FreeBSD/src 8befc9esys/kern kern_environment.c

kern: fix oversight in security.bsd.unprivileged_kenv_read

It was intended that one could close the hole back in loader, but the
sysctl was actually not marked TUNABLE.  The hardening menu option thus
did nothing, because we wouldn't read the value from kenv.

Reported by:    markj
Fixes:  6e81fbf5833d ("bsdinstall: add a hardening knob [...]")
Fixes:  4fd518fcb2bb ("kern: add a security knob to disable [...]")
DeltaFile
+1-1sys/kern/kern_environment.c
+1-11 files

FreeBSD/ports a75bc9esecurity/qgpgme/files patch-src_util.h

security/qgpgme: Remove unused header in util.h
DeltaFile
+9-1security/qgpgme/files/patch-src_util.h
+9-11 files

OpenBSD/src 8A7ySJesys/kern subr_disk.c

   Fix for KASAN: invalid memory access in setdisklabel

   ok krw@

   Reported-by: syzbot+4b34bf468172c62700f3 at syzkaller.appspotmail.com
VersionDeltaFile
1.286+6-3sys/kern/subr_disk.c
+6-31 files

LLVM/project 2f9775amlir/include/mlir/Dialect/WasmSSA/IR WasmSSAOps.td, mlir/include/mlir/Target/Wasm WasmBinaryEncoding.h

[mlir][wasm] Support for saturating FP truncations (#212709)

Add support for saturate truncation of float to int operations.

This also requires the support of parser with sub-opcodes.
This is handled by supporting parser with extra argument for sub-opcode.

---------

Co-authored-by: Ferdinand Lemaire <ferdinand.lemaire at woven-planet.global>
DeltaFile
+344-262mlir/lib/Target/Wasm/TranslateFromWasm.cpp
+94-0mlir/test/Target/Wasm/trunc_sat.mlir
+69-0mlir/test/Target/Wasm/inputs/trunc_sat.yaml.wasm
+30-0mlir/include/mlir/Dialect/WasmSSA/IR/WasmSSAOps.td
+2-0mlir/include/mlir/Target/Wasm/WasmBinaryEncoding.h
+539-2625 files

LLVM/project b9d5c24llvm/lib/Target/AMDGPU/AsmParser AMDGPUAsmParser.cpp, llvm/lib/Target/AMDGPU/Disassembler AMDGPUDisassembler.cpp

[AMDGPU] Check operand for split barrier in both assembler and disassembler (#214916)

Fixes #214910.
DeltaFile
+10-10llvm/test/MC/AMDGPU/gfx13_asm_sop1.s
+12-0llvm/test/MC/AMDGPU/gfx12_err.s
+10-0llvm/test/MC/Disassembler/AMDGPU/decode-err.txt
+8-1llvm/lib/Target/AMDGPU/AsmParser/AMDGPUAsmParser.cpp
+9-0llvm/lib/Target/AMDGPU/Disassembler/AMDGPUDisassembler.cpp
+49-115 files

NetBSD/pkgsrc 3TLOTDxdevel/p5-Data-UUID Makefile

   Fix the build under Darwin by not defining -D_POSIX_C_SOURCE

   Whatever this Darwin-specific tweak was trying to fix in 2016, the
   reverse now seems to be the case - this package will not build on
   Darwin with this #define defined, because it confuses malloc.h.

   Today, a decade later, it builds fine without this tweak.
VersionDeltaFile
1.53+1-4devel/p5-Data-UUID/Makefile
+1-41 files

LLVM/project 4525940flang/docs FAQ.md ReleaseNotesTemplate.txt, lldb/docs/use aarch64-linux.md

[docs] Use colon fences in LLDB and Flang docs
DeltaFile
+4-4flang/docs/ReleaseNotesTemplate.txt
+4-4flang/docs/ReleaseNotes.md
+4-4flang/docs/GettingStarted.md
+2-2lldb/docs/use/aarch64-linux.md
+2-2flang/docs/FAQ.md
+16-165 files

LLVM/project 90cc2a4llvm/lib/Target/AMDGPU/Disassembler AMDGPUDisassembler.h AMDGPUDisassembler.cpp, llvm/test/MC/Disassembler/AMDGPU decode-err.txt

[AMDGPU] Fix an AMDGPU disassembler crash (#214914)

Fixes #214909.
DeltaFile
+6-3llvm/lib/Target/AMDGPU/Disassembler/AMDGPUDisassembler.cpp
+5-0llvm/test/MC/Disassembler/AMDGPU/decode-err.txt
+1-1llvm/lib/Target/AMDGPU/Disassembler/AMDGPUDisassembler.h
+12-43 files

FreeBSD/ports 28b2388audio/fossmixer distinfo pkg-plist

audio/fossmixer: Update 0.0.3 => 0.0.6

Changelog:
https://goto10.co/projects/detroit/trunk/apps/fossmixer/CHANGELOG

- Improve port.

PR:             291347
Sponsored by:   UNIS Labs
Co-authored-by: Vladimir Druzenko <vvd at FreeBSD.org>
DeltaFile
+17-16audio/fossmixer/Makefile
+5-3audio/fossmixer/distinfo
+8-0audio/fossmixer/pkg-plist
+30-193 files

LLVM/project 0d465dellvm/docs SourceLevelDebugging.md GitHub.md

[docs] Use colon fences for rich MyST directives
DeltaFile
+34-34llvm/docs/Remarks.md
+22-22llvm/docs/LangRef.md
+16-16llvm/docs/InstrProfileFormat.md
+14-14llvm/docs/CodeGenerator.md
+12-12llvm/docs/SourceLevelDebugging.md
+12-12llvm/docs/GitHub.md
+110-11035 files not shown
+264-26241 files

LLVM/project 3bdc678llvm/lib/Target/AMDGPU/AsmParser AMDGPUAsmParser.cpp, llvm/lib/Target/AMDGPU/Disassembler AMDGPUDisassembler.cpp

[AMDGPU] Check operand for split barrier in both assembler and disassembler

Fixes #214910.
DeltaFile
+10-10llvm/test/MC/AMDGPU/gfx13_asm_sop1.s
+12-0llvm/test/MC/AMDGPU/gfx12_err.s
+11-0llvm/test/MC/Disassembler/AMDGPU/decode-err.txt
+8-1llvm/lib/Target/AMDGPU/AsmParser/AMDGPUAsmParser.cpp
+9-0llvm/lib/Target/AMDGPU/Disassembler/AMDGPUDisassembler.cpp
+50-115 files

FreeBSD/ports a369afesecurity/qgpgme Makefile distinfo, security/qgpgme/files patch-src_util.h

security/qgpgme: Update to 2.2.0
DeltaFile
+19-0security/qgpgme/files/patch-src_util.h
+3-3security/qgpgme/distinfo
+5-1security/qgpgme/pkg-plist
+1-1security/qgpgme/Makefile
+28-54 files

LLVM/project b9f4d1dllvm/docs SphinxQuickstartTemplate.md

[docs] Recommend colon fences for rich MyST directives
DeltaFile
+23-0llvm/docs/SphinxQuickstartTemplate.md
+23-01 files

LLVM/project f041dd4llvm/lib/Target/AMDGPU/Disassembler AMDGPUDisassembler.h AMDGPUDisassembler.cpp, llvm/test/MC/Disassembler/AMDGPU decode-err.txt

[AMDGPU] Fix an AMDGPU disassembler crash

Fixes #214909.
DeltaFile
+6-3llvm/lib/Target/AMDGPU/Disassembler/AMDGPUDisassembler.cpp
+5-0llvm/test/MC/Disassembler/AMDGPU/decode-err.txt
+1-1llvm/lib/Target/AMDGPU/Disassembler/AMDGPUDisassembler.h
+12-43 files

LLVM/project 756e26alibclc/test lit.cfg.py, libclc/test/conformance work_group_reduce.cl conformance.h

[libclc] Add math smoke test for cos special values (#214786)

Summary:
Basic math version of unit tests used to give reference for how these
can test the known special values. SImilar to LLVM libc's smoke math
tests on the GPU. More can be added later,
DeltaFile
+88-0libclc/test/conformance/math/cos.cl
+57-0libclc/test/conformance/conformance.h
+0-12libclc/test/conformance/work_group_reduce.cl
+12-0libclc/test/conformance/workgroups/work_group_reduce.cl
+3-1libclc/test/lit.cfg.py
+160-135 files

LLVM/project 20667a6libcxx/include optional, libcxx/test/std/iterators/iterator.range mandatory_inclusions.gen.py

[libc++] Include range access headers in `<optional>` only since C++26 (#214688)

Inclusions of internal range access headers address LWG4131 which
patches P3168R2 "Give `std::optional` Range Support". As P3168R2 is
certainly a new feature in C++26, these includes are unnecessary in old
modes.

It was reported that these increased the size of `<optional>` by ~8%, so
probably it is better to avoid such cost in old modes.
DeltaFile
+7-5libcxx/include/optional
+10-0libcxx/test/std/iterators/iterator.range/mandatory_inclusions.gen.py
+17-52 files

FreeBSD/ports 421c7fclang/kotlin22 Makefile

lang/kotlin22: Deprecate: the only consumer games/lwjgl3 now requires 2.4

PR:             296877
Approved by:    Michael Zhilin <mizhka at FreeBSD.org> (maintainer, timeout 3 weeks)
Sponsored by:   UNIS Labs
DeltaFile
+3-0lang/kotlin22/Makefile
+3-01 files

FreeBSD/ports 21b0f19games/lwjgl3 pkg-plist distinfo, games/lwjgl3/files patch-update-dependencies.xml patch-config_build-definitions.xml

games/lwjgl3: Update 3.4.1.g20260203 => 3.4.2

Changelog:
https://github.com/LWJGL/lwjgl3/releases/tag/3.4.2

Sponsored by:   UNIS Labs
DeltaFile
+0-69games/lwjgl3/files/patch-modules_lwjgl_jemalloc_src_generated_java_org_lwjgl_system_jemalloc_JEmalloc.java
+0-20games/lwjgl3/files/patch-update-dependencies.xml
+8-12games/lwjgl3/Makefile
+15-5games/lwjgl3/files/patch-config_build-definitions.xml
+7-11games/lwjgl3/distinfo
+4-2games/lwjgl3/pkg-plist
+34-1196 files

LLVM/project 8221a85llvm/lib/Target/NVPTX NVPTXISelDAGToDAG.cpp, llvm/test/CodeGen/NVPTX cache-hint-load-store.ll

[NVPTX] Drop cache hints on volatile loads/stores (#214830)

https://github.com/llvm/llvm-project/pull/204067 added cache hint
metadata support for NVPTX. I forgot to handle volatile loads/stores
correctly. Volatile loads only support .level::prefetch_size and
volatile stores don't support any cache hints. This PR drops unsupported
metadata for volatile loads/stores.
DeltaFile
+27-23llvm/lib/Target/NVPTX/NVPTXISelDAGToDAG.cpp
+25-0llvm/test/CodeGen/NVPTX/cache-hint-load-store.ll
+52-232 files

LLVM/project db116a9libclc/test/math cos.cl

[libclc][test] Update cos.cl checks after fneg FP-options fix (#214906)

ceaff22ed2c3 ([Clang][CodeGen] Respect FP pragma options for fneg and
calls) scopes fneg's fast-math flags to the expression's own FPOptions
instead of the ambient IRBuilder state, so one fneg in cos.cl's
generated IR no longer carries contract. Regenerate check.

Co-authored-by: Claude Sonnet 5 <noreply at anthropic.com>
DeltaFile
+1-1libclc/test/math/cos.cl
+1-11 files

LLVM/project a44318bclang/include/clang/Driver SanitizerArgs.h, clang/lib/Driver SanitizerArgs.cpp

[Driver][KCFI] Forward -fsanitize-kcfi-hash= to cc1 (#214827)

-fsanitize-kcfi-hash= is a CC1Option that selects the hash algorithm
used to derive KCFI type IDs (xxHash64 or FNV-1a), but the driver never
claimed or forwarded it. As a result, invocations like

  clang -fsanitize=kcfi -fsanitize-kcfi-hash=FNV-1a foo.c

silently dropped the flag with an "argument unused during compilation"
warning; users had to route it through -Xclang to reach cc1. This is
particularly awkward for build systems (e.g. the Linux kernel) that want
to select FNV-1a for -fsanitize=kcfi builds.

Handle the option in SanitizerArgs alongside -fsanitize-kcfi-arity:
capture the last-specified value when KCFI is enabled and forward it to
cc1 as -fsanitize-kcfi-hash=<value>. Values are still validated by cc1's
tablegen-driven Values<"xxHash64,FNV-1a"> checker, so bad values produce
the usual "invalid value" diagnostic. When -fsanitize=kcfi is not
specified, the flag remains unclaimed and triggers

    [9 lines not shown]
DeltaFile
+32-0clang/test/Driver/fsanitize-cfi.c
+6-0clang/lib/Driver/SanitizerArgs.cpp
+2-0clang/include/clang/Driver/SanitizerArgs.h
+40-03 files

LLVM/project 49deb52llvm/lib/MC MCPseudoProbe.cpp, llvm/test/MC/ELF pseudoprobe-order.s

[MC] Make pseudo-probe divisions ordering stable (#214803)

**Problem**

`MCPseudoProbeSections::emit` sorts probe divisions only by section
ordinal.

Functions sharing a section will have a nondeterministic `unordered_map`
iteration order, producing *different .pseudo_probe bytes for identical
inputs.*

**Solution**


Use the function symbol name as a stable tie-breaker when section
ordinals match.

Add an MC regression test that reverses pseudo-probe insertion order and
requires byte-identical object files.

    [4 lines not shown]
DeltaFile
+31-0llvm/test/MC/ELF/pseudoprobe-order.s
+5-3llvm/lib/MC/MCPseudoProbe.cpp
+36-32 files

LLVM/project 12336bbllvm/lib/Target/RISCV RISCVInstrInfoZilsd.td RISCVInstrInfoF.td, llvm/lib/Target/RISCV/AsmParser RISCVAsmParser.cpp

[RISC-V] Use an optional offset operand instead of zero-offset InstAliases

Introduce OptionalMemOffsetAsmOperand, which wraps a memory-offset
operand class into a variant with `IsOptional` set so that a memory
operand written without an offset, e.g. "lb a0, (a1)", parses with a
default offset of 0, and use it for a simm12_lo_optional operand. This
replaces the hand-written "(${rs1})" zero-offset InstAlias that every
load/store-style instruction needed (scalar and FP loads/stores, Zilsd,
jr/jalr and the .insn_i/.insn_s memory forms).

OptionalMemOffsetAsmOperand is somewhat complicated, but this makes it
easier to replace all the other optional zero memory operands which I
will do in follow-up commits, removing all the InstAlias duplication.

This change was assisted by AI.

Pull Request: https://github.com/llvm/llvm-project/pull/210901
DeltaFile
+47-50llvm/lib/Target/RISCV/RISCVInstrInfo.td
+20-13llvm/test/MC/RISCV/tlsdesc.s
+2-23llvm/lib/Target/RISCV/RISCVInstrInfoXqci.td
+19-0llvm/lib/Target/RISCV/AsmParser/RISCVAsmParser.cpp
+2-5llvm/lib/Target/RISCV/RISCVInstrInfoZilsd.td
+2-5llvm/lib/Target/RISCV/RISCVInstrInfoF.td
+92-964 files not shown
+94-11010 files

LLVM/project f5f3c6abolt/include/bolt/Utils Utils.h, bolt/lib/Core BinaryContext.cpp

[BOLT] Page out .dwo files

Split-DWARF inputs at big binaries scale ship 100+ GiB of .dwo
files. BOLT opened a fair number of them during readDebugInfo, putting
a lot of pressure on the OS memory management: mmap'd reads always
populate the page cache; with every .dwo mapped at once those pages
accumulated, refaulted, and registered as memory pressure that got the
process oomd-killed.

Now, .dwo page-cache pages are reclaimed as soon as BOLT is done with
each file: madvise(MADV_PAGEOUT) on the live mapping, then
posix_fadvise(POSIX_FADV_DONTNEED) once it is unmapped. Controlled by
-drop-dwo-page-cache, OFF by default, as it is unlikely upstream
will be processing gigantic sets of dwo files.
DeltaFile
+68-2bolt/lib/Core/BinaryContext.cpp
+37-0bolt/lib/Utils/Utils.cpp
+11-0bolt/include/bolt/Utils/Utils.h
+116-23 files

HardenedBSD/src 8e5d8b0sys/contrib/dev/ath/ath_hal/ar9300 ar9300_paprd.c, sys/dev/mpt mpt_raid.h mpt_raid.c

Merge remote-tracking branch 'rad/freebsd/current/main' into hardened/current/master
DeltaFile
+8-0sys/kern/kern_event.c
+3-3sys/dev/ocs_fc/ocs_hw.c
+1-1sys/dev/usb/wlan/if_urtw.c
+1-1sys/dev/mpt/mpt_raid.h
+1-1sys/dev/mpt/mpt_raid.c
+1-1sys/contrib/dev/ath/ath_hal/ar9300/ar9300_paprd.c
+15-71 files not shown
+16-77 files

NetBSD/src vSgWREGsys/kern sys_process_lwpstatus.c

   ptrace/procfs: Take lwp lock around process_read/write_(fp)regs(32).

   And verify that the lwp is in LSSTOP state before trying to read.
   Otherwise, we might catch an lwp while it's still running on the CPU,
   with all FPU state active, making the result unstable and tripping
   assertions on some architectures.

   PR port-amd64/60556: panic in process_read_fpregs_xmm
VersionDeltaFile
1.6+10-3sys/kern/sys_process_lwpstatus.c
+10-31 files

FreeBSD/src 3da5abasys/dev/igc igc_base.h igc_base.c

igc: Disable PCIe L1.2 on I225

I225 devices can incorrectly enter L1 substates while CLKREQ# is
asserted, both while idle and in D3.  Disable ASPM and PCI-PM L1.2 on
I225 to prevent the resulting packet loss.

Keep the I226 workaround ASPM-only because it addresses a separate
traffic exit latency observation.

PR:             265714

(cherry picked from commit 4a28d390f5fbae2483e88805559881b04ccf9a80)
DeltaFile
+22-20sys/dev/igc/if_igc.c
+29-0sys/dev/igc/igc_base.c
+1-0sys/dev/igc/igc_base.h
+52-203 files

FreeBSD/src 30f4095sys/dev/igc igc_base.c

igc: Apply ASPM L1.2 workaround to all I226 devices

Classify I226_LMVP and I226_BLANK_NVM as I226 silicon so they
receive the I226-specific ASPM L1.2 workaround.

PR:             279245
Pull-Request:   https://github.com/freebsd/freebsd-src/pull/2318

(cherry picked from commit cecb0f45cb83349c60514da38fddce83ad042468)
DeltaFile
+5-0sys/dev/igc/igc_base.c
+5-01 files

FreeBSD/src 94d7960sys/dev/ixgbe if_sriov.c

ixgbe: clear VF head write-back state on reset

VF reset and FLR do not clear the transmit head write-back address
registers.  A previous VF driver can therefore leave DMA write-back
enabled with a stale address for the next driver instance.

After consuming the reset request and disabling the VF queues, clear the
address registers for each queue belonging to that VF.  Derive the queue
count from the active IOV mode so peer queue state is not touched.

Linux commit dbf231af81a7 documents the hardware behavior.  The FreeBSD
implementation follows the local queue mapping and register interfaces.

(cherry picked from commit 6f940ca879cbf691ddf5605d852770cef27847b2)
DeltaFile
+13-0sys/dev/ixgbe/if_sriov.c
+13-01 files

FreeBSD/src 2ece404sys/dev/ixgbe ixgbe_common.c ixgbe_api.c

ixgbe: dispatch PBA string reads through EEPROM ops

E610 installs a device-specific PBA string reader, but the public API
always calls the generic implementation.  Dispatch through the EEPROM
operation table so device overrides are honored.

Initialize the generic operation for devices that use the ordinary
EEPROM representation.

Obtained from:  Intel ix 3.4.39

(cherry picked from commit 9cf1aa6e68e4b9dd4a77c67b7b902b9221198e7a)
DeltaFile
+3-1sys/dev/ixgbe/ixgbe_api.c
+1-0sys/dev/ixgbe/ixgbe_common.c
+4-12 files