FreeBSD/ports 86aa75emath/minizinc-ide distinfo Makefile

math/minizinc-ide: update 2.8.7 → 2.10.1
DeltaFile
+5-6math/minizinc-ide/Makefile
+3-5math/minizinc-ide/distinfo
+8-112 files

FreeBSD/ports e202456math/bonmin Makefile

math/bonmin: update WWW
DeltaFile
+2-1math/bonmin/Makefile
+2-11 files

FreeBSD/ports 42239f8math/gecode distinfo pkg-plist, math/gecode/files patch-Makefile.in patch-configure

math/gecode: update 6.3.0 → 6.4.0

Noteworthy changes:
- changed to cmake
- install both shared and static libs now
DeltaFile
+32-41math/gecode/Makefile
+36-16math/gecode/pkg-plist
+0-20math/gecode/files/patch-configure
+0-11math/gecode/files/patch-Makefile.in
+3-3math/gecode/distinfo
+71-915 files

FreeBSD/ports efd389dmath/minizinc distinfo Makefile, math/minizinc/files patch-lib_solver__config.cpp patch-lib_file__utils.cpp

math/minizinc: update 2.8.7 → 2.10.1
DeltaFile
+145-19math/minizinc/pkg-plist
+4-12math/minizinc/Makefile
+13-0math/minizinc/files/patch-include_minizinc_process.hh
+4-4math/minizinc/files/patch-lib_solver__config.cpp
+5-3math/minizinc/files/patch-lib_file__utils.cpp
+3-3math/minizinc/distinfo
+174-416 files

FreeBSD/ports 2a3185dmath/couenne pkg-plist distinfo

math/couenne: update 0.5.8 → 0.5.9
DeltaFile
+3-3math/couenne/distinfo
+3-3math/couenne/Makefile
+2-2math/couenne/pkg-plist
+8-83 files

FreeBSD/src 9d18e2csys/compat/linuxkpi/common/include/linux timer.h, sys/compat/linuxkpi/common/src linux_compat.c

LinuxKPI: remove timer KPI from Linux version before 4.15

Now that semi-native drivers in main are clean of using any
pre-4.15 Linux timer KPI, remove the macros from LinuxKPI as well.

Supported versions of drm-kmod and the oldest nvidia port seem fine
based on my checks.  If anything else surfaces we can deal with the
fallout; the changes to the newer KPI were mechanical in Linux and
can be applied easily.

This change can be detected by #if !defined(init_timer)
at compile time so no need for a __FreeBSD_version bump.

MFC after:      3 days
Reviewed by:    emaste
Differential Revision: https://reviews.freebsd.org/D59688
DeltaFile
+2-24sys/compat/linuxkpi/common/include/linux/timer.h
+1-1sys/compat/linuxkpi/common/src/linux_compat.c
+3-252 files

FreeBSD/src 3769ee9sys/dev/mlx5/mlx5_core mlx5_health.c

mlx5: remove init_timer()

The init_timer() was there from day one in (dc7e38ac4da50).  It was
never needed as the setup_timer() below already did more than just
that part of the job.
This is part of trying to clear up the Linux pre-4.15 timer KPI
from LinuxKPI.

MFC after:      3 days
Reviewed by:    kib
Differential Revision: https://reviews.freebsd.org/D59681
DeltaFile
+0-1sys/dev/mlx5/mlx5_core/mlx5_health.c
+0-11 files

FreeBSD/src 871c09csys/dev/mlx4/mlx4_en en.h mlx4_en_cq.c

mlx4: convert to timer_setup() Linux KPI

The Linux driver switched away from using this timer in e22979d96a55d.
Locally adjust the code to use timer_setup/from_timer in order to get
us out of Linux version 4.15 (and earlier) KPIs.
Also, right away, apply 41cb08555c416 from_timer -> timer_container_of.

MFC after:      3 days
Reviewed by:    kib
Differential Revision: https://reviews.freebsd.org/D59680
DeltaFile
+1-3sys/dev/mlx4/mlx4_en/mlx4_en_cq.c
+2-2sys/dev/mlx4/mlx4_en/mlx4_en_tx.c
+1-1sys/dev/mlx4/mlx4_en/en.h
+4-63 files

FreeBSD/src 272138csys/dev/mlx4/mlx4_core mlx4_catas.c

mlx4: apply upstream changes to convert to timer_setup() Linux KPI

Apply Linux change 55c0fcc3de460 "Convert timers to use timer_setup()"
to get us out of Linux version 4.15 (and earlier) KPIs.
Also apply 41cb08555c416 from_timer -> timer_container_of.

MFC after:      3 days
Reviewed by:    kib
Differential Revision: https://reviews.freebsd.org/D59679
DeltaFile
+4-6sys/dev/mlx4/mlx4_core/mlx4_catas.c
+4-61 files

FreeBSD/src 9d467dfsys/dev/mthca mthca_catas.c

mthca: apply upstream changes to convert to timer_setup() LinuxKPI

Apply upstream changes b9eaf18722221 init_timer() -> setup_timer(),
and 86cb30ec07cdc7 setup_timer() -> timer_setup() to get us out of
Linux version 4.15 (and earlier) KPIs.
Also apply 41cb08555c416 from_timer -> timer_container_of.

MFC after:      3 days
Reviewed by:    jhb, emaste
Differential Revision: https://reviews.freebsd.org/D59677
DeltaFile
+3-5sys/dev/mthca/mthca_catas.c
+3-51 files

FreeBSD/ports 3e560danet-im/telegram-desktop Makefile distinfo

net-im/telegram-desktop: update to 7.2.9 release (+)

Release notes:  https://github.com/telegramdesktop/tdesktop/releases/tag/v7.2.9
DeltaFile
+3-3net-im/telegram-desktop/distinfo
+1-1net-im/telegram-desktop/Makefile
+4-42 files

FreeBSD/ports ae38175net-im/flare Makefile

net-im/flare: Add PORTSCOUT limit for 0.x

Portscout finds a tag named 'v1.6.0' that is from one of
the Cargo crates, not relevant to upstream project Flare.

Tested using locally ran portscout.

Approved by:    osa, vvd (Mentors, implicit)
DeltaFile
+2-0net-im/flare/Makefile
+2-01 files

FreeBSD/ports 4ba7841devel/papi Makefile pkg-plist, devel/papi/files patch-zero_attach.c patch-mutiattach2.c

devel/papi: update to 7.2.0, un-expire

Most patches are from the PR, minor changes from me:
- update to final 7.2.0 version
- update MASTER_SITES and WWW
- shebang for python:env

PR:             284575
Approved by:    maintainer timeout (never replied)
MFH:            2026Q3

(cherry picked from commit bd51446d7985fcd1d35239dece909365689e2244)
DeltaFile
+136-101devel/papi/pkg-plist
+89-7devel/papi/files/patch-configure
+70-0devel/papi/files/patch-mutiattach.c
+38-0devel/papi/files/patch-zero_attach.c
+38-0devel/papi/files/patch-mutiattach2.c
+13-18devel/papi/Makefile
+384-1263 files not shown
+427-1289 files

FreeBSD/ports 6fdafeddatabases/pg_search Makefile distinfo

databases/pg_search: fix build

The distfile tarball mecab-ipadic-2.7.0-20070801.tar.gz was re-rolled.
Their file contents are identical, but metadata was changed.

Example:

--rw-r--r--  0 1000   1000       61 Jun 10  2007 mecab-ipadic-2.7.0-20070801/README
+-rw-rw-r--  0 root   root       61 Feb 23  2024 mecab-ipadic-2.7.0-20070801/README
DeltaFile
+3-3databases/pg_search/distinfo
+1-1databases/pg_search/Makefile
+4-42 files

FreeBSD/ports b98a1a6sysutils/loaders-update Makefile

sysutils/loaders-update: specify aarch64 instead of arm64

PR:     298602
Approved by:    Emrion <kmachine@...>
DeltaFile
+1-1sysutils/loaders-update/Makefile
+1-11 files

FreeBSD/ports f1eb0b2devel/py-virtualenv Makefile distinfo

devel/py-virtualenv: Update to 21.7.11

ChangeLog:

1. https://github.com/pypa/virtualenv/releases/tag/21.7.11

Reported by:    "github-actions[bot]" <notifications at github.com>
DeltaFile
+3-3devel/py-virtualenv/distinfo
+1-1devel/py-virtualenv/Makefile
+4-42 files

FreeBSD/ports bd51446devel/papi Makefile pkg-plist, devel/papi/files patch-zero_attach.c patch-mutiattach2.c

devel/papi: update to 7.2.0, un-expire

Most patches are from the PR, minor changes from me:
- update to final 7.2.0 version
- update MASTER_SITES and WWW
- shebang for python:env

PR:             284575
Approved by:    maintainer timeout (never replied)
MFH:            2026Q3
DeltaFile
+136-101devel/papi/pkg-plist
+89-7devel/papi/files/patch-configure
+70-0devel/papi/files/patch-mutiattach.c
+38-0devel/papi/files/patch-zero_attach.c
+38-0devel/papi/files/patch-mutiattach2.c
+13-18devel/papi/Makefile
+384-1263 files not shown
+427-1289 files

FreeBSD/src 8a8c144contrib/llvm-project/libunwind/src CompactUnwinder.hpp

Merge commit 1f332ae4f1b3 from llvm-project (by Alexander Kornienko):

  Fix -Wformat diagnostic after #190965 (#193704)

  Fixes libunwind compiler diagnostic when building with clang after
  034d4dcad6396d1241e8262e69871b8d61da7e4f:
  ```
  In file included from libunwind/src/libunwind.cpp:31:
  In file included from libunwind/src/UnwindCursor.hpp:52:
  libunwind/src/CompactUnwinder.hpp:339:46: error: format specifies type 'unsigned long long' but the argument has type 'uint64_t' (aka 'unsigned long') [-Werror,-Wformat]
    338 |                            "function starting at 0x%llX",
        |                                                    ~~~~
        |                                                    %lX
    339 |                             compactEncoding, functionStart);
        |                                              ^~~~~~~~~~~~~
  libunwind/src/config.h:215:63: note: expanded from macro '_LIBUNWIND_DEBUG_LOG'
    215 |   #define _LIBUNWIND_DEBUG_LOG(msg, ...)  _LIBUNWIND_LOG(msg, __VA_ARGS__)
        |                                                          ~~~  ^~~~~~~~~~~
  libunwind/src/config.h:181:45: note: expanded from macro '_LIBUNWIND_LOG'

    [21 lines not shown]
DeltaFile
+5-4contrib/llvm-project/libunwind/src/CompactUnwinder.hpp
+5-41 files

FreeBSD/src bcd0d76sys/conf kern.mk

kern.mk: make clang 23 -Wunused-but-set-global non-fatal

This warning triggers in a few places in contributed code, and would
therefore be annoying to fix. Use -Wno-error= to at least show the
warnings so there is some incentive to submit them upstream.

MFC after:      3 days
DeltaFile
+3-0sys/conf/kern.mk
+3-01 files

FreeBSD/src d577b4eshare/mk bsd.sys.mk

bsd.sys.mk: make clang 23 -Wunused-but-set-global non-fatal

This warning triggers in a few places in contributed code, and would
therefore be annoying to fix. Use -Wno-error= to at least show the
warnings so there is some incentive to submit them upstream.

MFC after:      3 days
DeltaFile
+3-0share/mk/bsd.sys.mk
+3-01 files

FreeBSD/ports ced174asysutils/siegfried Makefile distinfo

sysutils/siegfried: Update to 1.11.8

- Use go:1.26 on quarterly

ChangeLog:
https://github.com/richardlehane/siegfried/blob/main/CHANGELOG.md#v1118-2026-09-15

MFH:            2026Q3
(cherry picked from commit bbb69a5ded781bc2a5e99d2ff94e22001c568f00)
DeltaFile
+5-5sysutils/siegfried/distinfo
+2-2sysutils/siegfried/Makefile
+7-72 files

FreeBSD/ports bbb69a5sysutils/siegfried Makefile distinfo

sysutils/siegfried: Update to 1.11.8

ChangeLog:
https://github.com/richardlehane/siegfried/blob/main/CHANGELOG.md#v1118-2026-09-15

MFH:            2026Q3
DeltaFile
+5-5sysutils/siegfried/distinfo
+2-2sysutils/siegfried/Makefile
+7-72 files

FreeBSD/ports d368462sysutils/dust Makefile Makefile.crates

sysutils/dust: Update to 1.2.6
DeltaFile
+23-25sysutils/dust/distinfo
+10-11sysutils/dust/Makefile.crates
+1-2sysutils/dust/Makefile
+34-383 files

FreeBSD/src 66e06f8share/man/man4 ossl.4

ossl.4: Canonicalize SYNOPSIS + tag SPDX

MFC after:      3 days
DeltaFile
+8-13share/man/man4/ossl.4
+8-131 files

FreeBSD/src 66d2711share/man/man4 ice.4, sys/dev/ice ice_iov.h ice_iov.c

ice: Fail closed when VF reset does not complete

ice_reset_vf() logs failures to drain PCIe transactions, issue the
mandatory zero-queue command, or observe VFR completion, but still
publishes VFACTIVE.  A VF can resume against reset state which the PF
knows is incomplete.

Return an error from the reset operation and retain a reset-failed flag
when any mandatory stage fails.  Reject ordinary virtchnl requests while
the failure persists.  Publish VFACTIVE only after every stage succeeds.
A later VFLR or PF rebuild can recover the VF and clear the failure.

Remove tracked queue leaves before clearing their software state.  The
reset-only AdminQ command drains hardware queues but does not update the
shared scheduler database; losing that bookkeeping can strand queue
resources across VF teardown and recreation.

After a successful VF reset, discard software switch filter state whose
hardware rules were reset and clear guest-owned MAC and VLAN tracking.

    [16 lines not shown]
DeltaFile
+109-17sys/dev/ice/ice_iov.c
+4-0share/man/man4/ice.4
+1-0sys/dev/ice/ice_iov.h
+114-173 files

FreeBSD/ports 0c6176alang/gnat15/files patch-libgomp_affinity-fmt.c patch-include_libiberty.h

lang/gnat15: Fix build post-base d08296c7ab0d

The fixes come from lang/gcc15.

PR:             297878
DeltaFile
+11-0lang/gnat15/files/patch-libgomp_affinity-fmt.c
+11-0lang/gnat15/files/patch-include_libiberty.h
+22-02 files

FreeBSD/ports 42999e4security/stunnel Makefile distinfo

security/stunnel: Update to 5.82
DeltaFile
+3-3security/stunnel/distinfo
+1-1security/stunnel/Makefile
+4-42 files

FreeBSD/src 3bdc281share/man/man4 ice.4, sys/dev/ice ice_iov.c

ice: Enforce VF MAC anti-spoof policy

The SR-IOV schema enables MAC anti-spoofing by default, but the driver
never programs the VSI security section.  A VF can therefore transmit
with an arbitrary source address despite the configured policy.

Program ICE_AQ_VSI_SEC_FLAG_ENA_MAC_ANTI_SPOOF when the VF VSI is
created, and replay the policy when the VSI is rebuilt after a PF or
device reset.  Fail VF creation or rebuild when firmware cannot install
the security policy so an unprotected VF is never published as active.

Validated on E810 hardware with host-attached and Linux passthrough
VFs.  Traffic using the assigned source MAC passed while otherwise
identical forged-source frames were dropped.  After a PF reset, assigned
traffic resumed and zero of ten forged frames reached the peer.

An injected MAC anti-spoof update failure left the VF inactive.
Destroying and recreating the SR-IOV configuration restored the policy
and traffic.

    [4 lines not shown]
DeltaFile
+49-0sys/dev/ice/ice_iov.c
+6-2share/man/man4/ice.4
+55-22 files

FreeBSD/ports 26cfd6fwww/nginx-devel Makefile.options.desc Makefile

www/nginx-devel: Add NJS_QJS and NJS_XML options

The port pulled quickjs, libxml2 and libxslt unconditionally with NJS
and always built the QuickJS engine.  Split this into the NJS_QJS and
NJS_XML options, so that www/nginx, www/nginx-devel and www/freenginx
offer the same set.

Sponsored by:   Netzkommune GmbH
DeltaFile
+10-5www/nginx-devel/Makefile
+11-4www/nginx-devel/Makefile.extmod
+2-0www/nginx-devel/Makefile.options.desc
+23-93 files

FreeBSD/src e70ff92sys/dev/ice ice_iov.c

ice: Add malformed virtchnl injection points

Extend the optional ice(4) failure injection facility with semantic
corruption points for queue configuration, RSS keys and tables, and
interrupt mappings.

Each point mutates an otherwise valid request after the common
virtchnl length check.  This exercises the PF semantic validators with a
real VF while preserving the normal wire format and mailbox path.

The queue point selects unaligned Tx or Rx bases, an unaligned or
unrepresentable receive buffer, an invalid frame size, duplicate queue
IDs, or a bad VSI.  The RSS points select short advertised data or an
out-of-range LUT entry.  The interrupt point selects an invalid ITR,
traffic on vector zero, duplicate vectors, or a bad VSI.

The points remain absent unless the kernel is built with
options DRIVER_FAILPOINTS and retain the existing PF and VF selectors.


    [3 lines not shown]
DeltaFile
+72-0sys/dev/ice/ice_iov.c
+72-01 files