OpenBSD/ports sBk4hR5www/p5-HTML-FormHandler distinfo Makefile

   update p5-HTML-FormHandler to 0.410001
   CVE-2026-19872 CVE-2022-4993
VersionDeltaFile
1.3+2-2www/p5-HTML-FormHandler/distinfo
1.4+3-1www/p5-HTML-FormHandler/Makefile
+5-32 files

OpenBSD/ports WWguhJrgeo/qgis Makefile

   do not pick up ccache (USE_CCACHE keeps working); OK landry
VersionDeltaFile
1.238+1-0geo/qgis/Makefile
+1-01 files

OpenBSD/ports OQllyBsdevel/llvm/22 Makefile, devel/llvm/22/patches patch-llvm_lib_Target_Mips_MipsInstrInfo_cpp patch-clang_lib_Sema_SemaRISCV_cpp

   devel/llvm/22: backport RISC-V and MIPS fixes

   The bit for riscv64 apparently fixes devel/highway and is this:
   https://github.com/llvm/llvm-project/commit/fd6d7a608909dc4ecea57e0155042d16f7b4e61a

   The bit for mips64 apparently fixes MariaDB and GnuAstro:
   https://github.com/llvm/llvm-project/commit/a97f512d71574c0b9adc9bc6216909387499e0e8

   From Brad Smith

   OK: robert@, kettenis@
VersionDeltaFile
1.1+33-0devel/llvm/22/patches/patch-clang_lib_Sema_SemaRISCV_cpp
1.1+17-0devel/llvm/22/patches/patch-llvm_lib_Target_Mips_MipsInstrInfo_cpp
1.27+1-1devel/llvm/22/Makefile
+51-13 files

OpenBSD/src cIYoqWWregress/usr.bin/mandoc/tbl/data blankline.out_ascii blankline.in

   Test both types of empty data lines (empty text line and empty request line)
   in both layout contexts (data layout line and horizontal line layout line),
   making sure that tbl_data.c rev. 1.48 handles all code paths in tbl_data()
   correctly.
VersionDeltaFile
1.3+37-5regress/usr.bin/mandoc/tbl/data/blankline.in
1.5+21-4regress/usr.bin/mandoc/tbl/data/blankline.out_ascii
+58-92 files

OpenBSD/ports adme2U6devel/p5-Type-Tiny distinfo Makefile

   update p5-Type-Tiny to 2.010001
VersionDeltaFile
1.23+3-2devel/p5-Type-Tiny/Makefile
1.19+2-2devel/p5-Type-Tiny/distinfo
+5-42 files

OpenBSD/src zCiIMuAusr.bin/mandoc tbl_data.c

   When a text line in tbl(7) data is completely empty (""),
   do not access the byte beyond the terminating NUL byte.
   Instead, generate an empty span that contains no data cells,
   optionally preceded by a horizontal line if requested by the layout.

   This buffer overrun reading exactly one byte too far usually had
   no adverse consequences.  No matter the value of the wrongfully read
   byte, the code would correctly continue after the "if" block,
   either (more likely) via failing the p[1] == '\0' condition
   or (less likely) via the default branch of the switch.
   Theoretically, it might segfault on the one-byte access, though.

   Patch from Hippolyte d'Oncieu de la Batie <hippolyte.doncieu at gmail.com>
   who found this bug using clang-14 with libFuzzer and AddressSanitizer.
   Reported via espie@.
   Clarifying source code comment by me.
VersionDeltaFile
1.48+6-2usr.bin/mandoc/tbl_data.c
+6-21 files

OpenBSD/ports ucaaauNdevel/clang-tools-extra/patches patch-libcxx_include___support_xlocale___strtonum_fallback_h patch-clang_lib_Frontend_PrintPreprocessedOutput_cpp

   Update clang-tools-extra to 22.1.8
VersionDeltaFile
1.1+262-0devel/clang-tools-extra/patches/patch-llvm_lib_CodeGen_RegisterCoalescer_cpp
1.1+236-0devel/clang-tools-extra/patches/patch-libcxx_include___locale_dir_support_openbsd_h
1.1+85-0devel/clang-tools-extra/patches/patch-llvm_lib_Target_Sparc_AsmParser_SparcAsmParser_cpp
1.1+57-0devel/clang-tools-extra/patches/patch-llvm_lib_Target_Sparc_SparcISelLowering_cpp
1.1+44-0devel/clang-tools-extra/patches/patch-libcxx_include___support_xlocale___strtonum_fallback_h
1.1+44-0devel/clang-tools-extra/patches/patch-clang_lib_Frontend_PrintPreprocessedOutput_cpp
+728-016 files not shown
+961-2122 files

OpenBSD/ports 0YNyX34devel/jujutsu/patches patch-cli_tests_test_converge_command_rs

   jujutsu: add patch to fix test failure (test only, no package change)
VersionDeltaFile
1.1+48-0devel/jujutsu/patches/patch-cli_tests_test_converge_command_rs
+48-01 files

OpenBSD/ports kCuaykNwww/p5-URI Makefile distinfo

   update p5-URI to 5.37
VersionDeltaFile
1.37+2-2www/p5-URI/distinfo
1.59+1-1www/p5-URI/Makefile
+3-32 files

OpenBSD/ports H5tEiWheditors/emacs distinfo Makefile, editors/emacs/patches patch-test_src_treesit-tests_el patch-src_treesit_c

   Update to emacs-31.1

   https://www.gnu.org/software/emacs/news/NEWS.31.1

   The most prominent change is probably the warnings spewed about
   lexical-binding. To safely get rid of them you may add a cookie to your
   .el files that explicitely disables lexical binding (dynamic binding has
   been the default for years). You may also enable lexical binding which
   allegedly has advantages (more efficient, less error prone) after
   auditing your elisp code.

   Tested by kirill@ namn@ izzy Meyer gkoehler@ matthieu@
   ok kirill@ matthieu@
VersionDeltaFile
1.35+127-57editors/emacs/pkg/PLIST
1.132+5-6editors/emacs/Makefile
1.12+2-2editors/emacs/patches/patch-Makefile_in
1.24+2-2editors/emacs/distinfo
1.2+0-0editors/emacs/patches/patch-test_src_treesit-tests_el
1.3+0-0editors/emacs/patches/patch-src_treesit_c
+136-675 files not shown
+136-6711 files

OpenBSD/ports D0k2DfNwww/ungoogled-chromium Makefile distinfo

   update to 152.0.7977.82
VersionDeltaFile
1.169+6-6www/ungoogled-chromium/distinfo
1.254+1-1www/ungoogled-chromium/Makefile
+7-72 files

OpenBSD/ports yB0N5dMsecurity/crowdsec Makefile distinfo

   update to 1.8.1
VersionDeltaFile
1.10+2-2security/crowdsec/distinfo
1.10+1-1security/crowdsec/Makefile
+3-32 files

OpenBSD/ports zbJBsG6devel/jujutsu Makefile crates.inc

   Update to jujutsu 0.45.1

   https://github.com/jj-vcs/jj/releases/tag/v0.45.1
VersionDeltaFile
1.29+82-84devel/jujutsu/distinfo
1.30+40-41devel/jujutsu/crates.inc
1.40+1-1devel/jujutsu/Makefile
+123-1263 files

OpenBSD/ports Ij2rZcjmail/grommunio/gromox distinfo Makefile, mail/grommunio/gromox/patches patch-configure_ac patch-exch_ews_structures_cpp

   update to 3.10
VersionDeltaFile
1.5+31-5mail/grommunio/gromox/patches/patch-lib_mapi_rop_util_cpp
1.1+29-0mail/grommunio/gromox/patches/patch-exch_ews_serialization_cpp
1.1+27-0mail/grommunio/gromox/patches/patch-exch_ews_structures_cpp
1.20+2-2mail/grommunio/gromox/patches/patch-configure_ac
1.49+2-2mail/grommunio/gromox/distinfo
1.72+2-2mail/grommunio/gromox/Makefile
+93-116 files

OpenBSD/ports kQj6bcpdevel/kf6 Makefile

   Add a "x11/oxygen-icons" comment
VersionDeltaFile
1.2+4-0devel/kf6/Makefile
+4-01 files

OpenBSD/src HxmzpPPsys/net pf.c

   pf(4) is still overly strict in filtering MLD messages

   pf(4) may drop valid Multicast Level Discovery (MLD) packet
   with unspecified source address. According to RFC 3590,
   section 4, Source Selection Guidelines, MLD Report and
   MLD Done messages may be carried by IPv6 datagrams with
   unspecified source address.

   Issue reported and patch kindly submitted
   by Kristof Provost (kp _at_ FreeBSD _dot_ org)

   OK bluhm@
VersionDeltaFile
1.1240+10-2sys/net/pf.c
+10-21 files

OpenBSD/ports WUzwE4zx11/qt6/qtbase/patches patch-src_plugins_tls_openssl_qx509_openssl_cpp, x11/qt6/qtdeclarative/pkg PLIST

   Update Qt 6.11.2

   https://code.qt.io/cgit/qt/qtreleasenotes.git/about/qt/6.11.2/release-note.Modified

   Feedback and ob jtt@ (pyside
VersionDeltaFile
1.12+13-26x11/qt6/qtbase/patches/patch-src_plugins_tls_openssl_qx509_openssl_cpp
1.17+35-0x11/qt6/qtdeclarative/pkg/PLIST
1.8+13-13x11/qt6/qtwebengine/patches/patch-src_3rdparty_chromium_build_config_compiler_BUILD_gn
1.3+15-10x11/qt6/qtwebengine/patches/patch-src_3rdparty_chromium_third_party_libaom_source_libaom_aom_ports_ppc_cpudetect_c
1.10+10-10x11/qt6/qtwebengine/patches/patch-src_3rdparty_chromium_base_BUILD_gn
1.9+8-8x11/qt6/qtwebengine/patches/patch-src_3rdparty_chromium_third_party_blink_renderer_platform_runtime_enabled_features_json5
+94-67117 files not shown
+324-300123 files

OpenBSD/ports ZIJpngix11/gnome/eog Makefile distinfo

   Update to eog-50.3.
VersionDeltaFile
1.103+2-2x11/gnome/eog/distinfo
1.203+1-1x11/gnome/eog/Makefile
+3-32 files

OpenBSD/ports ShoMUY5sysutils/p5-Sys-Virt Makefile distinfo

   Update to p5-Sys-Virt-12.7.0.
VersionDeltaFile
1.71+2-2sysutils/p5-Sys-Virt/distinfo
1.85+1-1sysutils/p5-Sys-Virt/Makefile
+3-32 files

OpenBSD/ports wjoLaUntextproc/enchant2 distinfo Makefile, textproc/enchant2/patches patch-src_Makefile_in patch-lib_Makefile_in

   Update to enchant2-2.8.21.
VersionDeltaFile
1.55+2-2textproc/enchant2/distinfo
1.61+2-2textproc/enchant2/Makefile
1.18+1-1textproc/enchant2/patches/patch-src_Makefile_in
1.12+1-1textproc/enchant2/patches/patch-lib_Makefile_in
+6-64 files

OpenBSD/ports 1z4ildusysutils/gemini-cli Makefile distinfo, sysutils/gemini-cli/pkg PLIST

   Update to gemini-cli-0.58.0.
VersionDeltaFile
1.40+48-48sysutils/gemini-cli/pkg/PLIST
1.41+2-2sysutils/gemini-cli/distinfo
1.43+1-1sysutils/gemini-cli/Makefile
+51-513 files

OpenBSD/ports V3VUy8cwww/chromium Makefile distinfo

   update to 152.0.7977.82
VersionDeltaFile
1.493+4-4www/chromium/distinfo
1.930+1-1www/chromium/Makefile
+5-52 files

OpenBSD/ports y8mG05ggeo/gpxsee Makefile distinfo, geo/gpxsee/pkg PLIST

   geo/gpxsee: update to 16.14
VersionDeltaFile
1.16+0-7geo/gpxsee/pkg/PLIST
1.51+2-2geo/gpxsee/distinfo
1.53+1-1geo/gpxsee/Makefile
+3-103 files

OpenBSD/ports xFrbgwpwww/ungoogled-chromium/patches patch-chrome_browser_chrome_content_browser_client_cc patch-chrome_browser_prefs_browser_prefs_cc

   update to 152.0.7977.75
VersionDeltaFile
1.70+78-87www/ungoogled-chromium/patches/patch-chrome_browser_about_flags_cc
1.48+58-29www/ungoogled-chromium/patches/patch-chrome_browser_policy_configuration_policy_handler_list_factory_cc
1.25+63-23www/ungoogled-chromium/patches/patch-net_socket_udp_socket_posix_cc
1.48+39-33www/ungoogled-chromium/patches/patch-chrome_browser_profiles_chrome_browser_main_extra_parts_profiles_cc
1.54+42-24www/ungoogled-chromium/patches/patch-chrome_browser_chrome_content_browser_client_cc
1.50+60-6www/ungoogled-chromium/patches/patch-chrome_browser_prefs_browser_prefs_cc
+340-202430 files not shown
+2,040-1,374436 files

OpenBSD/ports BWHrNyQsysutils/oc Makefile modules.inc

   Update openshift-cli (oc) to 4.22

   Drop MAINTAINER, no response after many emails.

   Tested by yaydn at protonmail
VersionDeltaFile
1.2+3,250-2sysutils/oc/distinfo
1.1+1,084-0sysutils/oc/modules.inc
1.3+18-15sysutils/oc/Makefile
+4,352-173 files

OpenBSD/ports wtfslmidevel/py-protobuf Makefile

   py-protobuf: add link to upstream issue re port.c. no package change
VersionDeltaFile
1.80+1-0devel/py-protobuf/Makefile
+1-01 files

OpenBSD/src 6b7BvZbbin/pax pat_rep.c

   pax: Ensure when removing ".." path components extra slashes are also
   removed.

   A specially constructed archive could trick pax into extracting outside
   of the working directory. This also fixes a string ending in a compoment
   of exactly ".." reading one past the NUL.

   ok millert@
VersionDeltaFile
1.46+3-2bin/pax/pat_rep.c
+3-21 files

OpenBSD/src gr2uQeTusr.sbin/lldpd lldpd.c

   don't complain if removing an mcast membership from a detached interface fails
VersionDeltaFile
1.12+5-3usr.sbin/lldpd/lldpd.c
+5-31 files

OpenBSD/src vqr8CsRusr.sbin/lldpd lldpd.c

   add "mcast" to the pledges

   this is so it can take advantage of pledge_sockopt()s newfound
   understanding of the ethernet frame socket options.
VersionDeltaFile
1.11+2-2usr.sbin/lldpd/lldpd.c
+2-21 files

OpenBSD/src TiszQJnsys/kern kern_pledge.c

   improve wording for __pledge_open description
VersionDeltaFile
1.365+3-3sys/kern/kern_pledge.c
+3-31 files