NetBSD/src DpAfWgR — share/mk bsd.own.mk

   bsd.own.mk: Respect USE_FORT even if defined after bsd.own.mk.

   Using (a chain of logic that boils down to)

   .if ${USE_FORT:Uno} != "no"
   CPPFLAGS+=   -D_FORTIFY_SOURCE=2
   .endif

   expands USE_FORT eagerly, so if USE_FORT was not already defined before
   including <bsd.own.mk>, it's too late after.

   Using (a chain of logic that boils down to)

   CPPFLAGS+=   ${${USE_FORT:Uno} != "no":?-D_FORTIFY_SOURCE=2:}

   expands USE_FORT lazily, so it's only when CPPFLAGS itself is expanded
   -- usually in a recipe, after all variable assignments, prerequisite
   lists, and .directives have been processed -- that USE_FORT is
   expanded.

    [9 lines not shown]
VersionDeltaFile
1.1488+2-4share/mk/bsd.own.mk
+2-41 files

LLVM/project 13d5a13 — llvm/lib/CodeGen/AsmPrinter AsmPrinter.cpp, llvm/test/CodeGen/ARM call-graph-section-assembly.ll

[AsmPrinter] Fix direct callee operand lookup in CallGraphSection (#218534)

In handleCallsiteForCallgraph, direct callee operand was assumed to
always be at index 0 (MI.getOperand(0)). While true for x86_64, on
ARM Thumb/Thumb-2 (e.g. tBL), operand 0 represent predicate condition
code not the callee operand. Use getCalleeOperand to correctly retrieve
the operand.

Assisted-by: Gemini
DeltaFile
+2-1llvm/lib/CodeGen/AsmPrinter/AsmPrinter.cpp
+2-0llvm/test/CodeGen/ARM/call-graph-section-assembly.ll
+4-12 files

NetBSD/src PjIc8Yu — lib/libc shlib_version

   libc: Add a note to shlib_version about nixing __ssp_protected_*.

   PR lib/60858: fortuitous embarrassment: fortify is all kinds of busted
VersionDeltaFile
1.302+2-1lib/libc/shlib_version
+2-11 files

NetBSD/src NUwjChS — include/ssp ssp.h, lib/libc/ssp ssp_redirect.c

   ssp.h: Stop creating references to useless __ssp_protected_* symbols.

   The ssp wrappers are useful _only_ when they are actually used for
   inline function call expansion; if the function is used for anything
   else like a function pointer, only the underlying library symbol
   should be used.

   To pacify linker complaints about spurious references to
   __ssp_protected_getcwd/read/readlink, we added equally spurious
   definitions of those symbols to libc without understanding why; it
   turns out it only happened because the ssp wrappers declared, e.g.:

   extern inline read(...) __RENAME(__ssp_protected_read);
   extern inline read(...) { <ssp check>; return __ssp_real_read(...); }

   The declaration with __RENAME caused the compiler to generate
   references, required by the linker to be resolved, to the symbol
   `__ssp_protected_read' when compiling code that takes the address of
   the function read() to pass around a function pointer.  Instead, the

    [15 lines not shown]
VersionDeltaFile
1.4+42-18lib/libc/ssp/ssp_redirect.c
1.17+1-2include/ssp/ssp.h
+43-202 files

LLVM/project 0cdc8ce — llvm/test/tools/llvm-ar zos-symattrs.test

Fix test
DeltaFile
+1-1llvm/test/tools/llvm-ar/zos-symattrs.test
+1-11 files

Linux/linux 602042b — kernel workqueue.c

Merge tag 'wq-for-7.3-rc6-fixes' of git://git.kernel.org/pub/scm/linux/kernel/git/tj/wq

Pull workqueue fixes from Tejun Heo:

 - Fix a NULL dereference in the chained work check when a kworker
   queues work on a draining or destroying workqueue outside work item
   execution.

* tag 'wq-for-7.3-rc6-fixes' of git://git.kernel.org/pub/scm/linux/kernel/git/tj/wq:
  workqueue: Fix NULL current_pwq deref in chained work check
DeltaFile
+1-1kernel/workqueue.c
+1-11 files

LLVM/project 6e19e16 — clang/lib/StaticAnalyzer/Checkers/WebKit RawPtrRefSafetyModel.h RawPtrRefLambdaCapturesChecker.cpp, clang/test/Analysis/Checkers/WebKit unborrowed-local-vars.cpp

[WebKit Checkers] Allow a view into a temporary CanBorrow prvalue without a Borrow<T> (#229495)

Common example:

```
for (auto& x : copyToVector(y)) {
}
```

This is safe without any explicit Borrow<T> because it is syntactically
impossible to name the Vector, so we must have exclusive access to it,
with no other pointers/references/views that can invalidate it.

The one edge case to consider is that the iterator itself might hold a
pointer to the Vector, and vend an API that can invalidate the Vector.
(A pre-existing regression test covers this case.)

To decide that, `isSafeExpr` now also receives the sink type (the type
of the variable, parameter, or lambda capture that receives the value)

    [2 lines not shown]
DeltaFile
+50-4clang/lib/StaticAnalyzer/Checkers/WebKit/RawPtrRefSafetyModel.cpp
+23-1clang/test/Analysis/Checkers/WebKit/unborrowed-local-vars.cpp
+9-6clang/lib/StaticAnalyzer/Checkers/WebKit/RawPtrRefCallArgsChecker.cpp
+7-4clang/lib/StaticAnalyzer/Checkers/WebKit/RawPtrRefLocalVarsChecker.cpp
+6-3clang/lib/StaticAnalyzer/Checkers/WebKit/RawPtrRefLambdaCapturesChecker.cpp
+4-2clang/lib/StaticAnalyzer/Checkers/WebKit/RawPtrRefSafetyModel.h
+99-201 files not shown
+99-217 files

Linux/linux 0d32b3e — kernel/cgroup cpuset.c

Merge tag 'cgroup-for-7.3-rc6-fixes' of git://git.kernel.org/pub/scm/linux/kernel/git/tj/cgroup

Pull cgroup fixes from Tejun Heo:

 - During CPU offline, the active mask drops the CPU before cpuset
   updates the effective CPUs, so a task placement in that window could
   find no active CPU in the top cpuset and dereference NULL. Restore
   the NULL check.

 - The cpuset v2-mode test read the subsystem's root pointer, which is
   stale during a cgroup filesystem rebind, and the hotplug handler
   evaluated it before taking the cpuset mutex. Record the mode in a
   flag and test it under the mutex.

* tag 'cgroup-for-7.3-rc6-fixes' of git://git.kernel.org/pub/scm/linux/kernel/git/tj/cgroup:
  cgroup/cpuset: Call is_in_v2_mode() after acquiring cpuset_mutex in cpuset_handle_hotplug()
  cgroup/cpuset: Handle cpu hotplug race in guarantee_active_cpus()
  cgroup/cpuset: Don't access cpuset_cgrp_subsys.root in is_in_v2_mode()
DeltaFile
+32-8kernel/cgroup/cpuset.c
+32-81 files

NetBSD/pkgsrc CFufFrb — doc CHANGES-2026

   Note the addition of editors/eh, version 1.9.0, to the packages collection.
VersionDeltaFile
1.6747+2-1doc/CHANGES-2026
+2-11 files

NetBSD/pkgsrc ikqLWfi — editors Makefile, editors/eh PLIST distinfo

   Add and enable editors/eh, version 1.9.0, to the packages collection

        A minimalist version of vi(1).  It is an example of the "Buffer Gap"
        method outlined in the The Craft Of Text Editing used by many Emacs
        style editors.

        Create or read a text file to edit.  Text files consists of lines of
        printable UTF-8 text, tabs, or newline characters.  A physical line
        can be of arbitrary length and is delimited by either a newline or the
        end of file.  Tab stops are every eight columns.  The behaviour of
        non-printable characters may vary depending on the implementation of
        the Curses library, stty(1) settings, or terminal emulator.

   eh was the winner of IOCCC28, catalogued as 2024/howe
VersionDeltaFile
1.1+35-0editors/eh/Makefile
1.1+10-0editors/eh/DESCR
1.1+5-0editors/eh/distinfo
1.271+2-1editors/Makefile
1.1+2-0editors/eh/PLIST
+54-15 files

LLVM/project 03302cd — llvm/lib/Target/RISCV RISCVInstrInfo.cpp, llvm/test/CodeGen/RISCV machine-sink-jumptable-edge-split.ll

[RISCV] Add Xqcisls loads to getJumpTableIndex (#229006)
DeltaFile
+88-0llvm/test/CodeGen/RISCV/machine-sink-jumptable-edge-split.ll
+1-0llvm/lib/Target/RISCV/RISCVInstrInfo.cpp
+89-02 files

LLVM/project b46a38c — clang/lib/CIR/CodeGen CIRGenDecl.cpp CIRGenModule.cpp, clang/test/CIR/CodeGen unions-with-zero-init.cpp member-pointer-null-init.cpp

[CIR] Correct 'null' init for array types with non-zero init (#229543)

The member pointers are supposed to be initialized to -1, so an array of
them or a record of them needs to be initialized properly to -1. This
patch makes sure we look through array types/etc to get the correct
initialization.

Also, quite a few places were using 'getZeroAttr' when they meant 'null
init', so this changes that as well.
DeltaFile
+50-4clang/test/CIR/CodeGen/member-pointer-null-init.cpp
+17-4clang/lib/CIR/CodeGen/CIRGenExprConstant.cpp
+2-7clang/test/CIR/CodeGen/unions-with-zero-init.cpp
+2-2clang/lib/CIR/CodeGen/CIRGenModule.cpp
+3-1clang/lib/CIR/CodeGen/CIRGenTypes.cpp
+1-1clang/lib/CIR/CodeGen/CIRGenDecl.cpp
+75-196 files

LLVM/project 4a5b1cd — llvm/lib/Target/RISCV RISCVFrameLowering.cpp

[RISCV][NFC] Simplify isSupportedStackID (#229117)

The switch case approach meant that we had to add a case every time a
new `TargetStackID` gets added. The original switch was added in
https://reviews.llvm.org/D94465 at which time I guess we had only a few
valid cases.
DeltaFile
+1-12llvm/lib/Target/RISCV/RISCVFrameLowering.cpp
+1-121 files

LLVM/project dfc6aa6 — clang/lib/CIR/CodeGen CIRGenStmt.cpp, clang/test/CIR/CodeGen non-odr-use-const-bool.cpp requires-expr.cpp

[CIR] Skip 'dead' branches when emitting an 'if' statement (#229553)

At one point, we actively decided not to skip these, as it would
possibly be useful for static-analysis. However, we're finding that this
is actually taken advantage of in quite a few places (particularly
    things that call undefined things in the false branch), so we are
going revert our previous decision and do the FE level omission.

This functionality could potentially be restored in the future, but we
probably would want a CIRSimplify patch to do the dead-branch
elimination that runs all the time, but that would require better
constant folding in CIR.
DeltaFile
+47-0clang/test/CIR/CodeGen/if.cpp
+16-30clang/test/CIR/CodeGen/requires-expr.cpp
+36-3clang/test/CIR/CodeGen/non-odr-use-const-bool.cpp
+6-24clang/test/CIR/CodeGenBuiltins/builtin-trivally-copyable.cpp
+12-8clang/lib/CIR/CodeGen/CIRGenStmt.cpp
+0-17clang/test/CIR/CodeGenBuiltins/builtin-types-compatible.c
+117-826 files

Linux/linux 762122d — kernel/sched sched.h, kernel/sched/ext internal.h inlines.h

Merge tag 'sched_ext-for-7.3-rc6-fixes' of git://git.kernel.org/pub/scm/linux/kernel/git/tj/sched_ext

Pull sched_ext fixes from Tejun Heo:

 - Taking a CPU offline could hang, or stall until the watchdog ejected
   the BPF scheduler, when tasks on the dying CPU were still held by the
   scheduler or sitting on a user dispatch queue. Re-enqueue them onto
   the local queue when the runqueue goes offline so that the CPU pushes
   them off like the other sched classes.

 - The sequence number guarding against stale dispatches was per
   runqueue, so a task re-enqueued on another CPU could get the same
   number and a dispatch meant for its earlier instance was applied to
   the new one. Use a per-task counter.

 - A task dispatched to another CPU's local queue got its ops.dequeue()
   only when picked to run and flagged as a core-sched pick. Call it at
   insertion like for same-CPU dispatches.


    [5 lines not shown]
DeltaFile
+270-0tools/testing/selftests/sched_ext/dequeue_remote.bpf.c
+204-0tools/testing/selftests/sched_ext/dequeue_remote.c
+37-9kernel/sched/ext/ext.c
+7-1kernel/sched/ext/inlines.h
+3-3kernel/sched/sched.h
+5-0kernel/sched/ext/internal.h
+526-133 files not shown
+528-179 files

FreeBSD/src 9af3990 — contrib/netbsd-tests/lib/librt t_sem.c

sem test: avoid ETIMEDOUT races in the EINTR test cases

timedwait and clockwait_absolute_intr_remaining arm a 50ms SIGALRM and then
wait until an absolute deadline only 100ms in the future.
On a loaded VM the signal can be delivered more than 50ms late, so the wait
times out first.

Approved by:    imp
Sponsored by:   Netflix
Differential Revision:  https://reviews.freebsd.org/D60347
DeltaFile
+10-2contrib/netbsd-tests/lib/librt/t_sem.c
+10-21 files

HardenedBSD/src 7d476b5 — sys/cam cam_iosched.c, sys/cam/ata ata_da.c

Merge remote-tracking branch 'rad/hardened/current/master' into hardened/current/pledge
DeltaFile
+80-26sys/riscv/riscv/identcpu.c
+14-14sys/cam/scsi/scsi_da.c
+25-1sys/cam/cam_iosched.c
+5-19sys/cam/nvme/nvme_da.c
+10-13sys/cam/ata/ata_da.c
+15-6sys/dev/hwpmc/hwpmc_ibs.c
+149-792 files not shown
+153-808 files

HardenedBSD/src d79d0c8 — lib/libpmc libpmc.c, share/man/man4 hwpmc.4

Merge remote-tracking branch 'rad/hardened/15-stable/main' into hardened/15-stable/pledge
DeltaFile
+45-0sys/dev/hwpmc/hwpmc_mod.c
+25-0tests/sys/netpfil/pf/src_track.sh
+9-10lib/libpmc/libpmc.c
+15-2sys/sys/pmc.h
+15-0sys/dev/hwpmc/hwpmc_amd.c
+4-0share/man/man4/hwpmc.4
+113-122 files not shown
+116-138 files

HardenedBSD/src 568dd29 — sys/cam cam_iosched.c, sys/cam/ata ata_da.c

Merge branch 'freebsd/current/main' into hardened/current/master
DeltaFile
+80-26sys/riscv/riscv/identcpu.c
+14-14sys/cam/scsi/scsi_da.c
+25-1sys/cam/cam_iosched.c
+5-19sys/cam/nvme/nvme_da.c
+10-13sys/cam/ata/ata_da.c
+15-6sys/dev/hwpmc/hwpmc_ibs.c
+149-792 files not shown
+153-808 files

HardenedBSD/src b4aa32c — lib/libpmc libpmc.c, share/man/man4 hwpmc.4

Merge branch 'freebsd/15-stable/main' into hardened/15-stable/main
DeltaFile
+45-0sys/dev/hwpmc/hwpmc_mod.c
+25-0tests/sys/netpfil/pf/src_track.sh
+9-10lib/libpmc/libpmc.c
+15-2sys/sys/pmc.h
+15-0sys/dev/hwpmc/hwpmc_amd.c
+4-0share/man/man4/hwpmc.4
+113-122 files not shown
+116-138 files

HardenedBSD/ports 5e0f20e — audio/noson-app/files patch-backend-lib-CMakeLists.txt, audio/stegosaurus-lv2 Makefile

Merge branch 'freebsd/main' into hardenedbsd/main
DeltaFile
+793-711devel/pijul/distinfo
+402-360devel/pijul/Makefile
+46-0audio/noson-app/files/patch-backend-lib-CMakeLists.txt
+39-0devel/xeus-cling/Makefile
+31-0devel/xeus-cling/pkg-plist
+0-25audio/stegosaurus-lv2/Makefile
+1,311-1,09653 files not shown
+1,510-1,23359 files

LLVM/project 92dfb7a — clang/test/CodeGen fake-use-sanitizer.cpp, llvm/lib/Transforms/Instrumentation MemorySanitizer.cpp

[msan] Correctly handle llvm::fake_use (as a no-op) (#229591)

The fake_use intrinsic (used by -fextend-variable-liveness) was being
strictly handled (i.e., check that the parameter is fully initialized),
which led to false positives
(https://github.com/llvm/llvm-project/issues/225425). This patch solves
the issue by silently not instrumenting fake_use, since they are, by
definition, not real uses and therefore cannot lead to
use-of-uninitialized-memory.

Fixes: #225425
DeltaFile
+11-0llvm/lib/Transforms/Instrumentation/MemorySanitizer.cpp
+1-7clang/test/CodeGen/fake-use-sanitizer.cpp
+12-72 files

LLVM/project 38e992f — libc/src/__support/math CMakeLists.txt expf_float_eval.h, utils/bazel/llvm-project-overlay/libc BUILD.bazel

[libc][math] Improve accuracy for exp*f float-only implementations. (#227881)

Pure Estrin's scheme pushes the rounding errors a bit more than 1 ULP on
non-FMA targets for these functions.
DeltaFile
+16-9libc/src/__support/math/exp2f_float_utils.h
+3-3libc/src/__support/math/expf_float_eval.h
+1-0utils/bazel/llvm-project-overlay/libc/BUILD.bazel
+1-0libc/src/__support/math/CMakeLists.txt
+21-124 files

HardenedBSD/ports 5a0db48 — textproc/R-cran-bibtex Makefile distinfo

textproc/R-cran-bibtex: Update to 0.5.3

Reported by:    portscout
DeltaFile
+3-3textproc/R-cran-bibtex/distinfo
+1-3textproc/R-cran-bibtex/Makefile
+4-62 files

FreeBSD/ports 5a0db48 — textproc/R-cran-bibtex Makefile distinfo

textproc/R-cran-bibtex: Update to 0.5.3

Reported by:    portscout
DeltaFile
+3-3textproc/R-cran-bibtex/distinfo
+1-3textproc/R-cran-bibtex/Makefile
+4-62 files

LLVM/project 3960c0e — llvm/lib/CodeGen/SelectionDAG SelectionDAGDumper.cpp

[SelectionDAG] Add ATOMIC_LOAD_FMAXIMUMNUM/FMINIMUMNUM to SDNode::getOperationName. (#229566)

Reorder the other FP min/max nodes to locally match the order in
ISDOpcodes.h.
DeltaFile
+4-2llvm/lib/CodeGen/SelectionDAG/SelectionDAGDumper.cpp
+4-21 files

LLVM/project 033848e — llvm/lib/CodeGen/SelectionDAG SelectionDAGDumper.cpp

[SelectionDAG] Add static_assert for ISD::BUILTIN_OP_END to SDNode::getOperationName to encourage updating when opcodes are added. (#229573)

Also add missing case for DEACTIVATION_SYMBOL.
DeltaFile
+5-0llvm/lib/CodeGen/SelectionDAG/SelectionDAGDumper.cpp
+5-01 files

LLVM/project 8b85e9d — llvm/lib/CodeGen/GlobalISel LegalizerHelper.cpp, llvm/test/CodeGen/AMDGPU/GlobalISel legalize-load-constant.mir legalize-load-flat.mir

GlobalISel: Use integer types when splitting loads in lowerLoad (#229544)

lowerLoad built the split pieces using the destination type with the
element size changed, which preserved floating-point types. An
unaligned f64 load was decomposed into G_ZEXTLOAD, G_SHL and G_OR on
f32 and f64, which then crashed in AMDGPU RegBankLegalize. Build the
pieces as integers and bitcast to a non-integer result type, as
lowerStore already does.

The pieces are now consistently integer typed, which allows more
constants to be CSEd in the existing tests.

Co-authored-by: Claude Opus 5.5 <noreply at anthropic.com>
DeltaFile
+3,147-2,589llvm/test/CodeGen/AMDGPU/GlobalISel/legalize-load-local.mir
+2,662-2,708llvm/test/CodeGen/AMDGPU/GlobalISel/legalize-load-private.mir
+2,490-2,634llvm/test/CodeGen/AMDGPU/GlobalISel/legalize-load-global.mir
+1,880-1,952llvm/test/CodeGen/AMDGPU/GlobalISel/legalize-load-flat.mir
+1,812-1,908llvm/test/CodeGen/AMDGPU/GlobalISel/legalize-load-constant.mir
+13-12llvm/lib/CodeGen/GlobalISel/LegalizerHelper.cpp
+12,004-11,8036 files

LLVM/project 65cb0aa — clang/lib/CIR/CodeGen CIRGenFunction.cpp CIRGenFunction.h, clang/test/CIR/CodeGen ctor-try-body.cpp

[CIR] Implement ctor-try-body rethrow (#229436)

This came up in a test suite, but we weren't properly re-throwing
exceptions when they were in the body of a constructor's try-body. This
patch mirrors classic-codegen's behavior reasonably well, implementing
this behavior properly.

Side note: this mirrors classic codegen's behavior of including
dtor-try-bodies too, but that isn't implemented yet, so those will just
be an NYI for now.
DeltaFile
+128-0clang/test/CIR/CodeGen/ctor-try-body.cpp
+15-5clang/lib/CIR/CodeGen/CIRGenException.cpp
+11-1clang/lib/CIR/CodeGen/CIRGenFunction.h
+2-1clang/lib/CIR/CodeGen/CIRGenFunction.cpp
+156-74 files

LLVM/project a9d5947 — flang/include/flang/Runtime/CUDA registration.h

[flang][cuda][NFC] Fix header for registration.h (#229599)
DeltaFile
+1-1flang/include/flang/Runtime/CUDA/registration.h
+1-11 files