FreeBSD/ports 2e128bcdatabases/mariadb118-server Makefile distinfo

databases/mariadb118-server: Security update to 11.8.9

Security:       f68670ea-a05d-11f1-8144-8447094a420f
MFH:            2026Q3
DeltaFile
+3-3databases/mariadb118-server/distinfo
+1-1databases/mariadb118-server/Makefile
+4-42 files

FreeBSD/ports 7831640databases/mariadb123-server Makefile distinfo

databases/mariadb123-server: Security update to 12.3.3

Security:       f68670ea-a05d-11f1-8144-8447094a420f
MFH:            2026Q3
DeltaFile
+3-3databases/mariadb123-server/distinfo
+2-2databases/mariadb123-server/Makefile
+5-52 files

FreeBSD/ports e5a26ddnet-mgmt/nfdump distinfo Makefile

net-mgmt/nfdump: Update to 1.7.8

The following options are no longer available:

* FIXTIMEBUG: discontinued upstream
* GEODB: now always on
* INFLUXDB: discontinued upstream
* NFTRACK: now included in NFPROFILE
* NSEL: now always on
* SFLOW: now always on

Reviewed by:    pi
Differential Revision:  https://reviews.freebsd.org/D57835
DeltaFile
+23-51net-mgmt/nfdump/Makefile
+3-3net-mgmt/nfdump/distinfo
+26-542 files

FreeBSD/ports afd2711filesystems/fusefs-libs3 distinfo Makefile

filesystems/fusefs-libs3: update to version 3.18.2
DeltaFile
+7-2filesystems/fusefs-libs3/Makefile
+3-3filesystems/fusefs-libs3/distinfo
+10-52 files

FreeBSD/ports d332e6fdevel/hare Makefile distinfo

devel/hare: update to version 0.26.0.1

This is a security release for Hare 0.26.0 which includes patches to
address CVE-2026-43923.

The CVE entry is reserved with no further details, therefore it is not
known whether the issue did affect FreeBSD.

Security:       CVE-2026-43923
DeltaFile
+3-3devel/hare/distinfo
+1-2devel/hare/Makefile
+4-52 files

FreeBSD/ports 85f61e8multimedia/libdvdread pkg-plist Makefile

multimedia/libdvdread: Update to 7.1.1

ChangeLog: https://code.videolan.org/videolan/libdvdread/-/blob/7.1.1/NEWS
DeltaFile
+3-3multimedia/libdvdread/distinfo
+2-2multimedia/libdvdread/Makefile
+2-1multimedia/libdvdread/pkg-plist
+7-63 files

FreeBSD/ports 4f70d7fmultimedia/libbluray distinfo pkg-plist

multimedia/libbluray: update to version 1.5.0

Major changes in this version:
 - Expose dynamic range, color space, cr_flag and HDR10+ flags
   in stream info
 - Expose chapter names in title info
 - list_titles: report the number of Dolby Vision tracks
 - BD-J: Implement HAVI text and graphic look & feel components
 - BD-J: Implement navigable and actionable HAVI components
 - BD-J: Fix disabled components being hidden and vertical text
   alignment
 - BD-J: Lazy-load .bdjo title files for faster startup
 - BD-J: Add S3D and UHD stream types
DeltaFile
+9-8multimedia/libbluray/Makefile
+4-4multimedia/libbluray/pkg-plist
+3-3multimedia/libbluray/distinfo
+16-153 files

FreeBSD/ports 7335462textproc/krep Makefile distinfo

textproc/krep: Update 3.0.0 => 3.0.1

Approved by:            db@, yuri@ (Mentors, implicit)
DeltaFile
+3-3textproc/krep/distinfo
+1-1textproc/krep/Makefile
+4-42 files

FreeBSD/ports 73e2167sysutils/pv Makefile pkg-plist

sysutils/pv: Update to 1.11.0

Changelog: https://codeberg.org/ivarch/pv/src/tag/v1.11.0/docs/NEWS.md
DeltaFile
+3-3sysutils/pv/distinfo
+2-1sysutils/pv/pkg-plist
+1-1sysutils/pv/Makefile
+6-53 files

FreeBSD/ports 3d7c0fbdeskutils/lumina-pdf Makefile, graphics/gowall Makefile

*/*: Bump PORTREVISIONs

Bump revision numbers because of mupdf update.
DeltaFile
+1-1print/sioyek/Makefile
+1-1graphics/zathura-pdf-mupdf/Makefile
+1-1graphics/gowall/Makefile
+1-1deskutils/lumina-pdf/Makefile
+4-44 files

FreeBSD/ports 91fe0a5graphics/mupdf Makefile distinfo

graphics/mupdf: Update to 1.28.2

Changelogs: https://github.com/ArtifexSoftware/mupdf/blob/master/CHANGES
DeltaFile
+3-3graphics/mupdf/distinfo
+1-1graphics/mupdf/Makefile
+4-42 files

FreeBSD/ports a31ec19devel/py-logbook Makefile

devel/py-logbook: Add missing typing-extensions dependency

PR:               297885
Approved by:      philip (maintainer)
DeltaFile
+2-0devel/py-logbook/Makefile
+2-01 files

FreeBSD/ports 5438e39science/paraview Makefile pkg-plist, science/paraview/files patch-gdal patch-VTK_IO_GDAL_vtkGDALRasterReader.cxx

science/paraview: upgrade to 6.1.1

Releases notes at
        https://www.kitware.com/paraview-6-1-0-release-notes/
        https://www.kitware.com/paraview-6-1-1-release-notes/
DeltaFile
+223-83science/paraview/pkg-plist
+137-0science/paraview/files/patch-VTK_IO_OCCT_vtkOCCTReader.cxx
+39-28science/paraview/Makefile
+0-33science/paraview/files/patch-Qt_Core_pqQVTKWidgetEventTranslator.cxx
+0-20science/paraview/files/patch-gdal
+20-0science/paraview/files/patch-VTK_IO_GDAL_vtkGDALRasterReader.cxx
+419-1647 files not shown
+427-21113 files

FreeBSD/ports badc0ecdevel/py-dbt-extractor Makefile

devel/py-dbt-extractor: Use py-build to build wheel

Also remove dependency devel/py-tree-sitter, it is pinned in
Makefile.crates already and is written in Rust.

Nice bonus: The shared library is automatically stripped, down from 22
MB to 800 kB!
DeltaFile
+2-8devel/py-dbt-extractor/Makefile
+2-81 files

FreeBSD/ports a312662security/vuxml/vuln 2026.xml

security/vuxml: Document MariaDB vulnerabilities
DeltaFile
+51-0security/vuxml/vuln/2026.xml
+51-01 files

FreeBSD/ports a95d27adatabases/sq Makefile distinfo

databases/sq: Update to 0.54.1

Upstream added a DuckDB driver, whose Go bindings ship prebuilt static
libraries only for darwin, linux and windows. Build with the
duckdb_use_lib tag so that the bindings link against the system
libduckdb instead.
DeltaFile
+7-7databases/sq/distinfo
+4-1databases/sq/Makefile
+11-82 files

FreeBSD/ports 5375936databases/duckdb Makefile

databases/duckdb: Do not pull in dependencies of unselected extensions

The extension loop adds each extension's library dependencies with

        LIB_DEPENDS+=${PORT_OPTIONS:M${opt}:?${${opt}_LIB_DEPENDS}:}

The intent is "if this extension's option is selected, append its
<OPT>_LIB_DEPENDS", mirroring the two lines above it. Those work because
${PORT_OPTIONS:M${opt}:S/...} is empty-in-empty-out, but :? does not
behave the same way: per make(1), it evaluates the variable *name* -- not
the value the preceding modifiers produced -- as a conditional
expression. The condition here is therefore the bare word PORT_OPTIONS,
which is always true, so the true branch is always taken:

        PORT_OPTIONS=FOO BAR
        ${PORT_OPTIONS:MAWS} -> ""
        ${PORT_OPTIONS:MAWS:?${AWS_LIB_DEPENDS}:} -> libaws.so:devel/aws

As a result AVRO_LIB_DEPENDS (avro-c, jansson, snappy), AWS_LIB_DEPENDS

    [13 lines not shown]
DeltaFile
+1-1databases/duckdb/Makefile
+1-11 files

FreeBSD/ports aa656d9Mk/Uses samba.mk, devel/tevent017 Makefile

*/*: depends of devel/talloc244

Update dependency of devel/tevent017 to use devel/talloc244 instead
of devel/talloc243 since these version of samba can support it.
Update Mk/Uses/samba.mk for relecting such changes.

PR:     294595
Reported by:    Jordan Ostref, ml at netfence.it
Reviewed by:    kiwi
Approved by:    samba (kiwi)
Sponsored by:   Klara, Inc.
DeltaFile
+3-3net/samba423/Makefile
+3-2net/samba422/Makefile
+3-2devel/tevent017/Makefile
+2-2Mk/Uses/samba.mk
+11-94 files

FreeBSD/ports fbe153dmultimedia/jellyfin pkg-plist Makefile

multimedia/jellyfin: fix text rendering

Jellyfin uses libHarfBuzzSharp.so to render text on thumbnails, like
it uses libskiasharp. After analyses it appears nothing in jellyfin
is calling any symbols out of the symbols exposed by vanilla
libharfbuzz.so, instead of building a full libHarfBuzzSharp.so, just
resuse the share libarfbuz.so create a symlink in a place where jellyfin
will be able to dlopen it.

PR:             297316
Reported by:    freebsd.geography231 at slmails.com
DeltaFile
+5-0multimedia/jellyfin/Makefile
+1-0multimedia/jellyfin/pkg-plist
+6-02 files

FreeBSD/ports 4d45ebbsecurity/rnp distinfo Makefile

security/rnp: update to version 0.18.1

This update fixes critical issue where PKESK (public-key encrypted)
session keys were generated as all-zero, allowing trivial decryption
of messages encrypted with public keys only (CVE-2025-13470,
CVE-2025-13402, https://bugzilla.redhat.com/show_bug.cgi?id=2415863).

Security:       CVE-2025-13470
Security:       CVE-2025-13402
DeltaFile
+11-12security/rnp/Makefile
+3-3security/rnp/distinfo
+14-152 files

FreeBSD/ports 9645b19devel/moon Makefile distinfo

devel/moon: update to 2.5.2
DeltaFile
+3-3devel/moon/distinfo
+1-1devel/moon/Makefile
+4-42 files

FreeBSD/ports edb6bbemisc/py-fal-client Makefile distinfo

misc/py-fal-client: update to 1.0.1
DeltaFile
+3-3misc/py-fal-client/distinfo
+1-1misc/py-fal-client/Makefile
+4-42 files

FreeBSD/ports e8d4fc7databases/tdb1415 pkg-plist Makefile, databases/tdb1415/files patch-wscript patch-lib_replace_wscript

databases/tdb1415: new port

New dependency for net/samba424

PR:     294596
Approved by:    samba (kiwi)
DeltaFile
+67-0databases/tdb1415/Makefile
+15-0databases/tdb1415/files/patch-buildtools_wafsamba_wscript
+14-0databases/tdb1415/pkg-plist
+11-0databases/tdb1415/files/patch-wscript
+11-0databases/tdb1415/files/patch-lib_replace_wscript
+11-0databases/tdb1415/files/patch-buildtools_wafsamba_samba__install.py
+129-03 files not shown
+137-09 files

FreeBSD/ports fd8f185comms/klog Makefile pkg-plist

comms/klog: Fix build
DeltaFile
+7-7comms/klog/pkg-plist
+1-0comms/klog/Makefile
+8-72 files

FreeBSD/ports d1e87a7devel/talloc244 Makefile, devel/talloc244/files patch-buildtools_wafsamba_samba__install.py patch-lib_replace_wscript

devel/talloc244: new port

This talloc 2.4.4 is required by net/samba424.

PR:     294595
Approved by:    samba (kiwi)
DeltaFile
+65-0devel/talloc244/Makefile
+20-0devel/talloc244/files/patch-talloc.c
+18-0devel/talloc244/files/patch-wscript
+15-0devel/talloc244/files/patch-buildtools_wafsamba_wscript
+11-0devel/talloc244/files/patch-buildtools_wafsamba_samba__install.py
+11-0devel/talloc244/files/patch-lib_replace_wscript
+140-04 files not shown
+156-010 files

FreeBSD/ports 14d48eanet-im/teams Makefile distinfo, net-im/teams/files/packagejsons package-lock.json package.json

net-im/teams: Update to 2.17.1

Changelog: https://github.com/IsmaelMartinez/teams-for-linux/releases/tag/v2.17.1

Reported by:    portscout
DeltaFile
+23-22net-im/teams/files/packagejsons/package.json
+5-5net-im/teams/distinfo
+2-2net-im/teams/files/packagejsons/package-lock.json
+1-1net-im/teams/Makefile
+31-304 files

FreeBSD/ports 60b9e77lang/elixir-devel Makefile distinfo

lang/elixir-devel: update to 1.20.3

- ChangeLog https://github.com/elixir-lang/elixir/releases/tag/v1.20.3

Sponsored by:   SkunkWerks, GmbH
DeltaFile
+5-5lang/elixir-devel/distinfo
+1-1lang/elixir-devel/Makefile
+6-62 files

FreeBSD/ports 6d37b11mail/sympa pkg-plist Makefile, mail/sympa/files patch-configure.ac patch-issue1966

mail/sympa: Update to 6.2.78

PR:             296993
Approved by:    Geoffroy Desvernay (maintainer)
DeltaFile
+177-0mail/sympa/files/patch-issue1984
+0-48mail/sympa/files/patch-issue1966
+0-10mail/sympa/files/patch-configure.ac
+3-3mail/sympa/distinfo
+2-2mail/sympa/Makefile
+2-0mail/sympa/pkg-plist
+184-636 files

FreeBSD/ports dc73a6enet Makefile, net/rubygem-oauth-gitlab Makefile

www/gitlab: fix regression by de79e0fe79131da57d98504a8871a94f75af43e9

it cause deinstallation of gitlab:
Checking integrity... done (2 conflicting)
  - rubygem-anonymous_loader-0.1.3 [gitlab] conflicts with rubygem-anonymous_loader-gitlab-0.1.3 [installed] on /usr/local/lib/ruby/gems/3.4/gems/anonymous_loader-0.1.3/CHANGELOG.md
  - rubygem-auth-sanitizer-0.2.3 [gitlab] conflicts with rubygem-auth-sanitizer-gitlab-0.2.3 [installed] on /usr/local/lib/ruby/gems/3.4/gems/auth-sanitizer-0.2.3/CHANGELOG.md
...
Installed packages to be REMOVED:
        gitlab-ce: 19.3.0
...
DeltaFile
+25-0net/rubygem-oauth-tty-gitlab/Makefile
+3-2net/rubygem-oauth-gitlab/Makefile
+3-0net/rubygem-oauth-tty-gitlab/distinfo
+2-0net/rubygem-oauth-tty-gitlab/pkg-descr
+1-0net/Makefile
+34-25 files

FreeBSD/ports 71943ebwww/nginx-acme Makefile distinfo, www/nginx-devel version.mk Makefile

www/nginx-devel: Update to 1.31.4

*) Feature: the "proxy_protocol" directive in the stream and mail
   modules now supports the PROXY protocol version 2.

*) Change: now HTTP/2 and gRPC requests to backends are always sent with
   the ":authority" pseudo-header, and HTTP/1.1 requests - with the
   "Host" header.

*) Bugfix: a segmentation fault might occur in a worker process if the
   "select" method was used.

*) Bugfix: incomplete gRPC responses with a non-zero "Content-Length"
   header line are now treated as malformed.

*) Bugfix: in binary compatibility with third-party modules using script
   codes; the bug had appeared in 1.31.3.

*) Bugfix: in the ngx_http_perl_module.

    [7 lines not shown]
DeltaFile
+2-4www/nginx-devel/Makefile
+3-3www/nginx-devel/distinfo
+3-3www/nginx-acme/distinfo
+1-1www/nginx-devel/version.mk
+1-0www/nginx-acme/Makefile
+10-115 files