[pkg-gnupg-maint] Bug#1105820: Bug#1105820: Gnupg-in-debian considers comment packets invalid

Sune Stolborg Vuorela sune at debian.org
Thu May 15 13:04:43 BST 2025


On Thursday, May 15, 2025 12:19:32 PM CEST Sune Stolborg Vuorela wrote:
> Since
> https://salsa.debian.org/debian/gnupg2/-/blob/debian/unstable/debian/patches
> / freepg/0019-Disallow-compressed-signatures-and-certificates.patch?
> ref_type=heads#L188

> This change also breaks the part of Poppler's CI system that is based off
> randomly regenerated Debian containers. (and they were very recent
> regenerated)

Also, occasionally the poppler test suite actually still passes, so there is 
something fishy in that 0019 patch.

Rebuilding without that patch makes it consistently succeed.

A data file is used here, and the signature can be cut out with pdfsig.

https://gitlab.freedesktop.org/poppler/test/-/raw/
91ee031c882634c36f2f0f2f14eb6646dd542fb9/unittestcases/some-text-
pgp_signed.pdf?inline=false

The signature blob is a detached signature packet followed by a finite length 
comment packet.

/Sune

-- 
I didn’t stop pretending when I became an adult, it’s just that when I was a 
kid I was pretending that I fit into the rules and structures of this world. 
And now that I’m an adult, I pretend that those rules and structures exist.
   - zefrank



More information about the pkg-gnupg-maint mailing list