[pkg-gnupg-maint] Upgrading sid to 2.2.42?

NIIBE Yutaka gniibe at fsij.org
Mon Feb 5 00:11:28 GMT 2024


Hello,

Personally, I don't use GnuPG 2.2.x.  Occasionally, I look it.

Andreas Metzler <ametzler at bebt.de> wrote:
> any thoughts on a upgrade to 2.2.42? It seems to be straightforward in
> my local test.

No problem for me.  Looking gnupg22/NEWS, good things are:

  * gpgsm: Support ECC certificates.  [T6253, T6802]

  * gpg: Fix the "keytocard" command for moving ECC keys with
    non-standard ECDH parameters to OpenPGP cards.  [rG92af3f88a9]


IIUC, 2.2.43 will be soon available.  In the repo of STABLE-BRANCH-2-2
branch, we have a fix for:

  * gpg: Do not keep an unprotected smartcard backup key on disk.  See
    https://gnupg.org/blog/20240125-smartcard-backup-key.html for a
    security advisory.  [T6944]

It's better to have this in Debian packaging.
-- 



More information about the pkg-gnupg-maint mailing list