Undocumented novel Ed448 point encoding breaks interoperability

Werner Koch wk at gnupg.org
Thu Jan 15 15:35:11 CET 2026


On Mon,  5 Jan 2026 13:55, Andrew Gallagher said:

> Ed25519 follows the above spec, but Ed448 does not. Is this an error
> in the specification or an error in the implementation?

Yes, that is an error in the specs.  When I edited LibrePGP I included
most of the SOS specification clarifications Niibe-san once proposed to
the OpenPGP DT.  They were unfortunately rejected or got lost by that
major last rewrite of rfc4880bis.

I will correct LibrePGP for ED448 so that it matches actual use.


Shalom-Salam,

   Werner

-- 
The pioneers of a warless world are the youth that
refuse military service.             - A. Einstein
-------------- next part --------------
A non-text attachment was scrubbed...
Name: openpgp-digital-signature.asc
Type: application/pgp-signature
Size: 284 bytes
Desc: not available
URL: <https://lists.gnupg.org/pipermail/gnupg-devel/attachments/20260115/c63890d8/attachment.sig>


More information about the Gnupg-devel mailing list