Elektrine
EN
Log in Register
Paige Chat Timeline Communities Gallery Videos Email DNS VPN Uptime Kairo
Back to Timeline
Remote

FreePG Project

@freepg@infosec.exchange
  • Open on infosec.exchange

FreePG maintains a shared patchset for #GnuPG downstream packagers to track, maintain, and apply commonly-used patches. The project goals are:

* Minimise divergence from the IETF #OpenPGP specification
* Support reading of LibrePGP artifacts for compatibility
* Fix security issues that remain unresolved upstream
* Support the maintenance needs of downstream distributions

0 Followers
0 Following
3 Posts
Joined August 27, 2025
Homepage:
https://freepg.org
Mailing List:
https://openpgp.simplelists.com/freepg

Posts

Open post
freepg
FreePG Project @freepg@infosec.exchange · Jul 02, 2026
FreePG Project
@freepg@infosec.exchange

FreePG maintains a shared patchset for #GnuPG downstream packagers to track, maintain, and apply commonly-used patches. The project goals are: * Minimise divergence from the IETF #OpenPGP specification * Support reading of LibrePGP artifacts for compatibility * Fix security issues that remain unresolved upstream * Support the maintenance needs of downstream distributions

infosec.exchange

#GnuPG 2.4.9-freepg-1 has been released.

It contains backported bugfixes from upstream GnuPG 2.5.x, plus all the previous FreePG patches.

Since 31st of December last year, upstream GnuPG is no longer providing bugfix releases for the 2.4.x branch, in an attempt to encourage people to upgrade to 2.5.x. The FreePG project considers the 2.5.x branch to be experimental, primarily due to its use of non-OpenPGP algorithms by default, and is continuing to support 2.4.x by porting bugfixes from the 2.5.x and 2.2.x branches, which are both still maintained upstream.

Release Notes Noteworthy changes in version 2.4.9-freepg-1 (2026-07-02)
  • Backported several bugfixes from 2.5:

    • dirmngr: Fix a call of calloc.
    • agent: Fix the regression in pkdecrypt with TPM RSA.
    • tpm: Fix possible buffer overflow in PKDECRYPT
    • gpg: Fix armor parsing when no CRC is found.
    • gpg: Fix armored input parsing.
    • gpg: Fix handling with no CRC armor.
    • gpgsm: Require a minimum tag length for GCM decryption.
    • gpg: Fix edge case in --refresh-keys
  • Fixed several tests introduced by the "tests: add test cases for import without uid" patch.

https://gitlab.com/freepg/gnupg/-/releases/gnupg-2.4.9-freepg-1

0
0
0
0
Open post
freepg
FreePG Project @freepg@infosec.exchange · Apr 30, 2026
FreePG Project
@freepg@infosec.exchange

FreePG maintains a shared patchset for #GnuPG downstream packagers to track, maintain, and apply commonly-used patches. The project goals are: * Minimise divergence from the IETF #OpenPGP specification * Support reading of LibrePGP artifacts for compatibility * Fix security issues that remain unresolved upstream * Support the maintenance needs of downstream distributions

infosec.exchange

#GnuPG 2.5.19-freepg has been released.

It contains all the latest bug fixes from upstream GnuPG, plus the usual FreePG patches.

Note that the FreePG project considers the 2.5.x branch to be experimental, and does not enable non-standard OpenPGP algorithms unless “--compliance=gnupg” is explicitly set.

Release Notes
=============

Noteworthy changes in version 2.5.19-freepg (2026-04-30)
-------------------------------------------------

* No FreePG-specific changes.

https://gitlab.com/freepg/gnupg/-/releases/gnupg-2.5.19-freepg

Upstream's release notes follow.

-----

Noteworthy changes in version 2.5.19 (2026-04-24)
-------------------------------------------------

* New and extended features:

- gpg: New option --use-ocb-sym. [rGccdcdfbb37]

- gpg: New options --show-[only-]session-hash. [rGecd0f7afa1]

- gpgsm: Allow cipher mode to be part of the algo given to the
--cipher-algo option. [T3979]

- gpgsm: Emit more details when failing to check a crlDP. [T8221]

- agent: Improve pinentry behavior and texts in smartcard context.
[T6425]

- dirmngr: New keyword "clear" for --keyserver. [rG2ab4cba36c]

* Bug fixes:

- gpg: Fix edge case in --refresh-keys. [T8197]

- gpg: Don't call gcry_kdf_derive with empty passphrase. [T7739]

- gpgsm: Skip the optional PKCS#12 PBES2 keyLength parameter to
allow import of recently issued certificates by the German
Telekom. [rGc8c9604bba]

- gpgsm: Fix a bug so that a certificate can be signed using a
different algo. [rG66fdafab3c]

- gpgsm: Make GCM fully compliant in de-vs mode. [rG04fd775fce]

- gpgsm: Add a certificate chain check for de-vs compliance.
[T8188]

- gpgsm: Show rsaPSS certificates as de-vs compliant in listings.
[T8222]

- agent: Rework the trustlist reading code to finally allow a
trustlist.txt with a missing trailing LF. [T8078]

- ssh: Fix RSA padding in signature handling. [T7882,T8202]

- gpgtar: Fix -C (--directory) to check the output directory.
[T8159]

* Other changes:

- agent: Raise an error when p >= q for RSA keys to detect
incorrect generated *PGP keys. [T8171]

Release-info: https://dev.gnupg.org/T7998

infosec.exchange

Infosec Exchange

4
0
5
0
Open post
freepg
FreePG Project @freepg@infosec.exchange · Mar 11, 2026
FreePG Project
@freepg@infosec.exchange

FreePG maintains a shared patchset for #GnuPG downstream packagers to track, maintain, and apply commonly-used patches. The project goals are: * Minimise divergence from the IETF #OpenPGP specification * Support reading of LibrePGP artifacts for compatibility * Fix security issues that remain unresolved upstream * Support the maintenance needs of downstream distributions

infosec.exchange

FreePG now has a public mailing list for general discussion and formal decision-making.

Thanks to simplelists.com for their kind sponsorship!

https://openpgp.simplelists.com/freepg

2
0
4
0

Remote instance

infosec.exchange
Open on original server
313k7r1n3
Elektrine

Tor hidden service

elekhj7afj4qnrr4yd3bkzslsyo5jgfxw3orgjkhlcxifueodybyiiad.onion

Platform

  • Email
  • Chat
  • Timeline
  • Communities
  • VPN
  • DNS

Company

  • About
  • Contact
  • FAQ

Legal

  • Terms of Service
  • Privacy Policy
  • Warrant Canary
  • Lite (no JS)
  • VPN Policy
  • Source code

Support

  • support@elektrine.com
  • Report Security Issue
Mail client setup IMAP mail.elektrine.com:993 POP3 mail.elektrine.com:995 SMTP mail.elektrine.com:465
© 2026 Elektrine. All rights reserved. Server: 00:07:32 UTC