summaryrefslogtreecommitdiff
path: root/security/gnupg
AgeCommit message (Collapse)AuthorFilesLines
2014-10-09Remove pkgviews: don't set PKG_INSTALLATION_TYPES in Makefiles.wiz1-3/+1
2014-07-22Update to 1.4.18:wiz2-6/+6
Noteworthy changes in version 1.4.18 (2014-06-30) ------------------------------------------------- * Fix a regression in 1.4.17 if more than one keyid is given to --recv-keys et al. * Cap RSA and Elgamal keysize at 4096 bit also for unattended key generation.
2014-06-24Update to 1.4.17 due to security fix:wiz3-9/+7
Noteworthy changes in version 1.4.17 (2014-06-23) ------------------------------------------------- * Avoid DoS due to garbled compressed data packets. * Screen keyserver reponses to avoid import of unwanted keys by rogue servers. * Add hash algorithms to the "sig" records of the colon output. * More specific reason codes for INV_RECP status. * Fixes for PC/SC access on Apple. * Minor bug fixes.
2014-02-12Recursive PKGREVISION bump for OpenSSL API version bump.tron1-1/+2
2013-12-18Update to 1.4.16:wiz2-6/+6
Noteworthy changes in version 1.4.16 (2013-12-18) ------------------------------------------------- * Fixed the RSA Key Extraction via Low-Bandwidth Acoustic Cryptanalysis attack as described by Genkin, Shamir, and Tromer. See <http://www.cs.tau.ac.il/~tromer/acoustic/>. [CVE-2013-4576] * Put only the major version number by default into armored output. * Do not create a trustdb file if --trust-model=always is used. * Print the keyid for key packets with --list-packets. * Changed modular exponentiation algorithm to recover from a small performance loss due to a change in 1.4.14.
2013-10-26Remove obsolete --with-static-rnd=auto as suggested by Andreas Gustafssonwiz1-2/+1
in PR 48345.
2013-10-05Update to 1.4.15:wiz2-6/+6
Noteworthy changes in version 1.4.15 (2013-10-04) ------------------------------------------------- * Fixed possible infinite recursion in the compressed packet parser. [CVE-2013-4402] * Protect against rogue keyservers sending secret keys. * Use 2048 bit also as default for batch key generation. * Minor bug fixes.
2013-07-25Update to 1.4.14:wiz3-33/+6
Noteworthy changes in version 1.4.14 (2013-07-25) ------------------------------------------------- * Mitigate the Yarom/Falkner flush+reload side-channel attack on RSA secret keys. See <http://eprint.iacr.org/2013/448>. * Fixed IDEA for big-endian CPUs * Improved the diagnostics for failed keyserver lockups. * Minor bug and portability fixes.
2013-07-15* .include "../../devel/readline/buildlink3.mk" with USE_GNU_READLINE=yesryoon1-2/+1
are replaced with .include "../../devel/readline/buildlink3.mk", and USE_GNU_READLINE are removed, * .include "../../devel/readline/buildlink3.mk" without USE_GNU_READLINE are replaced with .include "../../mk/readline.buildlink3.mk".
2013-05-10Fix cross-build of gnupg with CC_FOR_BUILD=NATIVE_CC.riastradh1-1/+5
2013-02-09Remove obsolete sentence about idea.wiz1-2/+1
2013-02-06PKGREVISION bumps for the security/openssl 1.0.1d update.jperkin1-2/+2
2013-01-07Fix idea on big-endian hosts.wiz3-2/+29
From http://bugs.g10code.com/gnupg/issue1461 Reported by tez. Bump PKGREVISION.
2013-01-07Remove obsolete line. Noted by tez.wiz1-3/+1
2013-01-07Remove a superfluous line (hi tron!)wiz1-2/+1
2013-01-07Remove idea option -- included in standard distfile now.wiz2-17/+3
2013-01-07Re-add checksums for "idea.c.gz" which got removed during the last update.tron1-1/+5
2013-01-06update of gnupgspz5-90/+6
Fixes CVE-2012-6085 Upstream Changes: * Add support for the old cipher algorithm IDEA. * Minor bug fixes. * Small changes to better cope with future OpenPGP and GnuPG features.
2012-12-16recursive bump from cyrus-sasl libsasl2 shlib major bump.obache1-2/+2
2012-11-07Bump PKGREVISION for patch replacements.wiz1-1/+2
2012-11-07Use upstream version of dlerror() fix.wiz3-20/+28
2012-11-07Remove it-seems-unneeded FreeBSD changes that were long commented out.wiz1-12/+1
2012-11-07Use just committed upstream change addressing c99 inline semantics.wiz4-67/+31
2012-10-27Add comments to patches.wiz4-7/+16
2012-10-23Drop superfluous PKG_DESTDIR_SUPPORT, "user-destdir" is default these days.asau1-2/+1
2012-06-08Add readline supportfhajny1-2/+10
2012-03-03Update to 1.4.12:wiz3-8/+8
Noteworthy changes in version 1.4.12 (2012-01-30) ------------------------------------------------- * GPG now accepts a space separated fingerprint as a user ID. This allows to copy and paste the fingerprint from the key listing. * Removed support for the original HKP keyserver which is not anymore used by any site. * Rebuild the trustdb after changing the option --min-cert-level. * Improved JPEG detection. * Included more VMS patches * Made it easier to create an installer for Windows. * Supports the 32 bit variant of the mingw-w64 toolchain. * Made file locking more portable. * Minor bug fixes.
2012-01-20remove restrictions related to idea and mdc2 patents - both are expireddrochner1-6/+1
2011-11-16Add missing devel/readline buildlinks.sbd1-2/+3
Bump PKGREVISIONs
2011-08-02Deal with c99 inline semantics.joerg3-1/+63
2011-04-22recursive bump from gettext-lib shlib bump.obache1-1/+2
2010-10-21Update to 1.4.11, add some comments to patches and please pkglint.wiz5-22/+25
Noteworthy changes in version 1.4.11 (2010-10-18) ------------------------------------------------- * Bug fixes and portability changes. * Minor changes for better interoperability with GnuPG-2.
2009-11-03Allow building on 64-bit Darwinadam1-6/+3
2009-10-27update master_sites. switch to http with gd.tuwien.ac.atzafer1-2/+2
2009-09-28- AIX fixes from Louis Guillaumetnn2-3/+15
- kill a trailing whitespace
2009-09-03Update to 1.4.10:wiz3-7/+8
Noteworthy changes in version 1.4.10 (2009-09-02) ------------------------------------------------- * 2048 bit RSA keys are now generated by default. The default hash algorithm preferences has changed to prefer SHA-256 over SHA-1. 2048 bit DSA keys are now generated to use a 256 bit hash algorithm * Support v2 OpenPGP cards. * The algorithm to compute the SIG_ID status has been changed to match the one from 2.0.10. * Improved file locking. Implemented it for W32. * Fixed a memory leak which made imports of many keys very slow. * Many smaller bug fixes. * Support for the Camellia cipher (RFC-5581). * Support for HKP keyservers over SSL ("HKPS").
2009-06-14Remove @dirrm entries from PLISTsjoerg1-3/+1
2009-06-05update master sites. remove planetmirror (does not resolve). remove dfn. ↵zafer1-3/+1
requires active ftp. (renders it useless with PASV).
2009-05-19Use standard location for LICENSE line (in MAINTAINER/HOMEPAGE/COMMENTwiz1-2/+2
block). Uncomment some commented out LICENSE lines while here.
2009-05-04remove backslashzafer1-2/+2
2009-05-04Remove mirror rediris. It does not provide the distfile.zafer1-2/+1
2009-03-05Pick up maintainership.wiz1-2/+2
2009-02-24Drop maintainership.wiz1-2/+2
2008-04-12Convert to use PLIST_VARS instead of manually passing "@comment "jlam2-8/+8
through PLIST_SUBST to the plist module.
2008-03-26Update to gnupg-1.4.9adrianp2-6/+6
Addresses a recent security issue that only impacts 1.4.8 and 2.0.8 * Improved AES encryption performance by more than 20% (on ia32). Decryption is also a bit faster. * Fixed possible memory corruption bug in 1.4.8 while importing OpenPGP keys.
2008-01-13Update to 1.4.8:wiz2-6/+7
Noteworthy changes in version 1.4.8 (2007-12-20) ------------------------------------------------ ******************************************* * A decade of GnuPG: g10-0.0.0.tar.gz was * * released exactly 10 years ago. * ******************************************* * Changed the license to GPLv3. * Improved detection of keyrings specified multiple times. * Changes to better cope with broken keyservers. * Minor bug fixes. * The new OpenPGP standard is now complete, and has been published as RFC-4880. The GnuPG --openpgp mode (note this is not the default) has been updated to match the new standard. The --rfc2440 option can be used to return to the older RFC-2440 behavior. The main differences between the two are "--enable-dsa2 --no-rfc2440-text --escape-from-lines --require-cross-certification". * By default (i.e. --gnupg mode), --require-cross-certification is now on. --rfc2440-text and --force-v3-sigs are now off. * Allow encryption using legacy Elgamal sign+encrypt keys if option --rfc2440 is used. * Fixed the auto creation of the key stub for smartcards. * Fixed a rare bug in decryption using the OpenPGP card. * Fix RFC-4880 typo in the SHA-224 hash prefix. Old SHA-224 signatures will continue to work.
2007-10-31Renamed the deprecated LICENCE to LICENSE, which has the exactly samerillig1-2/+2
meaning.
2007-03-07update to 1.4.7, from Christian Gall per PR pkg/35940drochner3-7/+8
This fixes a security problem which is rather an application issue: The user wasn't notified about additional text (not covered by the signature) unless the --status-fd flag is used.
2007-02-22Whitespace cleanup, courtesy of pkglint.wiz1-3/+3
Patch provided by Sergey Svishchev in private mail.
2007-02-22pkglint cleanup; update HOMEPAGE/MASTER_SITES.wiz1-2/+2
From Sergey Svishchev in private mail.