[issue76] kmail: Error showing a mail signed with an encryption-only certificate

Bernhard Herzog aegypten-issues at intevation.de
Thu Feb 5 18:26:28 CET 2004


New submission from Bernhard Herzog <bh at intevation.de>:

I have created a mail that is signed with a certificate that can only be used
for encryption and not for signing.  Kmail only shows the following in yellow:

Not enough information to check signature. [Details]
Status: No status information available.

End of signed message

The actual text of the mesage is not shown at all.


watchgnupg output:

[client at fd 4 connected]
  4 - 2004-02-05 19:06:55 gpgsm[3334.0x8071ec8] DBG: -> OK GNU Privacy Guard's
S/M server ready
  4 - 2004-02-05 19:06:55 gpgsm[3334.0x8071ec8] DBG: <- OPTION
display=localhost:21.0
  4 - 2004-02-05 19:06:55 gpgsm[3334.0x8071ec8] DBG: -> OK
  4 - 2004-02-05 19:06:55 gpgsm[3334.0x8071ec8] DBG: <- OPTION ttyname=/dev/pts/16
  4 - 2004-02-05 19:06:55 gpgsm[3334.0x8071ec8] DBG: -> OK
  4 - 2004-02-05 19:06:55 gpgsm[3334.0x8071ec8] DBG: <- OPTION ttytype=xterm
  4 - 2004-02-05 19:06:55 gpgsm[3334.0x8071ec8] DBG: -> OK
  4 - 2004-02-05 19:06:55 gpgsm[3334.0x8071ec8] DBG: <- INPUT FD=27
  4 - 2004-02-05 19:06:55 gpgsm[3334.0x8071ec8] DBG: -> OK
  4 - 2004-02-05 19:06:55 gpgsm[3334.0x8071ec8] DBG: <- OUTPUT FD=31
  4 - 2004-02-05 19:06:55 gpgsm[3334.0x8071ec8] DBG: -> OK
  4 - 2004-02-05 19:06:55 gpgsm[3334.0x8071ec8] DBG: <- VERIFY
  4 - 2004-02-05 19:06:55 gpgsm[3334]: DBG: signer 0 - issuer: `CN=Test-ZS
5,O=Intevation GmbH,C=DE'
  4 - 2004-02-05 19:06:55 gpgsm[3334]: DBG: signer 0 - serial: 10
  4 - 2004-02-05 19:06:55 gpgsm[3334]: DBG: signer 0 - digest algo: 2
  4 - 2004-02-05 19:06:55 gpgsm[3334]: DBG: signer 0 - content-type attribute:
1.2.840.113549.1.7.1
  4 - 2004-02-05 19:06:55 gpgsm[3334]: DBG: signer 0 - signature available
  4 - 2004-02-05 19:06:55 gpgsm[3334]: Signature made 2004-02-05 17:48:35 using
certificate ID 6F00BB7F
  4 - 2004-02-05 19:06:55 gpgsm[3334]: DBG: public key:  28 31 30 3A 70 75 62 6C
69 63 2D 6B 65 79 28 33 3A 72 73 61 28 31 3A 6E 31 32 39 3A 00 B1 0D 26 60 A8 36
CF C5 17 D6 7C 97 58 EB 1E 80 F4 33 DC 1C BC 2E 25 0F B8 4A 7C AD 5F A3 BC BE E7
CE AA CD C6 F6 C2 F2 8C 0E 38 95 11 FE E4 8B 0D BB CF 40 57 DA A2 41 15 60 79 04
3C DE C8 50 8A CB 3F C6 DA 6F 84 CB FD AC 6E D1 3A 2A 1F 97 84 8B 2F 2B 9A 7E DE
D3 57 98 44 FC 5F AA 0F 25 43 E5 7B 1F B6 C1 51 37 B0 76 FC D7 45 D9 15 EB 6C 8A
6C 2C 5D F1 39 E3 68 44 FD 96 89 EE 1F 89 29 28 31 3A 65 33 3A 01 00 01 29 29 29
  4 - 2004-02-05 19:06:55 gpgsm[3334]: DBG: encoded hash: 00 01 FF FF FF FF FF
FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF
FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF
FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF
FF FF FF FF 00 30 21 30 09 06 05 2B 0E 03 02 1A 05 00 04 14 90 08 CA 97 9A 8F 72
50 D6 38 0C 18 23 E8 79 5E 36 71 AD 80
  4 - 2004-02-05 19:06:55 gpgsm[3334]: DBG: gcry_pk_verify: Success
  4 - 2004-02-05 19:06:55 gpgsm[3334]: certificate should have not been used for
signing
  4 - 2004-02-05 19:06:55 gpgsm[3334.0x8071ec8] DBG: -> S ERROR verify.keyusage 125
  4 - 2004-02-05 19:06:55 gpgsm[3334]: DBG: signature okay - checking certs
  4 - 2004-02-05 19:06:55 gpgsm[3334]: DBG: BEGIN Certificate `subject':
  4 - 2004-02-05 19:06:55 gpgsm[3334]: DBG:      serial: 10
  4 - 2004-02-05 19:06:55 gpgsm[3334]: DBG:   notBefore: 2004-02-05 13:53:45
  4 - 2004-02-05 19:06:55 gpgsm[3334]: DBG:    notAfter: 2005-03-31 13:53:45
  4 - 2004-02-05 19:06:55 gpgsm[3334]: DBG:      issuer: CN=Test-ZS
5,O=Intevation GmbH,C=DE
  4 - 2004-02-05 19:06:55 gpgsm[3334]: DBG:     subject: [ 43 4E 3D C3 84 67 79
70 74 65 6E 20 54 65 73 74 20 42 65 6E 75 74 7A 65 72 20 39 2C 4F 55 3D 54 65 73
74 20 45 6E 63 72 79 70 74 2D 4F 6E 6C 79 2C 4F 3D 49 6E 74 65 76 61 74 69 6F 6E
20 47 6D 62 48 2C 43 3D 44 45 ]
  4 - 2004-02-05 19:06:55 gpgsm[3334]: DBG:   hash algo: 1.2.840.113549.1.1.4
  4 - 2004-02-05 19:06:55 gpgsm[3334]: DBG:   SHA1 Fingerprint:
76:E1:40:04:D9:DF:FF:33:84:1F:2C:6B:A6:FA:6F:5D:6F:00:BB:7F
  4 - 2004-02-05 19:06:55 gpgsm[3334]: DBG: END Certificate
  4 - 2004-02-05 19:06:55 gpgsm[3334]: DBG: connection to dirmngr established
  4 - 2004-02-05 19:06:55 gpgsm[3334]: DBG: got issuer's certificate:
  4 - 2004-02-05 19:06:55 gpgsm[3334]: DBG: BEGIN Certificate `issuer':
  4 - 2004-02-05 19:06:55 gpgsm[3334]: DBG:      serial: 02
  4 - 2004-02-05 19:06:55 gpgsm[3334]: DBG:   notBefore: 2003-06-28 17:39:18
  4 - 2004-02-05 19:06:55 gpgsm[3334]: DBG:    notAfter: 2008-06-27 17:39:18
  4 - 2004-02-05 19:06:55 gpgsm[3334]: DBG:      issuer: CN=Wurzel ZS
3,O=Intevation GmbH,C=DE
  4 - 2004-02-05 19:06:55 gpgsm[3334]: DBG:     subject: CN=Test-ZS
5,O=Intevation GmbH,C=DE
  4 - 2004-02-05 19:06:55 gpgsm[3334]: DBG:   hash algo: 1.2.840.113549.1.1.4
  4 - 2004-02-05 19:06:55 gpgsm[3334]: DBG:   SHA1 Fingerprint:
AF:AA:B9:D2:7E:4B:4B:6B:40:08:91:A1:63:D3:1E:2A:85:0B:B1:EC
  4 - 2004-02-05 19:06:55 gpgsm[3334]: DBG: END Certificate
  4 - 2004-02-05 19:06:55 gpgsm[3334]: DBG: signature value: 28 37 3A 73 69 67
2D 76 61 6C 28 33 3A 72 73 61 28 31 3A 73 31 32 38 3A 77 56 8D 2E 16 FF A0 65 B3
CB DC 1A 14 47 DF 9B C8 04 F2 3A 18 84 6A 36 6E 68 26 76 97 96 9B 0A 2C 2A BC 1D
E7 97 F2 30 2A 34 65 9B C1 68 38 32 11 5F 29 10 51 59 70 37 C6 0C 67 56 F8 4F 9D
B8 C5 0B 79 DF E3 FD BE 5A 9A 60 DE 94 0A C6 41 BB 25 01 91 FF 7E 97 C1 92 9E D1
90 62 05 B5 8A 79 8D E0 61 D9 E8 56 D7 4E C5 EE 84 A0 34 F8 26 4B 59 7E D9 89 8C
A1 2D DF E7 A2 4C 7E 18 D1 22 C4 29 29 29
  4 - 2004-02-05 19:06:55 gpgsm[3334]: DBG: encoded hash: 00 01 FF FF FF FF FF
FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF
FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF
FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF
FF FF FF FF FF 00 30 20 30 0C 06 08 2A 86 48 86 F7 0D 02 05 05 00 04 10 FF 6B E0
9D 3D 3C F3 C9 9F 15 E5 CD DC 58 61 15
  4 - 2004-02-05 19:06:55 gpgsm[3334]: DBG: gcry_pk_verify: Success
  4 - 2004-02-05 19:06:55 gpgsm[3334]: DBG: got issuer's certificate:
  4 - 2004-02-05 19:06:55 gpgsm[3334]: DBG: BEGIN Certificate `issuer':
  4 - 2004-02-05 19:06:55 gpgsm[3334]: DBG:      serial: 00
  4 - 2004-02-05 19:06:55 gpgsm[3334]: DBG:   notBefore: 2003-06-28 14:47:37
  4 - 2004-02-05 19:06:55 gpgsm[3334]: DBG:    notAfter: 2013-06-27 14:47:37
  4 - 2004-02-05 19:06:55 gpgsm[3334]: DBG:      issuer: CN=Wurzel ZS
3,O=Intevation GmbH,C=DE
  4 - 2004-02-05 19:06:55 gpgsm[3334]: DBG:     subject: CN=Wurzel ZS
3,O=Intevation GmbH,C=DE
  4 - 2004-02-05 19:06:55 gpgsm[3334]: DBG:   hash algo: 1.2.840.113549.1.1.4
  4 - 2004-02-05 19:06:55 gpgsm[3334]: DBG:   SHA1 Fingerprint:
A6:93:5D:D3:4E:F3:08:79:73:C7:06:FC:31:1A:A2:CC:F7:33:76:5B
  4 - 2004-02-05 19:06:55 gpgsm[3334]: DBG: END Certificate
  4 - 2004-02-05 19:06:55 gpgsm[3334]: DBG: signature value: 28 37 3A 73 69 67
2D 76 61 6C 28 33 3A 72 73 61 28 31 3A 73 31 32 38 3A 55 72 68 A4 B4 3D C4 43 70
98 D0 5B F9 E6 02 01 CA 95 9A 20 70 F4 A5 F2 4E 5C 39 B2 4D B1 47 A8 CB F4 74 23
95 35 E0 17 B7 54 92 39 4A F6 4C EB EF DD 8F 21 D3 F6 F5 00 9D 46 5D F4 01 9D B0
03 D8 3C 79 D3 DC D4 6E 90 EF D8 C3 5D B0 75 FF 4E D1 7A 9C 3F 07 26 77 64 28 94
02 2C B3 F4 3F 8F F3 C2 A6 E4 56 D8 93 FD AF CE A0 73 37 55 FB 8D 22 EA 95 10 19
12 48 14 CB 68 5E 05 82 A3 D5 6F 29 29 29
  4 - 2004-02-05 19:06:55 gpgsm[3334]: DBG: encoded hash: 00 01 FF FF FF FF FF
FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF
FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF
FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF
FF FF FF FF FF 00 30 20 30 0C 06 08 2A 86 48 86 F7 0D 02 05 05 00 04 10 46 A3 48
87 92 A3 39 F7 0F 32 0D A3 5A 28 33 64
  4 - 2004-02-05 19:06:55 gpgsm[3334]: DBG: gcry_pk_verify: Success
  4 - 2004-02-05 19:06:55 gpgsm[3334]: DBG: signature value: 28 37 3A 73 69 67
2D 76 61 6C 28 33 3A 72 73 61 28 31 3A 73 31 32 38 3A 3B CF 1F 6F 1E 57 26 20 55
DA 64 E7 98 58 09 5C BE F2 F3 BD F4 93 21 00 21 33 AA B7 48 56 45 4F 58 49 92 DF
52 73 97 B3 5B 87 41 0F 58 D9 6F 49 AF 9C 5C 53 9A 2F 36 31 77 50 96 9C EA 90 59
18 6A DD 47 78 E8 61 92 2D F9 94 99 87 18 54 42 3D 0F 2C C0 C7 F5 1C 6F 5A BE BA
8D 15 8D EB 4C CB 23 6B ED D2 A3 E4 90 B8 18 D1 3D 4D 93 10 43 03 E6 88 76 5B 21
C0 25 44 6A F4 17 4A 19 2C C4 D4 29 29 29
  4 - 2004-02-05 19:06:55 gpgsm[3334]: DBG: encoded hash: 00 01 FF FF FF FF FF
FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF
FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF
FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF
FF FF FF FF FF 00 30 20 30 0C 06 08 2A 86 48 86 F7 0D 02 05 05 00 04 10 2B 3E 78
99 A7 33 87 E3 75 8A 90 78 EA 96 32 03
  4 - 2004-02-05 19:06:55 gpgsm[3334]: DBG: gcry_pk_verify: Success
  4 - 2004-02-05 19:06:55 gpgsm[3334]: DBG: connection to agent established
  4 - 2004-02-05 19:06:55 gpgsm[3334.0x8071ec8] DBG: -> S GOODSIG
  4 - 2004-02-05 19:06:55 gpgsm[3334.0x8071ec8] DBG: -> S VALIDSIG
76E14004D9DFFF33841F2C6BA6FA6F5D6F00BB7F 2004-02-05 20040205T174835 20050331T135345
  4 - 2004-02-05 19:06:55 gpgsm[3334]: Good signature from "/CN=Ã\x84gypten Test
Benutzer 9/OU=Test Encrypt-Only/O=Intevation GmbH/C=DE"
  4 - 2004-02-05 19:06:55 gpgsm[3334]:                 aka
"aegyptentest9 at intevation.de"
  4 - 2004-02-05 19:06:55 gpgsm[3334.0x8071ec8] DBG: -> S TRUST_FULLY
  4 - 2004-02-05 19:06:55 gpgsm[3334.0x8071ec8] DBG: -> OK
  4 - 2004-02-05 19:06:55 gpgsm[3334]: Assuan processing failed: write error
[client at fd 4 disconnected]

gpgme is from cvs 2004-01-12 (effectively 0.4.4)

----------
assignedto: marc
messages: 307
nosy: bh, marc
priority: bug
status: unread
title: kmail: Error showing a mail signed with an encryption-only certificate
topic: KMail
______________________________________________________
Aegypten issue tracker <aegypten-issues at intevation.de>
<https://intevation.de/roundup/aegypten/issue76>
______________________________________________________



More information about the Gpa-dev mailing list