OpenBSD/ports EZt6Z7Xdevel/protobuf-java Makefile distinfo

   Update to protobuf-java 4.36.0

   https://github.com/protocolbuffers/protobuf/releases/tag/v36.0
VersionDeltaFile
1.7+2-2devel/protobuf-java/distinfo
1.7+1-1devel/protobuf-java/Makefile
+3-32 files

OpenBSD/ports 0214htzdevel/py-protobuf Makefile distinfo, devel/py-protobuf/pkg PLIST

   Update to py-protobuf 7.36.0

   https://github.com/protocolbuffers/protobuf/releases/tag/v36.0
VersionDeltaFile
1.21+12-0devel/py-protobuf/pkg/PLIST
1.62+2-2devel/py-protobuf/distinfo
1.78+1-1devel/py-protobuf/Makefile
+15-33 files

OpenBSD/ports JeqMt94devel/protobuf distinfo Makefile, devel/protobuf/pkg PLIST

   Update to protobuf-cpp 7.36.0

   https://github.com/protocolbuffers/protobuf/releases/tag/v36.0
VersionDeltaFile
1.34+20-1devel/protobuf/pkg/PLIST
1.111+4-4devel/protobuf/Makefile
1.71+2-2devel/protobuf/distinfo
+26-73 files

OpenBSD/ports mqejY7px11/gnome/msgraph distinfo Makefile

   Update to msgraph-0.3.5.
VersionDeltaFile
1.6+2-2x11/gnome/msgraph/distinfo
1.8+2-2x11/gnome/msgraph/Makefile
+4-42 files

OpenBSD/ports rf7e4nRdevel/p5-Struct-Dumb distinfo Makefile

   update p5-Struct-Dumb to 0.16
VersionDeltaFile
1.3+16-14devel/p5-Struct-Dumb/Makefile
1.2+2-2devel/p5-Struct-Dumb/distinfo
+18-162 files

OpenBSD/ports DMhX5zGnet/filezilla distinfo Makefile

   Update to filezilla-3.71.1

   Changes: https://filezilla-project.org/versions.php
VersionDeltaFile
1.75+2-2net/filezilla/distinfo
1.131+2-2net/filezilla/Makefile
+4-42 files

OpenBSD/ports IwG7cQQdevel/libgtop2/patches patch-sysdeps_common_gnuslib_c patch-src_daemon_slave_c

   Summer cleanup on patches.
   Add disk listing while here.
VersionDeltaFile
1.27+42-280devel/libgtop2/patches/patch-sysdeps_openbsd_procmap_c
1.4+13-174devel/libgtop2/patches/patch-sysdeps_openbsd_mountlist_c
1.12+100-67devel/libgtop2/patches/patch-sysdeps_openbsd_netload_c
1.1+98-0devel/libgtop2/patches/patch-sysdeps_openbsd_disk_c
1.2+29-0devel/libgtop2/patches/patch-src_daemon_slave_c
1.2+18-2devel/libgtop2/patches/patch-sysdeps_common_gnuslib_c
+300-5234 files not shown
+324-53510 files

OpenBSD/src dzsF1rKusr.bin/mandoc cgi.c

   open header.html and footer.html up front,
   in pareparation for pledge/unveil improvements
VersionDeltaFile
1.121+18-18usr.bin/mandoc/cgi.c
+18-181 files

OpenBSD/ports 7p7UKcYnet/rrdp-tools Makefile distinfo, net/rrdp-tools/pkg PLIST

   Update to rrdp-tools 0.5.0, ok job

   https://github.com/ties/rpki-rrdp-tools-py/blob/main/CHANGELOG.md#v050
VersionDeltaFile
1.3+9-0net/rrdp-tools/pkg/PLIST
1.3+2-2net/rrdp-tools/distinfo
1.3+1-1net/rrdp-tools/Makefile
+12-33 files

OpenBSD/ports JMfwqqfmail/mlmmj distinfo Makefile, mail/mlmmj/patches patch-Makefile_in patch-mk_common_mk

   mail/mlmmj: update to 2.1.0

   ok stsp@
VersionDeltaFile
1.29+18-9mail/mlmmj/Makefile
1.13+12-12mail/mlmmj/pkg/PLIST
1.1+13-0mail/mlmmj/patches/patch-mk_common_mk
1.14+2-2mail/mlmmj/distinfo
1.2+0-0mail/mlmmj/patches/patch-Makefile_in
+45-235 files

OpenBSD/ports V9AfNPVnews/nzbget Makefile distinfo, news/nzbget/patches patch-cmake_par2-turbo_cmake patch-cmake_rapidyenc_cmake

   Update to nzbget-26.3

   Changes: https://github.com/nzbgetcom/nzbget/releases/tag/v26.3
VersionDeltaFile
1.24+6-6news/nzbget/distinfo
1.2+3-3news/nzbget/patches/patch-cmake_rapidyenc_cmake
1.41+3-3news/nzbget/Makefile
1.9+1-1news/nzbget/patches/patch-cmake_par2-turbo_cmake
+13-134 files

OpenBSD/ports 0947YPuwww/mozilla-firefox/patches patch-third_party_llama_cpp_moz_build

   Forcefully disable RVV intrinsics usage in llama.cpp/libggml.

   The code assumes that if __riscv_v_intrinsic is defined the various RVV
   intrinsics are available and usable.

   With clang the intrinsics may be available even though actual usage of
   said intrinsics has to be allowed with clang -march=... or function
   annotations.

   Also the code assumes that if it can use said intrinsics at compile
   time then they ought to be used at runtime.  This is false on
   OpenBSD which doesn't require the cpu to support the V extension.

   Example error at compile time:
   .../firefox-154.0/third_party/llama.cpp/ggml/src/ggml-cpu/vec.cpp:407:22: error: RISC-V type 'vfloat32m2_t' (aka '__rvv_float32m2_t') requires the 'zve32f' extension
     407          vfloat32m2_t vx = __riscv_vle32_v_f32m2(&x[i], vl);

   With & ok landry@ (maintainer)
VersionDeltaFile
1.1+38-0www/mozilla-firefox/patches/patch-third_party_llama_cpp_moz_build
+38-01 files

OpenBSD/ports HJgE1bZsecurity/libksba Makefile distinfo

   Update to libksba-1.8.1
VersionDeltaFile
1.18+2-2security/libksba/distinfo
1.37+1-1security/libksba/Makefile
+3-32 files

OpenBSD/ports qN2U6RLnet/icecast/patches patch-src_util_crypt_c

   Fix patch comment
VersionDeltaFile
1.2+1-1net/icecast/patches/patch-src_util_crypt_c
+1-11 files

OpenBSD/ports MhDuTYBshells/fish/v3 Makefile, shells/fish/v3/patches patch-config_cmake_h_in

   fish/v3: fix build with libcxx22

   libcxx22 uses [[__fallthrough__]] in a couple of headers, so redefining
   __fallthrough__ to __attribute__((fallthrough)) yields a syntax error:

   /usr/include/c++/v1/__functional/hash.h:70:24: error: expected expression
      70 |       [[__fallthrough__]];
         |                        ^

   Just don't do that...
VersionDeltaFile
1.1+19-0shells/fish/v3/patches/patch-config_cmake_h_in
1.3+1-1shells/fish/v3/Makefile
+20-12 files

OpenBSD/ports ckdsaEqmultimedia/libcamera Makefile, multimedia/libcamera/pkg PLIST-qcam DESCR-qcam

   Add a subpackage for the qcam test application.
VersionDeltaFile
1.3+11-4multimedia/libcamera/Makefile
1.1+1-0multimedia/libcamera/pkg/PLIST-qcam
1.1+1-0multimedia/libcamera/pkg/DESCR-qcam
+13-43 files

OpenBSD/ports 0W0kw4Msysutils/exfetch Makefile distinfo

   sysutils/exfetch: update to 1.7.2

   From izzy Meyer (maintainer)
   ok tb@
VersionDeltaFile
1.10+2-2sysutils/exfetch/distinfo
1.11+1-1sysutils/exfetch/Makefile
+3-32 files

OpenBSD/ports JsLplzNwww/librewolf Makefile distinfo

   www/librewolf: update to 154.0.1-2, from yaydn
VersionDeltaFile
1.11+2-2www/librewolf/distinfo
1.13+1-2www/librewolf/Makefile
+3-42 files

OpenBSD/ports 7QIX6zasysutils/gemini-cli Makefile distinfo, sysutils/gemini-cli/pkg PLIST

   Update to gemini-cli-0.57.0.
VersionDeltaFile
1.39+48-48sysutils/gemini-cli/pkg/PLIST
1.40+2-2sysutils/gemini-cli/distinfo
1.42+1-1sysutils/gemini-cli/Makefile
+51-513 files

OpenBSD/ports oDlVBgjsecurity/libgcrypt distinfo Makefile, security/libgcrypt/patches patch-config_h_in patch-cipher_Makefile_in

   Update to libgcrypt-1.12.3.
VersionDeltaFile
1.105+2-3security/libgcrypt/Makefile
1.19+2-2security/libgcrypt/patches/patch-configure
1.52+2-2security/libgcrypt/distinfo
1.6+1-1security/libgcrypt/patches/patch-config_h_in
1.5+1-1security/libgcrypt/patches/patch-cipher_Makefile_in
+8-95 files

OpenBSD/ports 5cxaFP1inputmethods/ibus-typing-booster Makefile distinfo

   Update to ibus-typing-booster-2.31.0.
VersionDeltaFile
1.99+2-2inputmethods/ibus-typing-booster/distinfo
1.108+1-1inputmethods/ibus-typing-booster/Makefile
+3-32 files

OpenBSD/ports h2j9ZScdevel/harfbuzz distinfo Makefile

   Update to harfbuzz-14.4.0.
VersionDeltaFile
1.177+2-2devel/harfbuzz/distinfo
1.213+2-2devel/harfbuzz/Makefile
+4-42 files

OpenBSD/src hMlyEkklib/libcrypto/rsa rsa_eay.c

   rsa_eay: Replace handrolled BN_bn2binpad with the real thing

   Just a tiny little bit of lipstick on this entelodont. This is simpler
   and does not change behavior as BN_bn2binpad() returns -1 on failure and
   num on success.

   jsing points out that BN_bn2binpad() is constant time.

   ok jsing kenjiro

   PS: henning, you owe me a significant amount of quality beverages for
   making me look at this particular tire fire (and corresponding XS files).
VersionDeltaFile
1.67+7-19lib/libcrypto/rsa/rsa_eay.c
+7-191 files

OpenBSD/src hLWObxllib/libcrypto/cms cms_kari.c

   libcrypto: harden cms_kek_cipher() a bit

   When AES key unwrap with padding is in use, the EVP interface breaks its
   contract and writes more than the outlen it initially reports to the output
   buffer. This is an old, sneaky trap that the muppet set eons ago and many
   victims walked right into it, including the muppet himself.

   If inlen is larger than outlen, allocate inlen bytes to unwrap with padding
   to avoid a buffer overwrite. This is a variant of OpenSSL's fix. Since we
   do not support AES keywrap with padding no actual bufer overwrite occurs
   here at the moment, but if we ever chose to do so (unlikely) this trap
   would be avoided. There's plenty more traps that the next round of scas
   will surely find in this absolute trashfire of CMS support code.

   ok kenjiro
VersionDeltaFile
1.19+8-3lib/libcrypto/cms/cms_kari.c
+8-31 files

OpenBSD/ports sBQv1iKaudio/ncspot Makefile crates.inc

   audio/ncspot: update to 1.4.0
VersionDeltaFile
1.42+542-526audio/ncspot/distinfo
1.28+270-262audio/ncspot/crates.inc
1.59+1-1audio/ncspot/Makefile
+813-7893 files

OpenBSD/src o6u0FDWgnu/usr.bin/cvs Makefile.bsd-wrapper

   the macintosh subdir was removed from cvs in 1999

   ok jcs@
VersionDeltaFile
1.61+2-2gnu/usr.bin/cvs/Makefile.bsd-wrapper
+2-21 files

OpenBSD/ports LGCyVkksecurity/web-eid-app Makefile distinfo, security/web-eid-app/patches patch-src_app_CMakeLists_txt patch-lib_libelectronic-id_CMakeLists_txt

   update to web-eid 2.10.0
VersionDeltaFile
1.9+2-2security/web-eid-app/distinfo
1.25+1-2security/web-eid-app/Makefile
1.6+1-1security/web-eid-app/patches/patch-src_app_CMakeLists_txt
1.2+1-1security/web-eid-app/patches/patch-lib_libelectronic-id_CMakeLists_txt
+5-64 files

OpenBSD/ports SGzqFJNlang/rust rust.port.mk distinfo, lang/rust/patches patch-src_doc_rustc_src_platform-support_openbsd_md patch-library_unwind_src_lib_rs

   lang/rust: update to 1.98.0

   Announce: https://blog.rust-lang.org/2026/08/20/Rust-1.98.0/
   Release notes: https://doc.rust-lang.org/stable/releases.html#version-1980-2026-08-20

   sparc64 switched to clang (from tb@)
VersionDeltaFile
1.30+105-37lang/rust/pkg/PLIST-src
1.4+13-12lang/rust/patches/patch-compiler_rustc_llvm_build_rs
1.168+10-10lang/rust/distinfo
1.1+18-0lang/rust/patches/patch-src_doc_rustc_src_platform-support_openbsd_md
1.1+18-0lang/rust/patches/patch-library_unwind_src_lib_rs
1.25+3-10lang/rust/rust.port.mk
+167-696 files not shown
+179-8112 files

OpenBSD/src qbfJQN5sbin/dhcpleased engine.c

   Do not try to configure 0.0.0.0 (INADDR_ANY) on an interface.

   If we indicate a preference for IPv6-only (DHCP option 108), the
   server does not offer an IP address (indicated by INADDR_ANY), so we
   must first check if the server supported option 108 before checking if
   we received an IPv4 offer.

   Logic error pointed out and diff provided by acts1631 at proton.me,
   thanks!
VersionDeltaFile
1.70+10-5sbin/dhcpleased/engine.c
+10-51 files

OpenBSD/ports KjQm55smail/mozilla-thunderbird distinfo Makefile, mail/thunderbird-i18n Makefile.inc distinfo

   mail/mozilla-thunderbird: update to 153.1.1.

   see https://www.thunderbird.net/en-US/thunderbird/153.1.1esr/releasenotes/
VersionDeltaFile
1.308+132-132mail/thunderbird-i18n/distinfo
1.325+2-2mail/mozilla-thunderbird/distinfo
1.539+2-2mail/mozilla-thunderbird/Makefile
1.282+1-1mail/thunderbird-i18n/Makefile.inc
+137-1374 files