FreeBSD/ports f262d85net/frr10 Makefile distinfo

net/frr10: update to 10.7.1
DeltaFile
+3-3net/frr10/distinfo
+1-1net/frr10/Makefile
+4-42 files

FreeBSD/src ecc16ddsecure/lib/libcrypto/man/man3 NAME_CONSTRAINTS_check.3 OPENSSL_armcap.3

crypto/openssl: add manpages missed in related commit

MFC with:       78e936b2d
Fixes:          0d4d0f3a9 ("crypto/openssl: update generated content ...")
Reported by:    Jenkins CI

(cherry picked from commit 19c1fe2d0c8f0001558c20f134be624241418191)
DeltaFile
+285-0secure/lib/libcrypto/man/man3/OPENSSL_armcap.3
+237-0secure/lib/libcrypto/man/man3/NAME_CONSTRAINTS_check.3
+522-02 files

FreeBSD/src 514ff9acrypto/openssl/crypto/aes aes_x86core.c, crypto/openssl/doc/man3 X509_verify_cert.pod

crypto/openssl: update to 3.5.8

This is a security bugfix release. Please see the related merge commit
for more details.

Maintainer note:        `quic_ackm.h`'s conflict was resolved by taking
                        the upstream version of the file verbatim.

Conflicts:
        crypto/openssl/include/internal/quic_ackm.h

MFC after:      3 days
Merge commit '248da023ae5ea7292930ac5d715d88b87e2e6f46'

(cherry picked from commit 78e936b2d0b5e6554425009199be31e76bc67c10)
DeltaFile
+0-79,844crypto/openssl/test/recipes/30-test_evp_data/evprand.txt
+0-867crypto/openssl/crypto/aes/aes_x86core.c
+851-3crypto/openssl/test/evp_extra_test.c
+394-125crypto/openssl/test/evp_extra_test2.c
+476-32crypto/openssl/test/endecode_test.c
+439-61crypto/openssl/doc/man3/X509_verify_cert.pod
+2,160-80,932253 files not shown
+7,387-81,985259 files

FreeBSD/src a281913secure/lib/libcrypto/man/man3 SSL_poll.3 SSL_get_value_uint.3, secure/lib/libcrypto/man/man7 openssl-quic-concurrency.7 openssl-threads.7

crypto/openssl: update generated content to match 3.5.8 release

This contains 2 new manpages as well as some minor manpage content
changes.

MFC with:       78e936b2d

(cherry picked from commit 0d4d0f3a9f229f9e822b43234b0ff72e7223f19f)
DeltaFile
+366-62secure/lib/libcrypto/man/man3/X509_verify_cert.3
+38-12secure/lib/libcrypto/man/man3/ASN1_aux_cb.3
+28-3secure/lib/libcrypto/man/man7/openssl-threads.7
+27-3secure/lib/libcrypto/man/man7/openssl-quic-concurrency.7
+19-4secure/lib/libcrypto/man/man3/SSL_get_value_uint.3
+18-3secure/lib/libcrypto/man/man3/SSL_poll.3
+496-87898 files not shown
+1,514-1,048904 files

FreeBSD/ports 191829fcad/fidocadj pkg-plist distinfo

cad/fidocadj: Update to 0.24.9.e

- Add a post-patch target to fix the make target and some entries in the
  desktop file
- Install a desktop menu file and relative icon
- Pet port(clippy|fmt)
- Use shebangfix with the build scripts provided upstream

ChangeLog:

1. https://github.com/FidoCadJ/FidoCadJ/releases/tag/v0.24.9-epsilon

Reported by:    "github-actions[bot]" <notifications at github.com>
DeltaFile
+33-13cad/fidocadj/Makefile
+5-5cad/fidocadj/distinfo
+3-1cad/fidocadj/pkg-plist
+41-193 files

FreeBSD/ports 9c00545java/openjdk25 Makefile, java/openjdk26 Makefile

java/openjdk{25,26}: Don't req xorg for headless

We no longer need the xorg libs to build OpenJDK headless variants for
OpenJDK 25 and 26.

Relevant upstream JBS issues:
- OpenJDK 25.0.4: https://bugs.openjdk.org/browse/JDK-8381011
- OpenJDK 26.0.2: https://bugs.openjdk.org/browse/JDK-8378158

PR:             294358
Reported by:    raivo at lehma.com
Reviewed by:    haraldei, jrm
Sponsored by:   The FreeBSD Foundation
Differential Revision:  https://reviews.freebsd.org/D59167
DeltaFile
+8-1java/openjdk26/Makefile
+8-1java/openjdk25/Makefile
+16-22 files

FreeBSD/ports cfb60c1java/openjfx14 Makefile

java/openjfx14: Fix openjfx14 after 9477c9da0a4

Removing USE_LDCONFIG from openjdk11 caused the package for openjfx14 to
fail to build, because it could not find libjvm.so, previously exported
from openjdk11 (and 8).

Making the openjfx14 package ignore this should be safe, as it in any
case relies on openjdk11 which again contains the lib and knows how to
locate and load it.

Thanks to ronald@ for pointing me in the right direction!

PR:             297282
Reported by:    vvd at FreeBSD.org
Reviewed by:    vvd at FreeBSD.org
Tested by:      vvd at FreeBSD.org
Sponsored by:   The FreeBSD Foundation
Differential Revision:  https://reviews.freebsd.org/D59290
DeltaFile
+3-1java/openjfx14/Makefile
+3-11 files

FreeBSD/ports cca6451Mk/Uses electron.mk

Mk/Uses/electron.mk: Trim valid electron versions after electron{37,38,39} removal
DeltaFile
+1-1Mk/Uses/electron.mk
+1-11 files

FreeBSD/ports 29a7c1anet-im/libsignal Makefile

net-im/libsignal: Mark aarch64 as broken

PR:             298079
DeltaFile
+1-0net-im/libsignal/Makefile
+1-01 files

FreeBSD/ports a2cffc0net-im/signal-cli Makefile distinfo

net-im/signal-cli: Update to 0.14.7

PR:             298079
DeltaFile
+43-19net-im/signal-cli/pkg-plist
+5-5net-im/signal-cli/distinfo
+1-1net-im/signal-cli/Makefile
+49-253 files

FreeBSD/ports 7772cd0net-im/libsignal Makefile Makefile.crates

net-im/libsignal: Update to 0.99.1

PR:             298079
DeltaFile
+525-501net-im/libsignal/distinfo
+261-249net-im/libsignal/Makefile.crates
+1-1net-im/libsignal/Makefile
+787-7513 files

FreeBSD/ports d9efbdbwww/chromium/files patch-chrome_browser_chrome__content__browser__client.cc patch-chrome_browser_prefs_browser__prefs.cc

www/chromium: update to 152.0.7977.64

Security:       https://vuxml.freebsd.org/freebsd/16cb13dc-a55d-11f1-bf98-a8a1599412c6.html
DeltaFile
+79-88www/chromium/files/patch-chrome_browser_about__flags.cc
+64-24www/chromium/files/patch-net_socket_udp__socket__posix.cc
+54-31www/chromium/files/patch-chrome_browser_policy_configuration__policy__handler__list__factory.cc
+40-34www/chromium/files/patch-chrome_browser_profiles_chrome__browser__main__extra__parts__profiles.cc
+43-25www/chromium/files/patch-chrome_browser_chrome__content__browser__client.cc
+61-7www/chromium/files/patch-chrome_browser_prefs_browser__prefs.cc
+341-209431 files not shown
+2,424-2,048437 files

FreeBSD/ports 820ac6csecurity/vuxml/vuln 2026.xml

security/vuxml: add www/*chromium < 152.0.7977.64

Obtained from:  https://chromereleases.googleblog.com/2026/08/stable-channel-update-for-desktop_0256176589.html
DeltaFile
+685-0security/vuxml/vuln/2026.xml
+685-01 files

FreeBSD/ports d90f606converters/py-markitdown Makefile

converters/py-markitdown: Add a run dependency

- Add sysutils/py-magika as run dependency
- Pet portfmt
- Remove IGNORE tag

PR:             297500 285927
Approved by:    wen (maintainer)
DeltaFile
+3-4converters/py-markitdown/Makefile
+3-41 files

FreeBSD/ports 95251bcwww/sqlpage Makefile Makefile.crates

www/sqlpage: Update to 0.46.0

Release notes:  https://github.com/sqlpage/SQLPage/releases/tag/v0.46.0
DeltaFile
+259-237www/sqlpage/distinfo
+125-114www/sqlpage/Makefile.crates
+4-4www/sqlpage/Makefile
+388-3553 files

FreeBSD/ports 9348eb2emulators/flycast distinfo Makefile, emulators/flycast/files patch-core_sdl_dreampicoport.cpp patch-core_rend_vulkan_vmallocator.h

emulators/flycast: Update to 2.7 and unbreak

Port changes:
- Switch to net/asio130 to unbreak the build. This also guarantees a
  more stable update path for the flycast port, because newer versions
  of net/asio are constantly deprecating and removing APIs.
- Unbreak on FreeBSD < 15 for newer DreamPicoPort submodule.
- Unbundle several dependencies. This is accompanied with an
  EXTRACT_AFTER_ARGS block to exclude unbundled and unused deps, which
  ensures that these aren't accidently referenced by the build process.
- Add LIBCDIO option, enabled by default. This enables CDROM support via
  libcdio. It was already available in previous flycast versions but was
  forgotten in the port.
- Prevent searching for git via CMAKE_DISABLE_FIND_PACKAGE_Git.
- Separate several blocks with newlines to improve readability.
- Remove obsolete patches.

Changelog:
https://github.com/flyinghead/flycast/releases/tag/v2.7

    [3 lines not shown]
DeltaFile
+50-14emulators/flycast/Makefile
+38-10emulators/flycast/files/patch-CMakeLists.txt
+0-38emulators/flycast/files/patch-core_rend_vulkan_vmallocator.h
+0-38emulators/flycast/files/patch-core_network_dcnet.cpp
+15-11emulators/flycast/distinfo
+0-11emulators/flycast/files/patch-core_sdl_dreampicoport.cpp
+103-1223 files not shown
+103-1469 files

FreeBSD/ports 4ad30abmisc/crush Makefile distinfo, misc/crush/files extra-patch-disable-command-blocking

misc/crush: Update to 0.92.0

Changelog: https://github.com/charmbracelet/crush/releases/tag/v0.92.0

Reported by:    GitHub (watch releases)
DeltaFile
+5-5misc/crush/distinfo
+2-2misc/crush/files/extra-patch-disable-command-blocking
+1-1misc/crush/Makefile
+8-83 files

FreeBSD/ports 954e88anet/croc Makefile distinfo

net/croc: Update to 11.3.6
DeltaFile
+5-5net/croc/distinfo
+1-1net/croc/Makefile
+6-62 files

FreeBSD/ports 3076bfddevel/py-ty Makefile distinfo

devel/py-ty: Update to 0.0.77

Changelog: https://github.com/astral-sh/ty/blob/0.0.77/CHANGELOG.md

Reported by:    Repology
DeltaFile
+3-3devel/py-ty/distinfo
+1-1devel/py-ty/Makefile
+4-42 files

FreeBSD/ports 10c05a2www/py-fastapi-sso Makefile distinfo

www/py-fastapi-sso: Update to 0.22.0

Changelog: https://github.com/tomasvotava/fastapi-sso/releases/tag/0.22.0

Reported by:    Repology
DeltaFile
+3-3www/py-fastapi-sso/distinfo
+1-1www/py-fastapi-sso/Makefile
+4-42 files

FreeBSD/src f89b0cecontrib/expat Changes, contrib/expat/lib xmlparse.c

contrib/expat: import expat 2.8.4

Changes: https://github.com/libexpat/libexpat/blob/R_2_8_4/expat/Changes

Security:       CVE-2026-66046
Security:       CVE-2026-76641
Security:       CVE-2026-76957
Security:       CVE-2026-76956
MFC after:      1 week
DeltaFile
+189-64contrib/expat/lib/xmlparse.c
+79-0contrib/expat/tests/basic_tests.c
+65-0contrib/expat/Changes
+57-1contrib/expat/tests/misc_tests.c
+3-3lib/libexpat/expat_config.h
+2-2lib/libexpat/libbsdxml.3
+395-7010 files not shown
+408-7916 files

FreeBSD/ports 74810fbwww/freenginx-devel Makefile.extmod Makefile, www/freenginx-devel/files extra-patch-passenger-disable-telemetry extra-patch-passenger-build-nginx.rb

www/freenginx-devel: third-party modules management

- update passenger to 6.2.0

Bump PORTREVISION.

Sponsored by:   tipi.work
DeltaFile
+3-3www/freenginx-devel/distinfo
+2-2www/freenginx-devel/files/extra-patch-passenger-disable-telemetry
+2-2www/freenginx-devel/files/extra-patch-passenger-build-nginx.rb
+2-2www/freenginx-devel/files/extra-patch-passenger-Configuration.c
+1-1www/freenginx-devel/Makefile.extmod
+1-1www/freenginx-devel/Makefile
+11-116 files

FreeBSD/ports c3d47bbsysutils/auto-admin Makefile distinfo

sysutils/auto-admin: Update to 0.8.5.6

Fix pkgbase detection bug in a few scripts
DeltaFile
+3-3sysutils/auto-admin/distinfo
+2-1sysutils/auto-admin/Makefile
+5-42 files

FreeBSD/src 094c567share/man/man4 bnxt.4

bnxt(4): Cross-reference led(4)

Point the identification LED documentation to led(4), which describes
how to control /dev/led device nodes.

Sponsored by:   BBOX.io

(cherry picked from commit af069400a8ea514c8e55f123cae478aee65e04d5)
DeltaFile
+4-1share/man/man4/bnxt.4
+4-11 files

FreeBSD/src 64d0098share/man/man4 bnxt.4

bnxt(4): Cross-reference led(4)

Point the identification LED documentation to led(4), which describes
how to control /dev/led device nodes.

Sponsored by:   BBOX.io

(cherry picked from commit af069400a8ea514c8e55f123cae478aee65e04d5)
DeltaFile
+4-1share/man/man4/bnxt.4
+4-11 files

FreeBSD/src 310c4c9share/man/man4 ice.4, sys/dev/ice ice_iflib.h if_ice_iflib.c

ice: Add led(4) identification support

Expose the firmware-controlled physical port identification LED
through /dev/led/ice*.  Use the AdminQ port-identification command to
select blinking mode and restore the netlist-selected original mode
before the interface is stopped.

Sponsored by:   BBOX.io

(cherry picked from commit a781965b91ea390f9576ae42c35c842db74aab86)
DeltaFile
+44-0sys/dev/ice/if_ice_iflib.c
+8-1share/man/man4/ice.4
+1-0sys/dev/ice/ice_iflib.h
+53-13 files

FreeBSD/src ee44a57sys/kern kern_umtx.c

umtx: use a distribution-fair multiplier for the chain hash

  umtxq_hash() multiplies the key by 0x9E370001 and keeps the high bits.  That
  constant is 0x9E37 * 2^16 + 1, so it degenerates for keys whose spacing carries
  trailing zero bits: at a 64 KiB stride it puts 128 of 512 parked waiters onto a
  single chain mutex, and at 16 KiB and up it uses only a handful of the 512
  chains.  Base-system consumers never hit this because libthr places its own wait
  words 128 bytes apart, but a Linux-ABI runtime waiting on addresses it allocates
  itself lands squarely on the floor.  Switch to 0x61C88647, which leaves at most 3
  waiters per chain at the same stride; Linux made this exact change in 2016, after
  judging the sparse constants "actively bad for hashing".

Approved by:    adrian (mentor)
Reviewed by:    kib, adrian, emaste
Differential Revision:  https://reviews.freebsd.org/D58337

Signed-off-by: Nick Price <nprice at FreeBSD.org>
DeltaFile
+2-2sys/kern/kern_umtx.c
+2-21 files

FreeBSD/src 742c549sys/dev/bxe bxe.c

bxe(4): don't feed a zero page size to ilog2 during ILT init

FreeBSD's bxe hardwires CNIC_SUPPORT() to 0, so bxe_ilt_set_info()
never enters the block that initializes the SRC and TM ILT clients.
Those two clients are left zeroed (page_size 0, flags 0), yet
ecore_ilt_init_page_size() calls ecore_ilt_init_client_psz() for all
four clients unconditionally. For SRC and TM that evaluates
ILOG2(page_size >> 12), i.e. ilog2(0). On an INVARIANTS kernel ilog2()
asserts "ilog argument must be nonzero" and panics the machine the
first time the interface is brought up (bxe_init -> bxe_nic_load ->
bxe_init_hw -> ecore_ilt_init_page_size). On a non-INVARIANTS kernel
it silently programs a bogus page-size register instead.

Restore the else branch that upstream Linux bnx2x carries: when CNIC
is not supported, mark the SRC and TM clients with ILT_CLIENT_SKIP_INIT
and ILT_CLIENT_SKIP_MEM so ecore_ilt_init_client_psz() skips them.

Root-caused from a crash dump on a BCM57810 (device 0x168e): the ILT
clients showed CDU and QM populated and SRC and TM zeroed with no skip

    [6 lines not shown]
DeltaFile
+5-0sys/dev/bxe/bxe.c
+5-01 files

FreeBSD/ports 8de92acnet/telemt distinfo, net/telemt/files patch-src_config_tests_load__basic__tests_defaults__access__tests.rs patch-src_config_types_general.rs

net/telemt: Update 3.4.24 => 3.5.5

Port changes:
- Use telemt/telemt user/group for running the process
- Install /var/db/telemt directory for accounting files

Changelogs:
- https://github.com/telemt/telemt/releases/tag/3.4.25
- https://github.com/telemt/telemt/releases/tag/3.5.0
- https://github.com/telemt/telemt/releases/tag/3.5.1
- https://github.com/telemt/telemt/releases/tag/3.5.2
- https://github.com/telemt/telemt/releases/tag/3.5.3
- https://github.com/telemt/telemt/releases/tag/3.5.4
- https://github.com/telemt/telemt/releases/tag/3.5.5

Commit log:
https://github.com/telemt/telemt/compare/3.4.24...3.5.5

PR:             297927

    [2 lines not shown]
DeltaFile
+18-0net/telemt/files/patch-src_maestro_listeners_plan.rs
+17-0net/telemt/files/patch-src_config_types_general__impl.rs
+9-5net/telemt/distinfo
+5-7net/telemt/files/telemt.in
+11-0net/telemt/files/patch-src_config_types_general.rs
+10-0net/telemt/files/patch-src_config_tests_load__basic__tests_defaults__access__tests.rs
+70-124 files not shown
+82-1810 files

FreeBSD/src 533918ctools/tools/nanobsd/embedded pandaboard.cfg

nanobsd: Remove pandaboard.cfg

Pandaboard (sys/arm/ti/omap4) is removed due to lack of HW.
Remove the pandaboard config file for nanobsd aswell.

Approved by: imp, jlduran, manu(mentor)
Diffrential revision: https://reviews.freebsd.org/D54319
DeltaFile
+0-35tools/tools/nanobsd/embedded/pandaboard.cfg
+0-351 files