OpenBSD/src 80S1WVA — usr.sbin/rpki-client output-rtrx.c

   Use SOCK_NONBLOCK where we can.
   Handle errors for fcntl().
   CID 656886, CID 656887
   OK deraadt@ tb@
VersionDeltaFile
1.8+12-17usr.sbin/rpki-client/output-rtrx.c
+12-171 files

OpenBSD/src jPUgZXG — sbin/isakmpd policy.c

   The path generation must not contain '..' or '/' type patterns or it
   can walk upwards and sideways.  The privsep open() is now restricted by
   a single unveil() inside the config directory, but files in relative config
   directories can still be reached and create potentially confusing outcomes.
   This is half of a repair from Franz Bettag before I restructured the privsep
   to use unveil(), the other half of the repair is not needed because it applies
   to code that no longer exists.
   ok markus hshoexer bluhm, testing sthen mvs
VersionDeltaFile
1.107+9-1sbin/isakmpd/policy.c
+9-11 files

OpenBSD/src iGQVcL6 — usr.sbin/rtrd sockets.c

   Use SOCK_NONBLOCK and handle fcntl() failures.
   OK deraadt@
VersionDeltaFile
1.7+35-13usr.sbin/rtrd/sockets.c
+35-131 files

OpenBSD/src obmca7C — sbin/isakmpd message.c isakmpd.c

   Franz Bettag sent a report & diff repairing the privsep monitor's
   dangerous file behavior in /var/run, and I was shocked at what it
   does.  isakmpd never had a proper diagnosis and control program like
   other daemons do, and instead accepts weird commands on a fifo and
   splats files dangerously.  Some path names can be manipulated.  This
   2600 line diff removes all of this session debugging mechanism which
   is the main cause of that unsafe design.  There are no reuseable parts
   in that code (it cannot be reconstructed into a proper control program
   interface).  As a result, the privsep monitor now has unveil to the
   config directory, and the network speaking process is "stdio sendfd
   route recvfd inet".  There is some loss of functionality, since some
   users had gotten used to the decrepit debugging / logging interface to
   repair sessions which would not negotiate.
   This is almost completely unmaintained code from early OpenBSD days
   with an incorrect privsep design, and many users have migrated to
   using iked(8) which does IKEv2 protocol.  RFC9395 also provides valuable
   guidance here.  Everyone is urged to avoid using this program.  If IKEv1
   protocol is still a part of your life roll up sleeves and try to write a
   high-quality control interface using lessons from the IKEv2 iked(8) code.

    [2 lines not shown]
VersionDeltaFile
1.127+2-342sbin/isakmpd/sa.c
1.66+1-341sbin/isakmpd/log.c
1.85+64-187sbin/isakmpd/monitor.c
1.23+1-133sbin/isakmpd/field.c
1.110+7-116sbin/isakmpd/isakmpd.c
1.137+1-120sbin/isakmpd/message.c
+76-1,23928 files not shown
+132-1,81134 files

OpenBSD/src u815Prj — sbin/isakmpd x509.c

   knf
VersionDeltaFile
1.129+2-2sbin/isakmpd/x509.c
+2-21 files

OpenBSD/src Zbb4BO1 — sbin/isakmpd message.c ike_quick_mode.c

   IKEv1 short-HASH heap overflow; second approach for fix
   from Franz Bettag / Bettag Systems
   ok sthen mvs
VersionDeltaFile
1.117+22-1sbin/isakmpd/ike_quick_mode.c
1.136+4-1sbin/isakmpd/message.c
+26-22 files

OpenBSD/src Y0mnfRq — sbin/isakmpd policy.c

   incorrect object being freed
   from Franz Bettag / Bettag Systems
   ok markus hshoexer sthen mvs
VersionDeltaFile
1.105+3-3sbin/isakmpd/policy.c
+3-31 files

OpenBSD/src S17RePh — usr.bin/ssh servconf.c

   make StreamLocalBindMask properly first-match-wins; spotted
   while fixing bz4013
VersionDeltaFile
1.458+3-2usr.bin/ssh/servconf.c
+3-21 files

OpenBSD/src XU9VL1n — usr.bin/ssh readconf.c

   make StreamLocalBindMask properly respect Host/Match blocks
   and make it first-match-wins as documented. bz4013
VersionDeltaFile
1.418+4-2usr.bin/ssh/readconf.c
+4-21 files

OpenBSD/src tnhUD16 — lib/libexpat/lib xmltok.h xmltok_impl.c, lib/libexpat/tests basic_tests.c

   Backport fixes from libexpat version 2.8.5.

   Relevant for OpenBSD are security fixes #1282, bug fixes #1346
   #1371, other changes #1354 #1357 #1349 #1360 #1378.  Library bump
   is not necessary.
   CVE-2026-93990

   OK deraadt@
VersionDeltaFile
1.15+342-0lib/libexpat/tests/basic_tests.c
1.24+138-64lib/libexpat/lib/xmltok.c
1.53+89-92lib/libexpat/lib/xmlparse.c
1.18+55-56lib/libexpat/lib/xmlrole.c
1.21+28-32lib/libexpat/lib/xmltok_impl.c
1.12+25-26lib/libexpat/lib/xmltok.h
+677-2706 files not shown
+716-31912 files

OpenBSD/src p0fKWQ5 — usr.sbin/relayd relay_http.c

   relayd: do not treat a missing Host header as a url match

   Return RES_BAD if the request has no Host header, consistent with the
   handling of empty or malformed Host values.

   Spotted by Acts1631 (with diff), OK kirill@
VersionDeltaFile
1.107+2-2usr.sbin/relayd/relay_http.c
+2-21 files

OpenBSD/src aIftdTD — regress/usr.bin/mandoc/man/TH secsuffix.in secsuffix.out_ascii, regress/usr.bin/mandoc/mdoc/Dt Makefile secsuffix.out_ascii

   test handling of session suffixes in the .Dt and .TH macros;
   related to msec.c rev. 1.14
VersionDeltaFile
1.1+11-0regress/usr.bin/mandoc/mdoc/Dt/secsuffix.out_markdown
1.1+9-0regress/usr.bin/mandoc/mdoc/Dt/secsuffix.out_ascii
1.1+9-0regress/usr.bin/mandoc/mdoc/Dt/secsuffix.in
1.1+9-0regress/usr.bin/mandoc/man/TH/secsuffix.out_ascii
1.12+6-2regress/usr.bin/mandoc/mdoc/Dt/Makefile
1.1+6-0regress/usr.bin/mandoc/man/TH/secsuffix.in
+50-21 files not shown
+53-47 files

OpenBSD/src oNXiFxr — usr.bin/mandoc msec.c

   When converting a section identifier (for example, "1" or "1m") to
   a volume title (for example, "General Commands Manual" or "Maintenance
   Commands") and no exact match is found for the identifier, retry
   using only the first character of the identifier before giving up.

   For example, when using OpenBSD to format the Oracle Solaris ipmitool(1m)
   manual, which contains the line '.TH ipmitool 1m "29 June 2012"',
   use the section 1 volume title "General Commands Manual" rather
   than finding no title at all.  In general, this improves formatting
   of the page header line of manual pages using session suffixes that
   are not declared in msec.in on the formatting system.  That's useful
   everywhere for formatting foreign manual pages, but also for
   formatting native manuals on systems using many suffixes.

   I had this idea for a small improvement while looking at how FreeBSD
   customizes the companion file msec.in in their freebsd-src/contrib/mandoc
   directory.
VersionDeltaFile
1.14+21-2usr.bin/mandoc/msec.c
+21-21 files

OpenBSD/src Z4yOqkI — usr.bin/tmux screen-write.c window-visible.c

   Include menus when working out what parts of a pane are visible to avoid
   overwriting them, GitHub issue 5593.
VersionDeltaFile
1.6+76-87usr.bin/tmux/window-visible.c
1.298+30-9usr.bin/tmux/screen-write.c
+106-962 files

OpenBSD/src yG6iNCq — usr.bin/tmux cmd-display-message.c

   Modify display-message -c target-client to use the data relative to
   target-client, GitHub issue 5613 from Michael Grant.
VersionDeltaFile
1.67+4-6usr.bin/tmux/cmd-display-message.c
+4-61 files

OpenBSD/src 4UHrXAH — usr.bin/tmux options-table.c

   Quote session_alert in status-format[2], GitHub issue 5671.
VersionDeltaFile
1.248+3-3usr.bin/tmux/options-table.c
+3-31 files

OpenBSD/ports DLOuzJT — x11/mate/settings-daemon Makefile, x11/mate/settings-daemon/pkg PLIST

   add missing @sample for org.mate.SettingsDaemon.DateTimeMechanism.conf; ok naddy@
VersionDeltaFile
1.34+1-1x11/mate/settings-daemon/Makefile
1.13+1-0x11/mate/settings-daemon/pkg/PLIST
+2-12 files

OpenBSD/ports 37Qw1Xo — www/ungoogled-chromium Makefile distinfo, www/ungoogled-chromium/patches patch-chrome_browser_picture_in_picture_picture_in_picture_window_manager_cc patch-third_party_test_fonts_fontconfig_BUILD_gn

   update to 154.0.8037.92; ok naddy@
VersionDeltaFile
1.173+4-4www/ungoogled-chromium/distinfo
1.6+2-2www/ungoogled-chromium/patches/patch-third_party_test_fonts_fontconfig_BUILD_gn
1.5+2-2www/ungoogled-chromium/patches/patch-third_party_fontconfig_include_meson-config_h
1.4+2-2www/ungoogled-chromium/patches/patch-content_browser_web_contents_web_contents_impl_cc
1.8+1-1www/ungoogled-chromium/patches/patch-chrome_browser_picture_in_picture_picture_in_picture_window_manager_cc
1.260+1-1www/ungoogled-chromium/Makefile
+12-123 files not shown
+14-149 files

OpenBSD/src rE7PRFL — usr.bin/tmux screen-write.c

   Only skip collecting text except for right margin when autowrap is off,
   from Jang-Ho Hwang.
VersionDeltaFile
1.297+7-2usr.bin/tmux/screen-write.c
+7-21 files

OpenBSD/src fTHiEbC — usr.sbin/rpki-client output-rtrx.c

   output-rtrx: place one brace on the proper line
VersionDeltaFile
1.7+2-3usr.sbin/rpki-client/output-rtrx.c
+2-31 files

OpenBSD/src hZaJrDQ — usr.bin/tmux spawn.c

   Change to the new working directory even if getcwd fails, GitHub issue 5658.
VersionDeltaFile
1.54+9-9usr.bin/tmux/spawn.c
+9-91 files

OpenBSD/src 2uHyEl0 — sys/dev/usb usb_subr.c

   sys/usb: validate USB endpoint and configuration lengths

   Reject undersized endpoint descriptors before accessing wMaxPacketSize;
   require wTotalLength to cover the configuration header and match the
   allocated size after the full fetch.

   Reported by Stuart Thomas

   OK: deraadt@
VersionDeltaFile
1.169+8-2sys/dev/usb/usb_subr.c
+8-21 files

OpenBSD/src EXaDdF0 — usr.bin/tmux screen-write.c

   Sync redraw should use the given rows not the scroll region now.
VersionDeltaFile
1.296+3-3usr.bin/tmux/screen-write.c
+3-31 files

OpenBSD/src lC01jP7 — usr.bin/tmux cmd-join-pane.c tmux.h

   Instead of redrawing the entire pane or scene when moving or redrawing a
   pane, add damage rectangles and redraw only the affected spans. From
   Michael Grant.
VersionDeltaFile
1.163+287-16usr.bin/tmux/screen-redraw.c
1.384+56-3usr.bin/tmux/window.c
1.517+32-11usr.bin/tmux/server-client.c
1.295+20-8usr.bin/tmux/screen-write.c
1.1451+16-2usr.bin/tmux/tmux.h
1.76+9-3usr.bin/tmux/cmd-join-pane.c
+420-436 files not shown
+451-5912 files

OpenBSD/src CtWHgIz — sbin/isakmpd TO-DO README

   these files are completely historical and not helping improve things
VersionDeltaFile
1.27+1-1sbin/isakmpd/TO-DO
1.21+1-1sbin/isakmpd/README
1.6+1-1sbin/isakmpd/QUESTIONS
1.26+1-1sbin/isakmpd/DESIGN-NOTES
1.17+1-1sbin/isakmpd/BUGS
+5-55 files

OpenBSD/src HPhu32F — sys/dev/ic qwz.c

   sys/qwz: backport of olatile casts from qwx

   Backport of sys/dev/ic/qwx.c,v 1.114

   OK: stsp@
VersionDeltaFile
1.91+5-3sys/dev/ic/qwz.c
+5-31 files

OpenBSD/src O1JGzv6 — sys/dev/ic qwz.c

   sys/qwz: backport sync DMA memory from qwx

   Backport of sys/dev/ic/qwx.c,v 1.140 and 1.146

   OK: stsp@
VersionDeltaFile
1.90+9-2sys/dev/ic/qwz.c
+9-21 files

OpenBSD/src j76D4Rj — usr.bin/tmux tmux.h server-client.c

   Do not leak client if lost before configuration is loaded, and do not load
   multiple times. GitHub issues 5661 and 5662 from Alexandre Fiori.
VersionDeltaFile
1.92+27-3usr.bin/tmux/cfg.c
1.516+2-3usr.bin/tmux/server-client.c
1.1450+2-1usr.bin/tmux/tmux.h
+31-73 files

OpenBSD/src KE4qSlp — usr.bin/tmux cmd-swap-pane.c

   Restore the zoom when swap-pane refuses a floating pane, GitHub issue
   5660 from Alexandre Fiori.
VersionDeltaFile
1.56+8-3usr.bin/tmux/cmd-swap-pane.c
+8-31 files

OpenBSD/src lblECaS — usr.bin/tmux cmd-copy-mode.c

   Do not use client for copy-mode -S if NULL, reported by Martin Vlach.
VersionDeltaFile
1.55+3-1usr.bin/tmux/cmd-copy-mode.c
+3-11 files