS-URL: https://build.opensuse.org/request/show/80347
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=57
2011-09-01 12:50:55 +00:00
47137d4cd1 link with pie
OBS-URL: https://build.opensuse.org/package/show/Base:System/gpg2?expand=0&rev=40
2011-08-31 10:03:36 +00:00
Sascha Peilicke
0fd7090b2c Autobuild autoformatter for 79286
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=56
2011-08-19 07:13:21 +00:00
Sascha Peilicke
c903cd0fb5 Autobuild autoformatter for 79286
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=56
2011-08-19 07:13:21 +00:00
OBS User buildservice-autocommit
3ceb667e11 Updating link to change in openSUSE:Factory/gpg2 revision 56.0
OBS-URL: https://build.opensuse.org/package/show/Base:System/gpg2?expand=0&rev=66006d5ae84ad0c82cc0a78f4b252dae
2011-08-19 07:13:21 +00:00
Sascha Peilicke
50c013e141 Accepting request 79286 from Base:System
- libcurl.m4 tests were broken, resulting in the usage
  of a "fake" internal libcurl. (forwarded request 79279 from elvigia)

OBS-URL: https://build.opensuse.org/request/show/79286
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=55
2011-08-19 07:13:11 +00:00
Sascha Peilicke
36d42ea3af Accepting request 79286 from Base:System
- libcurl.m4 tests were broken, resulting in the usage
  of a "fake" internal libcurl. (forwarded request 79279 from elvigia)

OBS-URL: https://build.opensuse.org/request/show/79286
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=55
2011-08-19 07:13:11 +00:00
26bd6b9084 Accepting request 79279 from home:elvigia:branches:Base:System
- libcurl.m4 tests were broken, resulting in the usage
  of a "fake" internal libcurl.

OBS-URL: https://build.opensuse.org/request/show/79279
OBS-URL: https://build.opensuse.org/package/show/Base:System/gpg2?expand=0&rev=38
2011-08-19 05:00:05 +00:00
Sascha Peilicke
58908fadf8 Accepting request 78247 from Base:System
update to upstream 2.0.18 (forwarded request 78194 from AndreasStieger)

OBS-URL: https://build.opensuse.org/request/show/78247
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=54
2011-08-08 12:59:58 +00:00
Sascha Peilicke
634198130c Accepting request 78247 from Base:System
update to upstream 2.0.18 (forwarded request 78194 from AndreasStieger)

OBS-URL: https://build.opensuse.org/request/show/78247
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=54
2011-08-08 12:59:58 +00:00
b0e93dc796 Accepting request 78194 from home:AndreasStieger:branches:Base:System
update to upstream 2.0.18

OBS-URL: https://build.opensuse.org/request/show/78194
OBS-URL: https://build.opensuse.org/package/show/Base:System/gpg2?expand=0&rev=36
2011-08-07 22:04:43 +00:00
Sascha Peilicke
9aa05d130f Autobuild autoformatter for 64162
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=53
2011-03-16 09:37:25 +00:00
Sascha Peilicke
bb53d00a94 Autobuild autoformatter for 64162
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=53
2011-03-16 09:37:25 +00:00
OBS User buildservice-autocommit
8de8821e1f Updating link to change in openSUSE:Factory/gpg2 revision 53.0
OBS-URL: https://build.opensuse.org/package/show/Base:System/gpg2?expand=0&rev=94c20488830f74419417250cfc42c39e
2011-03-16 09:37:25 +00:00
Sascha Peilicke
a2c5ec279d Accepting request 64162 from Base:System
Accepted submit request 64162 from user puzel

OBS-URL: https://build.opensuse.org/request/show/64162
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=52
2011-03-16 09:37:18 +00:00
Sascha Peilicke
c1dfa36311 Accepting request 64162 from Base:System
Accepted submit request 64162 from user puzel

OBS-URL: https://build.opensuse.org/request/show/64162
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=52
2011-03-16 09:37:18 +00:00
4dc472ca4f update to 2.0.17
OBS-URL: https://build.opensuse.org/package/show/Base:System/gpg2?expand=0&rev=34
2011-03-15 09:49:14 +00:00
Berthold Gunreben
5117b47eaa Autobuild autoformatter for 57359
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=50
2011-01-10 09:45:34 +00:00
Berthold Gunreben
31f46df4dc Autobuild autoformatter for 57359
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=50
2011-01-10 09:45:34 +00:00
Berthold Gunreben
89dcdedc70 Accepting request 57359 from Base:System
Accepted submit request 57359 from user prusnak

OBS-URL: https://build.opensuse.org/request/show/57359
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=49
2011-01-10 09:45:26 +00:00
Berthold Gunreben
81026de465 Accepting request 57359 from Base:System
Accepted submit request 57359 from user prusnak

OBS-URL: https://build.opensuse.org/request/show/57359
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=49
2011-01-10 09:45:26 +00:00
Pavol Rusnak
7d94cd0cda Accepting request 57346 from home:sbrabec:branches:security:chipcard
OBS-URL: https://build.opensuse.org/request/show/57346
OBS-URL: https://build.opensuse.org/package/show/Base:System/gpg2?expand=0&rev=32
2011-01-07 14:00:57 +00:00
OBS User autobuild
545c8e96c3 Autobuild autoformatter for 51918
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=48
2010-11-02 10:05:35 +00:00
OBS User autobuild
8e6a9d9ebe Autobuild autoformatter for 51918
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=48
2010-11-02 10:05:35 +00:00
OBS User buildservice-autocommit
bf7f8291b8 Updating link to change in openSUSE:Factory/gpg2 revision 48.0
OBS-URL: https://build.opensuse.org/package/show/Base:System/gpg2?expand=0&rev=2089a233671876d82259fcaec8ca98e5
2010-11-02 10:05:35 +00:00
Ruediger Oertel
56de8c11b5 Accepting request 51918 from Base:System
Accepted submit request 51918 from user coolo

OBS-URL: https://build.opensuse.org/request/show/51918
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=47
2010-11-02 10:05:27 +00:00
Ruediger Oertel
07158b9623 Accepting request 51918 from Base:System
Accepted submit request 51918 from user coolo

OBS-URL: https://build.opensuse.org/request/show/51918
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=47
2010-11-02 10:05:27 +00:00
Stephan Kulow
87568829f1 OBS-URL: https://build.opensuse.org/package/show/Base:System/gpg2?expand=0&rev=30 2010-11-01 15:53:14 +00:00
Stephan Kulow
e5b500e32a Accepting request 51752 from home:jengelh:smp
OBS-URL: https://build.opensuse.org/request/show/51752
OBS-URL: https://build.opensuse.org/package/show/Base:System/gpg2?expand=0&rev=29
2010-11-01 08:34:36 +00:00
OBS User autobuild
0e96955caa Accepting request 44100 from Base:System
Copy from Base:System/gpg2 based on submit request 44100 from user puzel

OBS-URL: https://build.opensuse.org/request/show/44100
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=46
2010-07-30 12:51:31 +00:00
OBS User autobuild
e574e32b3a Accepting request 44100 from Base:System
Copy from Base:System/gpg2 based on submit request 44100 from user puzel

OBS-URL: https://build.opensuse.org/request/show/44100
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=46
2010-07-30 12:51:31 +00:00
OBS User buildservice-autocommit
e73796551e Updating link to change in openSUSE:Factory/gpg2 revision 46.0
OBS-URL: https://build.opensuse.org/package/show/Base:System/gpg2?expand=0&rev=cf9813d7f2389b31466c9a8febf32238
2010-07-30 12:51:31 +00:00
OBS User autobuild
db41b39bf1 Accepting request 44100 from Base:System
checked in (request 44100)

OBS-URL: https://build.opensuse.org/request/show/44100
OBS-URL: https://build.opensuse.org/package/show/Base:System/gpg2?expand=0&rev=27
2010-07-30 12:51:30 +00:00
9d48d338dd bnc#625947
OBS-URL: https://build.opensuse.org/package/show/Base:System/gpg2?expand=0&rev=26
2010-07-28 09:41:10 +00:00
OBS User autobuild
57fce049e6 Accepting request 43430 from Base:System
Copy from Base:System/gpg2 based on submit request 43430 from user puzel

OBS-URL: https://build.opensuse.org/request/show/43430
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=45
2010-07-20 06:41:39 +00:00
OBS User autobuild
69991c95e3 Accepting request 43430 from Base:System
Copy from Base:System/gpg2 based on submit request 43430 from user puzel

OBS-URL: https://build.opensuse.org/request/show/43430
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=45
2010-07-20 06:41:39 +00:00
OBS User buildservice-autocommit
f8df79f465 Updating link to change in openSUSE:Factory/gpg2 revision 45.0
OBS-URL: https://build.opensuse.org/package/show/Base:System/gpg2?expand=0&rev=2b78ae2f16336af3e76e3411a43873fd
2010-07-20 06:41:39 +00:00
OBS User autobuild
5b38e54afb Accepting request 43430 from Base:System
checked in (request 43430)

OBS-URL: https://build.opensuse.org/request/show/43430
OBS-URL: https://build.opensuse.org/package/show/Base:System/gpg2?expand=0&rev=25
2010-07-20 06:41:38 +00:00
d31b7648f6 update to gnupg-2.0.16
OBS-URL: https://build.opensuse.org/package/show/Base:System/gpg2?expand=0&rev=24
2010-07-19 21:58:25 +00:00
OBS User autobuild
bb82690b92 Accepting request 41206 from openSUSE:Tools
Copy from openSUSE:Tools/gpg2 based on submit request 41206 from user adrianSuSE

OBS-URL: https://build.opensuse.org/request/show/41206
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=42
2010-06-09 15:03:44 +00:00
OBS User autobuild
a1293bafdd Accepting request 41206 from openSUSE:Tools
Copy from openSUSE:Tools/gpg2 based on submit request 41206 from user adrianSuSE

OBS-URL: https://build.opensuse.org/request/show/41206
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=42
2010-06-09 15:03:44 +00:00
OBS User autobuild
2ffc407909 Accepting request 37836 from Base:System
Copy from Base:System/gpg2 based on submit request 37836 from user puzel

OBS-URL: https://build.opensuse.org/request/show/37836
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=41
2010-04-14 13:28:47 +00:00
OBS User autobuild
0a8776a1d2 Accepting request 37836 from Base:System
Copy from Base:System/gpg2 based on submit request 37836 from user puzel

OBS-URL: https://build.opensuse.org/request/show/37836
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=41
2010-04-14 13:28:47 +00:00
OBS User autobuild
b4d5e82f8c Accepting request 37836 from Base:System
checked in (request 37836)

OBS-URL: https://build.opensuse.org/request/show/37836
OBS-URL: https://build.opensuse.org/package/show/Base:System/gpg2?expand=0&rev=23
2010-04-14 13:28:46 +00:00
77b7565907 Accepting request 37588 from home:computersalat:devel:privacy
Copy from home:computersalat:devel:privacy/gpg2 via accept of submit request 37588 revision 10.
Request was accepted with message:
good work, thank you!

OBS-URL: https://build.opensuse.org/request/show/37588
OBS-URL: https://build.opensuse.org/package/show/Base:System/gpg2?expand=0&rev=22
2010-04-13 07:40:11 +00:00
OBS User autobuild
41046b9034 Accepting request 37232 from Base:System
Copy from Base:System/gpg2 based on submit request 37232 from user puzel

OBS-URL: https://build.opensuse.org/request/show/37232
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=40
2010-04-07 16:08:16 +00:00
OBS User autobuild
65e7da9686 Accepting request 37232 from Base:System
Copy from Base:System/gpg2 based on submit request 37232 from user puzel

OBS-URL: https://build.opensuse.org/request/show/37232
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=40
2010-04-07 16:08:16 +00:00
OBS User buildservice-autocommit
d805ae3fab Updating link to change in openSUSE:Factory/gpg2 revision 40.0
OBS-URL: https://build.opensuse.org/package/show/Base:System/gpg2?expand=0&rev=086a977c28ff4516cb42ec8a4e9ae376
2010-04-07 16:08:16 +00:00
OBS User autobuild
512d1cdbe9 Accepting request 37232 from Base:System
checked in (request 37232)

OBS-URL: https://build.opensuse.org/request/show/37232
OBS-URL: https://build.opensuse.org/package/show/Base:System/gpg2?expand=0&rev=21
2010-04-07 16:08:15 +00:00
e1f0c4a163 fix bnc#589994
OBS-URL: https://build.opensuse.org/package/show/Base:System/gpg2?expand=0&rev=20
2010-04-07 14:21:00 +00:00
OBS User autobuild
89f024a17a Accepting request 36536 from Base:System
Copy from Base:System/gpg2 based on submit request 36536 from user puzel

OBS-URL: https://build.opensuse.org/request/show/36536
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=39
2010-04-01 13:29:05 +00:00
OBS User autobuild
594908bb62 Accepting request 36536 from Base:System
Copy from Base:System/gpg2 based on submit request 36536 from user puzel

OBS-URL: https://build.opensuse.org/request/show/36536
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=39
2010-04-01 13:29:05 +00:00
OBS User buildservice-autocommit
4e09bb3785 Updating link to change in openSUSE:Factory/gpg2 revision 39.0
OBS-URL: https://build.opensuse.org/package/show/Base:System/gpg2?expand=0&rev=c611d7b430f1f4aefad7f2c07d1b728f
2010-04-01 13:29:05 +00:00
OBS User autobuild
49afe636dc Accepting request 36536 from Base:System
checked in (request 36536)

OBS-URL: https://build.opensuse.org/request/show/36536
OBS-URL: https://build.opensuse.org/package/show/Base:System/gpg2?expand=0&rev=19
2010-04-01 13:29:04 +00:00
6ffd5e9409 Accepting request 36533 from home:puzel:branches:Base:System
Copy from home:puzel:branches:Base:System/gpg2 via accept of submit request 36533 revision 2.
Request was accepted with message:

OBS-URL: https://build.opensuse.org/request/show/36533
OBS-URL: https://build.opensuse.org/package/show/Base:System/gpg2?expand=0&rev=18
2010-04-01 10:46:23 +00:00
OBS User autobuild
ee41d039ca Accepting request 35485 from Base:System
Copy from Base:System/gpg2 based on submit request 35485 from user puzel

OBS-URL: https://build.opensuse.org/request/show/35485
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=38
2010-03-26 00:11:48 +00:00
OBS User autobuild
9110d3b3de Accepting request 35485 from Base:System
Copy from Base:System/gpg2 based on submit request 35485 from user puzel

OBS-URL: https://build.opensuse.org/request/show/35485
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=38
2010-03-26 00:11:48 +00:00
OBS User buildservice-autocommit
0578875b95 Updating link to change in openSUSE:Factory/gpg2 revision 38.0
OBS-URL: https://build.opensuse.org/package/show/Base:System/gpg2?expand=0&rev=d4eaa900d83b29431f570f660df11b41
2010-03-26 00:11:48 +00:00
OBS User autobuild
a700e7a088 Accepting request 35485 from Base:System
checked in (request 35485)

OBS-URL: https://build.opensuse.org/request/show/35485
OBS-URL: https://build.opensuse.org/package/show/Base:System/gpg2?expand=0&rev=17
2010-03-26 00:11:47 +00:00
11eb0e170b fix files-are-digests patch
OBS-URL: https://build.opensuse.org/package/show/Base:System/gpg2?expand=0&rev=16
2010-03-22 15:13:26 +00:00
OBS User autobuild
842a1e832a OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=37 2010-03-18 14:50:56 +00:00
OBS User autobuild
67e6ef3b8a OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=37 2010-03-18 14:50:56 +00:00
OBS User autobuild
ab5e615bd6 Accepting request 33137 from Base:System
Copy from Base:System/gpg2 based on submit request 33137 from user msmeissn

OBS-URL: https://build.opensuse.org/request/show/33137
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=36
2010-02-24 01:05:28 +00:00
OBS User autobuild
fbd2168761 Accepting request 33137 from Base:System
Copy from Base:System/gpg2 based on submit request 33137 from user msmeissn

OBS-URL: https://build.opensuse.org/request/show/33137
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=36
2010-02-24 01:05:28 +00:00
OBS User autobuild
f64981a2d3 Accepting request 33137 from Base:System
checked in (request 33137)

OBS-URL: https://build.opensuse.org/request/show/33137
OBS-URL: https://build.opensuse.org/package/show/Base:System/gpg2?expand=0&rev=15
2010-02-24 01:05:27 +00:00
61674c678c Accepting request 32920 from home:puzel:branches:Base:System
Copy from home:puzel:branches:Base:System/gpg2 via accept of submit request 32920 revision 4.
Request was accepted with message:
Reviewed ok

OBS-URL: https://build.opensuse.org/request/show/32920
OBS-URL: https://build.opensuse.org/package/show/Base:System/gpg2?expand=0&rev=14
2010-02-22 17:27:31 +00:00
OBS User autobuild
d4cde91b92 Accepting request 32876 from Base:System
Copy from Base:System/gpg2 based on submit request 32876 from user puzel

OBS-URL: https://build.opensuse.org/request/show/32876
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=35
2010-02-18 16:01:36 +00:00
OBS User autobuild
dba12d1b8e Accepting request 32876 from Base:System
Copy from Base:System/gpg2 based on submit request 32876 from user puzel

OBS-URL: https://build.opensuse.org/request/show/32876
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=35
2010-02-18 16:01:36 +00:00
f89b69cb79 Accepting request 32797 from home:dimstar:branches:Base:System
Copy from home:dimstar:branches:Base:System/gpg2 via accept of submit request 32797 revision 3.
Request was accepted with message:
cool, thanks!

OBS-URL: https://build.opensuse.org/request/show/32797
OBS-URL: https://build.opensuse.org/package/show/Base:System/gpg2?expand=0&rev=12
2010-02-18 12:58:28 +00:00
OBS User autobuild
0498e2c816 Accepting request 30695 from Base:System
Copy from Base:System/gpg2 based on submit request 30695 from user puzel

OBS-URL: https://build.opensuse.org/request/show/30695
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=34
2010-01-29 14:57:14 +00:00
OBS User autobuild
1dc154eff1 Accepting request 30695 from Base:System
Copy from Base:System/gpg2 based on submit request 30695 from user puzel

OBS-URL: https://build.opensuse.org/request/show/30695
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=34
2010-01-29 14:57:14 +00:00
OBS User autobuild
ee80a3ee22 checked in (request 30695)
OBS-URL: https://build.opensuse.org/package/show/Base:System/gpg2?expand=0&rev=10
2010-01-29 14:57:14 +00:00
258c69f9b2 add changelog entry
OBS-URL: https://build.opensuse.org/package/show/Base:System/gpg2?expand=0&rev=9
2010-01-28 14:15:49 +00:00
2e5fa33d11 Accepting request 30694 from security:privacy
Copy from security:privacy/gpg2 via accept of submit request 30694 revision 8.
Request was accepted with message:

OBS-URL: https://build.opensuse.org/request/show/30694
OBS-URL: https://build.opensuse.org/package/show/Base:System/gpg2?expand=0&rev=8
2010-01-28 14:14:26 +00:00
OBS User autobuild
170475463e Accepting request 26776 from Base:System
Copy from Base:System/gpg2 based on submit request 26776 from user puzel

OBS-URL: https://build.opensuse.org/request/show/26776
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=33
2009-12-16 15:50:59 +00:00
OBS User autobuild
a6f8e0a364 Accepting request 26776 from Base:System
Copy from Base:System/gpg2 based on submit request 26776 from user puzel

OBS-URL: https://build.opensuse.org/request/show/26776
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=33
2009-12-16 15:50:59 +00:00
OBS User autobuild
169dd43074 Accepting request 24526 from Base:System
Copy from Base:System/gpg2 based on submit request 24526 from user puzel

OBS-URL: https://build.opensuse.org/request/show/24526
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=32
2009-11-16 17:35:33 +00:00
OBS User autobuild
3c74205134 Accepting request 24526 from Base:System
Copy from Base:System/gpg2 based on submit request 24526 from user puzel

OBS-URL: https://build.opensuse.org/request/show/24526
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=32
2009-11-16 17:35:33 +00:00
OBS User unknown
0895d605fe OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=30 2009-06-19 23:33:05 +00:00
OBS User unknown
5b8ae01450 OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=30 2009-06-19 23:33:05 +00:00
OBS User unknown
91aeafd964 OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=29 2009-06-12 15:33:52 +00:00
OBS User unknown
025a958874 OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=29 2009-06-12 15:33:52 +00:00
OBS User unknown
46b050044b OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=28 2009-06-02 10:28:15 +00:00
OBS User unknown
0edc37d24d OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=28 2009-06-02 10:28:15 +00:00
OBS User unknown
4262770219 OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=27 2009-03-20 18:37:13 +00:00
OBS User unknown
306498fd65 OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=27 2009-03-20 18:37:13 +00:00
OBS User unknown
f531e50f79 OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=26 2009-03-05 15:45:23 +00:00
OBS User unknown
dab15a2aeb OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=26 2009-03-05 15:45:23 +00:00
OBS User unknown
5165003672 OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=25 2009-03-02 15:33:31 +00:00
OBS User unknown
e39a906bb6 OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=25 2009-03-02 15:33:31 +00:00
OBS User unknown
23ddf0e745 OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=24 2009-01-22 12:04:18 +00:00
OBS User unknown
c939701a30 OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=24 2009-01-22 12:04:18 +00:00
OBS User unknown
b74eae0c5f OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=23 2009-01-13 17:57:46 +00:00
OBS User unknown
a8a786efde OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=23 2009-01-13 17:57:46 +00:00
OBS User unknown
7ec675fa63 OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=22 2008-06-22 00:49:11 +00:00
OBS User unknown
c0c8d4a94b OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=22 2008-06-22 00:49:11 +00:00
OBS User unknown
b09e7952bd OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=21 2008-05-21 22:04:27 +00:00
OBS User unknown
39ea87331b OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=21 2008-05-21 22:04:27 +00:00
OBS User unknown
225b92ae01 OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=20 2008-04-06 03:55:31 +00:00
OBS User unknown
79a552d0bf OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=20 2008-04-06 03:55:31 +00:00
OBS User unknown
a6efddfb29 OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=19 2008-03-27 21:01:48 +00:00
OBS User unknown
e4daaf149c OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=19 2008-03-27 21:01:48 +00:00
OBS User unknown
a7d6e3b2c6 OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=18 2008-03-26 15:13:07 +00:00
OBS User unknown
9350ec0211 OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=18 2008-03-26 15:13:07 +00:00
OBS User unknown
7823c8db2e OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=17 2008-02-15 00:20:58 +00:00
OBS User unknown
04d43f9644 OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=17 2008-02-15 00:20:58 +00:00
OBS User unknown
659e3cbe2c OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=16 2008-02-08 17:45:44 +00:00
OBS User unknown
7bc0733e98 OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=16 2008-02-08 17:45:44 +00:00
OBS User unknown
21ce789f92 OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=15 2008-01-10 13:14:30 +00:00
OBS User unknown
b448943713 OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=15 2008-01-10 13:14:30 +00:00
OBS User unknown
ca710c27a2 OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=14 2007-10-25 23:46:05 +00:00
OBS User unknown
be36e08e2b OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=14 2007-10-25 23:46:05 +00:00
OBS User unknown
8db3f4a850 OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=13 2007-09-13 16:44:44 +00:00
OBS User unknown
9e3617ebc6 OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=13 2007-09-13 16:44:44 +00:00
OBS User unknown
8183c2046e OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=12 2007-09-11 16:18:39 +00:00
OBS User unknown
0b0cdf291b OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=12 2007-09-11 16:18:39 +00:00
OBS User unknown
6863b49848 OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=11 2007-07-26 23:43:04 +00:00
OBS User unknown
9c5ad871d1 OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=11 2007-07-26 23:43:04 +00:00
OBS User unknown
0187d136f4 OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=10 2007-06-21 19:56:01 +00:00
OBS User unknown
a4a91758f7 OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=10 2007-06-21 19:56:01 +00:00
OBS User unknown
8d374e8cce OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=9 2007-05-23 21:18:51 +00:00
OBS User unknown
ff211a1658 OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=9 2007-05-23 21:18:51 +00:00
OBS User unknown
5aaba9fc71 OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=8 2007-05-16 14:20:18 +00:00
OBS User unknown
a81a7536b2 OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=8 2007-05-16 14:20:18 +00:00
OBS User unknown
70752ef522 OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=7 2007-05-11 13:35:54 +00:00
OBS User unknown
7234d5adcc OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=7 2007-05-11 13:35:54 +00:00
OBS User unknown
bb2bc0e9e6 OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=6 2007-04-04 18:30:29 +00:00
OBS User unknown
20069d6d5f OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=6 2007-04-04 18:30:29 +00:00
OBS User unknown
ad7d679889 OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=5 2007-03-30 00:08:34 +00:00
OBS User unknown
0280a2d132 OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=5 2007-03-30 00:08:34 +00:00
OBS User unknown
c220bcbe82 OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=4 2007-02-15 17:18:20 +00:00
OBS User unknown
e4875aeba8 OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=4 2007-02-15 17:18:20 +00:00
OBS User unknown
5b19ac46ef OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=3 2007-01-29 23:52:49 +00:00
OBS User unknown
29186f1901 OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=3 2007-01-29 23:52:49 +00:00
OBS User unknown
a0cb216eec OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=2 2007-01-29 15:59:51 +00:00
OBS User unknown
5d7e27a325 OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=2 2007-01-29 15:59:51 +00:00
OBS User unknown
1b44327d3e OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=1 2007-01-15 23:15:33 +00:00
OBS User unknown
0e9a3fd3dd OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/gpg2?expand=0&rev=1 2007-01-15 23:15:33 +00:00
20 changed files with 989 additions and 86 deletions

View File

@@ -1,3 +0,0 @@
version https://git-lfs.github.com/spec/v1
oid sha256:f68f7d75d06cb1635c336d34d844af97436c3f64ea14bcb7c869782f96f44277
size 7889060

Binary file not shown.

BIN
gnupg-2.5.5.tar.bz2 LFS Normal file

Binary file not shown.

BIN
gnupg-2.5.5.tar.bz2.sig Normal file

Binary file not shown.

102
gnupg-CVE-2025-68973.patch Normal file
View File

@@ -0,0 +1,102 @@
From 115d138ba599328005c5321c0ef9f00355838ca9 Mon Sep 17 00:00:00 2001
From: Werner Koch <wk@gnupg.org>
Date: Thu, 23 Oct 2025 11:36:04 +0200
Subject: [PATCH] gpg: Fix possible memory corruption in the armor parser.
* g10/armor.c (armor_filter): Fix faulty double increment.
* common/iobuf.c (underflow_target): Assert that the filter
implementations behave well.
--
This fixes a bug in a code path which can only be reached with special
crafted input data and would then error out at an upper layer due to
corrupt input (every second byte in the buffer is unitialized
garbage). No fuzzing has yet hit this case and we don't have a test
case for this code path. However memory corruption can never be
tolerated as it always has the protential for remode code execution.
Reported-by: 8b79fe4dd0581c1cd000e1fbecba9f39e16a396a
Fixes-commit: c27c7416d5148865a513e007fb6f0a34993a6073
which fixed
Fixes-commit: 7d0efec7cf5ae110c99511abc32587ff0c45b14f
The bug was introduced on 1999-01-07 by me:
* armor.c: Rewrote large parts.
which I fixed on 1999-03-02 but missed to fix the other case:
* armor.c (armor_filter): Fixed armor bypassing.
Below is base64+gzipped test data which can be used with valgrind to
show access to uninitalized memory in write(2) in the unpatched code.
--8<---------------cut here---------------start------------->8---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--8<---------------cut here---------------end--------------->8---
---
common/iobuf.c | 6 ++++++
g10/armor.c | 4 ++--
2 files changed, 8 insertions(+), 2 deletions(-)
Index: gnupg-2.5.5/common/iobuf.c
===================================================================
--- gnupg-2.5.5.orig/common/iobuf.c
+++ gnupg-2.5.5/common/iobuf.c
@@ -2041,6 +2041,8 @@ underflow_target (iobuf_t a, int clear_p
rc = 0;
else
{
+ size_t tmplen;
+
/* If no buffered data and drain buffer has been setup, and drain
* buffer is largish, read data directly to drain buffer. */
if (a->d.len == 0
@@ -2053,8 +2055,10 @@ underflow_target (iobuf_t a, int clear_p
log_debug ("iobuf-%d.%d: underflow: A->FILTER (%lu bytes, to external drain)\n",
a->no, a->subno, (ulong)len);
+ tmplen = len; /* Used to check for bugs in the filter. */
rc = a->filter (a->filter_ov, IOBUFCTRL_UNDERFLOW, a->chain,
a->e_d.buf, &len);
+ log_assert (len <= tmplen);
a->e_d.used = len;
len = 0;
}
@@ -2064,8 +2068,10 @@ underflow_target (iobuf_t a, int clear_p
log_debug ("iobuf-%d.%d: underflow: A->FILTER (%lu bytes)\n",
a->no, a->subno, (ulong)len);
+ tmplen = len;
rc = a->filter (a->filter_ov, IOBUFCTRL_UNDERFLOW, a->chain,
&a->d.buf[a->d.len], &len);
+ log_assert (len <= tmplen);
}
}
a->d.len += len;
Index: gnupg-2.5.5/g10/armor.c
===================================================================
--- gnupg-2.5.5.orig/g10/armor.c
+++ gnupg-2.5.5/g10/armor.c
@@ -1314,8 +1314,8 @@ armor_filter( void *opaque, int control,
n = 0;
if( afx->buffer_len ) {
/* Copy the data from AFX->BUFFER to BUF. */
- for(; n < size && afx->buffer_pos < afx->buffer_len; n++ )
- buf[n++] = afx->buffer[afx->buffer_pos++];
+ for(; n < size && afx->buffer_pos < afx->buffer_len;)
+ buf[n++] = afx->buffer[afx->buffer_pos++];
if( afx->buffer_pos >= afx->buffer_len )
afx->buffer_len = 0;
}

View File

@@ -0,0 +1,59 @@
From 93fa34d9a346020355cd51d54102d30d4f177323 Mon Sep 17 00:00:00 2001
From: Werner Koch <wk@gnupg.org>
Date: Mon, 26 Jan 2026 11:13:44 +0100
Subject: [PATCH 1996/2000] tpm: Fix possible buffer overflow in PKDECRYPT
* tpm2d/tpm2.c (tpm2_ecc_decrypt): Bail out on too long CIPHERTEXT.
(tpm2_rsa_decrypt): Ditto.
--
GnuPG-bug-id: 8045
Co-authored-by: NIIBE Yutaka <gniibe@fsij.org>
Reported-by: OpenAI Security Research
diff --git a/tpm2d/tpm2.c b/tpm2d/tpm2.c
index a4677fb98..282de5e5d 100644
--- a/tpm2d/tpm2.c
+++ b/tpm2d/tpm2.c
@@ -951,10 +951,20 @@ tpm2_ecc_decrypt (ctrl_t ctrl, TSS_CONTEXT *tssc, TPM_HANDLE key,
size_t len;
int ret;
+#if defined(TPM2_MAX_ECC_KEY_BYTES) /* Intel stack */
+ if (ciphertext_len > 2*TPM2_MAX_ECC_KEY_BYTES + 1)
+ return GPG_ERR_TOO_LARGE;
+#elif defined(MAX_ECC_KEY_BYTES) /* IBM stack */
+ if (ciphertext_len > 2*MAX_ECC_KEY_BYTES + 1)
+ return GPG_ERR_TOO_LARGE;
+#else
+# error TMP2 header are not correctly installed
+#endif
+
/* This isn't really a decryption per se. The ciphertext actually
* contains an EC Point which we must multiply by the private key number.
*
- * The reason is to generate a diffe helman agreement on a shared
+ * The reason is to generate a diffie-hellman agreement on a shared
* point. This shared point is then used to generate the per
* session encryption key.
*/
@@ -1010,6 +1020,16 @@ tpm2_rsa_decrypt (ctrl_t ctrl, TSS_CONTEXT *tssc, TPM_HANDLE key,
TPM_HANDLE ah;
char *auth;
+#if defined(TPM2_MAX_RSA_KEY_BYTES) /* Intel stack */
+ if (ciphertext_len > TPM2_MAX_RSA_KEY_BYTES)
+ return GPG_ERR_TOO_LARGE;
+#elif defined(MAX_RSA_KEY_BYTES) /* IBM stack */
+ if (ciphertext_len > MAX_RSA_KEY_BYTES)
+ return GPG_ERR_TOO_LARGE;
+#else
+# error TMP2 header are not correctly installed
+#endif
+
inScheme.scheme = TPM_ALG_RSAES;
/*
* apparent gcrypt error: occasionally rsa ciphertext will
--
2.52.0

View File

@@ -0,0 +1,56 @@
From 11b7e4139e82fcd0cee72f38964444a17c812547 Mon Sep 17 00:00:00 2001
From: Werner Koch <wk@gnupg.org>
Date: Mon, 26 Jan 2026 11:56:47 +0100
Subject: [PATCH] gpg: Fix possible NULL-deref with overlong
signature packets.
* g10/parse-packet.c (parse_signature): Retrun an error for overlong
subpacket area
--
GnuPG-bug-id: 8049
Updates-commit: 36dbca3e6944d13e75e96eace634e58a7d7e201d
Co-authored-by: NIIBE Yutaka <gniibe@fsij.org>
Resported-by: OpenAI Security Research
A way to generate too long signature packets is:
$ echo hallo | gpg -z0 -s -o x30001.sig \
-N foo@gnupg.org="$(awk 'BEGIN{for(i=0;i<29917;i++){printf"a"}}')"
This is just one byte too long.
diff --git a/g10/parse-packet.c b/g10/parse-packet.c
index 22db04291..d7311e434 100644
--- a/g10/parse-packet.c
+++ b/g10/parse-packet.c
@@ -2212,6 +2212,10 @@ parse_revkeys (PKT_signature * sig)
}
+/* Note that the function returns -1 to indicate an EOF (which also
+ * indicates a broken packet in this case. In most other cases
+ * GPG_ERR_INV_PACKET is returned and callers of parse_packet will
+ * usually skipt this packet then. */
int
parse_signature (IOBUF inp, int pkttype, unsigned long pktlen,
PKT_signature * sig)
@@ -2287,6 +2291,7 @@ parse_signature (IOBUF inp, int pkttype, unsigned long pktlen,
if (list_mode)
es_fprintf (listfp,
":signature packet: [hashed data too long (%u)]\n", n);
+ rc = GPG_ERR_INV_PACKET;
goto leave;
}
if (n)
@@ -2318,6 +2323,7 @@ parse_signature (IOBUF inp, int pkttype, unsigned long pktlen,
es_fprintf (listfp,
":signature packet: [unhashed data too long (%u)]\n",
n);
+ rc = GPG_ERR_INV_PACKET;
goto leave;
}
if (n)
--
2.52.0

View File

@@ -0,0 +1,67 @@
commit ad0c6c33c3d6fe7ff7cc8c2e73d02ead5788e5b3
Author: Werner Koch <wk@gnupg.org>
Date: Mon Oct 27 12:43:27 2025 +0100
gpg: Do not use a default when asking for another output filename.
* g10/options.h (COMPAT_SUGGEST_EMBEDDED_NAME): New.
* g10/gpg.c (compatibility_flags): New flags "suggest-embedded-name".
* g10/openfile.c (ask_outfile_name): Do not show a default unless the
compatibiliy flag is used.
Index: gnupg-2.5.5/g10/gpg.c
===================================================================
--- gnupg-2.5.5.orig/g10/gpg.c
+++ gnupg-2.5.5/g10/gpg.c
@@ -1057,6 +1057,7 @@ static struct compatibility_flags_s comp
{ COMPAT_PARALLELIZED, "parallelized" },
{ COMPAT_T7014_OLD, "t7014-old" },
{ COMPAT_ALLOW_NOT_DASH_ESCAPED, "allow-not-dash-escaped" },
+ { COMPAT_SUGGEST_EMBEDDED_NAME, "suggest-embedded-name" },
{ 0, NULL }
};
Index: gnupg-2.5.5/g10/openfile.c
===================================================================
--- gnupg-2.5.5.orig/g10/openfile.c
+++ gnupg-2.5.5/g10/openfile.c
@@ -125,7 +125,7 @@ make_outfile_name (const char *iname)
NAMELEN is its actual length.
*/
char *
-ask_outfile_name( const char *name, size_t namelen )
+ask_outfile_name (const char *name, size_t namelen)
{
size_t n;
const char *s;
@@ -136,8 +136,14 @@ ask_outfile_name( const char *name, size
if ( opt.batch )
return NULL;
- defname = name && namelen? make_printable_string (name, namelen, 0) : NULL;
-
+ /* To avoid tricking the user into using the embedded filename we do
+ * not anymore include that name in the prompt as default. For
+ * modern v5 signature this might make sense as they are now covered
+ * by the signature but we better leave such a decision to a GUI. */
+ if (name && namelen && (opt.compat_flags & COMPAT_SUGGEST_EMBEDDED_NAME))
+ defname = make_printable_string (name, namelen, 0);
+ else
+ defname = NULL;
s = _("Enter new filename");
n = strlen(s) + (defname?strlen (defname):0) + 10;
prompt = xmalloc (n);
Index: gnupg-2.5.5/g10/options.h
===================================================================
--- gnupg-2.5.5.orig/g10/options.h
+++ gnupg-2.5.5/g10/options.h
@@ -398,6 +398,9 @@ EXTERN_UNLESS_MAIN_MODULE int memory_sta
#define COMPAT_PARALLELIZED 1 /* Use threaded hashing for signatures. */
#define COMPAT_T7014_OLD 2 /* Use initial T7014 test data. */
#define COMPAT_ALLOW_NOT_DASH_ESCAPED 32 /* Handle NotDashEscaped header. */
+#define COMPAT_SUGGEST_EMBEDDED_NAME 16 /* Show the non-signed
+ * embedded filename as
+ * suggestion. */
/* Compliance test macros. */
#define GNUPG (opt.compliance==CO_GNUPG || opt.compliance==CO_DE_VS)

View File

@@ -3,11 +3,11 @@
g10/gpg.c | 9 +++++++++
2 files changed, 27 insertions(+)
Index: gnupg-2.4.2/doc/gpg.texi
Index: gnupg-2.5.4/doc/gpg.texi
===================================================================
--- gnupg-2.4.2.orig/doc/gpg.texi
+++ gnupg-2.4.2/doc/gpg.texi
@@ -2285,6 +2285,24 @@ implies, this option is for experts only
--- gnupg-2.5.4.orig/doc/gpg.texi
+++ gnupg-2.5.4/doc/gpg.texi
@@ -2340,6 +2340,24 @@ implies, this option is for experts only
understand the implications of what it allows you to do, leave this
off. @option{--no-expert} disables this option.
@@ -32,11 +32,11 @@ Index: gnupg-2.4.2/doc/gpg.texi
@end table
Index: gnupg-2.4.2/g10/gpg.c
Index: gnupg-2.5.4/g10/gpg.c
===================================================================
--- gnupg-2.4.2.orig/g10/gpg.c
+++ gnupg-2.4.2/g10/gpg.c
@@ -446,6 +446,7 @@ enum cmd_and_opt_values
--- gnupg-2.5.4.orig/g10/gpg.c
+++ gnupg-2.5.4/g10/gpg.c
@@ -455,6 +455,7 @@ enum cmd_and_opt_values
oForceSignKey,
oForbidGenKey,
oRequireCompliance,
@@ -44,15 +44,15 @@ Index: gnupg-2.4.2/g10/gpg.c
oCompatibilityFlags,
oAddDesigRevoker,
oAssertSigner,
@@ -886,6 +887,7 @@ static gpgrt_opt_t opts[] = {
@@ -907,6 +908,7 @@ static gpgrt_opt_t opts[] = {
ARGPARSE_s_s (oCipherAlgo, "cipher-algo", "@"),
ARGPARSE_s_s (oDigestAlgo, "digest-algo", "@"),
ARGPARSE_s_s (oCertDigestAlgo, "cert-digest-algo", "@"),
+ ARGPARSE_s_n (oSetLegacyFips, "set-legacy-fips", "@"),
ARGPARSE_s_n (oRequirePQCEncryption, "require-pqc-encryption", "@"),
ARGPARSE_s_n (oDisablePQCEncryption, "disable-pqc-encryption", "@"),
ARGPARSE_header (NULL, N_("Options for unattended use")),
@@ -3756,6 +3758,14 @@ main (int argc, char **argv)
@@ -3865,6 +3867,14 @@ main (int argc, char **argv)
keybox_set_buffersize (pargs.r.ret_ulong, 0);
break;

View File

@@ -17,19 +17,19 @@ Signed-off-by: Daniel Kahn Gillmor <dkg@fifthhorseman.net>
g10/import.c | 49 +++++++++++--------------------------------------
1 file changed, 11 insertions(+), 38 deletions(-)
Index: gnupg-2.4.0/g10/import.c
Index: gnupg-2.5.4/g10/import.c
===================================================================
--- gnupg-2.4.0.orig/g10/import.c
+++ gnupg-2.4.0/g10/import.c
@@ -1954,7 +1954,6 @@ import_one_real (ctrl_t ctrl,
size_t an;
--- gnupg-2.5.4.orig/g10/import.c
+++ gnupg-2.5.4/g10/import.c
@@ -1996,7 +1996,6 @@ import_one_real (ctrl_t ctrl,
int non_self_or_utk = 0;
char pkstrbuf[PUBKEY_STRING_SIZE];
int merge_keys_done = 0;
- int any_filter = 0;
KEYDB_HANDLE hd = NULL;
if (r_valid)
@@ -1991,14 +1990,6 @@ import_one_real (ctrl_t ctrl,
@@ -2033,14 +2032,6 @@ import_one_real (ctrl_t ctrl,
log_printf ("\n");
}
@@ -44,7 +44,7 @@ Index: gnupg-2.4.0/g10/import.c
if (screener && screener (keyblock, screener_arg))
{
log_error (_("key %s: %s\n"), keystr_from_pk (pk),
@@ -2078,18 +2069,10 @@ import_one_real (ctrl_t ctrl,
@@ -2134,18 +2125,10 @@ import_one_real (ctrl_t ctrl,
}
}
@@ -67,7 +67,7 @@ Index: gnupg-2.4.0/g10/import.c
/* Get rid of deleted nodes. */
commit_kbnode (&keyblock);
@@ -2099,24 +2082,11 @@ import_one_real (ctrl_t ctrl,
@@ -2155,24 +2138,11 @@ import_one_real (ctrl_t ctrl,
{
apply_keep_uid_filter (ctrl, keyblock, import_filter.keep_uid);
commit_kbnode (&keyblock);
@@ -92,7 +92,7 @@ Index: gnupg-2.4.0/g10/import.c
}
/* The keyblock is valid and ready for real import. */
@@ -2174,6 +2144,13 @@ import_one_real (ctrl_t ctrl,
@@ -2234,6 +2204,13 @@ import_one_real (ctrl_t ctrl,
err = 0;
stats->skipped_new_keys++;
}

View File

@@ -0,0 +1,39 @@
From 018a2289ba8e4c23f4e800ed997abecd7c6a144d Mon Sep 17 00:00:00 2001
From: Lucas Mulling via Gnupg-devel <gnupg-devel@gnupg.org>
Date: Mon, 26 May 2025 10:05:21 +0200
Subject: [PATCH GnuPG] dirmngr: Don't install expired sks certificate
* dirmngr/Makefile.am (dist_pkgdata_DATA): Remove
sks-keyservers.netCA.pem.
Signed-off-by: Lucas Mulling <lucas.mulling@suse.com>
---
dirmngr/Makefile.am | 2 +-
1 file changed, 1 insertion(+), 1 deletion(-)
Index: gnupg-2.5.5/dirmngr/Makefile.am
===================================================================
--- gnupg-2.5.5.orig/dirmngr/Makefile.am
+++ gnupg-2.5.5/dirmngr/Makefile.am
@@ -29,7 +29,7 @@ EXTRA_DIST = OAUTHORS ONEWS ChangeLog-20
-dist_pkgdata_DATA = sks-keyservers.netCA.pem
+dist_pkgdata_DATA =
bin_PROGRAMS = dirmngr dirmngr-client
Index: gnupg-2.5.5/dirmngr/Makefile.in
===================================================================
--- gnupg-2.5.5.orig/dirmngr/Makefile.in
+++ gnupg-2.5.5/dirmngr/Makefile.in
@@ -682,7 +682,7 @@ EXTRA_DIST = OAUTHORS ONEWS ChangeLog-20
dirmngr_ldap-w32info.rc dirmngr_ldap.w32-manifest.in \
dirmngr-client-w32info.rc dirmngr-client.w32-manifest.in
-dist_pkgdata_DATA = sks-keyservers.netCA.pem
+dist_pkgdata_DATA =
# NB: AM_CFLAGS may also be used by tools running on the build
# platform to create source files.

View File

@@ -0,0 +1,43 @@
From db9705ef594d5a2baf0e95e13cf6170b621dfc51 Mon Sep 17 00:00:00 2001
From: Werner Koch <wk@gnupg.org>
Date: Wed, 22 Oct 2025 11:19:55 +0200
Subject: [PATCH] gpg: Avoid potential downgrade to SHA1 in 3rd party key
signatures.
* g10/sig-check.c (check_signature_over_key_or_uid): Always initialize
IS_SELFSIG because it is later used to detect SHA1 non-selfsignatures.
--
The value of is_selfsig was also used to decide whether to reject a a
SHA_signature if it is not a self-signature. However, a code path
exists where is_selfsig was set to stub_is_selfsig and not initilaized
in this case.
Fixes-commit: c4f2d9e3e1d77d2f1f168764fcdfed32f7d1dfc4
Reported-by: 8b79fe4dd0581c1cd000e1fbecba9f39e16a396a
---
g10/sig-check.c | 4 +++-
1 file changed, 3 insertions(+), 1 deletion(-)
diff --git a/g10/sig-check.c b/g10/sig-check.c
index e09be3d75..ff45f2e12 100644
--- a/g10/sig-check.c
+++ b/g10/sig-check.c
@@ -890,7 +890,7 @@ check_key_signature (ctrl_t ctrl, kbnode_t root, kbnode_t node,
* be found. Returns GPG_ERR_BAD_SIGNATURE if the signature is bad.
* Other errors codes may be returned if something else goes wrong.
*
- * IF IS_SELFSIG is not NULL, sets *IS_SELFSIG to 1 if this is a
+ * If IS_SELFSIG is not NULL, sets *IS_SELFSIG to 1 if this is a
* self-signature (by the key's primary key) or 0 if not.
*
* If RET_PK is not NULL, returns a copy of the public key that
@@ -910,6 +910,8 @@ check_signature_over_key_or_uid (ctrl_t ctrl, PKT_public_key *signer,
if (!is_selfsig)
is_selfsig = &stub_is_selfsig;
+ *is_selfsig = 0; /* Init early to comply with function description. */
+
rc = openpgp_pk_test_algo (sig->pubkey_algo);
if (rc)
return rc;

View File

@@ -0,0 +1,140 @@
From 8abc320f2a75d6c7339323a3cff8a8489199f49f Mon Sep 17 00:00:00 2001
From: Werner Koch <wk@gnupg.org>
Date: Wed, 22 Oct 2025 12:39:15 +0200
Subject: [PATCH] gpg: Error out on unverified output for non-detached
signatures.
* g10/mainproc.c (do_proc_packets): Never reset the any.data flag.
--
Fixes-commit: 3b1b6f9d98b38480ba2074158fa640b881cdb97e
Updates-commit: 69384568f66a48eff3968bb1714aa13925580e9f
Reported-by: 8b79fe4dd0581c1cd000e1fbecba9f39e16a396a
When using
gpg --verify -o - msg.sig msg
even with the --batch option the outout written to stdout or the file
five to -o may not be what has been verified. For example given a
file "msg" with this content:
--8<---------------cut here---------------start------------->8---
It is a wise father that knows his own child.
-- William Shakespeare, "The Merchant of Venice"
--8<---------------cut here---------------end--------------->8---
and a manipulated "msg.sig" (named "msg-mod.sig") the output could be
$ gpg --verify -o - --batch msg-mod.sig msg
The last thing one knows in constructing a work is what to put first.
-- Blaise Pascal
gpg: Signature made Wed 22 Oct 2025 11:51:52 AM CEST
gpg: using EDDSA key A7F91C6EB9395B25B4A9BAD25B9[...]
gpg: Good signature from "alice@example.org" [ultimate]
The plaintext shown is ot what has been verified (i.e. the first
quote) and may lead the user top wrong conclusions.
But note: Using the output of the verify command for detached
signatures is useless because with a non-manipulated signature nothing
would haven been written.
How to replicate the whole thing:
1. Import this public key:
-----BEGIN PGP PUBLIC KEY BLOCK-----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=GjvX
-----END PGP PUBLIC KEY BLOCK-----
2. Unpack the first quote below and put it into the file "msg"
-----BEGIN PGP ARMORED FILE-----
Comment: Use "gpg --dearmor" for unpacking
SXQgaXMgYSB3aXNlIGZhdGhlciB0aGF0IGtub3dzIGhpcyBvd24gY2hpbGQuCgkJ
LS0gV2lsbGlhbSBTaGFrZXNwZWFyZSwgIlRoZSBNZXJjaGFudCBvZiBWZW5pY2Ui
Cg==
=0fUy
-----END PGP ARMORED FILE-----
3. Unpack the original signature into the file "msg.sig"
-----BEGIN PGP ARMORED FILE-----
iJEEABYKADkWIQSn+RxuuTlbJbSputJbmJ0rJeN/3AUCaPipOBsUgAAAAAAEAA5t
YW51MiwyLjUrMS4xMSwyLDIACgkQW5idKyXjf9w6UwD/fS6X9bs36WXVN5BSANIA
bhtHb8X4jZu4NFKk/ZSwUtIBANMdYO6F1kUMyFNZVZa4Yk12UmcClF9mXLBVlfeH
RFkL
=wCLE
-----END PGP ARMORED FILE-----
4. Unpack the modified signature into the file "msg-mod.sig"
-----BEGIN PGP ARMORED FILE-----
kA0DAAoWW5idKyXjf9wBy19iAGj4qrhUaGUgbGFzdCB0aGluZyBvbmUga25vd3Mg
aW4gY29uc3RydWN0aW5nIGEgd29yayBpcyB3aGF0IHRvIHB1dCBmaXJzdC4KCQkt
LSBCbGFpc2UgUGFzY2FsCoiRBAAWCgA5FiEEp/kcbrk5WyW0qbrSW5idKyXjf9wF
Amj4qTgbFIAAAAAABAAObWFudTIsMi41KzEuMTEsMiwyAAoJEFuYnSsl43/cOlMA
/30ul/W7N+ll1TeQUgDSAG4bR2/F+I2buDRSpP2UsFLSAQDTHWDuhdZFDMhTWVWW
uGJNdlJnApRfZlywVZX3h0RZC8r/AAAAA1BHUA==
=DafU
-----END PGP ARMORED FILE-----
Now run
gpg --verify -o - msg.sig msg
gpg --verify -o - msg-mod.sig msg
after this pacth is applied the second command will output an error
message "gpg: not a detached signature"
The modification was to prepend a one-pass signature packet for alices
signature and a a literal data packet with the second quote to the
original signature and also append a marker packet or something other.
gpgsplit is the tool of choice here. Thus the packet composition of
msg-mod.sig is:
:onepass_sig packet: keyid 5B989D2B25E37FDC
version 3, sigclass 0x00, digest 10, pubkey 22, last=1
:literal data packet:
mode b (62), created 1761127096, name="",
raw data: 89 bytes
:signature packet: algo 22, keyid 5B989D2B25E37FDC
version 4, created 1761126712, md5len 0, sigclass 0x00
[...]
:marker packet: PGP
Kudos to the reporter for the detailed report.
---
g10/mainproc.c | 6 +++++-
1 file changed, 5 insertions(+), 1 deletion(-)
diff --git a/g10/mainproc.c b/g10/mainproc.c
index e2703516c..8108a07b7 100644
--- a/g10/mainproc.c
+++ b/g10/mainproc.c
@@ -1838,10 +1838,14 @@ do_proc_packets (CTX c, iobuf_t a, int keep_dek_and_list)
* packet and not to reuse the current one ... It works right
* when there is a compression packet between which adds just
* an extra layer.
+ *
+ * Note that we should not reset the any.data due to another
+ * packets. Just set it once on seeing a plaintext.
+ *
* Hmmm: Rewrite this whole module here??
*/
if (pkt->pkttype != PKT_SIGNATURE && pkt->pkttype != PKT_MDC)
- c->any.data = (pkt->pkttype == PKT_PLAINTEXT);
+ c->any.data |= (pkt->pkttype == PKT_PLAINTEXT);
if (newpkt == -1)
;

View File

@@ -0,0 +1,45 @@
From 483f2ba02e70968e6c9f57afa0fc88f7566a76c4 Mon Sep 17 00:00:00 2001
From: Werner Koch <wk@gnupg.org>
Date: Fri, 2 May 2025 11:11:05 +0200
Subject: [PATCH 0938/1000] gpg: Fix another regression due to the T7547 fix.
* g10/getkey.c (get_pubkey_for_sig): Keep a requested
PUBKEY_USAGE_CERT.
(finish_lookup): For correctness in future use cases allow
PUBKEY_USAGE_CERT to also trigger verify mode.
--
The case here was that a cert-only primary key was removed with
export-clean.
GnuPG-bug-id: 7583
diff --git a/g10/getkey.c b/g10/getkey.c
index e93c0a904..0fe17d054 100644
--- a/g10/getkey.c
+++ b/g10/getkey.c
@@ -341,8 +341,10 @@ get_pubkey_for_sig (ctrl_t ctrl, PKT_public_key *pk, PKT_signature *sig,
/* Make sure to request only keys cabable of signing. This makes
* sure that a subkey w/o a valid backsig or with bad usage flags
* will be skipped. We also request the verification mode so that
- * expired and reoked keys are returned. */
- pk->req_usage = (PUBKEY_USAGE_SIG | PUBKEY_USAGE_VERIFY);
+ * expired and revoked keys are returned. We keep only a requested
+ * CERT usage in PK for the sake of key signatures. */
+ pk->req_usage = (PUBKEY_USAGE_SIG | PUBKEY_USAGE_VERIFY
+ | (pk->req_usage & PUBKEY_USAGE_CERT));
/* First try the ISSUER_FPR info. */
fpr = issuer_fpr_raw (sig, &fprlen);
@@ -3735,7 +3737,7 @@ finish_lookup (kbnode_t keyblock, unsigned int req_usage, int want_exact,
/* The verify mode is used to change the behaviour so that we can
* return an expired or revoked key for signature verification. */
verify_mode = ((req_usage & PUBKEY_USAGE_VERIFY)
- && (req_usage & PUBKEY_USAGE_SIG));
+ && (req_usage & (PUBKEY_USAGE_CERT|PUBKEY_USAGE_SIG)));
#define USAGE_MASK (PUBKEY_USAGE_SIG|PUBKEY_USAGE_ENC|PUBKEY_USAGE_CERT)
req_usage &= USAGE_MASK;
--
2.50.0

View File

@@ -1,17 +1,17 @@
Index: gnupg-2.4.3/autogen.sh
Index: gnupg-2.5.1/autogen.sh
===================================================================
--- gnupg-2.4.3.orig/autogen.sh
+++ gnupg-2.4.3/autogen.sh
@@ -221,7 +221,7 @@ if [ "$myhost" = "find-version" ]; then
esac
--- gnupg-2.5.1.orig/autogen.sh
+++ gnupg-2.5.1/autogen.sh
@@ -244,7 +244,7 @@ if [ "$myhost" = "find-version" ]; then
fi
beta=no
- if [ -e .git ]; then
+ if false; then
ingit=yes
tmp=$(git describe --match "${matchstr1}" --long 2>/dev/null)
tmp=$(echo "$tmp" | sed s/^"$package"//)
@@ -237,8 +237,8 @@ if [ "$myhost" = "find-version" ]; then
if [ -n "$tmp" ]; then
@@ -270,8 +270,8 @@ if [ "$myhost" = "find-version" ]; then
rvd=$((0x$(echo ${rev} | dd bs=1 count=4 2>/dev/null)))
else
ingit=no
@@ -19,6 +19,6 @@ Index: gnupg-2.4.3/autogen.sh
- tmp="-unknown"
+ beta=no
+ tmp=""
cid="0000000"
rev="0000000"
rvd="0"
fi

135
gnupg-notdash-escape.patch Normal file
View File

@@ -0,0 +1,135 @@
commit 947ea3c411f0c14ba002612bb4ab500fba105570
Author: Werner Koch <wk@gnupg.org>
Date: Mon Dec 29 18:37:08 2025 +0100
gpg: Deprecate the option --not-dash-escaped.
* g10/options.h (COMPAT_ALLOW_NOT_DASH_ESCAPED): new.
* g10/gpg.c (compatibility_flags): Add "allow-not-dash-escaped".
(main): Print a deprecation warning.
* g10/armor.c (parse_header_line): Ignore the NotDashEscaped header.
* tests/openpgp/clearsig.scm (vectors): Remove test case.
--
GnuPG-bug-id: 7901
Index: gnupg-2.5.5/doc/gpg.texi
===================================================================
--- gnupg-2.5.5.orig/doc/gpg.texi
+++ gnupg-2.5.5/doc/gpg.texi
@@ -3551,16 +3551,6 @@ be tried. @option{--no-throw-keyids} di
is essentially the same as using @option{--hidden-recipient} for all
recipients.
-@item --not-dash-escaped
-@opindex not-dash-escaped
-This option changes the behavior of cleartext signatures
-so that they can be used for patch files. You should not
-send such an armored file via email because all spaces
-and line endings are hashed too. You can not use this
-option for data which has 5 dashes at the beginning of a
-line, patch files don't have this. A special armor header
-line tells GnuPG about this cleartext signature option.
-
@item --escape-from-lines
@itemx --no-escape-from-lines
@opindex escape-from-lines
@@ -4051,6 +4041,18 @@ This option is deprecated and has no mor
@item --aead-algo @var{name}
This option is deprecated and has no more effect since version 2.3.9.
+@item --not-dash-escaped
+@opindex not-dash-escaped
+This option is deprecated since version 2.5.15 and has actually been
+obsolete for many more years. The verification code in gpg also
+ignores this special mode unless a compatibility flag has been used.
+This option was used to change the behavior of cleartext signatures so
+that they can be used for patch files. You should not send such an
+armored file via email because all spaces and line endings are hashed
+too. You can not use this option for data which has 5 dashes at the
+beginning of a line, patch files don't have this. A special armor
+header line tells GnuPG about this cleartext signature option.
+
@end table
Index: gnupg-2.5.5/g10/armor.c
===================================================================
--- gnupg-2.5.5.orig/g10/armor.c
+++ gnupg-2.5.5/g10/armor.c
@@ -510,7 +510,9 @@ parse_header_line( armor_filter_context_
{
if( (hashes=parse_hash_header( line )) )
afx->hashes |= hashes;
- else if( strlen(line) > 15 && !memcmp( line, "NotDashEscaped:", 15 ) )
+ else if ((opt.compat_flags & COMPAT_ALLOW_NOT_DASH_ESCAPED)
+ && strlen (line) > 15
+ && !memcmp( line, "NotDashEscaped:", 15 ) )
afx->not_dash_escaped = 1;
else
{
Index: gnupg-2.5.5/g10/gpg.c
===================================================================
--- gnupg-2.5.5.orig/g10/gpg.c
+++ gnupg-2.5.5/g10/gpg.c
@@ -1056,6 +1056,7 @@ static struct compatibility_flags_s comp
{
{ COMPAT_PARALLELIZED, "parallelized" },
{ COMPAT_T7014_OLD, "t7014-old" },
+ { COMPAT_ALLOW_NOT_DASH_ESCAPED, "allow-not-dash-escaped" },
{ 0, NULL }
};
@@ -3956,6 +3957,11 @@ main (int argc, char **argv)
log_info ("Note: Specified keyrings are ignored due to option \"%s\"\n",
"use-keyboxd");
+ if (opt.not_dash_escaped)
+ log_info (_("WARNING: \"%s\" is a deprecated option\n"),
+ "--not-dash-escaped");
+
+
if (comopt.no_autostart)
opt.autostart = 0;
Index: gnupg-2.5.5/g10/options.h
===================================================================
--- gnupg-2.5.5.orig/g10/options.h
+++ gnupg-2.5.5/g10/options.h
@@ -397,7 +397,7 @@ EXTERN_UNLESS_MAIN_MODULE int memory_sta
/* Compatibility flags */
#define COMPAT_PARALLELIZED 1 /* Use threaded hashing for signatures. */
#define COMPAT_T7014_OLD 2 /* Use initial T7014 test data. */
-
+#define COMPAT_ALLOW_NOT_DASH_ESCAPED 32 /* Handle NotDashEscaped header. */
/* Compliance test macros. */
#define GNUPG (opt.compliance==CO_GNUPG || opt.compliance==CO_DE_VS)
Index: gnupg-2.5.5/tests/openpgp/clearsig.scm
===================================================================
--- gnupg-2.5.5.orig/tests/openpgp/clearsig.scm
+++ gnupg-2.5.5/tests/openpgp/clearsig.scm
@@ -78,21 +78,7 @@ there is a blank line after this
;; I think this file will be constructed wrong (gpg 0.9.3) but it
;; should verify okay anyway.
("this is a sig test
- " #f ())
-
- ;; check our special diff mode
- ("--- mainproc.c Tue Jun 27 09:28:11 2000
-+++ mainproc.c~ Thu Jun 8 22:50:25 2000
-@@ -1190,16 +1190,13 @@
- md_enable( c->mfx.md, n1->pkt->pkt.signature->digest_algo);
- }
- /* ask for file and hash it */
-- if( c->sigs_only ) {
-+ if( c->sigs_only )
- rc = hash_datafiles( c->mfx.md, NULL,
- c->signed_data, c->sigfilename,
- n1? (n1->pkt->pkt.onepass_sig->sig_class == 0x01):0 );
-" #t (--not-dash-escaped))))
+ " #f ())))
(let ((counter (make-counter)))
(for-each-p'

View File

@@ -13,11 +13,11 @@ Subject: [PATCH GnuPG] gpg: Merge --rfc4880bis features into --gnupg
(read_parameter_file): Activate the v4 and v5 keywords.
--
Index: gnupg-2.4.1/g10/gpg.c
Index: gnupg-2.5.4/g10/gpg.c
===================================================================
--- gnupg-2.4.1.orig/g10/gpg.c
+++ gnupg-2.4.1/g10/gpg.c
@@ -247,6 +247,7 @@ enum cmd_and_opt_values
--- gnupg-2.5.4.orig/g10/gpg.c
+++ gnupg-2.5.4/g10/gpg.c
@@ -254,6 +254,7 @@ enum cmd_and_opt_values
oGnuPG,
oRFC2440,
oRFC4880,
@@ -25,7 +25,7 @@ Index: gnupg-2.4.1/g10/gpg.c
oOpenPGP,
oPGP7,
oPGP8,
@@ -636,6 +637,7 @@ static gpgrt_opt_t opts[] = {
@@ -654,6 +655,7 @@ static gpgrt_opt_t opts[] = {
ARGPARSE_s_n (oGnuPG, "no-pgp8", "@"),
ARGPARSE_s_n (oRFC2440, "rfc2440", "@"),
ARGPARSE_s_n (oRFC4880, "rfc4880", "@"),
@@ -33,7 +33,7 @@ Index: gnupg-2.4.1/g10/gpg.c
ARGPARSE_s_n (oOpenPGP, "openpgp", N_("use strict OpenPGP behavior")),
ARGPARSE_s_n (oPGP7, "pgp6", "@"),
ARGPARSE_s_n (oPGP7, "pgp7", "@"),
@@ -978,7 +980,6 @@ static gpgrt_opt_t opts[] = {
@@ -1008,7 +1010,6 @@ static gpgrt_opt_t opts[] = {
ARGPARSE_s_n (oNoop, "no-allow-multiple-messages", "@"),
ARGPARSE_s_s (oNoop, "aead-algo", "@"),
ARGPARSE_s_s (oNoop, "personal-aead-preferences","@"),
@@ -41,7 +41,7 @@ Index: gnupg-2.4.1/g10/gpg.c
ARGPARSE_s_n (oNoop, "override-compliance-check", "@"),
@@ -2227,7 +2228,7 @@ static struct gnupg_compliance_option co
@@ -2263,7 +2264,7 @@ static struct gnupg_compliance_option co
{
{ "gnupg", oGnuPG },
{ "openpgp", oOpenPGP },
@@ -50,7 +50,7 @@ Index: gnupg-2.4.1/g10/gpg.c
{ "rfc4880", oRFC4880 },
{ "rfc2440", oRFC2440 },
{ "pgp6", oPGP7 },
@@ -2243,8 +2244,28 @@ static struct gnupg_compliance_option co
@@ -2279,8 +2280,29 @@ static struct gnupg_compliance_option co
static void
set_compliance_option (enum cmd_and_opt_values option)
{
@@ -76,26 +76,19 @@ Index: gnupg-2.4.1/g10/gpg.c
+ opt.s2k_digest_algo = DIGEST_ALGO_SHA256;
+ opt.s2k_cipher_algo = CIPHER_ALGO_AES256;
+ break;
case oOpenPGP:
case oRFC4880:
/* This is effectively the same as RFC2440, but with
@@ -2288,6 +2309,7 @@ set_compliance_option (enum cmd_and_opt_
case oPGP8: opt.compliance = CO_PGP8; break;
+
case oGnuPG:
/* set up default options affected by policy compliance: */
opt.compliance = CO_GNUPG;
@@ -2299,6 +2321,7 @@ set_compliance_option (enum cmd_and_opt_
opt.s2k_digest_algo = 0;
opt.s2k_cipher_algo = DEFAULT_CIPHER_ALGO;
opt.flags.allow_old_cipher_algos = 0;
+ opt.flags.rfc4880bis = 1;
break;
case oDE_VS:
@@ -2490,6 +2512,7 @@ main (int argc, char **argv)
opt.emit_version = 0;
opt.weak_digests = NULL;
opt.compliance = CO_GNUPG;
+ opt.flags.rfc4880bis = 1;
/* Check special options given on the command line. */
orig_argc = argc;
@@ -3032,6 +3055,7 @@ main (int argc, char **argv)
case oOpenPGP:
@@ -3090,6 +3113,7 @@ main (int argc, char **argv)
case oOpenPGP:
case oRFC2440:
case oRFC4880:
@@ -103,7 +96,7 @@ Index: gnupg-2.4.1/g10/gpg.c
case oPGP7:
case oPGP8:
case oGnuPG:
@@ -3868,6 +3892,11 @@ main (int argc, char **argv)
@@ -4000,6 +4024,11 @@ main (int argc, char **argv)
if( may_coredump && !opt.quiet )
log_info(_("WARNING: program may create a core file!\n"));
@@ -115,7 +108,7 @@ Index: gnupg-2.4.1/g10/gpg.c
if (eyes_only) {
if (opt.set_filename)
log_info(_("WARNING: %s overrides %s\n"),
@@ -4084,7 +4113,7 @@ main (int argc, char **argv)
@@ -4222,7 +4251,7 @@ main (int argc, char **argv)
/* Check our chosen algorithms against the list of legal
algorithms. */
@@ -124,20 +117,20 @@ Index: gnupg-2.4.1/g10/gpg.c
{
const char *badalg=NULL;
preftype_t badtype=PREFTYPE_NONE;
Index: gnupg-2.4.1/g10/keygen.c
Index: gnupg-2.5.4/g10/keygen.c
===================================================================
--- gnupg-2.4.1.orig/g10/keygen.c
+++ gnupg-2.4.1/g10/keygen.c
@@ -404,7 +404,7 @@ keygen_set_std_prefs (const char *string
--- gnupg-2.5.4.orig/g10/keygen.c
+++ gnupg-2.5.4/g10/keygen.c
@@ -489,7 +489,7 @@ keygen_set_std_prefs (const char *string
strcat(dummy_string,"S7 ");
strcat(dummy_string,"S2 "); /* 3DES */
- if (!openpgp_aead_test_algo (AEAD_ALGO_OCB))
+ if (opt.flags.rfc4880bis && !openpgp_aead_test_algo (AEAD_ALGO_OCB))
+ if (opt.flags.rfc4880bis && !openpgp_aead_test_algo (AEAD_ALGO_OCB))
strcat(dummy_string,"A2 ");
if (personal)
@@ -889,7 +889,7 @@ keygen_upd_std_prefs (PKT_signature *sig
@@ -974,7 +974,7 @@ keygen_upd_std_prefs (PKT_signature *sig
/* Make sure that the MDC feature flag is set if needed. */
add_feature_mdc (sig,mdc_available);
add_feature_aead (sig, aead_available);
@@ -146,7 +139,7 @@ Index: gnupg-2.4.1/g10/keygen.c
add_keyserver_modify (sig,ks_modify);
keygen_add_keyserver_url(sig,NULL);
@@ -3382,7 +3382,10 @@ parse_key_parameter_part (ctrl_t ctrl,
@@ -4118,7 +4118,10 @@ parse_key_parameter_part (ctrl_t ctrl,
}
}
else if (!ascii_strcasecmp (s, "v5"))
@@ -158,7 +151,7 @@ Index: gnupg-2.4.1/g10/keygen.c
else if (!ascii_strcasecmp (s, "v4"))
keyversion = 4;
else
@@ -3641,7 +3644,7 @@ parse_key_parameter_part (ctrl_t ctrl,
@@ -4379,7 +4382,7 @@ parse_key_parameter_part (ctrl_t ctrl,
* ecdsa := Use algorithm ECDSA.
* eddsa := Use algorithm EdDSA.
* ecdh := Use algorithm ECDH.
@@ -167,7 +160,7 @@ Index: gnupg-2.4.1/g10/keygen.c
*
* There are several defaults and fallbacks depending on the
* algorithm. PART can be used to select which part of STRING is
@@ -4513,9 +4516,9 @@ read_parameter_file (ctrl_t ctrl, const
@@ -5353,9 +5356,9 @@ read_parameter_file (ctrl_t ctrl, const
}
}
@@ -180,9 +173,9 @@ Index: gnupg-2.4.1/g10/keygen.c
else
{
r = xmalloc_clear( sizeof *r + strlen( value ) );
@@ -4610,11 +4613,14 @@ quickgen_set_para (struct para_data_s *p
para = r;
}
@@ -5450,11 +5453,14 @@ quickgen_set_para (struct para_data_s *p
r->next = para;
para = r;
- r = xmalloc_clear (sizeof *r + 20);
- r->key = for_subkey? pSUBVERSION : pVERSION;

Binary file not shown.

View File

@@ -1,3 +1,204 @@
-------------------------------------------------------------------
Wed Jan 28 15:09:39 UTC 2026 - Angel Yankov <angel.yankov@suse.com>
- Security fix
* [bsc#1257396, CVE-2026-24882]
- gpg2: stack-based buffer overflow in TPM2 PKDECRYPT for TPM-backed RSA and ECC keys
- Added gnupg-CVE-2026-24882.patch
* [bsc#1257395, CVE-2026-24883]
- gpg2: denial of service due to long signature packet length causing parse_signature to return success with sig->data[] set to a NULL value
- Added gnupg-CVE-2026-24883.patch
-------------------------------------------------------------------
Wed Jan 28 13:52:19 UTC 2026 - Angel Yankov <angel.yankov@suse.com>
- Security fix [bsc#1256389] (gpg.fail/filename)
* Added gnupg-accepts-path-separators-literal-data.patch
* GnuPG Accepts Path Separators and Path Traversals in Literal Data
-------------------------------------------------------------------
Thu Jan 8 10:55:35 UTC 2026 - Pedro Monreal <pmonreal@suse.com>
- Security fix: [bsc#1255715, CVE-2025-68973] (gpg.fail/memcpy)
* gpg: Fix possible memory corruption in the armor parser [T7906]
* Add gnupg-CVE-2025-68973.patch
-------------------------------------------------------------------
Thu Jan 8 10:42:12 UTC 2026 - Pedro Monreal <pmonreal@suse.com>
- Security fix: [bsc#1256246] (gpg.fail/sha1)
* gpg: Avoid potential downgrade to SHA1 in 3rd party key signatures [T7904]
* Add gnupg-gpg-Avoid-potential-downgrade-to-SHA1-in-3rd-party-keysig.patch
-------------------------------------------------------------------
Thu Jan 8 10:37:15 UTC 2026 - Pedro Monreal <pmonreal@suse.com>
- Security fix: [bsc#1256244] (gpg.fail/detached)
* gpg: Error out on unverified output for non-detached signatures [T7903]
* Add gnupg-gpg-Error-out-on-unverified-output-for-non-detached-signatures.patch
-------------------------------------------------------------------
Thu Jan 8 07:38:45 UTC 2026 - Angel Yankov <angel.yankov@suse.com>
- Security fix: [bsc#1256390] (gpg.fail/notdash)
* gpg2: Cleartext Signature Forgery in the NotDashEscaped header
implementation in GnuPG
* Add patch gnupg-notdash-escape.patch
-------------------------------------------------------------------
Thu Jun 26 11:26:15 UTC 2025 - Pedro Monreal <pmonreal@suse.com>
- Security fix: [bsc#1236931, bsc#1239119, CVE-2025-30258]
* gpg: Fix another regression due to the T7547 fix.
* The fix for CVE-2025-30258 was introduced in 2.5.5
* Add gnupg-gpg-Fix-another-regression-due-to-the-T7547-fix.patch
-------------------------------------------------------------------
Tue Jun 17 13:11:07 UTC 2025 - Lucas Mulling <lucas.mulling@suse.com>
- Don't install expired sks certificate [bsc#1243069]
* Add patch gnupg-dirmngr-Don-t-install-expired-sks-certificate.patch
-------------------------------------------------------------------
Fri Mar 7 17:13:14 UTC 2025 - Lucas Mulling <lucas.mulling@suse.com>
- Update to 2.5.5: [bsc#1236931, bsc#1239119]
* gpg: Fix a verification DoS due to a malicious subkey in the
keyring. [T7527]
* dirmngr: Fix possible hangs due to blocking connection requests.
[T6606, T7434]
Release-info: https://dev.gnupg.org/T7530
-------------------------------------------------------------------
Wed Feb 26 14:13:02 UTC 2025 - Adrian Schröter <adrian@suse.de>
- Fixing gpg-agent integration by changing --supervised to
--deprecated-supervised in service files.
-------------------------------------------------------------------
Wed Feb 19 10:41:27 UTC 2025 - Pedro Monreal <pmonreal@suse.com>
- Update to 2.5.4:
* gpg: New option --disable-pqc-encryption. [rG00c31f8b04]
* gpg: Fix --quick-add-key for Weierstrass ECC with usage given. [T7506]
* gpg: Fix handling with no CRC armor. [T7071]
* gpg: New private Kyber keys are now cross-referenced using a new
Link attribute. [T6638]
* gpg: Fix an import problem with keys having another primary key as
a subkey. [T7527]
* gpgsm: Allow unattended PKCS#12 export without passphrase. [rG159e801043]
* gpgsm: Allow CSR generation with an unprotected key. [rG89055f24f4]
* agent: New option --change-std-env-name. [T7522]
* agent: Fix ssh-agent's request_identities for skipped Brainpool
keys. [rG2469dc5aae]
* Do not package zlib and bzip2 object files in a speedo release build. [T7442]
* Rebase patches:
- gnupg-add_legacy_FIPS_mode_option.patch
- gnupg-allow-import-of-previously-known-keys-even-without-UIDs.patch
- gnupg-revert-rfc4880bis.patch
-------------------------------------------------------------------
Tue Jan 14 14:09:10 UTC 2025 - Lucas Mulling <lucas.mulling@suse.com>
- Update to 2.5.3
* gpg: Allow for signature subpackets of up to 30000 octets.
[rG36dbca3e69]
* gpg: Silence expired trusted-key diagnostics in quiet mode. [T7351]
* gpg: Allow smaller session keys with Kyber and enforce the use of
AES-256 if useful. [T7472]
* gpg: Fix regression in key generation from existing card key.
[T7309,T7457]
* gpg: Print a warning if the card backup key could not be written.
[T2169]
* The --supervised options of gpg-agent and dirmngr have been
renamed to --deprecated-supervised as preparation for their removal.
[rGa019a0fcd8]
* There is no more default for a keyserver.
-------------------------------------------------------------------
Mon Jan 6 21:41:40 UTC 2025 - Andreas Stieger <andreas.stieger@gmx.de>
- note updated 2.5.x build dependencies
-------------------------------------------------------------------
Wed Dec 11 12:12:50 UTC 2024 - Lucas Mulling <lucas.mulling@suse.com>
- Update to 2.5.2:
* gpg: Add option 16 to --full-gen-key to create ECC+Kyber. [T6638]
* gpg: For composite algos add the algo string to the colons
listings. [T6638]
* gpg: Validate the trustdb after the import of a trusted key.
[T7200]
* gpg: Exclude expired trusted keys from the key validation process.
[T7200]
* gpg: Fix a wrong decryption failed status for signed and OCB
encrypted messages without a signature verification key. [T7042]
* gpg: Retain binary representation for import->export with Ed25519
key signatures. [T7426]
* gpg: Fix comparing ed448 to ed25519 with --assert-pubkey-algo.
[T7425]
* gpg: Avoid a failure exit code for expired ultimately trusted
keys. [T7351]
* gpg: Emit status error for an invalid ADSK. [T7322]
* gpg: Allow the use of an ADSK subkey as ADSK subkey. [T6882]
* gpg: Fix --quick-set-expire for V5 subkey fingerprints. [T7298]
* gpg: Robust error handling for SCD READKEY. [T7309]
* gpg: Fix cv25519 v5 export regression. [T7316]
* gpgsm: Nearly fourfold speedup of validated certificate listings.
[T7308]
* gpgsm: Improvement for some rare P12 files. [rGf50dde6269]
* gpgsm: Terminate key listing on output write error. [T6185]
* agent: Add option --status to the LISTRUSTED command.
[rG4275d5fa7a]
* agent: Fix detection of the yet unused trustflag de-vs. [T5079]
* agent: Allow ssh to sign data larger than the Assuan line length.
[T7436]
* keyboxd: Fix a race condition on the database handle. [T7294]
* dirmngr: A list of used URLs for loaded CRLs is printed first in
the output of the LISTCRL command. [T7337]
* scd: More mitigations against lock ups with multiple cards or
apps. [T7323, T7402]
* gpgtar: Use log-file from common.conf only in --batch mode.
[rGb389e04ef5]
* gpgtar: Fix directory creation during extraction. [T7380]
* gpg-mail-tube: Minor fixes.
* gpgconf: Add list flag to trusted-key et al. [T7313]
* Implement GNUPG_ASSUME_COMPLIANCE envvar and registry key for
testing de-vs compliance mode. [rGb287fb5775,rG7b0be541a9]
* Fix a race condition in creating the socket directory. [T7332]
-------------------------------------------------------------------
Thu Dec 5 18:47:10 UTC 2024 - Adrian Schröter <adrian@suse.de>
- Disable ibmswtpm2 on LoongArch64
-------------------------------------------------------------------
Mon Oct 21 18:52:37 UTC 2024 - Pedro Monreal <pmonreal@suse.com>
- Update to 2.5.1:
* gpg: The support for composite Kyber+ECC public key algorithms
does now use the final FIPS-203 and LibrePGP specifications. The
experimental keys from 2.5.0 are no longer supported. [T6815]
* gpg: New commands --add-recipients and --change-recipients. [T1825]
* gpg: New option --proc-all-sigs. [T7261]
* gpg: Fix a regression in 2.5.0 in gpgme's tests. [T7195]
* gpg: Make --no-literal work again for -c and --store. [T5852]
* gpg: Improve detection of input data read errors. [T6528]
* gpg: Fix getting key by IPGP record (rfc-4398). [T7288]
* gpgsm: New option --assert-signer. [T7286]
* gpgsm: More improvements to PKCS#12 parsing to cope with latest
IVBB changes. [T7213]
* agent: Fix KEYTOCARD command when used with a loopback pinentry. [T7283]
* gpg-mail-tube: Make sure GNUPGHOME is set in vsd mode. New option
--as-attach. [rG4511997e9e1b]
* Now uses the process spawn API from libgpg-error. [T7192,T7194]
* Removed the --enable-gpg-is-gpg2 configure time option.
[rG2125f228d36c]
* Rebase patches:
- gnupg-add_legacy_FIPS_mode_option.patch
- gnupg-revert-rfc4880bis.patch
- gnupg-nobetasuffix.patch
-------------------------------------------------------------------
Mon Aug 12 04:30:42 UTC 2024 - Andreas Stieger <andreas.stieger@gmx.de>

View File

@@ -1,8 +1,8 @@
#
# spec file for package gpg2
#
# Copyright (c) 2024 SUSE LLC
# Copyright (c) 2024 Andreas Stieger <Andreas.Stieger@gmx.de>
# Copyright (c) 2025 SUSE LLC
# Copyright (c) 2025 Andreas Stieger <Andreas.Stieger@gmx.de>
#
# All modifications and additions to the file contributed by third parties
# remain the property of their copyright owners, unless otherwise agreed
@@ -18,7 +18,7 @@
Name: gpg2
Version: 2.4.5
Version: 2.5.5
Release: 0
Summary: File encryption, decryption, signature creation and verification utility
License: GPL-3.0-or-later
@@ -47,13 +47,30 @@ Patch11: gnupg-allow-large-rsa.patch
Patch12: gnupg-revert-rfc4880bis.patch
#PATCH-FIX-OPENSUSE Do not pull revision info from GIT when autoconf is run
Patch13: gnupg-nobetasuffix.patch
#PATCH-FIX-UPSTREAM Don't install exipred sks certificate
Patch14: gnupg-dirmngr-Don-t-install-expired-sks-certificate.patch
#PATCH-FIX-UPSTREAM gpg: Fix another regression due to the T7547 fix.
Patch15: gnupg-gpg-Fix-another-regression-due-to-the-T7547-fix.patch
#PATCH-FIX-UPSTREAM: bsc#1256390 Cleartext Signature Forgery in the NotDashEscaped header implementation in GnuPG (gpg.fail/notdash)
Patch16: gnupg-notdash-escape.patch
#PATCH-FIX-UPSTREAM: bsc#1256244 gpg: Error out on unverified output for non-detached signatures (gpg.fail/detached)
Patch17: gnupg-gpg-Error-out-on-unverified-output-for-non-detached-signatures.patch
#PATCH-FIX-UPSTREAM: bsc#1256246 gpg: Avoid potential downgrade to SHA1 in 3rd party key signatures (gpg.fail/sha1)
Patch18: gnupg-gpg-Avoid-potential-downgrade-to-SHA1-in-3rd-party-keysig.patch
#PATCH-FIX-UPSTREAM: bsc#1255715 CVE-2025-68973: Memory Corruption in ASCII-Armor Parsing (gpg.fail/memcpy)
Patch19: gnupg-CVE-2025-68973.patch
#PATCH-FIX-UPSTREAM: bsc#1256389 GnuPG Accepts Path Separators and Path Traversals in Literal Data "Filename" Field
Patch20: gnupg-accepts-path-separators-literal-data.patch
#PATCH-FIX-UPSTREAM: bsc#1257395 CVE-2026-24883: denial of service due to long signature packet length causing parse_signature to return success with sig->data[] set to a NULL value
Patch21: gnupg-CVE-2026-24883.patch
#PATCH-FIX-UPSTREAM: bsc#1257396 CVE-2026-24882: stack-based buffer overflow in TPM2 PKDECRYPT for TPM-backed RSA and ECC keys
Patch22: gnupg-CVE-2026-24882.patch
BuildRequires: expect
BuildRequires: fdupes
BuildRequires: ibmswtpm2
BuildRequires: ibmtss-devel
BuildRequires: libassuan-devel >= 2.5.0
BuildRequires: libgcrypt-devel >= 1.9.1
BuildRequires: libgpg-error-devel >= 1.46
BuildRequires: libassuan-devel >= 3.0.0
BuildRequires: libgcrypt-devel >= 1.11.0
BuildRequires: libgpg-error-devel >= 1.51
BuildRequires: libksba-devel >= 1.6.3
BuildRequires: makeinfo
BuildRequires: npth-devel >= 1.2
@@ -71,6 +88,10 @@ Provides: gnupg = %{version}
Provides: gpg = 1.4.9
Provides: newpg
Obsoletes: gpg < 1.4.9
%ifnarch loongarch64
BuildRequires: ibmswtpm2
BuildRequires: ibmtss-devel
%endif
%description
GnuPG is a hybrid-encryption software program; it uses a combination
@@ -118,8 +139,7 @@ date=$(date -u +%%Y-%%m-%%dT%%H:%%M+0000 -r %{SOURCE99})
--enable-large-secmem \
--with-gnu-ld \
--with-default-trust-store-file=%{_sysconfdir}/ssl/ca-bundle.pem \
--enable-build-timestamp=$date \
--enable-gpg-is-gpg2
--enable-build-timestamp=$date
%make_build
@@ -136,10 +156,11 @@ rm -rf %{buildroot}%{_docdir}/gpg2/examples/gpgconf.conf
rm %{buildroot}%{_infodir}/dir
# compat symlinks
ln -sf gpg2 %{buildroot}%{_bindir}/gpg
ln -sf gpgv2 %{buildroot}%{_bindir}/gpgv
ln -sf gpg2.1 %{buildroot}%{_mandir}/man1/gpg.1
ln -sf gpgv2.1 %{buildroot}%{_mandir}/man1/gpgv.1
ln -sf gpg %{buildroot}%{_bindir}/gpg2
ln -sf gpgv %{buildroot}%{_bindir}/gpgv2
ln -sf gpg.1 %{buildroot}%{_mandir}/man1/gpg2.1
ln -sf gpgv.1 %{buildroot}%{_mandir}/man1/gpgv2.1
ln -sf gnupg.7 %{buildroot}%{_mandir}/man7/gnupg2.7
# install udev rules for scdaemon
install -Dm 0644 %{SOURCE4} %{buildroot}%{_udevrulesdir}/60-scdaemon.rules
@@ -165,7 +186,7 @@ cp systemd-user/README.systemd %{buildroot}%{_docdir}/gpg2/
%license COPYING*
%doc AUTHORS NEWS THANKS TODO ChangeLog
%{_infodir}/gnupg*
%{_mandir}/*/[agsw]*%{ext_man}
%{_mandir}/*/[aghsw]*%{ext_man}
%doc %{_docdir}/%{name}
%{_bindir}/[gkw]*
%{_libexecdir}/[gks]*
@@ -188,8 +209,10 @@ cp systemd-user/README.systemd %{buildroot}%{_docdir}/gpg2/
%{_libexecdir}/dirmngr_ldap
%{_userunitdir}/dirmngr.*
%ifnarch loongarch64
%files tpm
%license COPYING*
%{_libexecdir}/tpm2daemon*
%endif
%changelog