HardenedBSD/src e161ad7release/tools vmimage.subr, tools/build depend-cleanup.sh

Merge remote-tracking branch 'origin/hardened/current/master' into hardened/current/cross-dso-cfi
DeltaFile
+2-207tools/build/depend-cleanup.sh
+10-3release/tools/vmimage.subr
+12-2102 files

HardenedBSD/src b65b9c4release/tools vmimage.subr, tools/build depend-cleanup.sh

Merge branch 'freebsd/current/main' into hardened/current/master
DeltaFile
+2-207tools/build/depend-cleanup.sh
+10-3release/tools/vmimage.subr
+12-2102 files

HardenedBSD/ports b7fb45fdatabases/pgrouting distinfo Makefile, databases/pgrouting/files patch-src_cpp__common_get__check__data.cpp

databases/pgrouting: Update to 3.8.0

PR:             290456
Reported by:    Brad Ackerman <brad at facefault.org>
Co-authored by: Brad Ackerman <brad at facefault.org>
DeltaFile
+0-11databases/pgrouting/files/patch-src_cpp__common_get__check__data.cpp
+3-3databases/pgrouting/distinfo
+3-2databases/pgrouting/Makefile
+1-2databases/pgrouting/pkg-plist
+7-184 files

HardenedBSD/ports 631ef1ddevel/selene distinfo Makefile

devel/selene: update 0.27.1 → 0.29.0
DeltaFile
+23-25devel/selene/distinfo
+11-13devel/selene/Makefile
+34-382 files

HardenedBSD/ports e28e79cdevel/py-uv-build distinfo Makefile

devel/py-uv-build: update 0.9.8 → 0.9.9
DeltaFile
+3-3devel/py-uv-build/distinfo
+1-1devel/py-uv-build/Makefile
+4-42 files

HardenedBSD/ports d094325devel/xbyak distinfo Makefile

devel/xbyak: update 7.25 → 7.30
DeltaFile
+3-3devel/xbyak/distinfo
+1-1devel/xbyak/Makefile
+4-42 files

HardenedBSD/ports 9261ca8archivers/zstr distinfo Makefile

archivers/zstr: update 1.0.7 → 1.1.0
DeltaFile
+3-3archivers/zstr/distinfo
+1-1archivers/zstr/Makefile
+4-42 files

HardenedBSD/ports c3ffb07math/SCIP Makefile, math/SoPlex Makefile distinfo

math/SoPlex: update 7.1.1.0 → 8.0.0
DeltaFile
+5-3math/SoPlex/Makefile
+3-3math/SoPlex/distinfo
+2-0math/SoPlex/pkg-plist
+1-1math/polymake/Makefile
+1-0math/SCIP/Makefile
+1-0math/topcom/Makefile
+13-76 files

HardenedBSD/ports 0a34c61security/trufflehog distinfo Makefile

security/trufflehog: update 3.90.13 → 3.91.0
DeltaFile
+5-5security/trufflehog/distinfo
+1-2security/trufflehog/Makefile
+6-72 files

HardenedBSD/ports 3813f08devel/py-uv distinfo Makefile, devel/uv distinfo Makefile.crates

devel/{,py-}uv: update 0.9.8 → 0.9.9
DeltaFile
+27-11devel/uv/distinfo
+12-4devel/uv/Makefile.crates
+3-3devel/py-uv/distinfo
+1-2devel/uv/Makefile
+1-1devel/py-uv/Makefile
+44-215 files

HardenedBSD/ports 596ef09misc/gemini-cli pkg-plist distinfo, misc/gemini-cli/files package-lock.json

misc/gemini-cli: update 0.13.0 → 0.15.3
DeltaFile
+0-6,312misc/gemini-cli/files/package-lock.json
+138-6misc/gemini-cli/pkg-plist
+3-3misc/gemini-cli/distinfo
+1-2misc/gemini-cli/Makefile
+142-6,3234 files

HardenedBSD/ports 27d5cf4devel/py-ruff distinfo Makefile, devel/ruff distinfo Makefile.crates

devel/{,py-}ruff: update 0.14.4 → 0.14.5
DeltaFile
+15-15devel/py-ruff/distinfo
+15-15devel/ruff/distinfo
+7-8devel/py-ruff/Makefile
+6-6devel/ruff/Makefile.crates
+1-2devel/ruff/Makefile
+44-465 files

HardenedBSD/ports 2a78c74databases/rqlite distinfo Makefile

databases/rqlite: update 9.2.3 → 9.3.0
DeltaFile
+5-5databases/rqlite/distinfo
+1-1databases/rqlite/Makefile
+6-62 files

HardenedBSD/ports fb3a101multimedia/qpwgraph distinfo Makefile

multimedia/qpwgraph: update 0.9.6 → 0.9.7
DeltaFile
+3-3multimedia/qpwgraph/distinfo
+3-2multimedia/qpwgraph/Makefile
+6-52 files

HardenedBSD/ports 580ec82textproc Makefile, textproc/py-conllu Makefile pkg-descr

textproc/py-conllu: New port: CoNLL-U format parser for Python
DeltaFile
+34-0textproc/py-conllu/Makefile
+11-0textproc/py-conllu/pkg-descr
+3-0textproc/py-conllu/distinfo
+1-0textproc/Makefile
+49-04 files

HardenedBSD/ports 19f7a1bdevel/dra distinfo Makefile

devel/dra: update 0.9.0 → 0.9.1
DeltaFile
+9-9devel/dra/distinfo
+4-5devel/dra/Makefile
+13-142 files

HardenedBSD/ports 57bc911devel/bacon distinfo Makefile

devel/bacon: update 3.17.0 → 3.20.1
DeltaFile
+347-361devel/bacon/distinfo
+173-181devel/bacon/Makefile
+520-5422 files

HardenedBSD/ports 9106c70misc/astc-encoder distinfo Makefile, misc/astc-encoder/files patch-Source_cmake__core.cmake

misc/astc-encoder: update 5.1.0 → 5.3.0
DeltaFile
+2-10misc/astc-encoder/files/patch-Source_cmake__core.cmake
+3-3misc/astc-encoder/distinfo
+3-1misc/astc-encoder/Makefile
+8-143 files

HardenedBSD/src 07e6bfetools/build depend-cleanup.sh

depend-cleanup.sh: Remove everything before the last build epoch.

We were deleting the .a files for llvm when it was build in bootstrap,
but this caused us to rebuild all the bootstrap things since the
bootstrap compiler changed, making the build time 25 minutes instead of
77 seconds on one of my systems. Items before the last rebuild from
scratch epoch are no longer relevant because you have to rebuild
entirely, so the incremental conditions that lead up to them being
needed are no longer true.

Sponsored by:           Netflix
Reviewed by:            jrtc27, emaste
Differential Revision:  https://reviews.freebsd.org/D53693
DeltaFile
+2-207tools/build/depend-cleanup.sh
+2-2071 files

HardenedBSD/src ac4b394bin/rm rm.c

rm(1): remove whiteouts when forcibly removing directories

Commit 2ed053cde5 changed UFS' VOP_RMDIR() behavior to no longer
ignore whiteouts when determining whether a directory is empty,
unless explicitly requested by the caller.  However, this also
necessitates a change to rm(1) to avoid breaking the expected
behavior when forcibly removing directory hierarchies via `rm -fr`.
I neglected to make this follow-on change despite discussing it
in the review for the breaking commit (D45987).

Finally address the breakage by making `rm -fr` imply FTS_WHITEOUT
when rm(1) reads directory contents via fts_read(3).  While here,
also fix a logic error which produces a spurious 'No error' warning
message on stdout for each deleted whiteout.

Reported by:    csjp
Reviewed by:    csjp, kib, olce
Differential Revision:  https://reviews.freebsd.org/D53640

(cherry picked from commit 8b92a6ad597e224b616a8b1d6983f3b55c85308e)
DeltaFile
+2-2bin/rm/rm.c
+2-21 files

HardenedBSD/ports d93ec00textproc/R-cran-XML distinfo Makefile

textproc/R-cran-XML: Update to 3.99-0.20

Reported by:    portscout
DeltaFile
+3-3textproc/R-cran-XML/distinfo
+1-1textproc/R-cran-XML/Makefile
+4-42 files

HardenedBSD/ports 8ea79b3textproc/moor distinfo Makefile

textproc/moor: Update 2.5.1 => 2.9.1

Changelog: https://github.com/walles/moor/releases

PR:             290684
Reported by:    Yusuf Yaman <nxjoseph at protonmail.com> (maintainer)
Approved by:    yuri@ (Mentor)
DeltaFile
+5-5textproc/moor/distinfo
+1-2textproc/moor/Makefile
+6-72 files

HardenedBSD/ports a9f3e5bsysutils/kustomize distinfo Makefile

sysutils/kustomize: Update to 5.8.0

ChangeLog:
https://github.com/kubernetes-sigs/kustomize/releases/tag/kustomize%2Fv5.8.0
DeltaFile
+5-5sysutils/kustomize/distinfo
+2-2sysutils/kustomize/Makefile
+7-72 files

HardenedBSD/ports b2a9eb8sysutils/kubetail Makefile distinfo

sysutils/kubetail: Update to 1.6.22

ChangeLog:
https://github.com/johanhaleby/kubetail/compare/1.6.21...1.6.22
DeltaFile
+1-6sysutils/kubetail/Makefile
+3-3sysutils/kubetail/distinfo
+4-92 files

HardenedBSD/ports 29b85b9cad/py-edalize distinfo Makefile, cad/py-edalize/files patch-pyproject.toml

cad/py-edalize: Update 0.6.0 => 0.6.1

Summary:
Changelogs:
* https://github.com/olofk/edalize/releases/tag/v0.6.1
* https://github.com/olofk/edalize/compare/v0.6.0...v0.6.1

Approved by:            yuri@ (maintainer, Mentor)
Differential Revision:  https://reviews.freebsd.org/D53705
DeltaFile
+3-3cad/py-edalize/files/patch-pyproject.toml
+3-3cad/py-edalize/distinfo
+1-2cad/py-edalize/Makefile
+7-83 files

HardenedBSD/src 0ff7c92release/tools vmimage.subr

vmimage.subr: Don't log missing files from pkgs

When installing "extra" packages (aka those built from the ports tree),
we record everything being installed in METALOG.pkg; the contents of
that file is appended to METALOG before we generate the filesystem.

There are two cases when files recorded in METALOG.pkg will no longer
exist by the time we create the final disk image:
1. If a pkg bug results in false dependencies being installed which
are later removed by "pkg autoremove", and
2. If the pkg we build and install from /usr/ports is older than the
pkg on pkg.freebsd.org, and pkg gets upgraded automatically as part of
installing extra packages.

The ultimate issue in both cases is that there's no mechanism for
removing entries from METALOG when we run 'pkg delete'.

Address this build breakage by checking, line by line, if filesystem
objects mentioned in METALOG.pkg exist before appending them to METALOG.

    [5 lines not shown]
DeltaFile
+8-1release/tools/vmimage.subr
+8-11 files

HardenedBSD/src aade340release/tools vmimage.subr

vmimage.subr: Enable FreeBSD-base repo if pkgbase

When creating a VM image using pkgbase, create a configuration file in
/usr/local/etc/pkg/repos/FreeBSD.conf which enables the FreeBSD-base
repository.  (This repository is defined in /etc/pkg/FreeBSD.conf as
being disabled by default.)

Reported by:    Mark Millard
MFC after:      immediately (needed for 15.0-RC1)

(cherry picked from commit e0c41af9256b5c5a6c97c85d468ff734e29f1bd5)
DeltaFile
+4-0release/tools/vmimage.subr
+4-01 files

HardenedBSD/src 6b15dc2release/tools vmimage.subr

vmimage.subr: Log pkg/local.sqlite if pkgbase

We were doing this in vm_extra_install_packages but VM images without
any extra packages installed would not get this installed.  This
results in a pkgbase system which thinks it doesn't have any packages
installed (even though all the files are right there).

Add a "metalog_add_data ./var/db/pkg/local.sqlite" call to the pkgbase
install code path, and make the call from vm_extra_install_packages
conditional on !PKGBASE.

Reported by:    Michael Dexter
MFC after:      immediately (needed for 15.0-RC1)

(cherry picked from commit 10a4f2d016dccb5cfa03800bebc09a9b421c4df7)
DeltaFile
+4-1release/tools/vmimage.subr
+4-11 files

HardenedBSD/src 5d9062fusr.sbin/bsdinstall/scripts pkgbase.in

bsdinstall: Enable FreeBSD-base repo when pkgbase

When performing a pkgbase install, create a configuration file in
/usr/local/etc/pkg/repos/FreeBSD.conf which enables the FreeBSD-base
repository.  (This repository is defined in /etc/pkg/FreeBSD.conf as
being disabled by default.)

Reported by:    Mark Millard
Reviewed by:    markj
MFC after:      immediately (needed for 15.0-RC1)
Differential Revision:  https://reviews.freebsd.org/D53777

(cherry picked from commit a96230e0329b32cbee0999813787a86eab521da4)
DeltaFile
+4-0usr.sbin/bsdinstall/scripts/pkgbase.in
+4-01 files

HardenedBSD/src 93769d2release Makefile.gce

GCE: Specify the architecture of images

Without a specified architecture, a user can attempt to create an
arm64 instance with an amd64 image or vice versa. With the change
the API will prevent that mismatch.

(cherry picked from commit 0a8ecca4e3156bcd4ebbfcb24d968e67a3a09434)
DeltaFile
+9-0release/Makefile.gce
+9-01 files