[ubuntu/oracular-security] gnupg2 2.4.4-2ubuntu18.3 (Accepted)

Julia Sarris julia.sarris at canonical.com
Tue Jul 8 13:31:39 UTC 2025


gnupg2 (2.4.4-2ubuntu18.3) oracular-security; urgency=medium

  * debian/patches/fix-key-validity-regression-due-to-CVE-2025-
    30258.patch:
    - Fix a key validity regression following patches for CVE-2025-30258,
      causing trusted "certify-only" primary keys to be ignored when checking
      signature on user IDs and computing key validity. This regression makes
      imported keys signed by a trusted "certify-only" key have an unknown
      validity (LP: #2114775).

Date: 2025-07-03 14:00:13.005104+00:00
Signed-By: Julia Sarris <julia.sarris at canonical.com>
https://launchpad.net/ubuntu/+source/gnupg2/2.4.4-2ubuntu18.3
-------------- next part --------------
Sorry, changesfile not available.


More information about the oracular-changes mailing list