NetBSD/pkgsrc-wip eb315f6temurin21 buildlink3.mk Makefile

Add Adoptium Temurin JDK 21 LTS.
DeltaFile
+485-0temurin21/PLIST.Linux-x86_64
+421-0temurin21/PLIST.Darwin-aarch64
+420-0temurin21/PLIST.Darwin-x86_64
+414-0temurin21/PLIST.Linux-aarch64
+71-0temurin21/Makefile
+16-0temurin21/buildlink3.mk
+1,827-02 files not shown
+1,833-08 files

NetBSD/pkgsrc erD6GeIdoc CHANGES-2026

   Updated security/defguard-gateway, security/ccid, net/py-zeroconf
VersionDeltaFile
1.5730+4-1doc/CHANGES-2026
+4-11 files

NetBSD/pkgsrc JQFG1hZnet/py-zeroconf Makefile distinfo

   py-zeroconf: updated to 0.151.3

   v0.151.3 (2026-08-30)

   Bug Fixes

   - Correct the recursion available header flag to the rfc 1035 value

   Refactoring

   - Compute probe pacing from fresh clock reads
   - Compute service info request pacing from fresh clock reads

   Testing

   - Fix flaky test_service_browser_expire_callbacks
   - Make test_qu_response deterministic by injecting the announcement

   v0.151.2 (2026-08-29)

    [4 lines not shown]
VersionDeltaFile
1.62+4-4net/py-zeroconf/distinfo
1.67+2-2net/py-zeroconf/Makefile
+6-62 files

NetBSD/pkgsrc ZcP6JGjsecurity/ccid Makefile distinfo

   ccid: updated to 1.8.3

   1.8.3

   - Add support of
     - Broadcom Corp 58200 0x5884
     - Broadcom Corp 58200 0x5885
     - Broadcom Corp 58200 0x5886
     - Broadcom Corp 58200 0x5887
     - Circle CIR135 ICC
     - DigiFlow LLP. KAZTOKEN
     - HID Global Crescendo NFC Reader
     - HID Global OMNIKEY Plug
     - HID Global OMNIKEY SE Plug
     - Neowave LinkeoC-PRO
     - Swissbit iShield Key 2 Pro
   - macOS: provide a sample script to build the driver with meson
   - fix some minor issues found by an AI tool
   - Some other minor improvements
VersionDeltaFile
1.35+4-4security/ccid/distinfo
1.57+2-2security/ccid/Makefile
+6-62 files

NetBSD/pkgsrc q9tlj3Osecurity/defguard-gateway Makefile cargo-depends.mk, security/defguard-gateway/patches patch-Cargo.toml

   defguard-gateway: updated to 2.0.5

   2.0.5
   It changes the default OPNsense plugin configuration which controls the placement of Defguard-related firewall rules.
   This configuration is now also available in advanced plugin options.
VersionDeltaFile
1.9+149-146security/defguard-gateway/distinfo
1.8+48-47security/defguard-gateway/cargo-depends.mk
1.8+2-11security/defguard-gateway/patches/patch-Cargo.toml
1.9+2-2security/defguard-gateway/Makefile
+201-2064 files

NetBSD/pkgsrc z6F7PLHdoc CHANGES-2026

   Updated archivers/py-cramjam, graphics/py-pillow_heif
VersionDeltaFile
1.5729+3-1doc/CHANGES-2026
+3-11 files

NetBSD/pkgsrc 9M9JHhKgraphics/py-pillow_heif Makefile distinfo

   py-pillow_heif: updated to 1.6.0

   1.6.0 - 2026-08-31

   Added

   - Reading and writing HDR metadata: `content_light_level`, `mastering_display_colour_volume`, `ambient_viewing_environment` keys in `info` dictionary.
   - Python `3.15` and `3.15t` wheels added.

   Changed

   - `libheif` was updated from the `1.23.1` to `1.23.2` version.

   Fixed

   - Use-after-free when a numpy array or the `data` memoryview outlived the `HeifFile` it was created from.
   - Conflicting license metadata: removed the `GPLv2` classifier, the package license is `BSD-3-Clause`; bundled library licenses in wheels are described in `LICENSES_bundled.txt`, which was updated to match the current libraries.
VersionDeltaFile
1.26+4-4graphics/py-pillow_heif/distinfo
1.36+3-3graphics/py-pillow_heif/Makefile
+7-72 files

NetBSD/pkgsrc HywJB6Uarchivers/py-cramjam Makefile distinfo

   py-cramjam: updated to 2.12.1

   2.12.1

   Don’t depend on deprecated pyo3/generate-import-lib feature
   Fix Buffer protocol typing
VersionDeltaFile
1.6+4-4archivers/py-cramjam/distinfo
1.9+2-2archivers/py-cramjam/Makefile
+6-62 files

NetBSD/pkgsrc ZSZXNY0net/vnstat Makefile.common, net/vnstati Makefile

   vnstat*: Consolidate and make paths absolute.

   Avoids constant rebuilds in bulk builds.
VersionDeltaFile
1.3+5-1net/vnstat/Makefile.common
1.3+1-3net/vnstati/Makefile
+6-42 files

NetBSD/src TSuA3jxsys/dev/ic ct65550.c

   - support screen blanking
   - make sure we can map the whole fb at 0
VersionDeltaFile
1.16+25-10sys/dev/ic/ct65550.c
+25-101 files

NetBSD/pkgsrc x0a61e4doc CHANGES-2026

   Updated devel/pcre2, devel/protobuf, devel/py-protobuf
VersionDeltaFile
1.5728+4-1doc/CHANGES-2026
+4-11 files

NetBSD/pkgsrc oeOiTo2devel/protobuf Makefile distinfo, devel/py-protobuf Makefile PLIST

   protobuf py-protobuf: updated to [7.]36.1

   36.1

   Rust

   Update README files for each crate. (e64a176)
   Include runtime version details in assertion error messages. (fecb404)
   Drop special treatment of rust versions below 4.33. (1312f3b)
   Invert the relationship between rust crates (fbf3069)

   Python

   Optimize pure Python parse path for custom JSON enum names. (333846a)
   Additional unit tests for Python handling of custom JSON enum names.
VersionDeltaFile
1.91+4-4devel/py-protobuf/distinfo
1.104+4-4devel/protobuf/distinfo
1.31+4-1devel/py-protobuf/PLIST
1.100+2-2devel/py-protobuf/Makefile
1.112+2-2devel/protobuf/Makefile
+16-135 files

NetBSD/pkgsrc o4Jq5gOdevel/pcre2 PLIST Makefile

   pcre2: updated to 10.48

   10.48 31-August-2026

   This is a regular release, incorporating security fixes along with small
   improvements and fixes to library behaviour.

   Only changes to behaviour, changes to the API, and other significant changes
   are described here. Please see the ChangeLog and Git log for further details.

   As well as the tarball and Git tag for this release, there are detailed
   instructions for backporting security and correctness fixes, for the last
   five years of releases.

   * (Git change) Renamed the default development branch from master to main.

   * (Maintenance change) Added a five-year support lifecycle policy and
   publication of backport patches for security and high-severity fixes in older
   releases.

    [46 lines not shown]
VersionDeltaFile
1.30+4-4devel/pcre2/distinfo
1.33+2-2devel/pcre2/Makefile
1.14+2-1devel/pcre2/PLIST
+8-73 files

NetBSD/pkgsrc uzL7b7Lshells/standalone-tcsh Makefile, shells/static-tcsh Makefile

   *tcsh: Sanitise path settings.

   Avoids constant rebuilds when using bulk build tools.  While here apply
   some minor pkglint.  I tested all packages on NetBSD 11/amd64 apart from
   the install of the standalone-tcsh binary package due to read-only / in
   my build sandboxes.
VersionDeltaFile
1.44+3-6shells/standalone-tcsh/Makefile
1.19+6-2shells/tcsh/Makefile.common
1.18+2-4shells/static-tcsh/Makefile
+11-123 files

NetBSD/src Afg7zensys/dev/ic ct65550reg.h

   fix tpyo
VersionDeltaFile
1.4+29-31sys/dev/ic/ct65550reg.h
+29-311 files

NetBSD/pkgsrc K1CyE9Px11/xlockmore Makefile.common

   xlockmore: Fix variable setting.

   Fixes build of xlockmore-lite.
VersionDeltaFile
1.97+6-6x11/xlockmore/Makefile.common
+6-61 files

NetBSD/pkgsrc-wip b30530ccrush Makefile go-modules.mk

crush: Update to 0.92.0
DeltaFile
+15-15crush/distinfo
+20-4crush/COMMIT_MSG
+4-4crush/go-modules.mk
+1-1crush/Makefile
+40-244 files

NetBSD/pkgsrc 347bvRHconverters/mpack Makefile

   mpack: Fix build issue with clang.

   From Kogule Ryo in PR pkg/60580
VersionDeltaFile
1.27+3-1converters/mpack/Makefile
+3-11 files

NetBSD/pkgsrc-wip 60c1d79temurin17 buildlink3.mk Makefile

Add Adoptium Temurin JDK 17 LTS.
DeltaFile
+484-0temurin17/PLIST.Linux-x86_64
+421-0temurin17/PLIST.Darwin-aarch64
+420-0temurin17/PLIST.Darwin-x86_64
+414-0temurin17/PLIST.Linux-aarch64
+71-0temurin17/Makefile
+16-0temurin17/buildlink3.mk
+1,826-02 files not shown
+1,832-08 files

NetBSD/pkgsrc-wip 387a9e1forgejo-runner Makefile, forgejo-runner/files forgejo-runner.sh

forgejo-runner: register missing dependencies

devel/git-base is necessary to clone the code of the actions, and
lang/nodejs is required to perform them.
DeltaFile
+5-1forgejo-runner/Makefile
+3-0forgejo-runner/files/forgejo-runner.sh
+8-12 files

NetBSD/pkgsrc igbya1Kdoc CHANGES-2026

   doc: Removed multimedia/sickgear
VersionDeltaFile
1.5727+2-1doc/CHANGES-2026
+2-11 files

NetBSD/pkgsrc 3E9sLQrmultimedia Makefile, multimedia/sickgear distinfo PLIST

   Remove multimedia/sickgear for catastrophic security issues (backdoor?)

   It is doing the equivalent of downloading code from a wiki page and
   executing it. But even if this would not be editable by everybody by
   leaking the deploy token, it would still be a potential backdoor for the
   developers.

   See https://github.com/SickGear/SickGear/issues/1517 for details.

   The patches in pkgsrc neutered this a bit, but I still urge everybody
   who has this installed to *immediately* uninstall it.
VersionDeltaFile
1.363+1-2multimedia/Makefile
1.2+1-1multimedia/sickgear/patches/patch-sickgear_version_checker.py
1.5+1-1multimedia/sickgear/patches/patch-sickgear.py
1.13+1-1multimedia/sickgear/distinfo
1.8+1-1multimedia/sickgear/PLIST
1.22+1-1multimedia/sickgear/Makefile
+6-72 files not shown
+6-78 files

NetBSD/src rQQerNYsys/arch/sparc64/conf GENERIC

   sun4v: Add mpii(4) to sparc64 GENERIC config.

   Symbios Logic SAS3008 storage controller is present in SPARC S7-2 servers.

   Not tested yet.
VersionDeltaFile
1.255+3-2sys/arch/sparc64/conf/GENERIC
+3-21 files

NetBSD/src ewk96uisys/arch/sparc64/conf GENERIC

   Undo rev. 1.252 - mfii(4) is not the corect driver to use
VersionDeltaFile
1.254+2-3sys/arch/sparc64/conf/GENERIC
+2-31 files

NetBSD/pkgsrc w58ayX0www/go-minify Makefile, www/pup Makefile

   Revbump all Go packages after go127 became the default
VersionDeltaFile
1.98+2-2x11/kitty/Makefile
1.37+2-2www/shoutrrr/Makefile
1.71+2-2www/restish/Makefile
1.25+2-2www/reader/Makefile
1.95+2-2www/pup/Makefile
1.88+2-2www/go-minify/Makefile
+12-12216 files not shown
+444-417222 files

NetBSD/pkgsrc XPPZwbFlang/go version.mk

   go: build with 1.27 by default
VersionDeltaFile
1.255+2-2lang/go/version.mk
+2-21 files

NetBSD/pkgsrc 5F3SFMswww/gotosocial Makefile

   gotosocial: requires Go 1.26

   Build fails with Go 1.27.
VersionDeltaFile
1.67+3-1www/gotosocial/Makefile
+3-11 files

NetBSD/pkgsrc 75dngmVnet/opentofu111 Makefile, net/opentofu112 Makefile

   opentofu, scaleway-cli: need Go 1.26

   Build fails with Go 1.27.
VersionDeltaFile
1.27+4-1net/scaleway-cli/Makefile
1.2+4-1net/opentofu112/Makefile
1.2+4-1net/opentofu111/Makefile
+12-33 files

NetBSD/pkgsrc 41WcLQ8doc CHANGES-2026

   doc: Updated textproc/expat to 2.8.4
VersionDeltaFile
1.5726+2-1doc/CHANGES-2026
+2-11 files

NetBSD/pkgsrc xJZudmZtextproc/expat Makefile distinfo

   expat: update to 2.8.4.

   Release 2.8.4 Mon August 31 2026
           Security fixes:
        #1321 #1331  CVE-2026-66046, CVE-2026-76641 -- Fix quadratic runtime from
                       "attribute isCdata lookups" that allowed denial of service
                       attacks through moderately sized crafted XML input
                       (CWE-407).
                       The vulnerability is closely related to past CVE-2026-45186
                       that was fixed with Expat 2.8.1.
                       Please note that a layer of compression around XML can
                       significantly reduce the minimum attack payload size.
                       Upstream CVSS 3.1 vector:
                       AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H (CVSS score: 7.5)
                       (Note the "AV:N" for network/remote.)
              #1322  CVE-2026-76957 -- Protect custom encoding callbacks from
                       parser re-entry. The vulnerability is closely related to
                       past issues CVE-2026-50219, CVE-2026-56131 and
                       CVE-2026-56412 that were all fixed with Expat 2.8.2.

    [47 lines not shown]
VersionDeltaFile
1.62+4-4textproc/expat/distinfo
1.68+2-2textproc/expat/Makefile
+6-62 files