Pullup ticket #7271 - requested by tron
mail/mutt: Security fix
Revisions pulled up:
- mail/mutt/Makefile 1.302
- mail/mutt/distinfo 1.130
---
Module Name: pkgsrc
Committed By: tron
Date: Fri Oct 9 17:37:08 UTC 2026
Modified Files:
pkgsrc/mail/mutt: Makefile distinfo
Log Message:
mail/mutt: Update to version 2.4.3
This release fixes two bugs. One of them is for CVE-2026-107570, fixing an
[12 lines not shown]
security/zoneminder: Update to 1.38.6
Tested on NetBSD 10.
Upstream NEWS, less bugfixes and minor improvements:
# ZoneMinder 1.38.6 Release Notes
(some kind of packaging fix not important to pkgsrc)
# ZoneMinder 1.38.5 Release Notes
This is a maintenance release for the 1.38 series. It is primarily a security
release: it fixes 19 reported vulnerabilities, including an authenticated remote
code execution, a heap overflow and a stack overflow, as well as cross-monitor
authorization bypasses throughout the web UI and API. All 1.38 users should upgrade.
## pgrade notes
[17 lines not shown]
slony1: limit allowed pgsql version
Officially supports 15, but builds up to 17;
using types from pgsql breaks with 18, so only allow <=17.
While here, fix build on -current
nuclei: Update to 3.11.1
pkgsrc changes:
- Drop MAINTAINERship
Changes:
v3.11.1
New Features
* Improving lua script with args and values
Bug Fixes
* feat(lib): reuse metadata cache across thread-safe scans
Maintenance
* Bump dependencies
v3.11.0
Breaking Change
* Signed templates required for JavaScript protocol
Starting with v3.11.0, custom templates that use the `javascript:`
protocol must be digitally signed before Nuclei will load or execute
[43 lines not shown]
dnsx: Update to 1.3.1
pkgsrc changes:
- Drop MAINTAINERship
Changes:
v1.3.1
* Bumped version to 1.3.1
v1.3.0
New Features
- Added automatic wildcard DNS detection with `-auto-wildcard`, supporting multiple registrable roots and A/AAAA-based filtering
- Added customizable output templates with `-output-template` (`-ot`), including fields such as `{{host}}`, `{{a}}`, `{{aaaa}}`, `{{ip}}`, and `{{query-time}}`
- Added query timing through the `query-time` response field
- Added inline and comma-separated host input support
Bug Fixes
- Fixed JSON and raw output filtering by the requested record type
- Fixed DNS parsing to process only the answer section and ignore unrelated AUTHORITY or ADDITIONAL records
- Improved wildcard-domain validation and normalization, including support for values such as `*.Example.COM.`
[8 lines not shown]
sops: Update to 3.13.3
Changes:
3.13.3
Improvements:
* CLI help improvement
* Dependency updates
Bugfixes:
* Fix a bug introduced in 3.13.2 that computes a wrong MAC during decryption
for sequences (YAML lists) that contain a comment
* Fix ``completion`` subcommands so that they do not have an empty line before
the shebang
3.13.2
Improvements:
* Dependency updates
* Fix typos in documentation
Bugfixes:
* When using `--user` in the `sops exec-file` and `sops exec-env` subcommands,
[92 lines not shown]
gallery-dl: Update to 1.32.16
pkgsrc changes:
- Switch HOMEPAGE to Codeberg, upstream migrated their repository there
Changes:
Too many changes to mention, sorry, please see:
- <https://codeberg.org/mikf/gallery-dl/releases> (for 1.32.16..1.31.10)
- <https://github.com/mikf/gallery-dl/releases> (for older ones)
But there are extractor additions, improvements, fixes and some
extractor removals.
There is also a new server mode that can be invoked via
`gallery-dl --server' that accepts URLs via IPC.