NetBSD/pkgsrc-wip 16c4095 — py-mypy distinfo DESCR

py-mypy: remove, updated in pkgsrc
DeltaFile
+0-1,917py-mypy/PLIST
+0-45py-mypy/Makefile
+0-21py-mypy/buildlink3.mk
+0-5py-mypy/distinfo
+0-5py-mypy/DESCR
+0-5py-mypy/ALTERNATIVES
+0-1,9982 files not shown
+0-2,0028 files

NetBSD/pkgsrc KyGeI8m — lang/py-mypy distinfo Makefile, lang/py-mypy/patches patch-mypy_util.py

   py-mypy: update to 2.4.0.

   This release includes new features, performance improvements and bug fixes.

   Details at
   https://mypy-lang.blogspot.com/2026/10/mypy-24-released.html
VersionDeltaFile
1.48+17-1lang/py-mypy/PLIST
1.1+16-0lang/py-mypy/patches/patch-mypy_util.py
1.76+7-7lang/py-mypy/Makefile
1.70+5-4lang/py-mypy/distinfo
+45-124 files

LLVM/project aaa9228 — llvm/docs LangRef.md, llvm/lib/Transforms/Scalar TailRecursionElimination.cpp

[TailCallElim] Do not mark a call tail when it is handed the frame (#218797)

markTails refuses to mark a call tail if it is passed an alloca or a
byval
argument, but it missed the intrinsics that return an address in the
current
frame, such as llvm.frameaddress(0), llvm.localaddress and
llvm.stacksave. The
frame is torn down before a tail callee runs, so the callee received a
dangling
pointer. gcc.c-torture/execute/frame-address.c aborts because of this.

llvm.stackrestore is no longer treated as an escape, since it does not
capture
its argument. Otherwise calls after a VLA scope would lose their tail
marking.

LangRef now states that a tail callee may not access the caller's stack
frame.

    [3 lines not shown]
DeltaFile
+154-0llvm/test/Transforms/TailCallElim/frame-address.ll
+43-14llvm/lib/Transforms/Scalar/TailRecursionElimination.cpp
+47-0llvm/test/Transforms/TailCallElim/stackrestore.ll
+16-3llvm/docs/LangRef.md
+260-174 files

LLVM/project 9d6091d — llvm/lib/Transforms/Vectorize VectorCombine.cpp, llvm/test/Transforms/PhaseOrdering/X86 vector-reduction-of-scalar-parts.ll

[VectorCombine] Fold insertelement chains of scalar parts to a bitcast and shuffle (#226224)

An insertelement chain whose elements are all truncated parts of the
same scalar is lowered element by element, unless InstCombine can turn
an in-order pair of halves into a bitcast (`foldTruncInsEltPair`). The
SLP vectorizer produces such chains for the fields of a struct that SROA
loaded as one integer, e.g. when summing two float fields in a loop:

```llvm
%hi = lshr i64 %x, 32
%h = trunc i64 %hi to i32
%l = trunc i64 %x to i32
%v0 = insertelement <2 x i32> poison, i32 %h, i64 0
%v1 = insertelement <2 x i32> %v0, i32 %l, i64 1
```

which X86 lowers to shrq + vmovd + vpinsrd. If TTI says it is cheaper,
replace the chain by a shuffle of the bitcast scalar:


    [27 lines not shown]
DeltaFile
+515-0llvm/test/Transforms/VectorCombine/X86/insert-scalar-parts.ll
+141-0llvm/test/Transforms/VectorCombine/AArch64/insert-scalar-parts.ll
+115-0llvm/lib/Transforms/Vectorize/VectorCombine.cpp
+75-0llvm/test/Transforms/PhaseOrdering/X86/vector-reduction-of-scalar-parts.ll
+846-04 files

NetBSD/pkgsrc XSeRI0H — doc CHANGES-2026

   Updated www/py-scrapy, misc/py-platformdirs
VersionDeltaFile
1.6691+3-1doc/CHANGES-2026
+3-11 files

NetBSD/pkgsrc 69JCWmg — misc/py-platformdirs Makefile distinfo

   py-platformdirs: updated to 4.12.3

   4.12.3
   Place root config and data files in the first site directory
VersionDeltaFile
1.54+4-4misc/py-platformdirs/distinfo
1.55+2-2misc/py-platformdirs/Makefile
+6-62 files

NetBSD/pkgsrc INR1BN5 — textproc/py-sphinxcontrib-programoutput2 Makefile

   py-sphinxcontrib-programoutput2: add tool so that previous commit works
VersionDeltaFile
1.4+2-1textproc/py-sphinxcontrib-programoutput2/Makefile
+2-11 files

LLVM/project 32e2c07 — llvm/lib/Target/AMDGPU AMDGPUSwLowerLDS.cpp, llvm/test/CodeGen/AMDGPU amdgpu-sw-lower-lds-flat-arg-kernel-id.ll

[AMDGPU][SwLowerLDS] Lower non-kernels with LDS instructions and assign kernel IDs to their callers
DeltaFile
+122-84llvm/lib/Target/AMDGPU/AMDGPUSwLowerLDS.cpp
+152-0llvm/test/CodeGen/AMDGPU/amdgpu-sw-lower-lds-flat-arg-kernel-id.ll
+274-842 files

NetBSD/pkgsrc hW3s402 — www/py-scrapy Makefile distinfo

   py-scrapy: updated to 2.19.0

   Scrapy 2.19.0 (2026-09-10)

   Highlights:

   -   New ``RemoteControl`` extension which allows inspecting and controlling a
       running crawl over HTTP, used by the :ref:`Scrapy MCP server
       <using-mcp-server>`

   -   Experimental ``aiohttp``-based download handler (now the default when
       running without a reactor)

   Modified requirements

   -   Added support for Python 3.15.
   -   New dependencies:

       - aiohttp_ >= 3.13.3

    [215 lines not shown]
VersionDeltaFile
1.20+10-1www/py-scrapy/PLIST
1.33+4-4www/py-scrapy/distinfo
1.44+5-2www/py-scrapy/Makefile
+19-73 files

LLVM/project 7e727ff — llvm/lib/Target/AMDGPU AMDGPUSwLowerLDS.cpp, llvm/test/CodeGen/AMDGPU amdgpu-sw-lower-lds-flat-to-lds-cast-roundtrip.ll amdgpu-sw-lower-lds-flat-to-lds-cast.ll

[AMDGPU][SwLowerLDS] Rebase flat to LDS addrspacecasts to buffer offsets
DeltaFile
+117-0llvm/test/CodeGen/AMDGPU/amdgpu-sw-lower-lds-flat-to-lds-cast.ll
+87-0llvm/test/CodeGen/AMDGPU/amdgpu-sw-lower-lds-flat-to-lds-cast-roundtrip.ll
+33-5llvm/lib/Target/AMDGPU/AMDGPUSwLowerLDS.cpp
+237-53 files

LLVM/project e86a148 — llvm/lib/Target/AMDGPU AMDGPUSwLowerLDS.cpp, llvm/test/CodeGen/AMDGPU amdgpu-sw-lower-lds-flat-to-lds-cast.ll amdgpu-sw-lower-lds-flat-to-lds-cast-roundtrip.ll

use ptrtoaddr
DeltaFile
+127-0llvm/test/CodeGen/AMDGPU/amdgpu-sw-lower-lds-flat-to-lds-cast-vector.ll
+5-5llvm/lib/Target/AMDGPU/AMDGPUSwLowerLDS.cpp
+2-2llvm/test/CodeGen/AMDGPU/amdgpu-sw-lower-lds-flat-to-lds-cast.ll
+2-2llvm/test/CodeGen/AMDGPU/amdgpu-sw-lower-lds-flat-to-lds-cast-roundtrip.ll
+136-94 files

LLVM/project c77c788 — llvm/lib/Target/X86 X86SelectionDAGInfo.cpp X86ISelLowering.cpp

[X86] Don't pass SAE operand to some nodes. (#228938)

Fixes verification failure in X86SelectionDAGInfo::verifyTargetNode
(#185649)
DeltaFile
+0-6llvm/lib/Target/X86/X86SelectionDAGInfo.cpp
+3-3llvm/lib/Target/X86/X86ISelLowering.cpp
+3-92 files

LLVM/project 2448bcd — clang/lib/CIR/CodeGen CIRGenVTables.cpp, clang/test/CIR/CodeGenCUDA vtable-host-device.cu

[CIR][CUDA][HIP] Exclude wrong-side virtual functions from vtables (#228433)

OGCG builds the vtables of a CUDA/HIP compilation for the side being
compiled, that is a slot whose virtual function cannot be emitted on
that side is null.

Port both parts of CodeGenVTables::addVTableComponent to
CIRGenVTables::getVTableComponent. As in OGCG, a null slot that holds a
thunk still advances the thunk index, so later thunks keep their slots.

Assisted-by: Claude Opus 5.5

Signed-off-by: Steffen Holst Larsen <sholstla at amd.com>
DeltaFile
+81-0clang/test/CIR/CodeGenCUDA/vtable-host-device.cu
+40-4clang/lib/CIR/CodeGen/CIRGenVTables.cpp
+121-42 files

NetBSD/src DscebMh — sys/arch/m68k/include pte_coldfire.h, sys/arch/mips/include pte.h

   pte_prot_downgrade: sprinkle KASSERTs

   Simplify the risc-v version while I'm here.
VersionDeltaFile
1.22+4-3sys/arch/riscv/include/pte.h
1.16+3-1sys/arch/powerpc/include/booke/pte.h
1.32+3-1sys/arch/mips/include/pte.h
1.5+3-1sys/arch/m68k/include/pte_coldfire.h
+13-64 files

LLVM/project 9dd6a72 — llvm/lib/Target/AMDGPU SIShrinkInstructions.cpp, llvm/test/CodeGen/AMDGPU s_or_b32_transformation.ll shrink-disjoint-or-scc.mir

Address review feedback:
1. Use allImplicitDefsAreDead() helper to check whether SCC is dead
2. Simplify .ll test case
3. Add a new .mir test case
DeltaFile
+35-0llvm/test/CodeGen/AMDGPU/shrink-disjoint-or-scc.mir
+6-8llvm/test/CodeGen/AMDGPU/s_or_b32_transformation.ll
+1-2llvm/lib/Target/AMDGPU/SIShrinkInstructions.cpp
+42-103 files

LLVM/project 10415c9 — llvm/test/CodeGen/AMDGPU s_or_b32_transformation.ll

Precommit test case for s_or incorrectly transformed to s_addk when SCC is live
DeltaFile
+28-0llvm/test/CodeGen/AMDGPU/s_or_b32_transformation.ll
+28-01 files

LLVM/project bb55485 — llvm/lib/Target/AMDGPU SIShrinkInstructions.cpp, llvm/test/CodeGen/AMDGPU s_or_b32_transformation.ll

[AMDGPU] Preserve live SCC when shrinking disjoint S_OR_B32
DeltaFile
+6-0llvm/lib/Target/AMDGPU/SIShrinkInstructions.cpp
+2-1llvm/test/CodeGen/AMDGPU/s_or_b32_transformation.ll
+8-12 files

FreeBSD/ports 9c22323 — cad/kicad-devel Makefile, cad/kicad-devel/files patch-3d-viewer_3d__rendering_opengl_create__scene.cpp

cad/kicad-devel: Fix build
DeltaFile
+12-2cad/kicad-devel/files/patch-3d-viewer_3d__rendering_opengl_create__scene.cpp
+1-2cad/kicad-devel/Makefile
+13-42 files

NetBSD/src JdIwttV — sys/arch/aarch64/include pmap_machdep.h, sys/arch/mips/include pte.h

   pte_prot_downgrade: consistent argument naming.

   Make all version of pte_prot_downgrade have the same argument names.
   NFCI.
VersionDeltaFile
1.24+4-4sys/arch/aarch64/include/pmap_machdep.h
1.31+3-3sys/arch/mips/include/pte.h
+7-72 files

LLVM/project 723be84 — llvm/lib/Target/AMDGPU AMDGPUSwLowerLDS.cpp, llvm/test/CodeGen/AMDGPU amdgpu-sw-lower-lds-flat-arg-kernel-id.ll

[AMDGPU][SwLowerLDS] Lower non-kernels with LDS instructions and assign kernel IDs to their callers
DeltaFile
+122-84llvm/lib/Target/AMDGPU/AMDGPUSwLowerLDS.cpp
+152-0llvm/test/CodeGen/AMDGPU/amdgpu-sw-lower-lds-flat-arg-kernel-id.ll
+274-842 files

OPNSense/src 20f4d07 — . UPDATING, sys/conf newvers.sh

Add UPDATING entries and bump version

Approved by:    so
DeltaFile
+20-0UPDATING
+1-1sys/conf/newvers.sh
+21-12 files

OPNSense/src 7aff526 — crypto/openssl/ssl d1_lib.c, crypto/openssl/ssl/statem statem_dtls.c

openssl: Fix CVE-2026-84782

This is a backport of an upstream commit to fix:
  dtls: reset init_off before retransmitting a message

Approved by:    so
Security:       FreeBSD-SA-26:68.openssl
Security:       CVE-2026-84782
DeltaFile
+17-0crypto/openssl/ssl/d1_lib.c
+2-0crypto/openssl/ssl/statem/statem_dtls.c
+19-02 files

OPNSense/src 58f4d2f — sys/kern uipc_usrreq.c, tests/sys/kern unix_passfd_test.c

unix: Preserve FD_RESOLVE_BENEATH when passing an fd

The FD_RESOLVE_BENEATH flag is supposed to be sticky.  It's set when you
receive an fd from a different jail and preserved by openat(<dfd>) etc..
However, if you send the fd to yourself, the flag is stripped since
SCM_RIGHTS message don't preserve file descriptor flags.

Fix this by preserving those flags and checking for UF_RESOLVE_BENEATH
in restrict_rights().

Approved by:    so
Security:       FreeBSD-SA-26:66.jail
Security:       CVE-2026-101306
Fixes:          350ba9672a7f ("unix: Set O_RESOLVE_BENEATH on fds transferred between jails")
Reviewed by:    kib
MFC after:      1 week
Sponsored by:   The FreeBSD Foundation
Differential Revision:  https://reviews.freebsd.org/D58317


    [2 lines not shown]
DeltaFile
+31-0tests/sys/kern/unix_passfd_test.c
+19-8sys/kern/uipc_usrreq.c
+50-82 files

OPNSense/src 22b532d — sys/kern vfs_syscalls.c

vfs: Disallow renameat() with FD_RESOLVE_BENEATH descriptors

The FD_RESOLVE_BENEATH flag was intended to try to resolve bugzilla PR
262179 without entirely disallowing fd passing between jails.  However,
one can use renameat() to bypass the restriction: upon receiving a
directory fd with FD_RESOLVE_BENEATH set, a jailed process can still
move its CWD or one of its ancestors to the directory, and just cd
out of its jail root.

So disallow renameat() when either the source or destination directory
fds has FD_RESOLVE_BENEATH set, like we do with fchdir() and fchroot()
to prevent similar escapes.

Approved by:    so
Security:       FreeBSD-SA-26:66.jail
Security:       CVE-2026-101305
PR:             262179
Reported by:    firk at cantconnect.ru
Reviewed by:    olce, kib
Differential Revision:  https://reviews.freebsd.org/D59875
DeltaFile
+9-0sys/kern/vfs_syscalls.c
+9-01 files

OPNSense/plugins c37f8c9 — net/frr/src/opnsense/scripts/frr/lib/events ospfd.py

net/frr: CARP event handler, skip interfaces that report OSPF as not running (#5762)

The handler assumed that every interface listed by ospfd has
a cost.  ospfd lists an interface on which OSPF is not running (e.g. a
CARP bound WireGuard instance that is down on the backup node) without
one, so the handler ended with KeyError: 'cost' and left all following
interfaces in ospfd_carp.conf at their default cost.

Skip such interfaces and continue with the rest.
DeltaFile
+4-0net/frr/src/opnsense/scripts/frr/lib/events/ospfd.py
+4-01 files

OPNSense/src 90afaba — sys/fs/fdescfs fdesc_vnops.c, tests/sys/fs Makefile

fdescfs: Pass up additional metadata during lookups

When an fdescfs mount has the nodup option set, fdesc_lookup(/dev/fd/n)
returns the vnode referenced by file descriptor n, rather than returning
an fdescfs vnode.  This meant that fd metadata attached to fd n was not
preserved when reopening the file, which is contrary to the expected
semantics for capsicum rights and the UF_RESOLVE_BENEATH fd flag.  For
regular fdescfs mounts, this metadata is copied via dupfdopen().

Fix the problem by passing up this metadata through the nameidata
structure.  Thus, if one opens /dev/fd/n, the returned fd will inherit
UF_RESOLVE_BENEATH and the capability rights of fd n.  Add some
regression tests as well.

Approved by:    so
Security:       FreeBSD-SA-26:66.jail
Security:       CVE-2026-101304
Reported by:    Jan Bramkamp
Reviewed by:    kib

    [2 lines not shown]
DeltaFile
+274-0tests/sys/fs/fdescfs/fdescfs_test.c
+35-2sys/fs/fdescfs/fdesc_vnops.c
+9-0tests/sys/fs/fdescfs/Makefile
+1-0tests/sys/fs/Makefile
+319-24 files

OPNSense/src dd56fac — lib/libc/capability cap_rights_init.3, sys/kern subr_capability.c kern_descrip.c

file: Add filecaps_intersect() and cap_rights_intersect()

These routines let one compute the intersection of two sets of filecaps
or capability rights, just as filecaps_merge() and cap_rights_merge()
compute the union.  This will be useful in an upcoming patch.

filecaps_intersect() is complex due to the need to merge sets of ioctls.
For now this is implemented with a dumb nested loop on the basis that
ioctl lists are typically short enough that this is fine.  It may be
better to instead sort the two lists first and step through them
together.

No functional change intended.

Approved by:    so
Security:       FreeBSD-SA-26:66.jail
Reviewed by:    kib
Sponsored by:   The FreeBSD Foundation
Differential Revision:  https://reviews.freebsd.org/D59885
DeltaFile
+49-0sys/kern/kern_descrip.c
+23-0sys/kern/subr_capability.c
+14-2lib/libc/capability/cap_rights_init.3
+1-0sys/sys/filedesc.h
+1-0sys/sys/capsicum.h
+88-25 files

OPNSense/src be94f30 — sys/kern kern_descrip.c, sys/sys filedesc.h

file: Add a helper function to check whether filecaps are full

In a couple of places we want to know whether someone has limited rights
on an fd.  There, we want a predicate which determines whether the set
of rights is smaller than CAP_ALL, and whether there are explicit ioctl
or fcntl lists.  Factor this out into a helper function, in preparation
for use elsewhere.

No functional change intended.

Approved by:    so
Security:       FreeBSD-SA-26:66.jail
Reviewed by:    kib
Sponsored by:   The FreeBSD Foundation
Differential Revision:  https://reviews.freebsd.org/D59884
DeltaFile
+12-8sys/kern/kern_descrip.c
+1-0sys/sys/filedesc.h
+13-82 files

OPNSense/src 31b1c1f — sys/netinet6 udp6_usrreq.c

udp: Let jail policy rewrite the dstaddr for v6 sendto()s

When performing an unconnected sendto() on a v6 UDP socket in a classic
jail, we were not applying the usual policy of replacing the loopback
addr with the jail's primary IP.  Compare with, e.g., udp6_connect() or
the IPv4 udp_send().  Fix that.

Approved by:    so
Security:       FreeBSD-SA-26:69.udp
Security:       CVE-2026-101303
Reported by:    Yuxiang Yang, Yizhou Zhao, Ao Wang, Xuewei Feng, Qi Li,
                and Ke Xu from Tsinghua University using GLM-5.1 from Z.ai
Reviewed by:    bz, glebius
MFC after:      2 weeks
Sponsored by:   The FreeBSD Foundation
Differential Revision:  https://reviews.freebsd.org/D59772

(cherry picked from commit fecb9537a83b6746bc731a7cb3bcf6a33df79562)
(cherry picked from commit 809221661a8136a19661e4e379a44203e0ea2a03)
DeltaFile
+4-0sys/netinet6/udp6_usrreq.c
+4-01 files

OPNSense/src e3a2a91 — sys/kern uipc_ktls.c, tests/sys/kern ktls_test.c

ktls: Fix an off-by-one bug in tls13_find_record_type()

If the entire plaintext is zero-filled, the backwards walk in
tls13_find_record_type() would return the offset of the last byte of the
TLS header.  This causes an underflow when decrypting, resulting in a
null pointer dereference.

Fix the bug and add a regression test.

Approved by:    so
Security:       FreeBSD-SA-26:67.ktls
Security:       CVE-2026-101302
Reviewed by:    gallatin, jhb
MFC after:      1 week
Sponsored by:   The FreeBSD Foundation
Differential Revision:  https://reviews.freebsd.org/D59767

(cherry picked from commit 7c5e457d3afdc7742ee24f0b5ee6e5e7aa00a6bd)
(cherry picked from commit fc1a02c93ba4c9a98e329a4166618bbaf17d584b)
DeltaFile
+66-5tests/sys/kern/ktls_test.c
+2-2sys/kern/uipc_ktls.c
+68-72 files