Page MenuHomeFreeBSD
Feed All Stories

Today

jrtc27 added a comment to D56717: bsdinstall: do pkgbase installations with the "script" command.

Should this not do the same as 9134ed157388f3e34374322a5de06449a031f1ec?

Wed, Apr 29, 7:53 PM
asomers requested review of D56717: bsdinstall: do pkgbase installations with the "script" command.
Wed, Apr 29, 7:50 PM
eduardo committed R11:fc6abd7c24cf: math/R-cran-fracdiff: Update to 1.5-4 (authored by eduardo).
math/R-cran-fracdiff: Update to 1.5-4
Wed, Apr 29, 7:36 PM
pouria committed rGc5a92616c41f: if_gre(4): Fix gre_clone_dump_nl address dump (authored by pouria).
if_gre(4): Fix gre_clone_dump_nl address dump
Wed, Apr 29, 7:00 PM
des updated subscribers of D56716: vis.3: Try to better describe VIS_SAFE.

@adrian could you perhaps look into getting this reviewed and committed upstream?

Wed, Apr 29, 6:57 PM
cmt committed R11:b6211fc62757: mail/thunderbird-esr: update to 140.10.1 (rc1) (authored by cmt).
mail/thunderbird-esr: update to 140.10.1 (rc1)
Wed, Apr 29, 6:55 PM
cmt committed R11:22c0e340b25b: mail/thunderbird: update to 150.0.1 (rc1) (authored by cmt).
mail/thunderbird: update to 150.0.1 (rc1)
Wed, Apr 29, 6:55 PM
cmt committed R11:ab5c9a97c3f7: net-mgmt/check_ssl_cert: update to 2.98.0 (authored by cmt).
net-mgmt/check_ssl_cert: update to 2.98.0
Wed, Apr 29, 6:53 PM
cmt committed R11:9a8e7518d697: mail/thunderbird-esr: update to 140.10.1 (rc1) (authored by cmt).
mail/thunderbird-esr: update to 140.10.1 (rc1)
Wed, Apr 29, 6:52 PM
cmt committed R11:7807a02461d7: mail/thunderbird: update to 150.0.1 (rc1) (authored by cmt).
mail/thunderbird: update to 150.0.1 (rc1)
Wed, Apr 29, 6:51 PM
des requested review of D56716: vis.3: Try to better describe VIS_SAFE.
Wed, Apr 29, 6:48 PM
des committed rG70fde0ed6bbb: md5: Encode non-printable filenames (authored by des).
md5: Encode non-printable filenames
Wed, Apr 29, 6:42 PM
des closed D56615: md5: Encode non-printable filenames.
Wed, Apr 29, 6:41 PM
asomers closed D56713: sysutils/iocage: fix "make test".
Wed, Apr 29, 6:33 PM
asomers committed R11:df89129c22ca: sysutils/iocage: fix "make test" (authored by asomers).
sysutils/iocage: fix "make test"
Wed, Apr 29, 6:33 PM
des added inline comments to D56615: md5: Encode non-printable filenames.
Wed, Apr 29, 6:32 PM
gordon committed R9:f8af2345e0b4: Update credit line for SA-26:13 per submitter request. (authored by gordon).
Update credit line for SA-26:13 per submitter request.
Wed, Apr 29, 6:31 PM
asomers added a comment to D56713: sysutils/iocage: fix "make test".

Note that @grembo , while AFK, indicated his approval to me over email.

Wed, Apr 29, 6:28 PM
markj accepted D56615: md5: Encode non-printable filenames.
Wed, Apr 29, 6:28 PM
emaste requested review of D56715: Makefile.inc1: Update comment make world -> make buildworld.
Wed, Apr 29, 6:18 PM
emaste added a reviewer for D50352: build: Emit a warning for build targets run as root: build.
Wed, Apr 29, 6:15 PM
pouria added inline comments to D56712: tests/ndp: fix ndp_routeinfo_option testcase flakiness.
Wed, Apr 29, 6:15 PM
gordon committed R9:51a06c234837: Add EN-26:08 through EN-26:10 and SA-26:12 through SA-26:17. (authored by gordon).
Add EN-26:08 through EN-26:10 and SA-26:12 through SA-26:17.
Wed, Apr 29, 6:11 PM
emaste requested review of D56714: Makefile.inc1: Don't unnecessarily ignore rm errors.
Wed, Apr 29, 6:09 PM
crest_freebsd_rlwinm.de accepted D56704: fexecve(2): call out a scenario where you want !O_EXEC.
Wed, Apr 29, 5:33 PM
kai committed R11:a1e6425c9221: www/py-nh3: Update to 0.3.5 (authored by kai).
www/py-nh3: Update to 0.3.5
Wed, Apr 29, 5:32 PM
kai committed R11:5707ef38f03c: www/py-drf-spectacular-sidecar: Update to 2026.4.14 (authored by kai).
www/py-drf-spectacular-sidecar: Update to 2026.4.14
Wed, Apr 29, 5:32 PM
kai committed R11:af04926e8f27: textproc/py-zensical: Update to 0.0.37 (authored by kai).
textproc/py-zensical: Update to 0.0.37
Wed, Apr 29, 5:32 PM
kai committed R11:f202088229be: textproc/py-pyahocorasick: Update to 2.3.1 (authored by kai).
textproc/py-pyahocorasick: Update to 2.3.1
Wed, Apr 29, 5:32 PM
kai committed R11:39ceab367c07: textproc/py-ttp-templates: Update to 0.5.5 (authored by kai).
textproc/py-ttp-templates: Update to 0.5.5
Wed, Apr 29, 5:32 PM
kai committed R11:439232d8c5df: devel/py-strawberry-graphql: Update to 0.315.2 (authored by kai).
devel/py-strawberry-graphql: Update to 0.315.2
Wed, Apr 29, 5:32 PM
kai committed R11:de2f5c8105ed: net-mgmt/netbox: Update to 4.5.9 (authored by kai).
net-mgmt/netbox: Update to 4.5.9
Wed, Apr 29, 5:32 PM
kai committed R11:3eb77bbf122f: www/py-dj52-social-auth-app-django: Update to 5.8.0 (authored by kai).
www/py-dj52-social-auth-app-django: Update to 5.8.0
Wed, Apr 29, 5:32 PM
kai committed R11:4a51b0ec0454: www/py-dj52-drf-spectacular-sidecar: Update to 2026.4.14 (authored by kai).
www/py-dj52-drf-spectacular-sidecar: Update to 2026.4.14
Wed, Apr 29, 5:32 PM
kai committed R11:a63e3f57309f: textproc/py-mkdocstrings: Update to 1.0.4 (authored by kai).
textproc/py-mkdocstrings: Update to 1.0.4
Wed, Apr 29, 5:32 PM
kai committed R11:3613be871119: devel/py-rq: Update to 2.8.0 (authored by kai).
devel/py-rq: Update to 2.8.0
Wed, Apr 29, 5:32 PM
kai committed R11:51a95ce7ba35: devel/py-dj52-strawberry-graphql: Update to 0.315.2 (authored by kai).
devel/py-dj52-strawberry-graphql: Update to 0.315.2
Wed, Apr 29, 5:32 PM
nxjoseph committed R11:b024233aa8b7: net-mgmt/rubygem-oxidized-web: Update 0.18.0 => 0.18.1 (authored by nxjoseph).
net-mgmt/rubygem-oxidized-web: Update 0.18.0 => 0.18.1
Wed, Apr 29, 5:20 PM
des committed R11:1cb3221f9c17: www/forgejo-lts: Update to 11.0.13 (authored by des).
www/forgejo-lts: Update to 11.0.13
Wed, Apr 29, 5:00 PM
des committed R11:5e28a912a03a: www/foregjo: Update to 14.0.5 (authored by des).
www/foregjo: Update to 14.0.5
Wed, Apr 29, 5:00 PM
des committed R11:5c4949187b0c: www/forgejo-lts: Update to 11.0.13 (authored by des).
www/forgejo-lts: Update to 11.0.13
Wed, Apr 29, 4:59 PM
des committed R11:ebe4b4ee79ce: www/foregjo: Update to 14.0.5 (authored by des).
www/foregjo: Update to 14.0.5
Wed, Apr 29, 4:59 PM
siva added inline comments to D56712: tests/ndp: fix ndp_routeinfo_option testcase flakiness.
Wed, Apr 29, 4:58 PM
asomers requested review of D56713: sysutils/iocage: fix "make test".
Wed, Apr 29, 4:53 PM
kevans added a comment to D46284: Add the ability have executable jail.conf.

I had hoped to attend the jail user call today to be able to discuss this, but the Discord event has it an hour off and I didn't discover the authoritative source @ callfortesting.org until I was wondering why nobody was showing up. *deep sigh*

I don't think we're comfortable, as a project, to enable this for all users of jail(8) by default without an additional flag. I appreciate that you want to do stuff like this with existing jail scripts but this is a huge POLA violation (even assuming proper communication across a major branch update) with security implications, and I don't think enabling maybe-executable config scripts is a pattern that we really want propagating.

There was some discussion out-of-band after a concerned user reached out about this, and it was pointed out to me that automountd does the same thing, so I've pitched a review to try and neuter that a bit because that's terrifying: D56680.

The jail.conf(5) format already defines hooks that by design execute as root on the host (exec.prepare/created/prestart/poststart/prestop/poststop/release). Having any untrusted jail.conf(5) on the system is a game over scenario similar to having a malicous /etc/crontab or rc.d script installed. Moving the attack surface a few milliseconds forward from the exec.prepare (or exec.prestop when removing a jail) stage to the config parsing stage doesn't increase the attack surface in a meaningful way.

Wed, Apr 29, 4:49 PM · Jails
pouria accepted D56712: tests/ndp: fix ndp_routeinfo_option testcase flakiness.

LGTM, please see my comment.

Wed, Apr 29, 4:30 PM
siva requested review of D56712: tests/ndp: fix ndp_routeinfo_option testcase flakiness.
Wed, Apr 29, 4:23 PM
glebius closed D56705: inpcb: allow to specify different sizes for port and load balance hashes.
Wed, Apr 29, 4:20 PM
glebius committed rG6883b120c537: inpcb: allow to specify different sizes for port and load balance hashes (authored by glebius).
inpcb: allow to specify different sizes for port and load balance hashes
Wed, Apr 29, 4:20 PM
glebius closed D56482: inpcb: improve some internal function names.
Wed, Apr 29, 4:20 PM
glebius committed rG9b8eb70ca974: inpcb: improve some internal function names (authored by glebius).
inpcb: improve some internal function names
Wed, Apr 29, 4:20 PM
dinoex committed R11:d80fc2ccfd50: sysutils/vobcopy: Update to 1.2.2 (authored by dinoex).
sysutils/vobcopy: Update to 1.2.2
Wed, Apr 29, 4:09 PM
cperciva committed R9:3737bb91b6bc: 15.0: Update "latest" AMIs (authored by cperciva).
15.0: Update "latest" AMIs
Wed, Apr 29, 3:55 PM
zlei added a comment to D56691: virtio_net: Set rx/tx busdma alignment to 1 byte.

How can alignment lead locking issues ? Not an expert on this, just out of curious.

The standard behaviour for busdma_bounce implementations is that bus_dmamap with alignment > 1 is marked as COULD_BOUNCE. Among other things this can cause a bounce zone to be allocated at bus_dmamap creation time. This causes further allocations without M_NOWAIT which triggers the locking issue.

Wed, Apr 29, 3:48 PM
yuri committed R11:878a50ef6b4b: science/py-kim-query: update 3.0.0 → 4.0.0 (authored by yuri).
science/py-kim-query: update 3.0.0 → 4.0.0
Wed, Apr 29, 3:29 PM
yuri committed R11:c780965e2002: misc/openclaw: update 2026.4.24 → 2026.4.26 (authored by yuri).
misc/openclaw: update 2026.4.24 → 2026.4.26
Wed, Apr 29, 3:29 PM
yuri committed R11:f8447d47b68a: devel/wizer: Add patch to support FreeBSD/aarch64 (authored by yuri).
devel/wizer: Add patch to support FreeBSD/aarch64
Wed, Apr 29, 3:29 PM
yuri committed R11:97f7a2a061c2: science/py-hoomd-blue: update 6.0.0 → 7.0.1 (authored by yuri).
science/py-hoomd-blue: update 6.0.0 → 7.0.1
Wed, Apr 29, 3:29 PM
yuri committed R11:7ed2b43fb701: devel/cargo-about: update 0.8.4 → 0.9.0 (authored by yuri).
devel/cargo-about: update 0.8.4 → 0.9.0
Wed, Apr 29, 3:29 PM
yuri committed R11:69b3f62d76e2: devel/cargo-udeps: update 0.1.60 → 0.1.61 (authored by yuri).
devel/cargo-udeps: update 0.1.60 → 0.1.61
Wed, Apr 29, 3:29 PM
yuri committed R11:01b58043328d: misc/lean-ctx: update 3.4.3 → 3.4.5 (authored by yuri).
misc/lean-ctx: update 3.4.3 → 3.4.5
Wed, Apr 29, 3:29 PM
yuri committed R11:feb5b160e09e: math/cppad: update 20250000.1 → 20260000.0 (authored by yuri).
math/cppad: update 20250000.1 → 20260000.0
Wed, Apr 29, 3:29 PM
yuri committed R11:4f8ad5272385: misc/timr-tui: update 1.8.0 → 1.8.1 (authored by yuri).
misc/timr-tui: update 1.8.0 → 1.8.1
Wed, Apr 29, 3:29 PM
yuri committed R11:a79b0b845ef6: databases/weaviate: update 1.37.1 → 1.37.2 (authored by yuri).
databases/weaviate: update 1.37.1 → 1.37.2
Wed, Apr 29, 3:29 PM
yuri committed R11:29b30bb68d63: security/rpm-sequoia: update 1.10.1 → 1.10.2 (authored by yuri).
security/rpm-sequoia: update 1.10.1 → 1.10.2
Wed, Apr 29, 3:29 PM
yuri committed R11:153e8a9bfb33: www/ghostunnel: update 1.9.2 → 1.10.0 (authored by yuri).
www/ghostunnel: update 1.9.2 → 1.10.0
Wed, Apr 29, 3:29 PM
yuri committed R11:136d41650e51: devel/gitoxide: update 0.52.0 → 0.53.0 (authored by yuri).
devel/gitoxide: update 0.52.0 → 0.53.0
Wed, Apr 29, 3:29 PM
yuri committed R11:69a2e921d321: lang/prql: update 0.13.11 → 0.13.12 (authored by yuri).
lang/prql: update 0.13.11 → 0.13.12
Wed, Apr 29, 3:29 PM
yuri committed R11:436f2bf655dd: sysutils/mise: update 2026.4.24 → 2026.4.25 (authored by yuri).
sysutils/mise: update 2026.4.24 → 2026.4.25
Wed, Apr 29, 3:29 PM
yuri committed R11:2a6b46a70a6d: shells/atuin: update 18.15.2 → 18.16.0 (authored by yuri).
shells/atuin: update 18.15.2 → 18.16.0
Wed, Apr 29, 3:29 PM
yuri committed R11:ead4a012b9f9: www/py-qh3: update 1.7.3 → 1.7.4 (authored by yuri).
www/py-qh3: update 1.7.3 → 1.7.4
Wed, Apr 29, 3:29 PM
yuri committed R11:c46ee57160fb: devel/{,py-}ruff: update 0.15.11 → 0.15.12 (authored by yuri).
devel/{,py-}ruff: update 0.15.11 → 0.15.12
Wed, Apr 29, 3:29 PM
yuri committed R11:7a68de0bd6cb: misc/bun-decompile: New port: Extract and de-minify source code from Bun… (authored by yuri).
misc/bun-decompile: New port: Extract and de-minify source code from Bun…
Wed, Apr 29, 3:29 PM
yuri committed R11:6959a1edffc5: misc/clawhub: update 0.9.0 → 0.12.0 (authored by yuri).
misc/clawhub: update 0.9.0 → 0.12.0
Wed, Apr 29, 3:29 PM
yuri committed R11:f71097f3b47d: textproc/ytt: update 0.53.2 → 0.54.0 (authored by yuri).
textproc/ytt: update 0.53.2 → 0.54.0
Wed, Apr 29, 3:29 PM
yuri committed R11:9cfd9c20ac00: devel/buf: update 1.68.3 → 1.68.4 (authored by yuri).
devel/buf: update 1.68.3 → 1.68.4
Wed, Apr 29, 3:29 PM
yuri committed R11:751fba5c2420: security/gosec: update 2.25.0 → 2.26.1 (authored by yuri).
security/gosec: update 2.25.0 → 2.26.1
Wed, Apr 29, 3:29 PM
yuri committed R11:63b7e4becff5: sysutils/ipget: update 0.13.0 → 0.13.1 (authored by yuri).
sysutils/ipget: update 0.13.0 → 0.13.1
Wed, Apr 29, 3:29 PM
yuri committed R11:3dc9dc14dede: dns/subfinder: update 2.13.0 → 2.14.0 (authored by yuri).
dns/subfinder: update 2.13.0 → 2.14.0
Wed, Apr 29, 3:29 PM
yuri committed R11:3f9f1e3addd9: databases/rqlite: update 9.4.5 → 10.0.0 (authored by yuri).
databases/rqlite: update 9.4.5 → 10.0.0
Wed, Apr 29, 3:29 PM
yuri committed R11:c2dc4b4d9965: misc/py-datasets: update 4.8.2 → 4.8.5 (authored by yuri).
misc/py-datasets: update 4.8.2 → 4.8.5
Wed, Apr 29, 3:29 PM
yuri committed R11:b875a135667c: misc/fabric: update 1.4.449 → 1.4.451 (authored by yuri).
misc/fabric: update 1.4.449 → 1.4.451
Wed, Apr 29, 3:29 PM
yuri committed R11:cef98ee04673: devel/catch2: update 3.13.0 → 3.14.0 (authored by yuri).
devel/catch2: update 3.13.0 → 3.14.0
Wed, Apr 29, 3:29 PM
des committed rG67a63eae7b2d: bc: Fix tests (authored by des).
bc: Fix tests
Wed, Apr 29, 3:16 PM
mce committed R11:1ba6e1834651: lang/csharp-mode.el: Mark port as deprecated (authored by mce).
lang/csharp-mode.el: Mark port as deprecated
Wed, Apr 29, 3:16 PM
des closed D56511: bc: Fix tests.
Wed, Apr 29, 3:16 PM
mce committed R11:a31402387886: x11/libXxf86dga: Update to 1.1.7 (authored by mce).
x11/libXxf86dga: Update to 1.1.7
Wed, Apr 29, 3:13 PM
mce committed R11:a0d409297fbe: x11-fonts/font-micro-misc: Update to 1.0.4 (authored by mce).
x11-fonts/font-micro-misc: Update to 1.0.4
Wed, Apr 29, 3:11 PM
emaste accepted D56619: amdsmu: Add Krackan Point support.
Wed, Apr 29, 3:07 PM
markj requested review of D56711: execve: Add guard pages around execve KVA buffers.
Wed, Apr 29, 3:07 PM
crest_freebsd_rlwinm.de added a comment to D46284: Add the ability have executable jail.conf.
In D46284#1299031, @imp wrote:

@kevans: Can you think of a realistic situation where someone will have their jail configuration unintentionally executable? I don't think chmod -R 777 /etc is a supported configuration. Are we forced to support FAT32 as root file system on any strange platform or something like that?

That's the wrong question. For security related things, you have to default to 'fail safe' and this feature fails to meet that criteria.

Wed, Apr 29, 3:07 PM · Jails
fernape committed R11:32bc1f34625a: security/vuxml: Add Mozilla vulnerabilities (authored by fernape).
security/vuxml: Add Mozilla vulnerabilities
Wed, Apr 29, 3:02 PM
imp added a comment to D46284: Add the ability have executable jail.conf.

@kevans: Can you think of a realistic situation where someone will have their jail configuration unintentionally executable? I don't think chmod -R 777 /etc is a supported configuration. Are we forced to support FAT32 as root file system on any strange platform or something like that?

Wed, Apr 29, 3:00 PM · Jails
mce committed R11:0bdbabb96da5: x11/editres: Update to 1.1.1 (authored by mce).
x11/editres: Update to 1.1.1
Wed, Apr 29, 2:59 PM
adrian committed rG4c99836ac72a: kerneldoc: also ingest .md (markdown files) (authored by adrian).
kerneldoc: also ingest .md (markdown files)
Wed, Apr 29, 2:59 PM
adrian closed D56652: kerneldoc: also ingest .md (markdown files).
Wed, Apr 29, 2:59 PM · docs
mce committed R11:efe08f172f36: x11-toolkits/libXmu: Update to 1.3.1 (authored by mce).
x11-toolkits/libXmu: Update to 1.3.1
Wed, Apr 29, 2:55 PM
aokblast added inline comments to D56311: x86/specialreg: Add MSR_AMD_CPUID01 MSR..
Wed, Apr 29, 2:54 PM
aokblast updated the diff for D56311: x86/specialreg: Add MSR_AMD_CPUID01 MSR..

Update comment

Wed, Apr 29, 2:54 PM
markj committed rGbbfdabc12895: Add UPDATING entries and bump version (authored by markj).
Add UPDATING entries and bump version
Wed, Apr 29, 2:54 PM