FreeNAS/freenas c035f56 — src/middlewared/middlewared/plugins/iscsi_ extents.py

Skip zvol snapshot extents in iscsi.extent.pool_import

## Problem
iSCSI extents can be backed by a read-only zvol snapshot. `pool_import` passed those paths to `zfs.resource.list_impl`, which rejects any path containing `@`, so the `pool.post_import` hook failed and volthreading was never turned off for any zvol extent on the imported pool (including at boot).

## Solution
Leave snapshot paths out of the query, the same way extent create/update/delete already do. Snapshots don't have a volthreading property, so there is nothing to set on them anyway.

(cherry picked from commit 90d53b596bff4564e30ae07d8dc8df14b256eb9a)
DeltaFile
+1-0src/middlewared/middlewared/plugins/iscsi_/extents.py
+1-01 files

FreeNAS/freenas 9bebdde — src/middlewared/middlewared/plugins/iscsi_ extents.py

NAS-144411 / 28.0.0-BETA.1 / Skip zvol snapshot extents in iscsi.extent.pool_import (#19986)

## Problem
iSCSI extents can be backed by a read-only zvol snapshot. `pool_import`
passed those paths to `zfs.resource.list_impl`, which rejects any path
containing `@`, so the `pool.post_import` hook failed and volthreading
was never turned off for any zvol extent on the imported pool (including
at boot).

## Solution
Leave snapshot paths out of the query, the same way extent
create/update/delete already do. Snapshots don't have a volthreading
property, so there is nothing to set on them anyway.
DeltaFile
+1-0src/middlewared/middlewared/plugins/iscsi_/extents.py
+1-01 files

HardenedBSD/src 0119da5 — libexec/rc safe_eval.sh, sys/net if_gre.c

Merge remote-tracking branch 'rad/hardened/current/master' into hardened/current/pledge
DeltaFile
+4-4libexec/rc/safe_eval.sh
+1-1sys/net/if_gre.c
+5-52 files

HardenedBSD/src 8d65a53 — libexec/rc safe_eval.sh, sys/net if_gre.c

Merge branch 'freebsd/current/main' into hardened/current/master
DeltaFile
+4-4libexec/rc/safe_eval.sh
+1-1sys/net/if_gre.c
+5-52 files

HardenedBSD/ports ca634dd — cad/veryl Makefile.crates distinfo, databases/diesel Makefile distinfo

Merge branch 'freebsd/main' into hardenedbsd/main
DeltaFile
+361-351cad/veryl/distinfo
+179-174cad/veryl/Makefile.crates
+107-151databases/diesel/distinfo
+123-123databases/qdrant/distinfo
+77-151devel/py-pyperscan/distinfo
+54-77databases/diesel/Makefile
+901-1,027118 files not shown
+1,858-1,732124 files

LLVM/project f4601bd — llvm/test/tools/llubi assume_func_addr.ll, llvm/tools/llubi/lib Context.cpp

[llubi] Don't ignore address taken by assume-like intrinsics (#230938)

The function pointer used by `llvm.assume` is still evaluated.

The test is generated by DeepSeek-V4.1-Flash.
DeltaFile
+12-0llvm/test/tools/llubi/assume_func_addr.ll
+3-1llvm/tools/llubi/lib/Context.cpp
+15-12 files

FreeBSD/src 80bc1d0 — sys/net if_gre.c

if_gre: Use OID_AUTO for the net.link.gre sysctl node

if_gre(4) registers net.link.gre with the static OID number IFT_TUNNEL.
That number is an interface type that several tunnel drivers share, not
one that belongs to gre(4).  if_me(4) used it too, which made loading
both modules panic until 21f2245de219.  Nothing addresses the node by
number, so use OID_AUTO as if_me(4) now does.

Suggested by:   markj
MFC after:      3 days
Sponsored by:   Rubicon Communications, LLC ("Netgate")
DeltaFile
+1-1sys/net/if_gre.c
+1-11 files

HardenedBSD/src 80bc1d0 — sys/net if_gre.c

if_gre: Use OID_AUTO for the net.link.gre sysctl node

if_gre(4) registers net.link.gre with the static OID number IFT_TUNNEL.
That number is an interface type that several tunnel drivers share, not
one that belongs to gre(4).  if_me(4) used it too, which made loading
both modules panic until 21f2245de219.  Nothing addresses the node by
number, so use OID_AUTO as if_me(4) now does.

Suggested by:   markj
MFC after:      3 days
Sponsored by:   Rubicon Communications, LLC ("Netgate")
DeltaFile
+1-1sys/net/if_gre.c
+1-11 files

FreeBSD/ports 5cc52bc — mail Makefile, mail/tarpitd distinfo pkg-descr

mail/tarpitd: Add new port

tarpitd answers SMTP connections and holds them open for as long as the peer
can be persuaded to wait.  It is meant to sit behind a packet filter rule that
redirects known spam sources to it, in the manner of spamd(8) on OpenBSD, and
it never accepts or delivers anything.

Every reply is a syntactically valid SMTP response, so the sender has no reason
to give up, but it is written out one byte at a time and commands are read back
at the same rate.  Every terminal answer is a temporary failure, so the message
stays in the sender's queue and it comes back later to be tarpitted again.  The
intent is to occupy a slot in the sending botnet's delivery queue for hours
rather than to reject mail quickly.

Among its tactics are a delayed and optionally endless multiline greeting,
detection of clients that transmit before the greeting has finished, padding of
the EHLO response, a STARTTLS handshake that never completes, an AUTH honeypot
that decodes and logs the credentials bots offer, and clamped socket buffers so
the peer's window stays tiny.

    [7 lines not shown]
DeltaFile
+59-0mail/tarpitd/files/tarpitd.in
+33-0mail/tarpitd/Makefile
+22-0mail/tarpitd/pkg-descr
+3-0mail/tarpitd/distinfo
+1-0mail/Makefile
+118-05 files

HardenedBSD/ports 5cc52bc — mail Makefile, mail/tarpitd distinfo pkg-descr

mail/tarpitd: Add new port

tarpitd answers SMTP connections and holds them open for as long as the peer
can be persuaded to wait.  It is meant to sit behind a packet filter rule that
redirects known spam sources to it, in the manner of spamd(8) on OpenBSD, and
it never accepts or delivers anything.

Every reply is a syntactically valid SMTP response, so the sender has no reason
to give up, but it is written out one byte at a time and commands are read back
at the same rate.  Every terminal answer is a temporary failure, so the message
stays in the sender's queue and it comes back later to be tarpitted again.  The
intent is to occupy a slot in the sending botnet's delivery queue for hours
rather than to reject mail quickly.

Among its tactics are a delayed and optionally endless multiline greeting,
detection of clients that transmit before the greeting has finished, padding of
the EHLO response, a STARTTLS handshake that never completes, an AUTH honeypot
that decodes and logs the credentials bots offer, and clamped socket buffers so
the peer's window stays tiny.

    [7 lines not shown]
DeltaFile
+59-0mail/tarpitd/files/tarpitd.in
+33-0mail/tarpitd/Makefile
+22-0mail/tarpitd/pkg-descr
+3-0mail/tarpitd/distinfo
+1-0mail/Makefile
+118-05 files

LLVM/project 62487d7 — llvm/lib/Transforms/InstCombine InstCombineAddSub.cpp, llvm/test/Transforms/InstCombine sub.ll

[InstCombine] fold ((X + C) & ~C) - X -> X & C where C is a power of 2 (#230796)

regression found in https://github.com/llvm/llvm-project/pull/184182

Proof: https://alive2.llvm.org/ce/z/ocgSLj
DeltaFile
+78-0llvm/test/Transforms/InstCombine/sub.ll
+7-0llvm/lib/Transforms/InstCombine/InstCombineAddSub.cpp
+85-02 files

FreeBSD/doc 07a0a06 — website/content/en/releases/15.2R readme.adoc relnotes.adoc

15.2: release documents checked

The initial content from 15.1 release docs included:
installation.adoc moved to upgrading.adoc
relnotes.adoc header refers to upgrading.adoc
i386 arch removed from readme.adoc

Approved by: re (implicit)
Differential Revision: https://reviews.freebsd.org/D60612
DeltaFile
+308-0website/content/en/releases/15.2R/upgrading.adoc
+0-90website/content/en/releases/15.2R/installation.adoc
+10-41website/content/en/releases/15.2R/relnotes.adoc
+1-1website/content/en/releases/15.2R/readme.adoc
+319-1324 files

FreeBSD/ports 502bc9b — multimedia/minisatip pkg-plist Makefile

multimedia/minisatip: Update to 2.0.139
DeltaFile
+3-3multimedia/minisatip/distinfo
+3-2multimedia/minisatip/Makefile
+2-0multimedia/minisatip/pkg-plist
+8-53 files

HardenedBSD/ports 502bc9b — multimedia/minisatip pkg-plist Makefile

multimedia/minisatip: Update to 2.0.139
DeltaFile
+3-3multimedia/minisatip/distinfo
+3-2multimedia/minisatip/Makefile
+2-0multimedia/minisatip/pkg-plist
+8-53 files

HardenedBSD/ports b4e2738 — devel/srell Makefile distinfo

devel/srell: Update 2026.05 => 2026.07

* Add hint to portscout(1) to help it discover new upstream versions
by pointing it to exact site:URL [1] with download directory listing,
as just generic one [0] strangely returns HTTP 403 error.
* Limit PORTSCOUT versions by following strict upstream YYYY.MM scheme.

[0] https://www.akenotsuki.com/misc/srell/releases/
[1] https://www.akenotsuki.com/misc/srell/releases/?C=M;O=D
DeltaFile
+3-3devel/srell/distinfo
+3-1devel/srell/Makefile
+6-42 files

FreeBSD/ports b4e2738 — devel/srell Makefile distinfo

devel/srell: Update 2026.05 => 2026.07

* Add hint to portscout(1) to help it discover new upstream versions
by pointing it to exact site:URL [1] with download directory listing,
as just generic one [0] strangely returns HTTP 403 error.
* Limit PORTSCOUT versions by following strict upstream YYYY.MM scheme.

[0] https://www.akenotsuki.com/misc/srell/releases/
[1] https://www.akenotsuki.com/misc/srell/releases/?C=M;O=D
DeltaFile
+3-3devel/srell/distinfo
+3-1devel/srell/Makefile
+6-42 files

FreeBSD/ports 307bd9e — net/norm Makefile

net/norm: Bump PORTEPOCH to fix package version ordering

The previous version format (1.5r6) was incorrectly evaluated
by 'pkg version' as greater than the newer version (1.5.9).

Bump PORTEPOCH to force a proper upgrade path for existing installations.
DeltaFile
+1-0net/norm/Makefile
+1-01 files

HardenedBSD/ports 307bd9e — net/norm Makefile

net/norm: Bump PORTEPOCH to fix package version ordering

The previous version format (1.5r6) was incorrectly evaluated
by 'pkg version' as greater than the newer version (1.5.9).

Bump PORTEPOCH to force a proper upgrade path for existing installations.
DeltaFile
+1-0net/norm/Makefile
+1-01 files

LLVM/project 694d1a6 — llvm/lib/Analysis LoopAccessAnalysis.cpp, llvm/test/Analysis/LoopAccessAnalysis is-safe-dep-distance-narrow-btc.ll

[LAA] Compute MaxBTC * MaxStride in a wide enough type. (#230860)

isSafeDependenceDistance proves independence if |Dist| > MaxBTC *
MaxStride. The original code did not account for MaxBTC * MaxStride
wrapping, e.g. if either has a narrow type.

Fix by computing the product in the wider of the types of the distance
and MaxBTC, zero-extending MaxBTC. The distance is sign-extended as
before.

The product can still wrap if MaxBTC is as wide as the distance, e.g. an
unbounded i64 MaxBTC. Requiring it not to wrap regresses existing proofs
for symbolic distances (e.g. PR31098), so that case is left as is for
now.
DeltaFile
+14-20llvm/lib/Analysis/LoopAccessAnalysis.cpp
+17-3llvm/test/Analysis/LoopAccessAnalysis/is-safe-dep-distance-narrow-btc.ll
+31-232 files

LLVM/project 6da8a57 — llvm/lib/Transforms/Utils VNCoercion.cpp, llvm/test/Transforms/GVN pr14166.ll pr63059.ll

[GVN] Preserve per-lane `poison` when forwarding vectors
DeltaFile
+44-68llvm/test/Transforms/GVN/vector-poison.ll
+48-63llvm/test/Transforms/GVN/pr63059.ll
+14-3llvm/lib/Transforms/Utils/VNCoercion.cpp
+3-2llvm/test/Transforms/GVN/pr14166.ll
+109-1364 files

HardenedBSD/ports c6fddd4 — dns/dnscontrol Makefile distinfo

dns/dnscontrol: Update to 5.4.0
DeltaFile
+5-5dns/dnscontrol/distinfo
+1-2dns/dnscontrol/Makefile
+6-72 files

FreeBSD/ports c6fddd4 — dns/dnscontrol Makefile distinfo

dns/dnscontrol: Update to 5.4.0
DeltaFile
+5-5dns/dnscontrol/distinfo
+1-2dns/dnscontrol/Makefile
+6-72 files

FreeBSD/doc 32f7938 — shared contrib-additional.adoc

Add Przemysław Frasunek for his longterm contributions to FreeBSD

This includes work on:
* kqueue related bugs
* multiple advisories
* mail/tarpitd port

PR:             297312
DeltaFile
+1-0shared/contrib-additional.adoc
+1-01 files

LLVM/project b02ea2e — llvm/test/Transforms/GVN vector-poison.ll

[GVN] Pre-commit tests for forwarding vectors with `poison` lanes
DeltaFile
+329-0llvm/test/Transforms/GVN/vector-poison.ll
+329-01 files

LLVM/project b8c3d3a — llvm/lib/Transforms/InstCombine InstructionCombining.cpp, llvm/test/Transforms/InstCombine bitinsert-bitextract.ll

[InstCombine] Fold lane-aligned `bitextract` of vector `bitcast`
DeltaFile
+107-56llvm/test/Transforms/InstCombine/bitinsert-bitextract.ll
+67-0llvm/lib/Transforms/InstCombine/InstructionCombining.cpp
+174-562 files

FreeBSD/ports 1556b6c — net/netatalk4 Makefile distinfo

net/netatalk4: Update to 4.6.1

See https://github.com/Netatalk/netatalk/releases/tag/netatalk-4-6-1 for
a list of changes in this release.
DeltaFile
+3-3net/netatalk4/distinfo
+1-2net/netatalk4/Makefile
+4-52 files

HardenedBSD/ports 1556b6c — net/netatalk4 Makefile distinfo

net/netatalk4: Update to 4.6.1

See https://github.com/Netatalk/netatalk/releases/tag/netatalk-4-6-1 for
a list of changes in this release.
DeltaFile
+3-3net/netatalk4/distinfo
+1-2net/netatalk4/Makefile
+4-52 files

LLVM/project 8c5bfa6 — llvm/test/Transforms/InstCombine bitinsert-bitextract.ll

[InstCombine] Pre-commit tests for lane-aligned `bitextract` of vector `bitcast`
DeltaFile
+217-3llvm/test/Transforms/InstCombine/bitinsert-bitextract.ll
+217-31 files

FreeBSD/ports 94c3cae — sysutils/zbackup Makefile

sysutils/zbackup: Mark deprecated

(cherry picked from commit 66b4af7654c10f324e196eecece33fe61e88968d)
DeltaFile
+4-1sysutils/zbackup/Makefile
+4-11 files

HardenedBSD/ports 66b4af7 — sysutils/zbackup Makefile

sysutils/zbackup: Mark deprecated
DeltaFile
+4-1sysutils/zbackup/Makefile
+4-11 files