aboutsummaryrefslogtreecommitdiffstats
Commit message (Collapse)AuthorAgeFilesLines
* Preparing a release candidategnupg-1.4.5rc1Werner Koch2006-07-2810-16/+6043
|
* * Makefile.am: Fix missing include path for gpgkeys_finger (needs theDavid Shaw2006-07-262-0/+7
| | | | | | libcurl path, even though it doesn't use libcurl because of ksutil.c:curl_err_to_gpg_err(). Noted by Gilbert Fernandes.
* Fixed memory allocation bug and typos.Werner Koch2006-07-2634-2984/+2784
|
* * curl-shim.c (curl_easy_perform): Minor cleanup of proxy code.David Shaw2006-07-212-5/+7
|
* * http.c (send_request): A zero-length proxy is the same as no proxy atDavid Shaw2006-07-202-1/+6
| | | | | all. Suggested by J. Scott Berg.
* * gpgkeys_hkp.c (send_key), gpgkeys_ldap.c (send_key,David Shaw2006-07-173-8/+14
| | | | | | send_key_keyserver): Improved version of previous fix. Force match on spaces in string.
* * gpgkeys_hkp.c (send_key), gpgkeys_ldap.c (send_key, send_key_keyserver):David Shaw2006-07-143-11/+27
| | | | | | Fix string matching problem when the ascii armored form of the key happens to match "KEY" at the beginning of the line.
* * gpgkeys_ldap.c (printquoted), curl-shim.c (curl_escape): Fix badDavid Shaw2006-07-123-2/+7
| | | | | encoding of characters > 127. Noted by Nalin Dahyabhai.
* * tar-ustar.m4: Use dd instead of strings as it's more likely to beDavid Shaw2006-07-122-1/+6
| | | | | around. Suggested by Nelson H. F. Beebe.
* * tar-ustar.m4: Not all greps know the -q (quiet) flag, so redirect toDavid Shaw2006-07-112-2/+5
| | | | | /dev/null instead.
* * tar-ustar.m4: Pass tar data through strings so that greps that don'tDavid Shaw2006-07-112-1/+7
| | | | | | grep in binary files (Solaris) can detect the string. Noted by Mark Davies.
* * configure.ac: Fix resolver autoconf code so it works (fails)David Shaw2006-07-085-29/+37
| | | | | properly with uClibc.
* Updated.Werner Koch2006-07-032-719/+849
|
* * rsa.c (generate): Use e=65537 for new RSA keys.David Shaw2006-06-282-13/+13
|
* i18n fixWerner Koch2006-06-282-2/+10
|
* * keydb.h, pkclist.c (select_algo_from_prefs, algo_available): Pass aDavid Shaw2006-06-284-14/+27
| | | | | | | union for preference hints rather than doing void * games. * sign.c (sign_file): Use it here.
* * sign.c (sign_file): When signing with multiple DSA keys, one being DSA1David Shaw2006-06-282-49/+49
| | | | | | | and one being DSA2 and encrypting at the same time, if the recipient preferences give a hash that can work with the DSA2 key, then allow the DSA1 key to be promoted rather than giving up and using hash_for().
* * pkclist.c (algo_available): Automatically enable DSA2 mode when handlingDavid Shaw2006-06-282-5/+10
| | | | | a key that clearly isn't DSA1 (i.e. q!=160).
* Fixed uploading of keays.Werner Koch2006-06-282-1/+7
|
* do no use reopen_std under W32.Werner Koch2006-06-272-2/+6
|
* Post release version updateWerner Koch2006-06-252-2/+6
|
* Ready for a releasegnupg-1.4.4Werner Koch2006-06-2527-13006/+13538
|
* Typo fixWerner Koch2006-06-251-1/+1
|
* About to do a new releaseWerner Koch2006-06-2512-37/+87
|
* * gpg.sgml: Document --enable-dsa2, --disable-dsa2, andDavid Shaw2006-06-233-0/+27
| | | | | | | --default-keyserver-url. * DETAILS: Note "Keyserver:"
* * options.h, gpg.c (main), keygen.c (keygen_upd_std_prefs,David Shaw2006-06-224-2/+51
| | | | | | | keygen_add_std_prefs, proc_parameter_file): Add --default-keyserver-url to specify a keyserver URL at key generation time, and "Keyserver:" keyword for doing the same through a batch file.
* * sign.c (do_sign): Accept a truncated hash even for DSA1 keys (be liberalDavid Shaw2006-06-222-1/+13
| | | | | in what you accept, etc).
* * gpg.sgml: Note that --pgp8 does not include SHA224. Clarify thatDavid Shaw2006-06-222-2/+12
| | | | | clearsigned messages are not reversible.
* * import.c (import_one): Add a flag (from_sk) so we don't check prefsDavid Shaw2006-06-122-6/+13
| | | | | | on an autoconverted public key. The check should only happen on the sk size. Noted by Dirk Traulsen.
* * keygen.c (gen_card_key): Add optional argument to return a pointerDavid Shaw2006-06-102-8/+20
| | | | | | | | (not a copy) of the stub secret key for the secret key we just generated on the card. (generate_card_subkeypair): Use it here so that the signing key on the card can use the card to generate the 0x19 backsig on the primary key. Noted by Janko Heilgeist and Jonas Oberg.
* * parse-packet.c (parse_user_id): Cap the user ID size at 2048 bytes. David Shaw2006-06-092-0/+22
| | | | | | | This prevents a memory allocation attack with a very large user ID. A very large packet length could even cause the allocation (a u32) to wrap around to a small number. Noted by Evgeny Legerov on full-disclosure.
* Revert last. It is still wrong.David Shaw2006-05-272-17/+7
|
* * exec.c (make_tempdir) [_WIN32]: Modified to properly handleDavid Shaw2006-05-272-7/+17
| | | | | arbitrarily long temporary directory paths.
* * keygen.c (gen_dsa): Allow generating DSA2 keys (allow specifying sizes >David Shaw2006-05-253-21/+73
| | | | | | | 1024 when --enable-dsa2 is set). The size of q is set automatically based on the key size. (ask_keysize, generate_keypair): Ask for DSA size when --enable-dsa2 is set.
* Added backsig to my keyWerner Koch2006-05-251-432/+437
|
* * exec.c (make_tempdir): Fix bug with a temporary directory on Win32David Shaw2006-05-252-2/+10
| | | | | that is over 256 bytes long. Noted by Israel G. Lugo.
* * mksamplekeys: Incorporate new package signature key and minimize keysDavid Shaw2006-05-232-2/+7
| | | | | when generating samplekeys.asc.
* * gpg.c (reopen_std): New function to reopen fd 0, 1, or 2 if we areDavid Shaw2006-05-232-0/+72
| | | | | | | | called with them closed. This is to protect our keyring/trustdb files from corruption if they get attached to one of the standard fds. Print a warning if possible that this has happened, and fail completely if we cannot reopen (should never happen). (main): Call it here.
* * configure.ac: Add --disable-optimization. This is handy for debuggingDavid Shaw2006-05-232-0/+15
| | | | | so the compiler doesn't rearrange things and eliminate variables.
* * parse-packet.c (dump_sig_subpkt, parse_signature), build-packet.cDavid Shaw2006-05-236-19/+34
| | | | | | | | | (build_sig_subpkt_from_sig), getkey.c (fixup_uidnode, merge_selfsigs_main, merge_selfsigs_subkey), keygen.c (keygen_add_key_expire): Fix meaning of key expiration and sig expiration subpackets - zero means "never expire" according to 2440, not "expire instantly".
* * import.c (import_one): Fix bug when importing a new key from a file.David Shaw2006-05-222-7/+8
|
* 2006-05-22 Marcus Brinkmann <[email protected]>Marcus Brinkmann2006-05-224-18/+65
| | | | | | | | | | | * configure.ac: Remove check for noexecstack and invoke CL_AS_NOEXECSTACK instead. m4/ 2006-05-22 Marcus Brinkmann <[email protected]> * noexecstack.m4: New file.
* * getkey.c (get_pubkey_byname), import.c (import_one): Fix key selectionDavid Shaw2006-05-223-4/+19
| | | | | | problem when auto-key-locate returns a list of keys, not all of which are usable (revoked, expired, etc). Noted by Simon Josefsson.
* Updated keysWerner Koch2006-05-172-1880/+368
|
* Forgot to save the actual fixWerner Koch2006-05-161-2/+2
|
* Fixed OSF5 warning suppression.Werner Koch2006-05-162-5/+7
|
* * libcurl.m4: Fix mistaken AC_SUBST when curl is not found.David Shaw2006-05-102-1/+8
|
* * NEWS: Note SHA-224 and DSA2.David Shaw2006-04-273-24/+40
| | | | | | * configure.ac: Remove --enable-old-keyserver-helpers. Comment out --enable-m-guard for now.
* (keyserver_import_cert): Show warning if there is a CERT fingerprint,David Shaw2006-04-272-1/+9
| | | | | but no --keyserver set.
* * keyserver.c (path_makes_direct): New. (keyserver_spawn): Used hereDavid Shaw2006-04-272-32/+29
| | | | | | to add "_uri" to certain gpgkeys_xxx helpers when the meaning is different if a path is provided (i.e. ldap).