FreeBSD/ports 82cfa33 — textproc/hs-pandoc/files patch-__cabal__deps_crypton-2.0.1_cbits_crypton__f2m.c

textproc/hs-pandoc: Fix build on CURRENT

Fixes:  e08c03392ac3 * textproc/hs-pandoc: Update 3.11 => 3.12
DeltaFile
+9-0textproc/hs-pandoc/files/patch-__cabal__deps_crypton-2.0.1_cbits_crypton__f2m.c
+9-01 files

FreeBSD/ports 7195ad3 — security/openssl30 Makefile, security/openssl41 Makefile

security/openssl30: update CONFLICTS
DeltaFile
+5-2security/openssl41/Makefile
+2-1security/openssl30/Makefile
+7-32 files

FreeBSD/ports 9dfde2f — security/openssl40 distinfo Makefile

security/openssl40: Security update to 4.0.3

Security:       0d183075-bcb5-11f1-b09d-8447094a420f
MFH:            2026Q3
DeltaFile
+6-3security/openssl40/Makefile
+3-3security/openssl40/distinfo
+9-62 files

FreeBSD/ports b0e3d98 — security/openssl36 distinfo Makefile

security/openssl36: Security update to 3.6.5

Security:       0d183075-bcb5-11f1-b09d-8447094a420f
MFH:            2026Q3
DeltaFile
+5-2security/openssl36/Makefile
+3-3security/openssl36/distinfo
+8-52 files

FreeBSD/ports 2f5812d — security/openssl34 distinfo Makefile

security/openssl34: Security update to 3.4.8

Security:       0d183075-bcb5-11f1-b09d-8447094a420f
MFH:            2026Q3
DeltaFile
+3-3security/openssl34/distinfo
+3-3security/openssl34/Makefile
+6-62 files

FreeBSD/ports 8a2e817 — Mk/Uses npm.mk

Mk/Uses/npm.mk: Add support for pnpm >= 12

pnpm 12 has been rewritten in Rust and introduced an
architecture-dependent node module, which is required to be installed
separately from the main node module.

By default, the installation occurs upon the first pnpm execution and
breaks poudriere builds. So prefetch and extract the native executable
to the expected location in advance to avoid breakage.
DeltaFile
+25-0Mk/Uses/npm.mk
+25-01 files

FreeBSD/ports 2e63b43 — security/vuxml/vuln 2026.xml

security/vuxml: Update latest OpenSSL vulns

after renames for 3.0 and 3.5
DeltaFile
+6-5security/vuxml/vuln/2026.xml
+6-51 files

FreeBSD/ports 2fbe836 — security/openssl Makefile, security/openssl/files extra-patch-ktls

security/openssl: Security upgrade to 3.5.9

OpenSSL 3.0 is end-of-life and has known vulnerabilities.
Upgrade port to OpenSSL 3.5 by renaming security/openssl35

Security:       0d183075-bcb5-11f1-b09d-8447094a420
MFH:            2026Q3
DeltaFile
+0-540security/openssl35/files/extra-patch-ktls
+0-285security/openssl35/pkg-plist
+124-124security/openssl/files/extra-patch-ktls
+0-203security/openssl35/Makefile
+49-25security/openssl/Makefile
+0-35security/openssl35/files/patch-Configurations_10-main.conf
+173-1,21218 files not shown
+213-1,39624 files

FreeBSD/ports dad036b — japanese/fcitx5-hazkey Makefile

japanese/fcitx5-hazkey: Bump port revision after swift6 update (14d51afd2197)

While here, adjust swift6 compiler path.
DeltaFile
+4-4japanese/fcitx5-hazkey/Makefile
+4-41 files

FreeBSD/ports 14d51af — lang/swift6 distinfo Makefile, lang/swift6/files patch-swift_unittests_Parse_CMakeLists.txt patch-swift-log_Sources_Logging_Logging.swift

lang/swift6: lang/swift6: Update to 6.4.0

Swift 6.4 has removed the ability for bootstrapping without a
pre-built host swift compiler. So now the port requires a bootstrap
swift toolchain regardless of the build mode.

The installation paths have been changed from
${PREFIX}/swift6/{bin,include,lib,...} to
${PREFIX}/swift6/usr/local/{bin,include,lib,...} to follow the
standard Swift toolchain layout.

Release Announcement: https://www.swift.org/blog/swift-6.4-released/

Reported by:    GitHub (watch releases)
DeltaFile
+2,566-2,513lang/swift6/pkg-plist
+180-91lang/swift6/Makefile
+73-69lang/swift6/distinfo
+40-0lang/swift6/files/patch-swift-log_Sources_Logging_Locks.swift
+25-0lang/swift6/files/patch-swift-log_Sources_Logging_Logging.swift
+8-8lang/swift6/files/patch-swift_unittests_Parse_CMakeLists.txt
+2,892-2,68120 files not shown
+3,023-2,75226 files

FreeBSD/src 9006a6a — sys/dev/dwc dwc4_dma.h dwc4_mtl.h

dwc(4): Support a major update of Synopsys IP.

Support new versions 4.x and 5.x of Synopsys DesignWare Gigabit
Ethernet MAC, often referred to as DWC Quality-of-Service IP Core.

In particular:
- version 5_30 (0x53) that is found on stm32mp2 arm64 SoC
- version 5_40 (0x54) that is found on Spacemit K3 RISC-V RVA23 SoC

DWC Ethernet QoS introduced a new scalable multi-channel architecture
with up to eight TX/RX channels, enhanced DCB support, TCP segmentation
offload (TSO).

Thanks to manu@ for start splitting out the DMA code of the older
(dwc version 3.x) driver to separate files in 2023.  This patch is
a continuation of that work to support new core and DMA engine.

Thanks to mmel@ for initial review.  Initial support covers the same
interface capabilities as the version 3 (VLAN_MTU, HWCSUM, HWCSUM_IPV6).

    [5 lines not shown]
DeltaFile
+920-0sys/dev/dwc/dwc4_dma.c
+432-0sys/dev/dwc/dwc4_core.c
+242-0sys/dev/dwc/dwc4_reg.h
+108-24sys/dev/dwc/if_dwc.c
+124-0sys/dev/dwc/dwc4_mtl.h
+111-0sys/dev/dwc/dwc4_dma.h
+1,937-244 files not shown
+1,997-3810 files

FreeBSD/ports 06d4d26 — net/samba422 Makefile, net/samba422/files patch-source3_modules_vfs__freebsd.c

net/samba42[234Ø: fix on ZFS STATUS_INTERNAL_ERROR, Input/output error from vfs_freebsd.c

Replace strlcpy() to memmove() in vfs_freebsd.c.

PR:     292618
Reported by:    Dave Baukus <daveb at spectralogic.com>
Sponsored by:   Klara, Inc
DeltaFile
+12-9net/samba424/files/patch-source3_modules_vfs__freebsd.c
+12-9net/samba423/files/patch-source3_modules_vfs__freebsd.c
+12-9net/samba422/files/patch-source3_modules_vfs__freebsd.c
+1-1net/samba424/Makefile
+1-1net/samba423/Makefile
+1-1net/samba422/Makefile
+39-306 files

FreeBSD/ports ae3d4a7 — security/openssl30 Makefile pkg-plist, security/openssl30/files patch-crypto_async_arch_async__posix.h patch-crypto_ppccap.c

security/openssl30: Resurrect OpenSSL 3.0 port

For FreeBSD 14, expires 2028-11-30
Has known vulnerabilities, users are encouraged to move
to OpenSSL 3.5 from security/openssl
DeltaFile
+540-0security/openssl30/files/extra-patch-ktls
+275-0security/openssl30/pkg-plist
+179-0security/openssl30/Makefile
+35-0security/openssl30/files/patch-Configurations_10-main.conf
+34-0security/openssl30/files/patch-crypto_ppccap.c
+32-0security/openssl30/files/patch-crypto_async_arch_async__posix.h
+1,095-09 files not shown
+1,193-015 files

FreeBSD/ports d6f475d — comms/meshcore-cli Makefile distinfo

comms/meshcore-cli: upgrade to 1.6.4
DeltaFile
+3-3comms/meshcore-cli/distinfo
+1-1comms/meshcore-cli/Makefile
+4-42 files

FreeBSD/ports 2d6b390 — comms/py-meshcore Makefile distinfo

comms/py-meshcore: upgrade to 2.3.14
DeltaFile
+3-3comms/py-meshcore/distinfo
+1-1comms/py-meshcore/Makefile
+4-42 files

FreeBSD/ports 6d75e8f — databases/xtrabackup84 Makefile distinfo

databases/xtrabackup84: upgrade to 8.4.0-7
DeltaFile
+3-3databases/xtrabackup84/distinfo
+1-1databases/xtrabackup84/Makefile
+4-42 files

FreeBSD/ports 99cbf96 — astro/traccar Makefile distinfo

astro/traccar: upgrade to 6.16.0
DeltaFile
+289-269astro/traccar/pkg-plist
+3-3astro/traccar/distinfo
+1-1astro/traccar/Makefile
+293-2733 files

FreeBSD/ports 41e9cde — devel/appstream pkg-plist Makefile, devel/appstream-compose pkg-plist

devel/appstream{,-compose,-qt}: Update to 1.2.1

Reported by:    portscout!
DeltaFile
+3-3devel/appstream/distinfo
+1-1devel/appstream/pkg-plist
+1-1devel/appstream/Makefile
+1-1devel/appstream-qt/pkg-plist
+1-1devel/appstream-compose/pkg-plist
+7-75 files

FreeBSD/doc 3cce989 — website/content/en/releases/14.4R errata.adoc, website/content/en/releases/14.5R errata.adoc

Add errata affecting 14.4R, 14.5R, 15.0R and 15.1R

FreeBSD-EN-26:22.usb affects 14.5R
FreeBSD-EN-26:23.syslogd affects 15.1R
FreeBSD-EN-26:24.tzdata affects all supported releases
DeltaFile
+2-3website/content/en/releases/14.5R/errata.adoc
+2-0website/content/en/releases/15.1R/errata.adoc
+1-0website/content/en/releases/15.0R/errata.adoc
+1-0website/content/en/releases/14.4R/errata.adoc
+6-34 files

FreeBSD/doc b19cf24 — website/content/en/releases/14.4R errata.adoc, website/content/en/releases/14.5R errata.adoc

Add security advisories affecting 14.4R, 14.5R, 15.0R and 15.1R

FreeBSD-SA-26:64.sysvsem affects all supported releases
FreeBSD-SA-26:65.kqueue affects 15.1R
FreeBSD-SA-26:66.jail affects all supported releases
FreeBSD-SA-26:67.ktls affects all supported releases
FreeBSD-SA-26:68.openssl affects all supported releases
FreeBSD-SA-26:69.udp affects all supported releases

While here, note that FreeBSD-SA-26:50.kqueue did not affect 15.0R.
DeltaFile
+5-3website/content/en/releases/14.5R/errata.adoc
+5-1website/content/en/releases/15.0R/errata.adoc
+6-0website/content/en/releases/15.1R/errata.adoc
+5-0website/content/en/releases/14.4R/errata.adoc
+21-44 files

FreeBSD/src 0f7f6c5 — sys/conf files

if_bnxt: add bnxt logger module files to sys/conf/files for built-in kernel builds

The bnxt snapdump and coredump support patches added bnxt_log/{_data}.c. and listed it in
sys/modules/bnxt/bnxt_en/Makefile, but missed to add these files in sys/conf/files.

Fix up the issue by adding bnxt_log/{_data}.c in sys/conf/files.

Fixes: f85e66e655c9 ("if_bnxt/bnxt_re: add support for driver snapdump")
(cherry picked from commit 03676cafa882c471a29436aae76c8751d451dd07)
DeltaFile
+2-0sys/conf/files
+2-01 files

FreeBSD/src 79266f8 — sys/dev/bnxt/bnxt_en bnxt.h bnxt_mgmt.c

if_bnxt: Add support for HWRM passthrough with multiple DMA buffers

Added support for HWRM passthrough commands with multiple DMA buffers.

Also, changed the mgmt_lock to sleepable exclusive lock.

MFC after:      2 weeks
Reviewed by:    gallatin, ssaxena
Differential Revision: https://reviews.freebsd.org/D56686

(cherry picked from commit 9d87ca8b9f60bdec0bbc1733920df250a08beb0c)
DeltaFile
+57-39sys/dev/bnxt/bnxt_en/bnxt_mgmt.c
+3-0sys/dev/bnxt/bnxt_en/bnxt.h
+60-392 files

FreeBSD/src 092ac40 — sys/dev/bnxt/bnxt_en bnxt_log_data.h bnxt_coredump.h

if_bnxt: add few source files to version control

Commits- f85e66e655c9 ("if_bnxt/bnxt_re: add support for driver snapdump")
and 03839879a2dd ("if_bnxt: Add Firmware crashdump collection support")
missed to add few files under version control, those files are
added now:

sys/dev/bnxt/bnxt_en/bnxt_log.c
sys/dev/bnxt/bnxt_en/bnxt_log.h
sys/dev/bnxt/bnxt_en/bnxt_log_data.c
sys/dev/bnxt/bnxt_en/bnxt_log_data.h
sys/dev/bnxt/bnxt_en/bnxt_coredump.c
sys/dev/bnxt/bnxt_en/bnxt_coredump.h

bnxt_coredump.c entry is added in sys/conf/files as well.

Fixes: f85e66e655c9 ("if_bnxt/bnxt_re: add support for driver snapdump")
Fixes: 03839879a2dd ("if_bnxt: Add Firmware crashdump collection support")
(cherry picked from commit 9931dc5bf3831146c08a381c42ecbfcedb8ac7f1)
DeltaFile
+318-0sys/dev/bnxt/bnxt_en/bnxt_log.c
+186-0sys/dev/bnxt/bnxt_en/bnxt_coredump.c
+123-0sys/dev/bnxt/bnxt_en/bnxt_log.h
+78-0sys/dev/bnxt/bnxt_en/bnxt_log_data.c
+50-0sys/dev/bnxt/bnxt_en/bnxt_coredump.h
+35-0sys/dev/bnxt/bnxt_en/bnxt_log_data.h
+790-01 files not shown
+791-07 files

FreeBSD/src d759300 — sys/dev/bnxt/bnxt_en bnxt.h bnxt_mgmt.h, sys/modules/bnxt/bnxt_en Makefile

if_bnxt: Add Firmware crashdump collection support

This patch adds support for DDR-based firmware coredump memory handling.
It detects firmware coredump capability, allocates host DDR (DMA) memory
for crash dumps, and programs the firmware with the allocated memory during
attach. The allocated memory is released during driver detach.

Also, This patch adds functions to retrieve crash dump data from host DDR
memory. The implementation handles data copying from page tables and
checks dump availability. Main function bnxt_get_coredump() copies
stored crash dump data from DDR memory to the application buffer.

MFC after:      2 weeks
Reviewed by:    gallatin, ssaxena
Differential Revision: https://reviews.freebsd.org/D56684

(cherry picked from commit 03839879a2dd2505eab80b99211b0637ebdc9d32)
DeltaFile
+151-0sys/dev/bnxt/bnxt_en/bnxt_mgmt.c
+120-0sys/dev/bnxt/bnxt_en/bnxt_hwrm.c
+43-5sys/dev/bnxt/bnxt_en/if_bnxt.c
+28-1sys/dev/bnxt/bnxt_en/bnxt_mgmt.h
+19-1sys/dev/bnxt/bnxt_en/bnxt.h
+1-0sys/modules/bnxt/bnxt_en/Makefile
+362-76 files

FreeBSD/src 7d09d40 — sys/dev/bnxt/bnxt_en hsi_struct_def.h, sys/dev/bnxt/bnxt_re qplib_fp.h qplib_fp.c

if_bnxt/bnxt_re: Update hsi headers

Update hsi headers

MFC after:      2 weeks
Reviewed by:    gallatin, ssaxena
Differential Revision: https://reviews.freebsd.org/D56683

(cherry picked from commit 308784bebe796cbdaccf7ef259caf7d87f874d02)
DeltaFile
+9,182-488sys/dev/bnxt/bnxt_en/hsi_struct_def.h
+0-2sys/dev/bnxt/bnxt_re/qplib_fp.c
+0-1sys/dev/bnxt/bnxt_re/qplib_fp.h
+9,182-4913 files

FreeBSD/src 6f12a32 — sys/dev/bnxt/bnxt_en if_bnxt.c bnxt_sriov.h

bnxt: Fix build / load error for bnxt(4) in kernels without PCI_IOV

This change removes the hard-forcing of  PCI_IOV and adds shims to
allow the driver to compile and work when the kernel is missing
PCI_IOV support.

Fixes: 7c450d1127c7
Reviewed by: sumit.saxena_broadcom.com
Differential Revision: https://reviews.freebsd.org/D57300
Sponsored by: Netflix

(cherry picked from commit 3118f1b99f23431235c202d9aadbe3d183bcc259)
DeltaFile
+39-0sys/dev/bnxt/bnxt_en/bnxt_sriov.c
+0-4sys/dev/bnxt/bnxt_en/bnxt_sriov.h
+0-2sys/dev/bnxt/bnxt_en/if_bnxt.c
+39-63 files

FreeBSD/src 2d5cdcc — sys/dev/bnxt/bnxt_en bnxt_mgmt.c bnxt_mgmt.h

bnxt: Fix up ioctl opcodes to support IOC_VOID along with IOC_IN

The driver and applications currently use hard-coded numeric ioctl command
opcodes. These opcodes are interpreted as having the IOC_IN direction (data
copied from the user application to the driver), regardless of the actual packet
size. Consequently, when the packet size is zero and the direction is set to
IOC_IN, the kernel fails these ioctls if COMPAT is disabled.

While the driver and applications should ideally set the direction correctly—
for example, using IOC_VOID when the packet size is zero—the driver will now
be updated to define ioctl opcodes using the _IOC macro to support both
IOC_VOID and IOC_IN. This change ensures backward compatibility with older
applications that exclusively use IOC_IN.

Reviewed by: gallatin
Differential Revision: https://reviews.freebsd.org/D54601
MFC after: 3 days

(cherry picked from commit d53d7b466016408229491cfd2f8bdc742ff642e3)
DeltaFile
+8-3sys/dev/bnxt/bnxt_en/bnxt_mgmt.h
+6-3sys/dev/bnxt/bnxt_en/bnxt_mgmt.c
+14-62 files

FreeBSD/src 924dc94 — sys/dev/bnxt/bnxt_en bnxt_mgmt.h

if_bnxt: Fix the Unknown command 0x80000000 ioctl command error

With the latest niccli version, user will observe below
Unknown command command error when try to list the devices.

if_bnxt: Unknown command 0x80000000

Here, niccli is issuing command opcode as 0x80000000 but
driver is expecting 0x20000000 command opcode.

So, replaced _IOW(0,0,0) with the _IOC(IOC_IN,0,0,0).

Fixes: d53d7b4 ("bnxt: Fix up ioctl opcodes to support IOC_VOID along with IOC_IN")

MFC after:      2 weeks
Reviewed by:    gallatin, ssaxena
Differential Revision: https://reviews.freebsd.org/D56685

(cherry picked from commit 3987058a3a943c461c27dbebf10dad555b1bb2fa)
DeltaFile
+5-5sys/dev/bnxt/bnxt_en/bnxt_mgmt.h
+5-51 files

FreeBSD/src e94c073 — sys/dev/bnxt/bnxt_en bnxt_mgmt.h bnxt_ulp.c, sys/dev/bnxt/bnxt_re main.c

if_bnxt/bnxt_re: add support for driver snapdump

Add a logging module which helps to log and collect the driver`s
various events and state of device data structures.
APIs help modules like l2, RoCE etc. to register and
add logs into thg buffers. A segment header is added to the
data available in buffers.

The final log messages are arranged in following fashion

|SegHeader0|Data0|SegHeader1|Data1|
Logging module provides two different kinds of buffers:
a) A large contiguous memory chunk is used to form circular buffers.

Module need to provide a number of buffers while registering to
the logging module.Please note that, since memory for the
buffers remains with the module as long as it is registered, memory
footprints of the driver could be higher so the modules should
allocate an appropriate number of buffers. Also, due to limited

    [23 lines not shown]
DeltaFile
+335-43sys/dev/bnxt/bnxt_en/bnxt_mgmt.c
+79-3sys/dev/bnxt/bnxt_en/if_bnxt.c
+65-0sys/dev/bnxt/bnxt_re/main.c
+42-2sys/dev/bnxt/bnxt_en/bnxt.h
+35-0sys/dev/bnxt/bnxt_en/bnxt_ulp.c
+31-0sys/dev/bnxt/bnxt_en/bnxt_mgmt.h
+587-482 files not shown
+593-488 files

FreeBSD/src da10771 — sys/dev/bnxt/bnxt_en bnxt_hwrm.h bnxt.h

bnxt_en: VF ring reservation, HWRM registration, and PF-only operation guards

VFs require separate HWRM commands for ring reservation and async
completion ring setup, so a common PF/VF dispatcher is introduced and
the async CR path is extended to handle both.  The PF must populate the
VF request forwarding bitmap during driver registration so the firmware
correctly forwards VF-originated HWRM commands.  VF reservation strategy
and min-guaranteed capability flags are now parsed for correct resource
partitioning, and PF-only operations (DCB, NVM, package version sysctl)
are guarded against VF invocation.

The short command buffer allocation is also reordered before the function
reset to ensure extended HWRM messages are available when needed, a
prerequisite uncovered during VF bring-up.

MFC after:      1 month
Reviewed by:    ssaxena
Differential Revision: https://reviews.freebsd.org/D56232

(cherry picked from commit c972c5acbac472a5dc797856f39f478862b6c6ea)
DeltaFile
+93-12sys/dev/bnxt/bnxt_en/bnxt_hwrm.c
+18-5sys/dev/bnxt/bnxt_en/if_bnxt.c
+5-4sys/dev/bnxt/bnxt_en/bnxt_sysctl.c
+3-0sys/dev/bnxt/bnxt_en/bnxt_dcb.c
+1-0sys/dev/bnxt/bnxt_en/bnxt_hwrm.h
+1-0sys/dev/bnxt/bnxt_en/bnxt.h
+121-216 files