Debian bug report for the same issue is here;
https://bugs.debian.org/cgi-bin/bugreport.cgi?bug=1057695
And it seems to have been fixed upstream, in case one of the maintainers
has the time to merge and release an updated package?
https://salsa.debian.org/debian/debian-
goodies/-/commit/bac2c271
This still seems to exist in the current release of Xenial; setting the
sandbox user to root bypasses the problem, leaving it at the default
means any cron job that calls 'apt-get update' breaks, because gpgv
exits with error 2 (unexpected error), which leads to a failure of the
'apt-key' action be