net-mgmt/nfdump: Update to 1.7.8
The following options are no longer available:
* FIXTIMEBUG: discontinued upstream
* GEODB: now always on
* INFLUXDB: discontinued upstream
* NFTRACK: now included in NFPROFILE
* NSEL: now always on
* SFLOW: now always on
Reviewed by: pi
Differential Revision: https://reviews.freebsd.org/D57835
devel/hare: update to version 0.26.0.1
This is a security release for Hare 0.26.0 which includes patches to
address CVE-2026-43923.
The CVE entry is reserved with no further details, therefore it is not
known whether the issue did affect FreeBSD.
Security: CVE-2026-43923
multimedia/libbluray: update to version 1.5.0
Major changes in this version:
- Expose dynamic range, color space, cr_flag and HDR10+ flags
in stream info
- Expose chapter names in title info
- list_titles: report the number of Dolby Vision tracks
- BD-J: Implement HAVI text and graphic look & feel components
- BD-J: Implement navigable and actionable HAVI components
- BD-J: Fix disabled components being hidden and vertical text
alignment
- BD-J: Lazy-load .bdjo title files for faster startup
- BD-J: Add S3D and UHD stream types
devel/py-dbt-extractor: Use py-build to build wheel
Also remove dependency devel/py-tree-sitter, it is pinned in
Makefile.crates already and is written in Rust.
Nice bonus: The shared library is automatically stripped, down from 22
MB to 800 kB!
databases/sq: Update to 0.54.1
Upstream added a DuckDB driver, whose Go bindings ship prebuilt static
libraries only for darwin, linux and windows. Build with the
duckdb_use_lib tag so that the bindings link against the system
libduckdb instead.
databases/duckdb: Do not pull in dependencies of unselected extensions
The extension loop adds each extension's library dependencies with
LIB_DEPENDS+=${PORT_OPTIONS:M${opt}:?${${opt}_LIB_DEPENDS}:}
The intent is "if this extension's option is selected, append its
<OPT>_LIB_DEPENDS", mirroring the two lines above it. Those work because
${PORT_OPTIONS:M${opt}:S/...} is empty-in-empty-out, but :? does not
behave the same way: per make(1), it evaluates the variable *name* -- not
the value the preceding modifiers produced -- as a conditional
expression. The condition here is therefore the bare word PORT_OPTIONS,
which is always true, so the true branch is always taken:
PORT_OPTIONS=FOO BAR
${PORT_OPTIONS:MAWS} -> ""
${PORT_OPTIONS:MAWS:?${AWS_LIB_DEPENDS}:} -> libaws.so:devel/aws
As a result AVRO_LIB_DEPENDS (avro-c, jansson, snappy), AWS_LIB_DEPENDS
[13 lines not shown]
*/*: depends of devel/talloc244
Update dependency of devel/tevent017 to use devel/talloc244 instead
of devel/talloc243 since these version of samba can support it.
Update Mk/Uses/samba.mk for relecting such changes.
PR: 294595
Reported by: Jordan Ostref, ml at netfence.it
Reviewed by: kiwi
Approved by: samba (kiwi)
Sponsored by: Klara, Inc.
multimedia/jellyfin: fix text rendering
Jellyfin uses libHarfBuzzSharp.so to render text on thumbnails, like
it uses libskiasharp. After analyses it appears nothing in jellyfin
is calling any symbols out of the symbols exposed by vanilla
libharfbuzz.so, instead of building a full libHarfBuzzSharp.so, just
resuse the share libarfbuz.so create a symlink in a place where jellyfin
will be able to dlopen it.
PR: 297316
Reported by: freebsd.geography231 at slmails.com
www/gitlab: fix regression by de79e0fe79131da57d98504a8871a94f75af43e9
it cause deinstallation of gitlab:
Checking integrity... done (2 conflicting)
- rubygem-anonymous_loader-0.1.3 [gitlab] conflicts with rubygem-anonymous_loader-gitlab-0.1.3 [installed] on /usr/local/lib/ruby/gems/3.4/gems/anonymous_loader-0.1.3/CHANGELOG.md
- rubygem-auth-sanitizer-0.2.3 [gitlab] conflicts with rubygem-auth-sanitizer-gitlab-0.2.3 [installed] on /usr/local/lib/ruby/gems/3.4/gems/auth-sanitizer-0.2.3/CHANGELOG.md
...
Installed packages to be REMOVED:
gitlab-ce: 19.3.0
...
www/nginx-devel: Update to 1.31.4
*) Feature: the "proxy_protocol" directive in the stream and mail
modules now supports the PROXY protocol version 2.
*) Change: now HTTP/2 and gRPC requests to backends are always sent with
the ":authority" pseudo-header, and HTTP/1.1 requests - with the
"Host" header.
*) Bugfix: a segmentation fault might occur in a worker process if the
"select" method was used.
*) Bugfix: incomplete gRPC responses with a non-zero "Content-Length"
header line are now treated as malformed.
*) Bugfix: in binary compatibility with third-party modules using script
codes; the bug had appeared in 1.31.3.
*) Bugfix: in the ngx_http_perl_module.
[7 lines not shown]