OpenBSD/src yGEzE5Msys/arch/amd64/amd64 identcpu.c, sys/arch/amd64/include cpu.h specialreg.h

   amd64: expose machinery for BHI_CTRL and BHI_DIS_S

   Some recent Intel CPUs expose BHI_CTRL. That allows one to enable BHI_DIS_S
   if BHI_NO is not present. This change adds the infrastructure for this but
   does not yet enable BHI_DIS_S.

   ok jsg@
VersionDeltaFile
1.157+10-2sys/arch/amd64/amd64/identcpu.c
1.127+7-1sys/arch/amd64/include/specialreg.h
1.186+2-1sys/arch/amd64/include/cpu.h
+19-43 files

OpenBSD/src DfumErAusr.sbin/syslogd privsep.c

   Switch syslogd(8) to getexecpath(3).

   Both syslogd and syslogd-parent call getexecpath() to get their own
   program path.  Then they transform the trailing components into the
   path of the other one, which each has to execv(3) during start or
   after SIGHUP.

   with deraadt@; OK millert@
VersionDeltaFile
1.80+40-14usr.sbin/syslogd/privsep.c
+40-141 files

OpenBSD/src jV6Lxtxsys/arch/arm64/dev agintc.c

   Restore (more) hardware state when resuming.  This fixes USB controller
   after unhibernate on various arm64 machines.

   ok deraadt@, mglocker@
VersionDeltaFile
1.66+56-39sys/arch/arm64/dev/agintc.c
+56-391 files

OpenBSD/src Eo5ONUrusr.sbin/vmd vmd.h vm.c

   Migrate vmd(8) to use getexecpath(3).

   vmd requires absolute paths during its many instances of fork+exec
   in conjunction with its usage of unveil(2). Make it easier to run
   vmd by capturing the absolute path via getexecpath(3) during early
   init and storing it in the vmd environment state.

   Looks good to deraadt@, "go for it" mlarkin@
VersionDeltaFile
1.40+10-10usr.sbin/vmd/proc.c
1.182+6-8usr.sbin/vmd/vmd.c
1.141+5-5usr.sbin/vmd/vmm.c
1.129+3-3usr.sbin/vmd/vm.c
1.149+3-3usr.sbin/vmd/virtio.c
1.149+2-2usr.sbin/vmd/vmd.h
+29-311 files not shown
+31-337 files

OpenBSD/ports xmicH4jtextproc/simdutf Makefile distinfo

   textproc/simdutf: Update to 9.1.1
VersionDeltaFile
1.9+2-2textproc/simdutf/distinfo
1.10+1-1textproc/simdutf/Makefile
+3-32 files

OpenBSD/src 5Cox78ldistrib/sets/lists/base mi

   sync, add libfido2.pc
VersionDeltaFile
1.1199+1-0distrib/sets/lists/base/mi
+1-01 files

OpenBSD/src JDKowkFlib/libfido2 Makefile generate_pkgconfig.sh

   libfido: install libfido2.pc

   OK: djm@ deraadt@
VersionDeltaFile
1.1+71-0lib/libfido2/generate_pkgconfig.sh
1.11+12-2lib/libfido2/Makefile
+83-22 files

OpenBSD/ports JOAaplvx11/gnome/contacts Makefile, x11/gnome/maps Makefile

   bump after blueprint-compiler update
VersionDeltaFile
1.11+2-1x11/gnome/papers/Makefile
1.8+1-1x11/gnome/showtime/Makefile
1.115+1-1x11/gnome/contacts/Makefile
1.41+1-0x11/gnome/quadrapassel/Makefile
1.263+1-0x11/gnome/nautilus/Makefile
1.129+1-0x11/gnome/maps/Makefile
+7-310 files not shown
+17-316 files

OpenBSD/ports IYe06Myx11/blueprint-compiler Makefile distinfo, x11/blueprint-compiler/pkg PLIST

   update to blueprint-compiler 0.22.2
VersionDeltaFile
1.7+2-2x11/blueprint-compiler/distinfo
1.10+1-1x11/blueprint-compiler/Makefile
1.6+2-0x11/blueprint-compiler/pkg/PLIST
+5-33 files

OpenBSD/src xq9jkrAsys/net pf_if.c

   Fix off-by-one in pf(4) ioctl DIOCIGETIFACES

   The check for buffer exhaustion in pfi_get_ifaces() is off-by-one.
   This leaves the last part of the buffer uninitialized and copies
   out foreign heap data.

   from Johann Hoepfner; OK deraadt@ sashan@
VersionDeltaFile
1.114+3-2sys/net/pf_if.c
+3-21 files

OpenBSD/ports UBWzgNnnews/sabnzbd Makefile distinfo

   Update to sabnzbd-5.1.3

   This release resolves two security vulnerabilities:
   - GHSA-q326-jpxx-jmjc: __wrapped__ dispatch bypass allows
     unauthenticated API access
   - GHSA-mjwj-v5mr-cmcg: PAR2 symlink bypass allows pickle remote code
     execution

   Other changes: https://github.com/sabnzbd/sabnzbd/releases/tag/5.1.3
VersionDeltaFile
1.59+2-2news/sabnzbd/distinfo
1.84+1-1news/sabnzbd/Makefile
+3-32 files

OpenBSD/ports cK5vqURtextproc/xmlwf Makefile distinfo

   update xmlwf to expat 2.8.4
VersionDeltaFile
1.18+4-4textproc/xmlwf/distinfo
1.26+1-1textproc/xmlwf/Makefile
+5-52 files

OpenBSD/ports WKnyv8rarchivers/py-zipstream-ng Makefile distinfo

   update to py-zipstream-ng 1.9.3
VersionDeltaFile
1.5+2-2archivers/py-zipstream-ng/distinfo
1.9+1-1archivers/py-zipstream-ng/Makefile
+3-32 files

OpenBSD/ports jKPIeW4devel/github-cli Makefile modules.inc

   update to github-cli 2.100.0; from David Uhden Collado
VersionDeltaFile
1.72+92-108devel/github-cli/distinfo
1.63+31-41devel/github-cli/modules.inc
1.81+1-1devel/github-cli/Makefile
+124-1503 files

OpenBSD/ports qe875PFgraphics/stable-diffusion.cpp distinfo Makefile

   graphics/stable-diffusion.cpp: disable "GGML_NATIVE"

   ... current packaged binaries crash here with SIGILL, presumably because
   they use instructions that are available on port-builders, but not here.
   I hope this fixes things.

   While here, enable support for webp (via graphics/libwepb) and webm (via
   github.com/webmproject/libwebm)
VersionDeltaFile
1.12+18-4graphics/stable-diffusion.cpp/Makefile
1.9+2-0graphics/stable-diffusion.cpp/distinfo
+20-42 files

OpenBSD/ports BK8R9jex11/sndiokeys distinfo Makefile

   x11/sndiokeys: Update to 1.3.0 and set DEBUG_PACKAGES

   ok bentley@, sthen@
VersionDeltaFile
1.3+2-2x11/sndiokeys/distinfo
1.3+3-1x11/sndiokeys/Makefile
+5-32 files

OpenBSD/src 06KSigJusr.bin/tmux format.c

   The client for the layout format is the client we are sending it to, not
   the target client.
VersionDeltaFile
1.417+3-3usr.bin/tmux/format.c
+3-31 files

OpenBSD/src 6dAvUHLsys/kern exec_elf.c

   auxinfo was not being placed on the stack for -static -pie binaries.
   auxinfo was originally intended only for ld.so but libc has started inspecting
   it, though nothing went wrong if it was missing.  But now libc getexexpath(3)
   requires it.
   ok kettenis
VersionDeltaFile
1.203+9-20sys/kern/exec_elf.c
+9-201 files

OpenBSD/ports QLenq7Yaudio/pd distinfo Makefile

   Update to 0.56.5.
   MODTK_VERSION=8.6


   ok bentley@
VersionDeltaFile
1.4+3-2audio/pd/Makefile
1.3+2-2audio/pd/distinfo
+5-42 files

OpenBSD/ports kLk1WVSdevel/tea Makefile modules.inc

   Update tea 2.14.2 -> 0.15.1
   Changelogs: https://gitea.com/gitea/tea/releases/
VersionDeltaFile
1.9+66-100devel/tea/distinfo
1.8+24-35devel/tea/modules.inc
1.10+1-1devel/tea/Makefile
+91-1363 files

OpenBSD/ports rzOTaIhwww/gitea Makefile distinfo, www/gitea/patches patch-custom_conf_app_example_ini

   Update gitea 1.27.1 - > 1.27.3
   Changelogs: https://github.com/go-gitea/gitea/releases/
VersionDeltaFile
1.72+102-83www/gitea/pkg/PLIST
1.35+9-9www/gitea/patches/patch-custom_conf_app_example_ini
1.124+2-2www/gitea/distinfo
1.144+1-1www/gitea/Makefile
+114-954 files

OpenBSD/ports lS8WCUIsecurity/vault Makefile distinfo

   Update vault 2.0.3 -> 2.1.0
   Changelog: https://github.com/hashicorp/vault/releases/
VersionDeltaFile
1.105+2-2security/vault/distinfo
1.129+1-1security/vault/Makefile
+3-32 files

OpenBSD/ports UfUkqepsecurity/keycloak Makefile distinfo, security/keycloak/pkg PLIST

   Update keycloak 26.7.0 -> 26.7.3
   Changelogs: https://github.com/keycloak/keycloak/releases/
   Release notes: https://www.keycloak.org/docs/latest/release_notes/index.html
   Upgrading guide: https://www.keycloak.org/docs/26.7.3/upgrading/
VersionDeltaFile
1.41+241-241security/keycloak/pkg/PLIST
1.40+2-2security/keycloak/distinfo
1.42+1-1security/keycloak/Makefile
+244-2443 files

OpenBSD/src 8wf2QVjsys/dev/fdt qcpas.c

   Unbreak the tree by sprinkling some #ifdef SUSPEND and #ifndef SMALL_KERNEL.
VersionDeltaFile
1.14+5-1sys/dev/fdt/qcpas.c
+5-11 files

OpenBSD/ports IZrwuAlgames/pokerth distinfo Makefile, games/pokerth/patches patch-src_net_clientstate_cpp patch-src_gui_qt6-qml_CMakeLists_txt

   Update to pokerth-2.1.8.

   From Josh Grosse (MAINTAINER)
VersionDeltaFile
1.16.2.1+1,045-0games/pokerth/pkg/PLIST
1.60.2.1+8-7games/pokerth/Makefile
1.13.2.1+2-2games/pokerth/distinfo
1.1.1.1.4.1+1-1games/pokerth/patches/patch-pokerth_desktop
1.1.2.1+0-0games/pokerth/patches/patch-src_net_clientstate_cpp
1.1.2.1+0-0games/pokerth/patches/patch-src_gui_qt6-qml_CMakeLists_txt
+1,056-102 files not shown
+1,056-108 files

OpenBSD/ports 8RZc9Vjgames/pokerth Makefile distinfo, games/pokerth/patches patch-pokerth_qml_desktop patch-src_net_tlspinning_cpp

   Update to pokerth-2.1.8.

   From Josh Grosse (MAINTAINER)
VersionDeltaFile
1.20+283-0games/pokerth/pkg/PLIST
1.1+26-0games/pokerth/patches/patch-src_net_tlspinning_cpp
1.18+2-2games/pokerth/distinfo
1.2+1-1games/pokerth/patches/patch-pokerth_qml_desktop
1.65+1-1games/pokerth/Makefile
+313-45 files

OpenBSD/ports irDIYrJsysutils/nnn Makefile

   Enable debug package for nnn.
VersionDeltaFile
1.34+3-0sysutils/nnn/Makefile
+3-01 files

OpenBSD/ports SxtOnBSsysutils/nnn distinfo Makefile

   Update to nnn-5.3.

   From Martin Ziemer (MAINTAINER)
VersionDeltaFile
1.24+2-2sysutils/nnn/distinfo
1.33+2-2sysutils/nnn/Makefile
+4-42 files

OpenBSD/ports Z6LxWDRdevel/sdl3 distinfo Makefile

   update to latest release SDL 3.4.16. survived a bulk
VersionDeltaFile
1.9+2-3devel/sdl3/Makefile
1.5+2-2devel/sdl3/distinfo
+4-52 files

OpenBSD/ports mgOTRpLaudio/midish distinfo Makefile, audio/midish/pkg PLIST

   audio/midish: Update to 1.5.0 and set DEBUG_PACKAGES

   ok bentley@
VersionDeltaFile
1.28+3-2audio/midish/Makefile
1.19+2-2audio/midish/distinfo
1.5+1-1audio/midish/pkg/PLIST
+6-53 files