FreeBSD/ports a953dff — textproc/feluda Makefile Makefile.crates

textproc/feluda: Update 1.16.0 => 1.17.0

Changelog:
https://github.com/anistark/feluda/releases/tag/v1.17.0

Reported by:    repology
Approved by:    osa, vvd (Mentors, implicit)
DeltaFile
+245-233textproc/feluda/distinfo
+121-115textproc/feluda/Makefile.crates
+1-2textproc/feluda/Makefile
+367-3503 files

FreeBSD/ports 647198a — japanese/ebview-gtk2 Makefile, japanese/ebview-gtk2/files patch-src_ebview.c patch-src_preference.c

japanese/ebview-gtk2: Fix crashes immediately after startup

Since japanese/ebview was removed in 2014, remove CONFLICTS.
Switch from REINPLACE_CMD to patchfile.

PR:             297153
Approved by:    fluffy (mentor)
Co-authored-by: mce

(cherry picked from commit e1c65a93e348dddf2ab5a5b099f4d2fae262d0b2)
DeltaFile
+20-0japanese/ebview-gtk2/files/patch-src_preference.c
+6-9japanese/ebview-gtk2/Makefile
+11-0japanese/ebview-gtk2/files/patch-src_ebview.c
+37-93 files

LLVM/project 3bf3737 — llvm/include/llvm/CodeGen TargetLowering.h, llvm/lib/CodeGen/SelectionDAG TargetLowering.cpp LegalizeVectorOps.cpp

[DAG] Use getLegalMaskAndStepVector in expandGetActiveLaneMask

Currently we will either use the mask vector type if it's big enough to fit the elements, or promote the element width to the scalar operand type.

In the latter case we will end up with a vector element type larger than strictly necessary, which means a v32i1 mask will get promoted to v32i64 on RISC-V, which isn't a legal type, and expansion fails.

We can use a legal vector type that's just small enough via getLegalMaskAndStepVector, which is already used by expandVectorFindLastActive, expandCttzElts etc. This fixes crashes on RISC-V and also uses a more compact step vector. It also means we can handle scalable vectors.

We need to move the function into TargetLowering.cpp to use the getLegalMaskAndStepVector, but this brings it inline with the other expansions.
DeltaFile
+1-43llvm/lib/CodeGen/SelectionDAG/LegalizeVectorOps.cpp
+21-17llvm/test/CodeGen/AArch64/neon-get-active-lane-mask.ll
+27-0llvm/lib/CodeGen/SelectionDAG/TargetLowering.cpp
+5-0llvm/include/llvm/CodeGen/TargetLowering.h
+54-604 files

FreeBSD/ports cffbff1 — security/vuxml/vuln 2026.xml

security/vuxml: Document multiple vulnerabilities in p5-DBI
DeltaFile
+59-0security/vuxml/vuln/2026.xml
+59-01 files

FreeBSD/ports 8ce28fd — databases/p5-DBI Makefile distinfo

databases/p5-DBI: update 1.648 -> 1.654

Changelog: https://metacpan.org/dist/DBI/changes

Major changes for 1.650:
    - Set a hard limit of 99999 on '?' placeholders (CVE-2026-14739)
    - Fix out-of-bounds read in preparse of SQL that starts with a comment (CVE-2026-14740)
    - Fix code injection via Profile DSN attribute or DBI_PROFILE variable (CVE-2026-14380)

Major changes for 1.651:
    - Fix inverted comparisons for strings in DBI::SQL::Nano  (CVE-2026-15043)
    - Fix DBD::File to ensure that the table is not a symlink outside of f_dir (CVE-2026-15392)
    - Fix an out-of-bounds error when a statement handle has no fields but the source row is not empty (CVE-2026-60082)
    - Add an overridable upper bound $MAX_PATH_DEPTH for DBI::ProfileData (CVE-2026-60081)

Major changes for 1.652:
    - require perl >= 5.12
    - Force placeholder limit on :# and :p# too (CVE-2026-73194)
    - Limit statements to 292 Mb in preparse (CVE-2026-73193)

    [23 lines not shown]
DeltaFile
+3-3databases/p5-DBI/distinfo
+1-1databases/p5-DBI/Makefile
+4-42 files

FreeNAS/freenas 9c287c2 — src/middlewared/middlewared/api/v26_0_0 s3.py, src/middlewared/middlewared/api/v27_0_0 s3.py

Add bucket recovery APIs

There are various situations in which we can have orphaned
buckets. Examples include:

* bucket is deleted and admin wants to reinstate.
* the NAS is disaster recovery instance and needs to activate
  buckets after switching datasets to read-write.

This is facilited by inserting a .truenas_s3/config_backup.json
file inside each bucket (daemon-owned path) and restoring the
DB row / S3 config with some user-provided overrides if required.

Two new API endpoints are added:

* sharing.s3.recoverable_buckets lists mounted datasets containing
  orphaned buckets.

* sharing.s3.recover basically takes a list of datasets and rebuilds
  bucket configuration from backups for them.
DeltaFile
+442-33src/middlewared/middlewared/plugins/truenas_s3/bucket_crud.py
+291-0tests/api2/test_s3_bucket.py
+120-0src/middlewared/middlewared/pytest/unit/plugins/test_truenas_s3_on_disk.py
+103-0src/middlewared/middlewared/plugins/truenas_s3/on_disk.py
+63-1src/middlewared/middlewared/api/v27_0_0/s3.py
+63-1src/middlewared/middlewared/api/v26_0_0/s3.py
+1,082-351 files not shown
+1,091-367 files

LLVM/project 2dc2a1f — libc/src/__support/math lgammaf.h

[libc][math] Fix lgammaf 1-ULP errors in non-FMA builds  (#225449)

There were some inaccuracies in the non-FMA builds.
I retested exhaustively with FMA both enabled and disabled, and all
tests seems to pass noww.
DeltaFile
+6-2libc/src/__support/math/lgammaf.h
+6-21 files

LLVM/project f2f70fc — llvm/test/tools/llubi main_declaration.ll, llvm/tools/llubi llubi.cpp

[llubi] Error if main is not a definition (#226475)

Currently this crashes. Ran into this while using llubi with
llvm-reduce.
DeltaFile
+5-0llvm/test/tools/llubi/main_declaration.ll
+4-0llvm/tools/llubi/llubi.cpp
+9-02 files

FreeBSD/ports 1abe115 — editors/openoffice-devel distinfo Makefile, editors/openoffice-devel/files freebsd-aoo-intro-developer.png freebsd-aoo-about-developer.png

editors/openoffice-devel: Update to a new snapshot

Update openoffice-devel to a newer snapshot

Change the splash screen to say OpenOffice 5.

MFH:            2026Q3
DeltaFile
+4-4editors/openoffice-devel/Makefile
+3-3editors/openoffice-devel/distinfo
+0-0editors/openoffice-devel/files/freebsd-aoo-intro-developer.png
+0-0editors/openoffice-devel/files/freebsd-aoo-about-developer.png
+7-74 files

pkgng/pkgng e03fa7e — tests/frontend clean.sh

clean: make the keep_installed_archive test reliable

A file rebuilt within the same second keeps the same mtime, and the
file:// fetcher then answers EPKG_UPTODATE: the cached catalogue is left
unchanged and pkg clean keeps the archive of the removed package.

Wait a second before rebuilding the repository so that the new catalogue
is newer than the cached one.
DeltaFile
+6-1tests/frontend/clean.sh
+6-11 files

LLVM/project 6258c46 — llvm/lib/Target/AMDGPU GCNHazardRecognizer.cpp, llvm/test/CodeGen/AMDGPU wmma-coexecution-valu-hazards.mir

[AMDGPU] Fix missed WMMA C-operand co-exec hazard

The gfx1250 WMMA co-execution hazard check treats only A, B and the
SWMMAC index as registers the in-flight MMA still reads. C (src2 of a
non-SWMMAC WMMA) is missing, so a VALU scheduled into the MMA's shadow
can clobber C and the MMA consumes the new value.

This is latent while C is tied to vdst, since the existing D check then
covers it. It miscompiles where the tie does not hold: for
v_wmma_bf16f32_16x16x32_bf16, whose D is narrower than C, and for the
_threeaddr form of any WMMA.

Add src2 to the checked set for non-SWMMAC WMMAs.
DeltaFile
+171-2llvm/test/CodeGen/AMDGPU/wmma-coexecution-valu-hazards.mir
+5-0llvm/lib/Target/AMDGPU/GCNHazardRecognizer.cpp
+176-22 files

FreeBSD/ports e22a026 — net/rustconn Makefile Makefile.crates

net/rustconn: Update to 0.22.5

ChangeLog:

1. https://github.com/totoshko88/RustConn/releases/tag/v0.22.5

Reported by:    "github-actions[bot]" <notifications at github.com>
DeltaFile
+11-11net/rustconn/distinfo
+4-4net/rustconn/Makefile.crates
+1-1net/rustconn/Makefile
+16-163 files

FreeBSD/ports 18359cd — www/adjuster Makefile distinfo

www/adjuster: Update 3.249 => 3.250

Commit log:
* Added a native cgi option (no need for WSGI).
* Fix Python 3 compatibility for non-function htmlFilter settings.
* Updated Annotator Generator to version 3.43 which fixes a cross-site
  scripting vulnerability.
https://github.com/ssb22/adjuster/compare/v3.249...v3.250

PR:             298818
Approved by:    osa, vvd (Mentors, implicit)
MFH:            2026Q3

(cherry picked from commit a205e4a71a0739d64baddf2b65e9334eba6d59e2)
DeltaFile
+3-3www/adjuster/distinfo
+1-1www/adjuster/Makefile
+4-42 files

FreeBSD/ports 7a21166 — www/adjuster Makefile distinfo

www/adjuster: Update 3.248 => 3.249

This release adds support for the new HTTP QUERY method to Web Adjuster,
as well as several updates to Annotator Generator's Android code generation.

Commit log:
https://github.com/ssb22/adjuster/compare/v3.248...v3.249

PR:             298094
Reported by:    Silas S. Brown <ssb22 at cam.ac.uk> (maintainer)
Approved by:    osa, vvd (Mentors, implicit)

(cherry picked from commit a2ba42cb3a8cafce2439a5ce726217deeed6e447)
DeltaFile
+3-3www/adjuster/distinfo
+1-1www/adjuster/Makefile
+4-42 files

FreeBSD/ports a205e4a — www/adjuster Makefile distinfo

www/adjuster: Update 3.249 => 3.250

Commit log:
* Added a native cgi option (no need for WSGI).
* Fix Python 3 compatibility for non-function htmlFilter settings.
* Updated Annotator Generator to version 3.43 which fixes a cross-site
  scripting vulnerability.
https://github.com/ssb22/adjuster/compare/v3.249...v3.250

PR:             298818
Approved by:    osa, vvd (Mentors, implicit)
MFH:            2026Q3
DeltaFile
+3-3www/adjuster/distinfo
+1-1www/adjuster/Makefile
+4-42 files

LLVM/project ef991e5 — llvm/lib/CodeGen/SelectionDAG FastISel.cpp

FastISel: Assert the emitted instruction defines the result

The fallback path copied the result out of implicit_defs()[0], assuming
the first implicit physical register def is the result. That is an X86
assumption about MUL/IMUL, and it is unreachable for all but
fastEmitInst_r: FastISelEmitter skips any instruction whose first
operand is not an output register, so every opcode reaching these
helpers from generated code has an explicit def.

Co-Authored-By: Claude Opus 5 <noreply at anthropic.com>
DeltaFile
+28-85llvm/lib/CodeGen/SelectionDAG/FastISel.cpp
+28-851 files

FreeBSD/ports e346e00 — sysutils/containerd Makefile distinfo

sysutils/containerd: Update to 2.4.1
DeltaFile
+3-3sysutils/containerd/distinfo
+1-1sysutils/containerd/Makefile
+4-42 files

FreeBSD/ports 1f347b4 — multimedia/minisatip Makefile distinfo

multimedia/minisatip: Update to 2.0.114
DeltaFile
+3-3multimedia/minisatip/distinfo
+1-1multimedia/minisatip/Makefile
+4-42 files

FreeNAS/freenas 43701a4 — src/middlewared/middlewared/alembic/versions/27.0 2026-09-25_09-46_webshare_mcp.py, src/middlewared/middlewared/api/v27_0_0 webshare.py

NAS-142270 / 27.0.0-BETA.1 / Add Webshare MCP option (#19870)

## Context
Webshare ships an MCP server configured through the `mcp` block of the
webshare-auth config, and there was no way to turn it on from
middleware.

## Solution
- **New settings**: `webshare.update` accepts `mcp_enabled`,
`mcp_allowed_groups` and `mcp_allow_write`, which are rendered into the
`mcp` block. `allowed_hosts` is left unset.
- **MCP groups must be login groups**: webshare only checks login groups
at OAuth consent, while token refresh and session spawn check only the
MCP groups, so every MCP group must be `truenas_webshare` or an entry of
`groups`. Otherwise MCP access could outlive Webshare access. Enabling
MCP without a group is rejected, since webshare denies everyone on an
empty list.
- **Canonical group names**: MCP groups are resolved through NSS,
compared by gid and stored under their canonical name, so a directory

    [3 lines not shown]
DeltaFile
+76-27src/middlewared/middlewared/plugins/webshare/config.py
+69-0tests/api2/test_webshare_mcp.py
+30-0src/middlewared/middlewared/alembic/versions/27.0/2026-09-25_09-46_webshare_mcp.py
+19-0src/middlewared/middlewared/api/v27_0_0/webshare.py
+7-2src/middlewared/middlewared/etc_files/webshare-auth/config.json.py
+3-2src/middlewared/middlewared/plugins/account.py
+204-311 files not shown
+205-317 files

pkgng/pkgng c8910ce — tests/frontend http.sh

fetch: test the nominal 304 up to date path

Add a test where the server honours If-Modified-Since and answers 304,
checking that pkg reports the catalogue as up to date and that the
server really answered 304, next to the test covering servers that
always answer 200.
DeltaFile
+56-2tests/frontend/http.sh
+56-21 files

LLVM/project ca5624d — llvm/test/Transforms/CodeGenPrepare/AArch64 strength-reduce-vector-as-data.ll

update new IR test
DeltaFile
+34-8llvm/test/Transforms/CodeGenPrepare/AArch64/strength-reduce-vector-as-data.ll
+34-81 files

OpenBSD/ports FDZTUNz — devel/asio Makefile distinfo, devel/asio/pkg PLIST

   update to asio-1.36.0, from Brad (maintainer)
VersionDeltaFile
1.3+21-15devel/asio/pkg/PLIST
1.3+2-2devel/asio/distinfo
1.4+1-1devel/asio/Makefile
+24-183 files

NetBSD/pkgsrc Cmxm2WC — devel/libopeninput PLIST

   libopeninput: fix PLIST for 1.31.3.
VersionDeltaFile
1.2+5-6devel/libopeninput/PLIST
+5-61 files

OpenBSD/ports mgKjY89 — math/cfitsio/patches patch-eval_defs_h patch-eval_l_c

   Fix cfitsio build on sparc64

   Patch from Brad Smith
VersionDeltaFile
1.3+10-11math/cfitsio/patches/patch-grparser_c
1.3+9-10math/cfitsio/patches/patch-eval_l_c
1.3+9-8math/cfitsio/patches/patch-eval_defs_h
+28-293 files

pkgng/pkgng 95025a5 — libpkg fetch_libfetch.c, tests/frontend http.sh

fetch: detect up to date responses without a 304

The libfetch fetcher returned EPKG_UPTODATE only when the server
answered 304 Not Modified.  A server answering 200 to a conditional
request made pkg download the repository catalogue again on every
update (issue #2742).

Compare the mtime of the response with the one sent in
If-Modified-Since and return EPKG_UPTODATE when it did not change,
like the file:// fetcher already does.
DeltaFile
+70-2tests/frontend/http.sh
+18-1libpkg/fetch_libfetch.c
+88-32 files

FreeBSD/ports 7c76882 — net-im/prosody-modules Makefile distinfo

net-im/prosody-modules: Update 20260524 => 20260918

Commit log:
https://hg.prosody.im/prosody-modules/log/tip?revcount=480

PR:             298843
Sponsored by:   UNIS Labs (vvd, commit patch)
DeltaFile
+3-3net-im/prosody-modules/distinfo
+2-2net-im/prosody-modules/Makefile
+5-52 files

OpenBSD/ports p8WDwSW — security/distorm3 Makefile, security/distorm3/patches patch-src_textdefs_c

   Fix distorm3 build on sparc64

   Patch from Brad Smith
VersionDeltaFile
1.1+20-0security/distorm3/patches/patch-src_textdefs_c
1.14+3-1security/distorm3/Makefile
+23-12 files

LLVM/project 84d75c8 — llvm/lib/TargetParser AArch64TargetParser.cpp

[AArch64] Make compiling arm_neon.h faster (#226378)

Replace two linear scans with map lookups.

On my system, reduces time to compile a TU that does nothing but
`#include <arm_neon.h>` from 92.0 ms ± 1.4 ms to 70.9 ms ± 1.3 ms.

No behavior change.
DeltaFile
+20-8llvm/lib/TargetParser/AArch64TargetParser.cpp
+20-81 files

LLVM/project 1ae3b71 — llvm/lib/Target/LoongArch LoongArchAsmPrinter.h LoongArchAsmPrinter.cpp, llvm/test/CodeGen/LoongArch module-target-abi.ll

LoongArch: Respect the target-abi module flag in the ELF header

The target streamer read the ABI from MCTargetOptions when constructed,
so the e_flags recorded the command line -target-abi and ignored the
module flag.

Co-Authored-By: Claude Opus 5 <noreply at anthropic.com>
DeltaFile
+13-0llvm/test/CodeGen/LoongArch/module-target-abi.ll
+10-0llvm/lib/Target/LoongArch/LoongArchAsmPrinter.cpp
+2-0llvm/lib/Target/LoongArch/LoongArchAsmPrinter.h
+25-03 files

OpenBSD/ports d7xTL4k — audio/gogglesmm/patches patch-src_GMCover_cpp patch-gap_plugins_ap_ogg_cpp

   Fix build of gogglesmm on sparc64

   Patch from Brad Smith

   Thanks!
VersionDeltaFile
1.1+85-0audio/gogglesmm/patches/patch-src_GMTag_cpp
1.1+61-0audio/gogglesmm/patches/patch-gap_ap_input_plugin_cpp
1.1+60-0audio/gogglesmm/patches/patch-gap_plugins_ap_flac_cpp
1.1+48-0audio/gogglesmm/patches/patch-gap_ap_defs_h
1.1+37-0audio/gogglesmm/patches/patch-gap_plugins_ap_ogg_cpp
1.1+27-0audio/gogglesmm/patches/patch-src_GMCover_cpp
+318-03 files not shown
+367-09 files