[Pkg-gnupg-maint] Bug#659905: gnupg: --recv-keys downloads the demanded keys plus another one

Luca Capello luca at pca.it
Tue Feb 14 17:37:58 UTC 2012


Package: gnupg
Version: 1.4.11-3
Severity: normal
File: /usr/bin/gpg
Usertags: pca.it-communication

Hi there!

I was importing some keys after the FOSDEM 2012 Keysigning Party and
here a strange result:
=====
$ gpg --recv-keys 171CAA4A 613F3AE4
gpg: requesting key 171CAA4A from hkp server keys.indymedia.org
gpg: requesting key 613F3AE4 from hkp server keys.indymedia.org
gpg: key BC2914B4171CAA4A: "NAME SURNAME <EMAIL>" 92 new signatures
gpg: key A01C807C1C8BB5A7: "NAME SURNAME <EMAIL>" not changed
gpg: read_block: read error: invalid packet
gpg: public key 0EBD65E13C093EEF is 29789 seconds newer than the signature
gpg: public key 0EBD65E13C093EEF is 29789 seconds newer than the signature
gpg: public key 0EBD65E13C093EEF is 29789 seconds newer than the signature
gpg: no ultimately trusted keys found
gpg: Total number processed: 2
gpg:              unchanged: 1
gpg:         new signatures: 92
gpg: keyserver timed out
gpg: keyserver receive failed: keyserver error

$ gpg --recv-keys 171CAA4A 613F3AE4
gpg: requesting key 171CAA4A from hkp server keys.indymedia.org
gpg: requesting key 613F3AE4 from hkp server keys.indymedia.org
gpg: key BC2914B4171CAA4A: "NAME SURNAME <EMAIL>" not changed
gpg: key A01C807C1C8BB5A7: "NAME SURNAME <EMAIL>" not changed
gpg: key 758FA22A613F3AE4: "NAME SURNAME <EMAIL>" 204 new signatures
gpg: public key 0EBD65E13C093EEF is 29789 seconds newer than the signature
gpg: public key 0EBD65E13C093EEF is 29789 seconds newer than the signature
gpg: public key 0EBD65E13C093EEF is 29789 seconds newer than the signature
gpg: no ultimately trusted keys found
gpg: Total number processed: 3
gpg:              unchanged: 2
gpg:         new signatures: 204

$ gpg --keyserver keys.gnupg.net --recv-keys 171CAA4A 613F3AE4
gpg: requesting key 171CAA4A from hkp server keys.gnupg.net
gpg: requesting key 613F3AE4 from hkp server keys.gnupg.net
gpg: key BC2914B4171CAA4A: "NAME SURNAME <EMAIL>" not changed
gpg: key A01C807C1C8BB5A7: "NAME SURNAME <EMAIL>" not changed
gpg: key 758FA22A613F3AE4: "NAME SURNAME <EMAIL>" not changed
gpg: Total number processed: 3
gpg:              unchanged: 3
=====

Let me see if I wrote something strange on the command line, so let me
rewrite everything:
=====
$ gpg --recv-keys 171CAA4A
gpg: requesting key 171CAA4A from hkp server keys.indymedia.org
gpg: no valid OpenPGP data found.
gpg: key BC2914B4171CAA4A: "NAME SURNAME <EMAIL>" 1 new signature
gpg: public key 0EBD65E13C093EEF is 29789 seconds newer than the signature
gpg: public key 0EBD65E13C093EEF is 29789 seconds newer than the signature
gpg: public key 0EBD65E13C093EEF is 29789 seconds newer than the signature
gpg: no ultimately trusted keys found
gpg: Total number processed: 1
gpg:         new signatures: 1
gpg: keyserver timed out
gpg: keyserver receive failed: keyserver error

$ gpg --recv-keys 171CAA4A 613F3AE4
gpg: requesting key 171CAA4A from hkp server keys.indymedia.org
gpg: requesting key 613F3AE4 from hkp server keys.indymedia.org
gpg: key BC2914B4171CAA4A: "NAME SURNAME <EMAIL>" not changed
gpg: key A01C807C1C8BB5A7: "NAME SURNAME <EMAIL>" not changed
gpg: key 758FA22A613F3AE4: "NAME SURNAME <EMAIL>" not changed
gpg: Total number processed: 3
gpg:              unchanged: 3

$ gpg --recv-keys 613F3AE4
gpg: requesting key 613F3AE4 from hkp server keys.indymedia.org
gpg: key 758FA22A613F3AE4: "NAME SURNAME <EMAIL>" not changed
gpg: Total number processed: 1
gpg:              unchanged: 1

$ gpg --recv-keys 613F3AE4 171CAA4A
gpg: requesting key 613F3AE4 from hkp server keys.indymedia.org
gpg: requesting key 171CAA4A from hkp server keys.indymedia.org
gpg: key 758FA22A613F3AE4: "NAME SURNAME <EMAIL>" not changed
gpg: key BC2914B4171CAA4A: "NAME SURNAME <EMAIL>" not changed
gpg: key A01C807C1C8BB5A7: "NAME SURNAME <EMAIL>" not changed
gpg: Total number processed: 3
gpg:              unchanged: 3
=====

Please note that this bug is not linked to the keyid-format I chose:
=====
$ grep keyid ~/.gnupg/gpg.conf
keyid-format long

$ gpg --keyid-format short --recv-keys 613F3AE4 171CAA4A
gpg: requesting key 613F3AE4 from hkp server keys.indymedia.org
gpg: requesting key 171CAA4A from hkp server keys.indymedia.org
gpg: key 613F3AE4: "NAME SURNAME <EMAIL>" not changed
gpg: key 171CAA4A: "NAME SURNAME <EMAIL>" not changed
gpg: key 1C8BB5A7: "NAME SURNAME <EMAIL>" not changed
gpg: Total number processed: 3
gpg:              unchanged: 3
=====

Thx, bye,
Gismo / Luca

-- System Information:
Debian Release: wheezy/sid
  APT prefers unstable
  APT policy: (990, 'unstable'), (1, 'experimental')
Architecture: amd64 (x86_64)

Kernel: Linux 3.2.0-1-amd64 (SMP w/2 CPU cores)
Locale: LANG=en_US.UTF-8, LC_CTYPE=en_US.UTF-8 (charmap=UTF-8)
Shell: /bin/sh linked to /bin/dash

Versions of packages gnupg depends on:
ii  dpkg          1.16.1.2
ii  gpgv          1.4.11-3
ii  install-info  4.13a.dfsg.1-8
ii  libbz2-1.0    1.0.6-1
ii  libc6         2.13-24
ii  libreadline6  6.2-8
ii  libusb-0.1-4  2:0.1.12-20
ii  zlib1g        1:1.2.3.4.dfsg-3

Versions of packages gnupg recommends:
ii  gnupg-curl     1.4.11-3
ii  libldap-2.4-2  2.4.28-1.1

Versions of packages gnupg suggests:
ii  gnupg-doc     <none>
ii  imagemagick   8:6.6.9.7-5+b2
ii  libpcsclite1  1.8.2-1

-- no debconf information
-------------- next part --------------
A non-text attachment was scrubbed...
Name: not available
Type: application/pgp-signature
Size: 835 bytes
Desc: not available
URL: <http://lists.alioth.debian.org/pipermail/pkg-gnupg-maint/attachments/20120214/0357c0f7/attachment.pgp>


More information about the Pkg-gnupg-maint mailing list