NetBSD/pkgsrc Ln0FuUwgraphics/gexiv2-0.16 Makefile buildlink3.mk

   gexiv2-0.16: change PKGNAME to avoid conflict with gexiv2 0.14

   They have no common names in the PLISTs
VersionDeltaFile
1.3+8-9graphics/gexiv2-0.16/buildlink3.mk
1.3+2-1graphics/gexiv2-0.16/Makefile
+10-102 files

NetBSD/pkgsrc zdPCaHxwww/webkit-gtk41 Makefile.common

   www/webkit-gtk41: Document experiments; say no to ninja

   This commit:
     - drops the previous setting to force sqlite3 library path
     - sets CMAKE_GENERATORS_INCOMPATIBLE to ninja

   When building with ninja (not default, but many do), the NEEDED entry
   in the webkit library is broken, differently depending on if the
   sqlite3 library path is forced or not.   The commit adds excruciating
   comments documenting this on NetBSD 10 amd64.

   (It would be great if someone found and fixed the bug, but for now,
   just roll with "ninja building this package doesn't work".)

   Note that when not building with PKG_DEVELOPER, the resulting
   problems, which might or might not be fatal at runtime, are not
   detected.
VersionDeltaFile
1.5+44-7www/webkit-gtk41/Makefile.common
+44-71 files

NetBSD/pkgsrc t352du0doc pkg-vulnerabilities

   doc: add fixed autogen CVE
VersionDeltaFile
1.791+2-1doc/pkg-vulnerabilities
+2-11 files

NetBSD/pkgsrc w4EeybSdoc CHANGES-2026

   doc: Updated devel/autogen to 5.18.16nb18
VersionDeltaFile
1.6023+2-1doc/CHANGES-2026
+2-11 files

NetBSD/pkgsrc 47yFsrpdevel/autogen/patches patch-autoopts_usage.c patch-autoopts_test_defs.in

   autogen: add a couple upstream patches, merged and proposed.

   Fix CVE-2025-8746.

   Bump PKGREVISION.

   From Showta Ishizaki in PR 60680.
VersionDeltaFile
1.1+370-0devel/autogen/patches/patch-compat_pathfind.c
1.1+67-0devel/autogen/patches/patch-getdefs_getdefs.c
1.1+30-0devel/autogen/patches/patch-autoopts_tpl_cmd-doc.tlib
1.1+19-0devel/autogen/patches/patch-autoopts_save.c
1.1+18-0devel/autogen/patches/patch-autoopts_usage.c
1.1+18-0devel/autogen/patches/patch-autoopts_test_defs.in
+522-02 files not shown
+531-38 files

NetBSD/pkgsrc 1cD7Vamdevel/libuuid/patches patch-libuuid_src_uuid__time.c

   libuuid: remove now unused upstream patch
VersionDeltaFile
1.2+1-1devel/libuuid/patches/patch-libuuid_src_uuid__time.c
+1-11 files

NetBSD/pkgsrc lod1BILdoc CHANGES-2026

   doc: Updated x11/mcookie to 2.42.3
VersionDeltaFile
1.6022+2-1doc/CHANGES-2026
+2-11 files

NetBSD/pkgsrc dnMwzkldoc CHANGES-2026

   doc: Updated devel/libblkid to 2.42.3
VersionDeltaFile
1.6021+2-1doc/CHANGES-2026
+2-11 files

NetBSD/pkgsrc iaERVfLdoc CHANGES-2026

   doc: Updated devel/libuuid to 2.42.3
VersionDeltaFile
1.6020+2-1doc/CHANGES-2026
+2-11 files

NetBSD/pkgsrc xGo41uDdevel/libuuid Makefile.common distinfo, devel/libuuid/patches patch-lib_ismounted.c patch-Makefile.in

   libuuid, libblkid, mcookie: update to 2.42.3.

   util-linux 2.41 Release Notes
   =============================

   libuuid:
       - Now supports RFC9562 UUIDs.

   libblkid:
       - Made many changes to improve detection, including exfat, GPT, LUKS2, bitlocker, etc.

   util-linux 2.42 Release Notes
   =============================

   libblkid:
       - dos validate EBR data and links within extended partition (by Karel Zak)
       - fix stale comment in version.c (by Karel Zak)
       - add LIBBLKID_VERSION to blkid.h, remove redundant config.h versions (by Karel Zak)
       - add debug message for private DM device skip (by Karel Zak)

    [86 lines not shown]
VersionDeltaFile
1.6+11-11devel/libuuid/patches/patch-Makefile.in
1.30+6-7devel/libuuid/distinfo
1.3+5-5devel/libuuid/patches/patch-lib_ismounted.c
1.15+2-2devel/libuuid/Makefile.common
+24-254 files

NetBSD/pkgsrc s5BbwxTdoc CHANGES-2026

   doc: Updated www/p5-HTML-FormFu to 2.07nb9
VersionDeltaFile
1.6019+2-1doc/CHANGES-2026
+2-11 files

NetBSD/pkgsrc BLtDigywww/p5-HTML-FormFu distinfo Makefile

   p5-HTML-FormFu: apply patch for CVE-2026-19873

   Bump PKGREVISION.
VersionDeltaFile
1.37+6-3www/p5-HTML-FormFu/Makefile
1.15+4-1www/p5-HTML-FormFu/distinfo
+10-42 files

NetBSD/pkgsrc VjtAGLNdevel Makefile, devel/scons distinfo buildlink3.mk

   scons: remove after discussion on pkgsrc-users
VersionDeltaFile
1.4689+1-2devel/Makefile
1.6018+2-1doc/CHANGES-2026
1.4+1-1devel/scons/patches/patch-engine_SCons_Platform___init__.py
1.33+1-1devel/scons/distinfo
1.9+1-1devel/scons/buildlink3.mk
1.24+1-1devel/scons/PLIST
+7-73 files not shown
+9-99 files

NetBSD/pkgsrc rGqHnfCdoc TODO

   doc/TODO: + gcc13-13.5, gitte-0.10.0, parallel-20260822, reposurgeon-5.11.
VersionDeltaFile
1.27879+5-2doc/TODO
+5-21 files

NetBSD/pkgsrc bMMbEsBdoc CHANGES-2026

   doc: Updated net/tailscale to 1.102.4
VersionDeltaFile
1.6017+2-1doc/CHANGES-2026
+2-11 files

NetBSD/pkgsrc upRPNu8net/tailscale Makefile distinfo

   tailscale: update to 1.102.4

   - Resolved an issue that could cause a loss in connectivity when a
     netmap update occurs near the time of reauthentication.
   - Resolved an issue that could prevent exit nodes from appearing when
     using a custom coordination server on Darwin.
VersionDeltaFile
1.13+4-4net/tailscale/distinfo
1.34+3-4net/tailscale/Makefile
+7-82 files

NetBSD/pkgsrc OHGI1iPdoc pkg-vulnerabilities

   pkg-vulnerabilities: Add sickgear-[0-9]*
VersionDeltaFile
1.790+2-1doc/pkg-vulnerabilities
+2-11 files

NetBSD/pkgsrc hLzhDuUgraphics/feh distinfo Makefile, graphics/feh/patches patch-src_imlib_c

   feh: fixed broken patch, USE_CC_FEATURES added
VersionDeltaFile
1.2+5-5graphics/feh/patches/patch-src_imlib_c
1.151+3-2graphics/feh/Makefile
1.79+2-2graphics/feh/distinfo
+10-93 files

NetBSD/pkgsrc QSHCPhbdoc CHANGES-2026

   Updated sysutils/xenkernel420 to 20260911
   Updated sysutils/xentools420 to 20260911
   Updated sysutils/xenstoretools to 20260911
   Updated sysutils/xenkernel418 to 20260911
   Updated sysutils/xentools418 to 20260911
VersionDeltaFile
1.6016+6-1doc/CHANGES-2026
+6-11 files

NetBSD/pkgsrc QpAFv85sysutils/xenkernel420 distinfo, sysutils/xentools420 Makefile version.mk

   Update xenkernel420, xentools420 and xenstoretools to 20260911
   Changes since 20260825: Fix XSA 509, 510, 511 and 512
VersionDeltaFile
1.7+4-4sysutils/xentools420/version.mk
1.8+4-4sysutils/xentools420/distinfo
1.8+4-4sysutils/xenkernel420/distinfo
1.11+1-2sysutils/xentools420/Makefile
+13-144 files

NetBSD/pkgsrc cS4j2lAsysutils/xenkernel418 distinfo, sysutils/xentools418 Makefile version.mk

   Update xenkernel418 and xentools418 to 20260911
   Changes since 20260825: Fix XSA 509, 510, 511 and 512
VersionDeltaFile
1.11+4-4sysutils/xentools418/version.mk
1.14+4-4sysutils/xentools418/distinfo
1.14+4-4sysutils/xenkernel418/distinfo
1.15+1-2sysutils/xentools418/Makefile
+13-144 files

NetBSD/pkgsrc rJScb0Tdoc CHANGES-2026

   Updated audio/strawberry, misc/dpkg
VersionDeltaFile
1.6015+3-1doc/CHANGES-2026
+3-11 files

NetBSD/pkgsrc 5hz3uNJmisc/dpkg Makefile distinfo

   dpkg: updated to 1.23.11

   dpkg (1.23.11) unstable; urgency=medium

   * dpkg: Improve maintscript abort-* execution diagnostics.
   * dpkg-shlibdeps: Do not validate existence of -l option argument.
   * Code internals:
     - dpkg: Use a proper conditional instead of a ternary operator for
       f_triggers.
     - dpkg: Refactor tarobject_describe_type() into a new function.
     - dpkg-split: Refactor depot handling functions out of do_auto().
VersionDeltaFile
1.41+4-4misc/dpkg/distinfo
1.83+2-2misc/dpkg/Makefile
+6-62 files

NetBSD/pkgsrc mBcPZxbaudio/strawberry Makefile distinfo

   strawberry: updated to 1.2.30

   1.2.30

   Bugfixes

   Fixed an out-of-bounds memory access in HMAC signing when using keys longer than the hash's block size, affecting request signing for Discogs and Musixmatch
   Fixed the build failing when the tag fetcher (AcoustID) is disabled
   Changed API credentials for Spotify for production use
VersionDeltaFile
1.38+4-4audio/strawberry/distinfo
1.104+2-2audio/strawberry/Makefile
+6-62 files

NetBSD/pkgsrc ZQGdhSenet/knot distinfo, net/knot/patches patch-src_contrib_ucw_mempool.c patch-tests_contrib_test_atomic.c

   knot: Patch from upstream to work on SmartOS #980
VersionDeltaFile
1.1+65-0net/knot/patches/patch-src_contrib_time.c
1.1+47-0net/knot/patches/patch-tests_knot_test__semantic__check.in
1.1+34-0net/knot/patches/patch-tests_libknot_test_cookies.c
1.1+28-0net/knot/patches/patch-tests_contrib_test_atomic.c
1.1+23-0net/knot/patches/patch-src_contrib_ucw_mempool.c
1.60+5-0net/knot/distinfo
+202-06 files

NetBSD/pkgsrc BDvEQXsdoc CHANGES-2026

   Added security/py-vodozemac; Updated chat/py-matrix-nio
VersionDeltaFile
1.6014+3-1doc/CHANGES-2026
+3-11 files

NetBSD/pkgsrc p9CHySTchat/py-matrix-nio PLIST distinfo

   py-matrix-nio: updated to 0.26.0

   0.26.0

   Breaking Changes

   * Replace libolm/python-olm with vodozemac for end-to-end encryption
   The e2e extra now depends on vodozemac instead of python-olm, and libolm is no longer required as a system dependency.
   Existing encryption stores are migrated automatically on load. Stores created with a libolm pickle version older than 4 (roughly, pre-December 2021) can only be migrated if the optional python-olm >= 3.2.7 package is installed at upgrade time; without it, those pickles cannot be read.
   hmac-sha256 is no longer offered as a SAS message authentication code; only hkdf-hmac-sha256 is supported.
   Account.remove_one_time_keys() has been removed, as it is no longer supported by the underlying library.
   * Drop support for end-of-life python3.8 and python3.9; the minimum supported version is now python3.10

   Features

   * Add unread_thread_notifications to SyncResponse

   Bug Fixes


    [2 lines not shown]
VersionDeltaFile
1.12+17-18chat/py-matrix-nio/Makefile
1.4+4-4chat/py-matrix-nio/distinfo
1.4+2-1chat/py-matrix-nio/PLIST
+23-233 files

NetBSD/pkgsrc Odv0vyzsecurity Makefile, security/py-vodozemac DESCR PLIST

   py-vodozemac: added version 0.10.0

   Python bindings for vodozemac.

   vodozemac is a pure Rust implementation of the Olm and Megolm cryptographic
   ratchets, offering a high-level API for straightforward creation of secure
   communication channels using these ratchets.
VersionDeltaFile
1.1+281-0security/py-vodozemac/distinfo
1.1+94-0security/py-vodozemac/cargo-depends.mk
1.1+20-0security/py-vodozemac/Makefile
1.1+11-0security/py-vodozemac/PLIST
1.1+5-0security/py-vodozemac/DESCR
1.1024+2-1security/Makefile
+413-16 files

NetBSD/pkgsrc bitKPbjdoc CHANGES-2026

   Updated devel/py-hypothesis, devel/py-wrapt
VersionDeltaFile
1.6013+3-1doc/CHANGES-2026
+3-11 files

NetBSD/pkgsrc 9MFxrWydevel/py-wrapt Makefile distinfo

   py-wrapt: updated to 2.4.1

   2.4.1

   Bugs Fixed

   The C extension implementation of PartialCallableObjectProxy did not expose the bound positional and keyword arguments supplied when the proxy was created, whereas the pure Python implementation makes them available as the _self_args and _self_kwargs attributes. The C extension implementation now provides read only _self_args and _self_kwargs attributes so that both implementations behave the same.
   inspect.signature() applied to a PartialCallableObjectProxy reported the full signature of the wrapped callable, including the parameters that the bound positional and keyword arguments already supply, whereas for functools.partial those parameters are removed. The proxy did not define __signature__, so inspect followed __wrapped__ back to the callable and reported its signature unchanged. The proxy now provides __signature__ on instances, in both the pure Python and C extension implementations, giving the same result as for an equivalent functools.partial, including a ValueError when more positional arguments are bound than the callable accepts.

   This also affected wrapper functions used with FunctionWrapper and @wrapt.decorator. When a wrapped method is called via its class with the instance passed explicitly, the wrapper function receives a PartialCallableObjectProxy with the instance bound, and args without the instance. A wrapper which bound args and kwargs against inspect.signature(wrapped) would fail for such calls with a TypeError about a missing argument, while working for calls made via the instance. The reported signature now omits the bound instance so the binding succeeds.

   The signature of a partial whose wrapped callable is itself an already bound method is still reported incorrectly, for reasons outside of the control of wrapt. See the “Known Issues” documentation for details.

   The C extension intercepts the __module__ and __doc__ attributes by name in its attribute get and set slots so that they are forwarded to the wrapped object. The name was compared by identity against an interned string, which relied on the attribute name having been interned. Names originating from Python source code always are, but a name constructed at runtime, for example by string concatenation or by decoding, is not, and for such a name the interception was skipped. Getting the attribute then returned the value captured when the proxy was created rather than the current value on the wrapped object, and setting it stored the value on the proxy rather than the wrapped object. The comparison now falls back to comparing by value when the identity check fails, guarded by a length check so that the cost for non matching names is unchanged.
VersionDeltaFile
1.30+4-4devel/py-wrapt/distinfo
1.36+2-2devel/py-wrapt/Makefile
+6-62 files