gnupg 2.5.22 -> 2.5.24 update breaks notmuch configure
Thomas Klausner
wiz at gatalith.at
Sat Sep 26 20:19:56 CEST 2026
Hi!
After updating the gnupg2 package in pkgsrc from 2.5.22 to 2.5.24, I
see a new build failure in the notmuch package, during the configure
step:
Checking for GMime session key extraction support... decryption failed
No.
*** Error: Could not extract session keys from encrypted message.
I'll attach the logs for 2.5.22 (notmuch.before) and 2.5.24
(notmuch.after), both with gpgme 2.2.0, libgpg-error-1.61,
libassuan-3.0.2, libgcrypt-1.12.4, libksba-1.8.1, all from pkgsrc; on
NetBSD 11.99.8/x86_64. Just switching in the old binary package for
gnupg 2.5.22 with everything else the same makes notmuch configure
happy again.
The code that the configure script tries to run that fails can be
found here:
https://github.com/notmuch/notmuch/blob/f5e58cdb9b93b10ac32379b36b452532a32b8ece/configure#L509
Let me know if you think that is a bug in the notmuch configure script
instead.
Cheers,
Thomas
-------------- next part --------------
===> Configuring for notmuch-0.40nb1
=> Select GnuPG command
=> Fix sphinx command names.
=> Replacing bash interpreter in emacs/notmuch-emacs-mua.
=> Checking for portability problems in extracted files
Welcome to Notmuch, a system for indexing, searching and tagging your email.
We hope that the process of building and installing notmuch is quick
and smooth so that you can soon be reading and processing your email
more efficiently than ever.
If anything goes wrong in the configure process, you can override any
decisions it makes by manually editing the Makefile.config file that
it creates. Also please do as much as you can to figure out what could
be different on your machine compared to those of the notmuch
developers. Then, please email those details to the Notmuch list
(notmuch at notmuchmail.org) so that we can hopefully make future
versions of notmuch easier for you to use.
We'll now investigate your system to verify that all required
dependencies are available:
Sanity checking C compilation environment... OK.
Sanity checking C++ compilation environment... OK.
C compiler supports address sanitizer... This sanitizer is not compatible with enabled ASLR.
To disable ASLR, please run "paxctl +a ./minimal" and try again.
Nope, skipping those tests.
C compiler supports thread sanitizer... This sanitizer is not compatible with enabled ASLR.
To disable ASLR, please run "paxctl +a ./minimal" and try again.
Yes.
Reading libnotmuch version from source... OK.
Checking for Xapian development files (>= 1.4.0)... Yes (1.4.30).
Checking for GMime development files (>= 3.0.3)... Yes.
Checking for GMime session key extraction support... OK.
Checking for GMime X.509 certificate validity... Yes.
Checking whether GMime emits email addresses with angle brackets... No.
Checking signature verification when decrypting using session keys... Yes.
Checking for Glib development files (>= 2.22)... Yes.
Checking for zlib (>= 1.2.5.2)... Yes.
Checking for talloc development files... Yes.
Checking for bash... Yes (/tmp/mail/notmuch/work/.tools/bin/bash).
Checking for perl... Yes (/tmp/mail/notmuch/work/.tools/bin/perl).
Checking for python... Yes (/usr/pkg/bin/python3.14).
Checking for python3 (>= 3.5)...Yes.
Checking for python3 version ...(3.14)
Checking for python 3.14 development files...No (will not install CFFI-based python bindings).
Checking for valgrind development files... No (but that's fine).
Checking for bash-completion (>= 1.90)... No (will not install bash completion).
Checking for sfsexp... Yes.
Checking if doxygen is available... Yes.
Checking if sphinx is available and supports nroff output... Yes.
Checking if makeinfo is available... Yes.
Checking if install-info is available... Yes.
Checking if desktop-file-install is available... No (so will not install .desktop file).
Checking for cppcheck... No.
Checking which platform we are on... Unknown.
*** Warning: Unknown platform. Notmuch might or might not build correctly.
Checking for canonicalize_file_name... No (will use our own instead).
Checking for getline... Yes.
Checking for strcasestr... Yes.
Checking for strsep... Yes.
Checking for timegm... Yes.
Checking for 64 bit time_t... Yes.
Checking for dirent.d_type... Yes.
Checking for standard version of getpwuid_r... Yes.
Checking for standard version of asctime_r... Yes.
Checking for rpath support... Yes.
Checking for -Wl,--as-needed... Yes.
Checking for -Wl,--no-undefined... Yes.
Checking for available C++ compiler warning flags...
-Wall -Wextra -Wwrite-strings
Checking for available C compiler warning flags...
-Wall -Wextra -Wwrite-strings -Wmissing-declarations
All required packages were found. You may now run the following
commands to compile and install notmuch:
make
sudo make install
#
-------------- next part --------------
===> Configuring for notmuch-0.40nb1
=> Select GnuPG command
=> Fix sphinx command names.
=> Replacing bash interpreter in emacs/notmuch-emacs-mua.
=> Checking for portability problems in extracted files
Welcome to Notmuch, a system for indexing, searching and tagging your email.
We hope that the process of building and installing notmuch is quick
and smooth so that you can soon be reading and processing your email
more efficiently than ever.
If anything goes wrong in the configure process, you can override any
decisions it makes by manually editing the Makefile.config file that
it creates. Also please do as much as you can to figure out what could
be different on your machine compared to those of the notmuch
developers. Then, please email those details to the Notmuch list
(notmuch at notmuchmail.org) so that we can hopefully make future
versions of notmuch easier for you to use.
We'll now investigate your system to verify that all required
dependencies are available:
Sanity checking C compilation environment... OK.
Sanity checking C++ compilation environment... OK.
C compiler supports address sanitizer... This sanitizer is not compatible with enabled ASLR.
To disable ASLR, please run "paxctl +a ./minimal" and try again.
Nope, skipping those tests.
C compiler supports thread sanitizer... This sanitizer is not compatible with enabled ASLR.
To disable ASLR, please run "paxctl +a ./minimal" and try again.
Yes.
Reading libnotmuch version from source... OK.
Checking for Xapian development files (>= 1.4.0)... Yes (1.4.30).
Checking for GMime development files (>= 3.0.3)... Yes.
Checking for GMime session key extraction support... decryption failed
No.
*** Error: Could not extract session keys from encrypted message.
This is likely due to your GMime having been built against a old
version of GPGME.
Please try to rebuild your version of GMime against a more recent
version of GPGME (at least GPGME 1.8.0).
Your current GPGME development version is: 2.2.0
Checking for GMime X.509 certificate validity... Yes.
Checking whether GMime emits email addresses with angle brackets... No.
Checking signature verification when decrypting using session keys... Yes.
Checking for Glib development files (>= 2.22)... Yes.
Checking for zlib (>= 1.2.5.2)... Yes.
Checking for talloc development files... Yes.
Checking for bash... Yes (/tmp/mail/notmuch/work/.tools/bin/bash).
Checking for perl... Yes (/tmp/mail/notmuch/work/.tools/bin/perl).
Checking for python... Yes (/usr/pkg/bin/python3.14).
Checking for python3 (>= 3.5)...Yes.
Checking for python3 version ...(3.14)
Checking for python 3.14 development files...No (will not install CFFI-based python bindings).
Checking for valgrind development files... No (but that's fine).
Checking for bash-completion (>= 1.90)... No (will not install bash completion).
Checking for sfsexp... Yes.
Checking if doxygen is available... Yes.
Checking if sphinx is available and supports nroff output... Yes.
Checking if makeinfo is available... Yes.
Checking if install-info is available... Yes.
Checking if desktop-file-install is available... No (so will not install .desktop file).
Checking for cppcheck... No.
Checking which platform we are on... Unknown.
*** Warning: Unknown platform. Notmuch might or might not build correctly.
*** Error: The dependencies of notmuch could not be satisfied. You will
need to install the following packages before being able to compile
notmuch:
With any luck, you're using a modern, package-based operating system
that has all of these packages available in the distribution. In that
case a simple command will install everything you need. For example:
On Debian and similar systems:
sudo apt-get install libxapian-dev libgmime-3.0-dev libtalloc-dev zlib1g-dev
Or on Fedora and similar systems:
sudo dnf install xapian-core-devel gmime30-devel libtalloc-devel zlib-devel
On other systems, similar commands can be used, but the details of the
package names may be different.
When you have installed the necessary dependencies, you can run
configure again to ensure the packages can be found, or simply run
"make" to compile notmuch.
*** Error code 1
More information about the Gnupg-devel
mailing list