Skip to content

SSH Agent: Fix invalid iqmp output for RSA keys#1981

Merged
droidmonkey merged 1 commit intokeepassxreboot:release/2.3.4from
hifi:fix/pageant-rsa-keys
Jun 27, 2018
Merged

SSH Agent: Fix invalid iqmp output for RSA keys#1981
droidmonkey merged 1 commit intokeepassxreboot:release/2.3.4from
hifi:fix/pageant-rsa-keys

Conversation

@hifi
Copy link
Copy Markdown
Contributor

@hifi hifi commented May 20, 2018

Description

Hex string inside a QByteArray apparently can't be converted into binary array without converting it to a string first. It works but only sometimes.

The changes to gcrypt arguments and sizes should be reviewed carefully. I read the manual(s) back and forth but still feel a little uneasy but the way they were before seemed wrong.

Motivation and context

Parsing of ASN1 keys had a flaw when converting gcrypt hex string output to QByteArray which happened only once in five times of key parsing.

This at least affects Windows users with Pageant. OpenSSH may tolerate inconsistencies in the private key better.

How has this been tested?

New test was added and manual tests were run on Linux and Windows with a bunch of different keys.

Types of changes

  • ✅ Bug fix (non-breaking change which fixes an issue)

Checklist:

  • ✅ I have read the CONTRIBUTING document. [REQUIRED]
  • ✅ My code follows the code style of this project. [REQUIRED]
  • ✅ All new and existing tests passed. [REQUIRED]
  • ✅ I have added tests to cover my changes.

This fixes loading RSA keys to Pageant.
@hifi hifi added this to the v2.3.4 milestone May 20, 2018
@droidmonkey
Copy link
Copy Markdown
Member

@hifi is this ready for merge?

@hifi
Copy link
Copy Markdown
Contributor Author

hifi commented Jun 25, 2018

As far as I know but a review of the changes would be appreciated.

@droidmonkey droidmonkey merged commit 8c70856 into keepassxreboot:release/2.3.4 Jun 27, 2018
droidmonkey added a commit that referenced this pull request Aug 22, 2018
- Show all URL schemes in entry view [#1768]
- Disable merge when database is locked [#1975]
- Fix intermittent crashes with favorite icon downloads [#1980]
- Provide potential crash warning to Qt 5.5.x users [#2211]
- Disable apply button when creating new entry/group to prevent data loss [#2204]
- Allow for 12 hour timeout to lock idle database [#2173]
- Multiple SSH Agent fixes [#1981, #2117]
- Multiple Browser Integration enhancements [#1993, #2003, #2055, #2116, #2159, #2174, #2185]
- Fix browser proxy application not closing properly [#2142]
- Add real names and Patreon supporters to about dialog [#2214]
- Add settings button to toolbar, Donate button, and Report a Bug button to help menu [#2214]
- Enhancements to release-tool to appsign intermediate build products [#2101]
@phoerious phoerious added pr: bugfix Pull request fixes a bug and removed bug labels Nov 22, 2024
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

feature: SSH agent pr: bugfix Pull request fixes a bug

Projects

None yet

Development

Successfully merging this pull request may close these issues.

3 participants