NetBSD/src i7OwaKN — sys/kern uipc_socket2.c uipc_usrreq.c, sys/sys socketvar.h

   sbappendcontrol never fails; nix the return value indicating success.

   Cleanup which in principle changes the module ABI (I doubt there are
   any modules out there that actually use sbappendcontrol, though rump
   does use it across libraries) after:

   PR kren/60832: AF_LOCAL stream: sendmsg() with SCM_RIGHTS silently
   drops data and descriptors but reports success

   XXX kernel revbump due to API/ABI change -- not for pullup
VersionDeltaFile
1.212+4-8sys/kern/uipc_usrreq.c
1.150+3-5sys/kern/uipc_socket2.c
1.173+2-2sys/sys/socketvar.h
+9-153 files

NetBSD/src EvO2ak7 — sys/kern uipc_socket2.c, tests/kernel t_fdpass.c

   sendmsg(2): Don't fail with ENOBUFS on fd passing.

   We don't fail with ENOBUFS if we're not fd-passing -- we just block
   or fail earlier on with EAGAIN; no reason to invent a new failure
   mode just for the fd-passing case.

   Whether we should have _any_ path that checks the receiving socket's
   receive buffer limit is another question, but it's silly for it to:
   1. apply _only_ when passing fds,
   2. trip only when the kernel internally expands the buffer, and/or
   3. fail with ENOBUFS instead of blocking or failing with EAGAIN.

   This change essentially matches FreeBSD's subversion r337328:

   commit 5b0480f2cca0a4a04f21055ed769be93f11348de
   Author: Mark Johnston <markj at FreeBSD.org>
   Date:   Sat Aug 4 20:26:54 2018 +0000

       Don't check rcv sockbuf limits when sending on a unix stream socket.

    [25 lines not shown]
VersionDeltaFile
1.4+2-15tests/kernel/t_fdpass.c
1.149+2-8sys/kern/uipc_socket2.c
+4-232 files

NetBSD/src lUdinbY — tests/kernel t_fdpass.c

   sendmsg(2): Treat ENOBUFS on fd passing as a bug.

   PR kern/60832: AF_LOCAL stream: sendmsg() with SCM_RIGHTS silently
   drops data and descriptors but reports success
VersionDeltaFile
1.3+18-51tests/kernel/t_fdpass.c
+18-511 files

NetBSD/pkgsrc yirZIUE — doc CHANGES-2026

   doc: Added lang/hare version 0.26.0.1
VersionDeltaFile
1.6582+2-1doc/CHANGES-2026
+2-11 files

NetBSD/pkgsrc 8RyX9uq — lang Makefile

   lang/Makefile: + hare
VersionDeltaFile
1.802+2-1lang/Makefile
+2-11 files

NetBSD/pkgsrc wKPWT09 — lang/hare distinfo DESCR, lang/hare/files config.mk

   lang/hare: New package

   Hare is a systems programming language designed to be simple, stable, and
   robust. Hare uses a static type system, manual memory management, and a
   minimal runtime. It is well-suited to writing operating systems, system
   tools, compilers, networking software, and other low-level, high performance
   tasks.
VersionDeltaFile
1.1+977-0lang/hare/PLIST
1.1+43-0lang/hare/files/config.mk
1.1+29-0lang/hare/Makefile
1.1+5-0lang/hare/distinfo
1.1+5-0lang/hare/DESCR
+1,059-05 files

NetBSD/pkgsrc k8zIoma — doc CHANGES-2026

   doc: Added lang/harec version 0.26.0
VersionDeltaFile
1.6581+2-1doc/CHANGES-2026
+2-11 files

NetBSD/pkgsrc XFfByUK — lang Makefile

   lang/Makefile: + harec
VersionDeltaFile
1.801+2-1lang/Makefile
+2-11 files

NetBSD/pkgsrc 5PYufIt — lang/harec DESCR PLIST

   lang/harec: New package

   This is a Hare compiler written in C11 for POSIX-compatible systems.
VersionDeltaFile
1.1+28-0lang/harec/Makefile
1.1+5-0lang/harec/distinfo
1.1+2-0lang/harec/PLIST
1.1+1-0lang/harec/DESCR
+36-04 files

NetBSD/pkgsrc 5ZeGbPC — doc TODO

   doc/TODO: update two

   - apache-2.4.69.

   + thrift-0.25.0 [CVE-2026-41608].
VersionDeltaFile
1.28068+2-3doc/TODO
+2-31 files

NetBSD/pkgsrc HpOX2Sr — doc CHANGES-2026

   doc: Updated www/apache24 to 2.4.69
VersionDeltaFile
1.6580+2-1doc/CHANGES-2026
+2-11 files

NetBSD/pkgsrc EQG5dFk — www/apache24 Makefile distinfo

   www/apache24: update to 2.4.69

   Apache 2.4.69 (2026-10-01)

     *) Fix the tar icon in the documentation so that its background is
        transparent.  #70238.  [Jeffery To <jeffery.to gmail.com>]

     *) mod_ssl: Fix OpenSSL compatibility macros for X509_get0_notBefore,
        X509_get0_notAfter, and X509_get0_serialNumber with OpenSSL < 1.1.
        #70205.  [Craig Lorentzen <crlorent amazon.com>]

     *) mod_cgid, mod_ssl, mod_md: Various hardening fixes.  [Various authors]

     *) mod_md: MDServerStatus is now disabled by default.  [Joe Orton]

     *) mod_auth_digest: Fix compatibility with expression-based AuthName.
        #59039.  [Eric Covener]

     *) mod_auth_digest.c: Drop RFC 2069 support; rewrite shared memory

    [29 lines not shown]
VersionDeltaFile
1.41+10-1www/apache24/PLIST
1.73+4-4www/apache24/distinfo
1.149+2-3www/apache24/Makefile
+16-83 files

NetBSD/pkgsrc-wip e3b1041 — rust199 do-cross.mk options.mk, rust199/files gcc-wrap

rust199: update to rust version 1.99.0.

Pkgsrc changes:
 * Adapt to changes in vendored crate versions.
 * Version & checksum changes.

Upstream changes:

Version 1.99.0 (2026-10-01)
==========================

Language
--------
- [Add allow-by-default `raw_borrows_via_references` lint that
  checks for references that decay immediately into raw
  borrows](https://github.com/rust-lang/rust/pull/138230)
- [Extend `unconditional_panic` lint to function calls that panic
  when the chunks/windows size is zero]
  (https://github.com/rust-lang/rust/pull/153563)

    [214 lines not shown]
DeltaFile
+793-0rust199/Makefile
+215-0rust199/files/gcc-wrap
+187-0rust199/distinfo
+140-0rust199/cargo.mk
+131-0rust199/options.mk
+117-0rust199/do-cross.mk
+1,583-080 files not shown
+3,884-086 files

NetBSD/src wNcaop7 — sys/miscfs/fifofs fifo_vnops.c, tests/lib/libc/sys t_mkfifo.c

   fifo: Fix EOF reporting in various cases.

   According to POSIX:

   > When attempting to read from an empty pipe or FIFO:
   >
   >     If no process has the pipe open for writing, read() shall
   >     return 0 to indicate end-of-file.

   So:

   1. When there are no writers, after open(O_RDONLY|O_NONBLOCK),
      blocking reads should immediately report EOF instead of blocking,
      and should continue to immediately report EOF on repeated reads.

      Previously, they would simply block, because the wrong socket was
      initialized with SS_CANTRCVMORE -- though curiously, nonblocking
      reads would consistently report EOF.


    [42 lines not shown]
VersionDeltaFile
1.93+3-11sys/miscfs/fifofs/fifo_vnops.c
1.9+2-5tests/lib/libc/sys/t_mkfifo.c
+5-162 files

NetBSD/pkgsrc XkYvHhH — databases/postgresql-postgis2 Makefile

   databases/postgresql-postgis2: Drop explicit ACCEPTED

   postgis builds with all versions in the default value of
   PGSQL_VERSIONS_ACCEPTED.  It's generally not difficult about pgsql
   versions, and likely to continue to work with all pkgsrc versions.
   Drop the explicit redundant setting as unnecessary, as well as
   confounding for those adjusting mk/pgsql.mk to only build one version.
VersionDeltaFile
1.207+1-2databases/postgresql-postgis2/Makefile
+1-21 files

NetBSD/src DJ3bSYZ — sys/kern uipc_usrreq.c, tests/kernel t_fdpass.c

   sendmsg(2): Report ENOBUFS instead of success on failure to pass fds.

   PR kern/60832: AF_LOCAL stream: sendmsg() with SCM_RIGHTS silently
   drops data and descriptors but reports success
VersionDeltaFile
1.2+2-15tests/kernel/t_fdpass.c
1.211+7-3sys/kern/uipc_usrreq.c
+9-182 files

NetBSD/src QHKfEwu — distrib/sets/lists/debug mi, distrib/sets/lists/tests mi

   cmsg: Test edge case of fd-passing near buffer size.

   This test allows sendmsg to fail with ENOBUFS without blocking, and
   verifies that the fds are received if it succeeds.

   When passing file descriptors, sendmsg can fail with ENOBUFS it did
   not or would not block because _after_ the blocking criterion is
   tested in the AF-generic uipc_socket.c logic (essentially, whether
   the data length + control length would exceed the send buffer size),
   the control buffer is expanded on some architectures by converting
   each int file descriptor to a struct file pointer in the kernel, and
   then the buffer size is checked again in AF_LOCAL-specific logic when
   unp_send calls sbappendcontrol.

   Frankly I think this is a bad design, and sendmsg should just not
   fail for this reason if it has passed the blocking criterion: either

   (a) the AF_LOCAL-specific logic should count the user's control
       buffer size with ints rather than the the kernel's control buffer

    [16 lines not shown]
VersionDeltaFile
1.1+408-0tests/kernel/t_fdpass.c
1.103+7-1tests/kernel/Makefile
1.1432+2-1distrib/sets/lists/tests/mi
1.521+2-1distrib/sets/lists/debug/mi
+419-34 files

NetBSD/src Wf4SD6c — sys/arch/mips/mips mips_machdep.c

   mips: Avoid shifting into sign bit by using unsigned type instead.

   Maybe this loop should do arithmetic in the other direction?  But at
   least left shifts on unsigned t-bit types are reduced mod 2^t and not
   undefined, so this is a simpler change to avoid UB.

   PR port-evbmips/60812: UBSan: Undefined Behavior in [sys-src] member
   access within misaligned address [..] for type '[..]' which requires
   128 byte alignment
VersionDeltaFile
1.311+3-3sys/arch/mips/mips/mips_machdep.c
+3-31 files

NetBSD/pkgsrc wZXUW5E — doc TODO

   doc/TODO: + apache-2.4.69, discount-3.0.2.0 [wip], p5-Text-Markdown-Discount-0.19.
VersionDeltaFile
1.28067+4-2doc/TODO
+4-21 files

NetBSD/pkgsrc-wip 7236999 — discount3 distinfo Makefile

discount3: update to 3.0.2.0.
DeltaFile
+11-4discount3/Makefile
+3-3discount3/distinfo
+14-72 files

NetBSD/src zjCrqHC — lib/npf/ext_route npfext_route.c, sys/net/npf npf_ext_route.c

   policy based routing in NPF addition

   route-to interface should be specified using "interface" paramter.

   indroduces IPv4 and IPv6 gateway using "via" and "via6" parameters.

   introduces "dup-to" to duplicated packet and route duplicated traffic via
   npf's configured route while allowing the normal packet continue its
   journey.

   simple use case

   route: "interface" wm1, "via" 192.168.64.100 "via6" fe80::1 "dup-to"
VersionDeltaFile
1.13+62-23sys/net/npf/npf_ext_route.c
1.2+59-4lib/npf/ext_route/npfext_route.c
+121-272 files

NetBSD/pkgsrc-wip 55b17cd — p5-Imager Makefile distinfo

p5-Imager: update to 1.037.

Security fix release.
DeltaFile
+3-3p5-Imager/distinfo
+1-1p5-Imager/Makefile
+4-42 files

NetBSD/pkgsrc 7QNuTay — emulators/jgenesis Makefile

   jgenesis: fix typo in comment
VersionDeltaFile
1.27+2-2emulators/jgenesis/Makefile
+2-21 files

NetBSD/src jTpaV3m — doc CHANGES 3RDPARTY

   Note tzdata2026e update (via 2026egtz)
VersionDeltaFile
1.2260+4-4doc/3RDPARTY
1.3300+2-1doc/CHANGES
+6-52 files

NetBSD/src U04jmWN — external/public-domain/tz/dist zone1970.tab zonenow.tab

   Merge tzdata2026e
VersionDeltaFile
1.9+100-20external/public-domain/tz/dist/northamerica
1.10+38-0external/public-domain/tz/dist/NEWS
1.7+26-4external/public-domain/tz/dist/europe
1.5+7-7external/public-domain/tz/dist/africa
1.10+4-1external/public-domain/tz/dist/zonenow.tab
1.9+1-1external/public-domain/tz/dist/zone1970.tab
+176-335 files not shown
+181-3811 files

NetBSD/src X33BdR8 — external/public-domain/tz/dist version zonenow.tab

   Import tzdata2026e from https://github.com/JodaOrg/global-tz/releases/download/2026egtz/tzdata2026egtz.tar.gz

   Summary of changes in tzdata2026e (2026-09-29 17:14:38 -0700):
     * Manitoba’s 2026-03-08 spring forward was its last foreseeable clock
       change, as it moved to permanent -05 thereafter.
     * As the change affects both America/Winnipeg and its backward
       compatibility link, the obsolescent setting TZ="Canada/Central"
       will now use the abbreviation EST for affected timestamps,
       akin to TZ="Canada/Pacific" behavior introduced in 2026b.
     * In 1925 Ireland fell back on 09-20 not 10-04 (thanks to Stan Ulbrych).
VersionDeltaFile
1.1.1.44+100-20external/public-domain/tz/dist/northamerica
1.1.1.54+38-0external/public-domain/tz/dist/NEWS
1.1.1.46+26-4external/public-domain/tz/dist/europe
1.1.1.39+7-7external/public-domain/tz/dist/africa
1.1.1.11+4-1external/public-domain/tz/dist/zonenow.tab
1.1.1.42+1-1external/public-domain/tz/dist/version
+176-334 files not shown
+180-3710 files

NetBSD/pkgsrc PNMnM0l — doc CHANGES-2026

   doc: Updated net/knot-resolver to 6.5.0
VersionDeltaFile
1.6579+2-1doc/CHANGES-2026
+2-11 files

NetBSD/pkgsrc 6njj1ep — net/knot-resolver distinfo Makefile

   knot-resolver: Update to 6.5.0

   Thursday, October 1, 2026

   Bugfixes
   views: fix "unused tags" error when repeating a tag in views (!1883)
   watchdog: detect file-changes done via rename*() syscall (!1895) This is relevant for RPZ files and TLS certs+keys.
   DoH fixes for sharing connections among different users (!1844)
   TCP-based connections used Nagle's algorithm since 6.2.0 (!1903) This mistake significantly increased latencies of such transports.
   local-data: process upper-case names correctly (!1915)

   Packaging
   deb: migrate to sysusers and update packaging (!1857)
   rpm: fix source build against libknot >= 3.6 (!1907)
   python: 3.9+ (!1886), migrated to setuptools (!1889), removed typing-extensions (!1910)
   Debian 11 is no longer supported
   Debian,Ubuntu: i386 and armhf architectures no longer supported

   Improvements

    [12 lines not shown]
VersionDeltaFile
1.8+16-29net/knot-resolver/Makefile
1.4+3-3net/knot-resolver/distinfo
+19-322 files

NetBSD/pkgsrc qPKNCiN — doc CHANGES-2026

   doc: Updated net/powerdns-recursor to 5.4.7
VersionDeltaFile
1.6578+2-1doc/CHANGES-2026
+2-11 files

NetBSD/pkgsrc 94KNQEi — net/powerdns-recursor cargo-depends.mk Makefile

   powerdns-recursor: Update to 5.4.7

   Released: 1st of October 2026
   Bug Fixes
   Rec: Fix Lua to YAML conversion of custom RPZ policies
   References: pull request 18029

   Rec: retrieve DNSSEC data with RPZ processing disabled
   References: pull request 18035

   Rec: Catch exception thrown by parsing system resolver result
   References: pull request 18068

   Fix(rec): Wipe caches when wiping all NTA’s
   References: pull request 18070

   Rec and auth: fix axfr failure to invalidate fd on close in all cases.
   References: pull request 18084


    [2 lines not shown]
VersionDeltaFile
1.55+3-3net/powerdns-recursor/distinfo
1.71+2-3net/powerdns-recursor/Makefile
1.8+0-0net/powerdns-recursor/cargo-depends.mk
+5-63 files