GnuPG (the GNU Privacy Guard or GPG) is GNU's tool for secure communication and data storage. It can be used to encrypt data and to create digital signatures. It includes an advanced key management facility and is compliant with the proposed OpenPGP Internet standard as described in RFC2440. As such, it is meant to be compatible with PGP from NAI, Inc. Because it does not use any patented algorithms, it can be used without any restrictions.

2009-09-03 19:46

2048 bit RSA keys are now generated by default. The default hash algorithm preferences have changed to prefer SHA-256 over SHA-1. 2048 bit DSA keys are now generated to use a 256 bit hash algorithm. Support for v2 OpenPGP cards was added. Support for the Camellia cipher (RFC-5581) was implemented. Support for HKP keyservers over SSL ("HKPS") was added. The algorithm for computing the SIG_ID status was changed to match the one used in version 2.0.10. File locking was improved. A memory leak which made imports of many keys very slow was fixed. Many smaller bugs were fixed.
標籤: Minor feature enhancements, Minor bugfixes, Monolithic

2009-07-09 00:13

GPGSM now always lists ephemeral certificates if specified by fingerprint or keygrip. GPGSM now also returns information about smartcards. It is now made sure not to leak file descriptors if running gpg-agent with a command. The order of the confirmation questions for root certificates was changed, and negative answers are stored in trustlist.txt. Better synchronization of concurrent smartcard sessions was implemented. Support for 2048 bit OpenPGP cards and for Telesec Netkey 3 cards was added. A potential Mac OS X system freeze is now avoided.
標籤: Minor bugfixes, Minor feature enhancements, Modular

2009-04-03 06:15

Many enhancements and fixes were made.
標籤: Modular, Minor security fixes

2008-03-30 08:35

A possible memory corruption while importing
OpenPGP keys, as reported in CVE-2008-1530, was
fixed. The Admin PIN for OpenPGP cards may now be
entered with the pinpad. Certificate chain
construction was improved. The PKITS framework was
extended. A bug in the ambigious name detection
was fixed. Further minor bugfixes were made.
標籤: Minor security fixes, Modular

2008-03-30 08:33

A possible memory corruption while importing
OpenPGP keys was fixed. AES encryption performance
was improved by more than 20% on x86, and
decryption is also slightly faster.
標籤: Minor security fixes, Monolithic

