Gentoo Websites Logo
Go to: Gentoo Home Documentation Forums Lists Bugs Planet Store Wiki Get Gentoo!
Bug 464890 - app-crypt/gnupg-2.0.19-r1 (or any other): backport patch from stable branch?
Summary: app-crypt/gnupg-2.0.19-r1 (or any other): backport patch from stable branch?
Status: RESOLVED FIXED
Alias: None
Product: Gentoo Linux
Classification: Unclassified
Component: Current packages (show other bugs)
Hardware: All Linux
: Normal normal (vote)
Assignee: Crypto team [DISABLED]
URL: http://lists.gnupg.org/pipermail/gnup...
Whiteboard:
Keywords:
Depends on:
Blocks:
 
Reported: 2013-04-06 21:55 UTC by Andreas K. Hüttel
Modified: 2013-04-07 18:19 UTC (History)
0 users

See Also:
Package list:
Runtime testing required: ---


Attachments
the original patch obtained from git (0001-Allow-decryption-with-card-keys-3072-bit.patch,5.59 KB, text/plain)
2013-04-06 21:59 UTC, Andreas K. Hüttel
Details

Note You need to log in before you can comment on or make changes to this bug.
Description Andreas K. Hüttel archtester gentoo-dev 2013-04-06 21:55:20 UTC
It seems gpg up to the latest released version has a built-in maximum length for smartcard rsa >encryption< keys of 3072bit. Which, at least for the OpenPGP 2.0 cards sold by g10code ("Zeitcontrol"), is not a hardware limitation; these support 4096 (althoug 3072 is printed on the backside) [1].

This was discovered in november 2012 [2] and fixed by Werner Koch in git commit ab4ea45f54006eba55db11263431c4c0c4f557dc (stable 2.0 branch). 

The patch applies cleanly to 2.0.19 except for one whitespace issue. I've applied it locally here, and can suddenly decrypt stuff fine with the testing key that I made. 

I have asked on the gnupg-devel mailing list whether that patch is safe to backport, I'll link to the thread once the non-member submission has gotten through. 

[1] http://marc.info/?l=gnupg-users&m=131477338132206
[2] http://gnupg.10057.n7.nabble.com/Re-Card-fails-to-decrypt-using-4096-bit-key-td15173.html
Comment 1 Andreas K. Hüttel archtester gentoo-dev 2013-04-06 21:59:57 UTC
Created attachment 344672 [details]
the original patch obtained from git
Comment 2 Alon Bar-Lev (RETIRED) gentoo-dev 2013-04-07 18:19:20 UTC
Added to gnupg-2.0.19-r2