Hello community,

here is the log from the commit of package gpg2 for openSUSE:Factory checked in 
at 2014-06-18 10:59:08
++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++
Comparing /work/SRC/openSUSE:Factory/gpg2 (Old)
 and      /work/SRC/openSUSE:Factory/.gpg2.new (New)
++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++

Package is "gpg2"

Changes:
--------
--- /work/SRC/openSUSE:Factory/gpg2/gpg2.changes        2014-05-02 
19:21:28.000000000 +0200
+++ /work/SRC/openSUSE:Factory/.gpg2.new/gpg2.changes   2014-06-18 
10:59:13.000000000 +0200
@@ -1,0 +2,28 @@
+Tue Jun  3 21:55:34 UTC 2014 - [email protected]
+
+- update to 2.0.23:
+ * gpg: Reject signatures made using the MD5 hash algorithm unless the
+   new option --allow-weak-digest-algos or --pgp2 are given.
+ * gpg: Do not create a trustdb file if --trust-model=always is used.
+ * gpg: Only the major version number is by default included in the
+   armored output.
+ * gpg: Print a warning if the Gnome-Keyring-Daemon intercepts the
+   communication with the gpg-agent.
+ * gpg: The format of the fallback key listing ("gpg KEYFILE") is now more
+   aligned to the regular key listing ("gpg -k").
+ * gpg: The option--show-session-key prints its output now before the
+   decryption of the bulk message starts.
+ * gpg: New %U expando for the photo viewer.
+ * gpgsm: Improved handling of re-issued CA certificates.
+ * scdaemon: Various fixes for pinpad equipped card readers.
+ * Minor bug fixes.
+- Packaging changes:
+  * add gpgtar utility
+  * update and use use source URL for tarball signing key
+  * removed gnupg-2.0.9-RSA_ES.patch, applied upstream
+  * updated for context changes:
+    gnupg-add_legacy_FIPS_mode_option.patch
+    gnupg-2.0.18-files-are-digests.patch
+    gnupg-dont-fail-with-seahorse-agent.patch
+
+-------------------------------------------------------------------

Old:
----
  gnupg-2.0.22.tar.bz2
  gnupg-2.0.22.tar.bz2.sig
  gnupg-2.0.9-RSA_ES.patch

New:
----
  gnupg-2.0.23.tar.bz2
  gnupg-2.0.23.tar.bz2.sig

++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++

Other differences:
------------------
++++++ gpg2.spec ++++++
--- /var/tmp/diff_new_pack.W9rP5m/_old  2014-06-18 10:59:14.000000000 +0200
+++ /var/tmp/diff_new_pack.W9rP5m/_new  2014-06-18 10:59:14.000000000 +0200
@@ -17,7 +17,7 @@
 
 
 Name:           gpg2
-Version:        2.0.22
+Version:        2.0.23
 Release:        0
 BuildRequires:  automake >= 1.10
 BuildRequires:  expect
@@ -55,9 +55,9 @@
 Group:          Productivity/Networking/Security
 Source:         ftp://ftp.gnupg.org/gcrypt/gnupg/gnupg-%{version}.tar.bz2
 Source2:        ftp://ftp.gnupg.org/gcrypt/gnupg/gnupg-%{version}.tar.bz2.sig
+Source3:        https://www.gnupg.org/signature_key.html#/%{name}.keyring
 Patch1:         gnupg-2.0.18-tmpdir.diff
 Patch2:         gnupg-2.0.4-install_tools.diff
-Patch3:         gnupg-2.0.9-RSA_ES.patch
 Patch4:         gnupg-2.0.9-langinfo.patch
 Patch5:         gnupg-2.0.18-files-are-digests.patch
 Patch6:         gnupg-dont-fail-with-seahorse-agent.patch
@@ -78,7 +78,6 @@
 %setup  -q -n gnupg-%version
 %patch1 -p1
 %patch2
-%patch3 -p1
 %patch4 -p1
 %patch5 -p1
 %patch6 -p1
@@ -108,6 +107,7 @@
     --enable-ldap \
     --enable-gpgsm=yes \
     --enable-gpg \
+    --enable-gpgtar \
     --with-gnu-ld
 
 make %{?_smp_mflags}

++++++ gnupg-2.0.18-files-are-digests.patch ++++++
--- /var/tmp/diff_new_pack.W9rP5m/_old  2014-06-18 10:59:14.000000000 +0200
+++ /var/tmp/diff_new_pack.W9rP5m/_new  2014-06-18 10:59:14.000000000 +0200
@@ -1,7 +1,14 @@
-diff -rup gnupg-2.0.18.orig/g10/gpg.c gnupg-2.0.18/g10/gpg.c
---- gnupg-2.0.18.orig/g10/gpg.c        2011-07-22 13:00:44.000000000 +0100
-+++ gnupg-2.0.18/g10/gpg.c     2011-08-06 21:07:32.000000000 +0100
-@@ -341,6 +341,7 @@ enum cmd_and_opt_values
+---
+ g10/gpg.c     |    4 +++
+ g10/options.h |    1 
+ g10/sign.c    |   66 
+++++++++++++++++++++++++++++++++++++++++++++++++++++-----
+ 3 files changed, 66 insertions(+), 5 deletions(-)
+
+Index: gnupg-2.0.23/g10/gpg.c
+===================================================================
+--- gnupg-2.0.23.orig/g10/gpg.c        2014-06-03 22:36:44.000000000 +0100
++++ gnupg-2.0.23/g10/gpg.c     2014-06-03 22:36:55.000000000 +0100
+@@ -345,6 +345,7 @@ enum cmd_and_opt_values
      oTTYtype,
      oLCctype,
      oLCmessages,
@@ -9,7 +16,7 @@
      oXauthority,
      oGroup,
      oUnGroup,
-@@ -706,6 +707,7 @@ static ARGPARSE_OPTS opts[] = {
+@@ -711,6 +712,7 @@ static ARGPARSE_OPTS opts[] = {
    ARGPARSE_s_s (oPersonalDigestPreferences, 
"personal-digest-preferences","@"),
    ARGPARSE_s_s (oPersonalCompressPreferences,
                                           "personal-compress-preferences", 
"@"),
@@ -17,15 +24,15 @@
  
    /* Aliases.  I constantly mistype these, and assume other people do
       as well. */
-@@ -1996,6 +1998,7 @@ main (int argc, char **argv)
+@@ -2001,6 +2003,7 @@ main (int argc, char **argv)
      opt.def_sig_expire="0";
      opt.def_cert_expire="0";
      set_homedir ( default_homedir () );
 +      opt.files_are_digests=0;
      opt.passphrase_repeat=1;
+     opt.emit_version = 1; /* Limit to the major number.  */
  
-     /* Check whether we have a config file on the command line.  */
-@@ -2484,6 +2487,7 @@ main (int argc, char **argv)
+@@ -2491,6 +2494,7 @@ main (int argc, char **argv)
          case oPhotoViewer: opt.photo_viewer = pargs.r.ret_str; break;
          case oForceV3Sigs: opt.force_v3_sigs = 1; break;
          case oNoForceV3Sigs: opt.force_v3_sigs = 0; break;
@@ -33,11 +40,11 @@
            case oForceV4Certs: opt.force_v4_certs = 1; break;
            case oNoForceV4Certs: opt.force_v4_certs = 0; break;
          case oForceMDC: opt.force_mdc = 1; break;
-Only in gnupg-2.0.18/g10: gpg.c.orig
-diff -rup gnupg-2.0.18.orig/g10/options.h gnupg-2.0.18/g10/options.h
---- gnupg-2.0.18.orig/g10/options.h    2011-07-22 13:00:44.000000000 +0100
-+++ gnupg-2.0.18/g10/options.h 2011-08-06 21:07:32.000000000 +0100
-@@ -194,6 +194,7 @@ struct
+Index: gnupg-2.0.23/g10/options.h
+===================================================================
+--- gnupg-2.0.23.orig/g10/options.h    2014-06-03 22:36:44.000000000 +0100
++++ gnupg-2.0.23/g10/options.h 2014-06-03 22:36:55.000000000 +0100
+@@ -198,6 +198,7 @@ struct
    int no_auto_check_trustdb;
    int preserve_permissions;
    int no_homedir_creation;
@@ -45,9 +52,10 @@
    struct groupitem *grouplist;
    int mangle_dos_filenames;
    int enable_progress_filter;
-diff -rup gnupg-2.0.18.orig/g10/sign.c gnupg-2.0.18/g10/sign.c
---- gnupg-2.0.18.orig/g10/sign.c       2011-07-22 13:00:44.000000000 +0100
-+++ gnupg-2.0.18/g10/sign.c    2011-08-06 21:07:32.000000000 +0100
+Index: gnupg-2.0.23/g10/sign.c
+===================================================================
+--- gnupg-2.0.23.orig/g10/sign.c       2014-06-03 22:36:44.000000000 +0100
++++ gnupg-2.0.23/g10/sign.c    2014-06-03 22:36:55.000000000 +0100
 @@ -665,8 +665,12 @@ write_signature_packets (SK_LIST sk_list
              mk_notation_policy_etc (sig, NULL, sk);
            }

++++++ gnupg-2.0.22.tar.bz2 -> gnupg-2.0.23.tar.bz2 ++++++
++++ 88396 lines of diff (skipped)

++++++ gnupg-add_legacy_FIPS_mode_option.patch ++++++
--- /var/tmp/diff_new_pack.W9rP5m/_old  2014-06-18 10:59:17.000000000 +0200
+++ /var/tmp/diff_new_pack.W9rP5m/_new  2014-06-18 10:59:17.000000000 +0200
@@ -1,8 +1,13 @@
-Index: gnupg-2.0.22/doc/gpg.texi
+---
+ doc/gpg.texi |   18 ++++++++++++++++++
+ g10/gpg.c    |    9 +++++++++
+ 2 files changed, 27 insertions(+)
+
+Index: gnupg-2.0.23/doc/gpg.texi
 ===================================================================
---- gnupg-2.0.22.orig/doc/gpg.texi     2013-10-04 19:08:32.000000000 +0200
-+++ gnupg-2.0.22/doc/gpg.texi  2014-04-30 12:42:35.129468147 +0200
-@@ -1795,6 +1795,24 @@ implies, this option is for experts only
+--- gnupg-2.0.23.orig/doc/gpg.texi     2014-06-03 22:22:56.000000000 +0100
++++ gnupg-2.0.23/doc/gpg.texi  2014-06-03 22:25:03.000000000 +0100
+@@ -1851,6 +1851,24 @@ implies, this option is for experts only
  understand the implications of what it allows you to do, leave this
  off. @option{--no-expert} disables this option.
  
@@ -27,29 +32,29 @@
  @end table
  
  
-Index: gnupg-2.0.22/g10/gpg.c
+Index: gnupg-2.0.23/g10/gpg.c
 ===================================================================
---- gnupg-2.0.22.orig/g10/gpg.c        2014-04-30 12:42:35.117468014 +0200
-+++ gnupg-2.0.22/g10/gpg.c     2014-04-30 12:42:35.129468147 +0200
-@@ -368,6 +368,7 @@ enum cmd_and_opt_values
-     oDisableDSA2,
+--- gnupg-2.0.23.orig/g10/gpg.c        2014-06-03 22:24:52.000000000 +0100
++++ gnupg-2.0.23/g10/gpg.c     2014-06-03 22:25:56.000000000 +0100
+@@ -369,6 +369,7 @@ enum cmd_and_opt_values
      oAllowMultipleMessages,
      oNoAllowMultipleMessages,
+     oAllowWeakDigestAlgos,
 +    oSetLegacyFips,
  
      oNoop
    };
-@@ -744,6 +745,7 @@ static ARGPARSE_OPTS opts[] = {
-   ARGPARSE_s_n (oDisableDSA2, "disable-dsa2", "@"),
+@@ -746,6 +747,7 @@ static ARGPARSE_OPTS opts[] = {
    ARGPARSE_s_n (oAllowMultipleMessages,      "allow-multiple-messages", "@"),
    ARGPARSE_s_n (oNoAllowMultipleMessages, "no-allow-multiple-messages", "@"),
+   ARGPARSE_s_n (oAllowWeakDigestAlgos, "allow-weak-digest-algos", "@"),
 +  ARGPARSE_s_n (oSetLegacyFips, "set-legacy-fips", "@"),
  
    /* These two are aliases to help users of the PGP command line
       product use gpg with minimal pain.  Many commands are common
-@@ -2948,6 +2950,13 @@ main (int argc, char **argv)
-           opt.flags.allow_multiple_messages=0;
-           break;
+@@ -2959,6 +2961,13 @@ main (int argc, char **argv)
+             opt.flags.allow_weak_digest_algos = 1;
+             break;
  
 +        case oSetLegacyFips:
 +          if(gcry_fips_mode_active())

++++++ gnupg-dont-fail-with-seahorse-agent.patch ++++++
--- /var/tmp/diff_new_pack.W9rP5m/_old  2014-06-18 10:59:17.000000000 +0200
+++ /var/tmp/diff_new_pack.W9rP5m/_new  2014-06-18 10:59:17.000000000 +0200
@@ -2,10 +2,10 @@
  g10/passphrase.c |    2 +-
  1 file changed, 1 insertion(+), 1 deletion(-)
 
-Index: gnupg-2.0.15/g10/passphrase.c
+Index: gnupg-2.0.23/g10/passphrase.c
 ===================================================================
---- gnupg-2.0.15.orig/g10/passphrase.c 2010-01-11 15:11:17.000000000 +0100
-+++ gnupg-2.0.15/g10/passphrase.c      2010-04-07 16:06:49.000000000 +0200
+--- gnupg-2.0.23.orig/g10/passphrase.c 2014-06-03 07:59:18.000000000 +0100
++++ gnupg-2.0.23/g10/passphrase.c      2014-06-03 22:37:30.000000000 +0100
 @@ -72,7 +72,7 @@ encode_s2k_iterations (int iterations)
          {
            /* Don't print an error if an older agent is used.  */
@@ -13,5 +13,5 @@
 -            log_error (_("problem with the agent: %s\n"), gpg_strerror (err));
 +            log_info (_("problem with the agent: %s\n"), gpg_strerror (err));
            /* Default to 65536 which we used up to 2.0.13.  */
-           return 96; 
+           return 96;
          }

++++++ gpg2.keyring ++++++
++++ 1439 lines (skipped)
++++ between gpg2.keyring
++++ and /work/SRC/openSUSE:Factory/.gpg2.new/gpg2.keyring

-- 
To unsubscribe, e-mail: [email protected]
For additional commands, e-mail: [email protected]

Reply via email to