Команда GnuPG объявляет о выпуске новой версии

отредактировано 9 Aug Раздел: Шифрование и контейнеры
6vl82i56kj13.jpg

текущие версии:
GnuPG 2.5.21/1.4.23; Gpg4win 5.1 (Gnupg: 2.5.21; Kleopatra: 5.1.0 )

About GnuPG:
GNU Privacy Guard (GnuPG) - полная и бесплатная реализация стандарта OpenPGP,
который обычно сокращается как PGP.

GnuPG позволяет шифровать и подписывать данные и сообщения,
имеет универсальную систему управления ключами, а также модули доступа для каталога открытых ключей.
Сам GnuPG - это инструмент командной строки с функциями, упрощающими интеграцию с другими приложениями.
Множество интерфейсных приложений используют библиотеки GnuPG.
Universal Crypto Engine GnuPG обеспечивает поддержку S / MIME и Secure Shell в дополнение к OpenPGP.

GnuPG - бесплатное программное обеспечение (это означает, что оно уважает вашу свободу).
Оно может свободно использоваться, модифицироваться и распространяться в соответствии с условиями GNU
General Public License.
The GNU Privacy Guard (GnuPG) is a complete and free implementation
of the OpenPGP standard which is commonly abbreviated as PGP.

GnuPG allows to encrypt and sign data and communication, features a
versatile key management system as well as access modules for public key
directories. GnuPG itself is a command line tool with features for easy
integration with other applications. A wealth of frontend applications
and libraries making use of GnuPG are available. As an Universal Crypto
Engine GnuPG provides support for S/MIME and Secure Shell in addition to
OpenPGP.

GnuPG is Free Software (meaning that it respects your freedom). It can
be freely used, modified and distributed under the terms of the GNU
General Public License.

This is a list of changes to the GnuPG core for this and the previous
release.

Noteworthy changes in version 2.5.21 (2026-07-02)

* New and extended features:

- gpg, gpgsm: Use partial file on decryption, remove on failure.
Disable with "--compatibility-flags=no-partial-file-guard".
[T7873]

- gpg: Use the INT_RCP_FPR subpacket in revocation signatures.
[T8252]

- Create a pkgversioninfo.txt file when building using the speedo
build system.

* Bug fixes:

- gpg: Fix potential use-after-free in batch key generation when
handling the keyserver URL option. [T8277]

- gpgsm: Fix regression in gpgsm_verify with expired certificates.
[T8188]

- gpgsm: Require a minimum tag length for GCM decryption.
[rG4c7e68cf3d, CVE-2026-34182]

- scd: Limit the size of returned APDU objects from faulty cards.
[T8281]

- scd: Fix condition to retrieve ATR. [rGca25a7a61b]

- scd:openpgp: Fix regression in CHV1 retry counter byte index.
[rG245330ebea]

- agent: Make batch import of Kyber keys work. [T8029]

- dirmngr: Add a validation check in get_dns_cert_standard.
[T8303]

- gpgconf: Raise an error on certain parse errors. [T8261]

- Fix use of usleep in file remove function on Windows. Regression
since 2.5.13. [rGab9ce5f5e7]

Release-info: https://dev.gnupg.org/T8262


Noteworthy changes in version 2.5.20 (2026-05-13)

* New and extended features:

- gpgsm: Implement GCM encryption. Note that decryption works
since version 2.3.2. [T3979]

- gpgsm: New option --attribute and server command SETATTR to
include arbitrary signed or unsigned attributes into a signature.
Enable only with libksba 1.7.0 or later. [T4537]

- gpgsm: Introduce system attribute _signingCertificateV2.
[rG0335a9cb04]

* Bug fixes:

- gpg: Fix wrong assertion failure which could very rarely occur
during key signature checking. [rG693f5642f6]

- gpg: Consider certify-only keys for revocation signature check.
[T8196]

- gpgsm: Fix possible double free in the CMS parser. [T8240]

- gpgsm: Fix possible too early removal of ephemeral keys. [T8236]

- gpgsm: Avoid emitting a final FAILURE status line if --status-fd
is not used. [rG69c27fe377]

- gpgsm: Fix a regression in 2.5.19 for password encrypted GCM
data. [rG60a823c97b]

- agent: Fix not using cache for pinentry loopback. [rGd4b608a31f]

- agent: Fix command PUT_SECRET by saving input line. [rG1875bc185e]

- keyboxd: Mark keys searched but not imported via LDAP correctly
as ephemeral. [T8048]

- scdaemon: Avoid buffer overflow with SC-HSM cards providing RSA
keys > 2k. [T8244]

- dirmngr: Fix uninitialized use of the dns_any union in
dns_rr_cmp. [T8251]

Release-info: https://dev.gnupg.org/T7997


страница загрузки:

https://www.gnupg.org/download/index.html
Мы ищем точки опоры не с целью перевернуть мир, но чтобы не позволить миру опрокинуть нас.
Тэги темы:
Войдите или Зарегистрируйтесь чтобы комментировать.