Link [ pkgsrc | NetBSD | pkgsrc git mirror | PR fulltext-search | netbsd commit viewer ]


   
        usage: [branch:branch] [user:user] [path[@revision]] keyword [... [-excludekeyword [...]]] (e.g. branch:MAIN pkgtools/pkg)




switch to index mode

recent branches: MAIN (42m)  pkgsrc-2024Q1 (15d)  pkgsrc-2023Q4 (42d)  pkgsrc-2023Q2 (75d)  pkgsrc-2023Q3 (154d) 

2024-05-13 12:31:29 UTC Now

2020-08-01 02:26:12 UTC MAIN commitmail json YAML

2020-08-01 02:25:23 UTC MAIN commitmail json YAML

2020-08-01 02:24:10 UTC MAIN commitmail json YAML

doc: Added graphics/R-ggthemes version 4.2.0

(brook)

2020-08-01 02:24:00 UTC MAIN commitmail json YAML

graphics/R-ggthemes: import R-ggthemes-4.2.0

Some extra themes, geoms, and scales for 'ggplot2'. Provides 'ggplot2'
themes and scales that replicate the look of plots by Edward Tufte,
Stephen Few, 'Fivethirtyeight', 'The Economist', 'Stata', 'Excel', and
'The Wall Street Journal', among others. Provides 'geoms' for Tufte's
box plot and range frame.

(brook)

2020-08-01 02:04:42 UTC MAIN commitmail json YAML

doc: Added graphics/R-polyclip version 1.10.0

(brook)

2020-08-01 02:03:53 UTC MAIN commitmail json YAML

graphics/R-polyclip: import R-polyclip-1.10.0

R port of Angus Johnson's open source library Clipper. Performs
polygon clipping operations (intersection, union, set minus, set
difference) for polygonal regions of arbitrary complexity, including
holes. Computes offset polygons (spatial buffer zones, morphological
dilations, Minkowski dilations) for polygonal regions and polygonal
lines. Computes Minkowski Sum of general polygons. There is a function
for removing self-intersections from polygon data.

(brook)

2020-07-31 23:38:03 UTC MAIN commitmail json YAML

doc: Added graphics/R-jpeg version 0.1.8.1

(brook)

2020-07-31 23:37:09 UTC MAIN commitmail json YAML

graphics/R-jpeg: import R-jpeg-0.1.8.1

This package provides an easy and simple way to read, write and
display bitmap images stored in the JPEG format. It can read and write
both files and in-memory raw vectors.

(brook)

2020-07-31 22:39:50 UTC MAIN commitmail json YAML

doc: Updated pkgtools/pkglint to 20.2.5

(rillig)

2020-07-31 22:39:36 UTC MAIN commitmail json YAML

pkgtools/pkglint: update to 20.2.5

Changes since 20.2.4:

The warning about "unknown options" has been reworded to "undocumented
options", since that is more precise and less confusing.

In pathnames and pathname patterns, the exclamation mark is allowed.
This is necessary for Go packages like devel/gopls.

(rillig)

2020-07-31 21:50:28 UTC MAIN commitmail json YAML

doc: Updated math/R-tidyr to 1.0.2

(brook)

2020-07-31 21:49:29 UTC MAIN commitmail json YAML

R-tidyr: update from 0.8.3 to 1.0.2.

Many changes are identified for the update to 1.0.0; see News.md for
details.

Apparently, these include some breaking changes.  See
`vignette("in-packages")` for a detailed transition guide.

(brook)

2020-07-31 20:45:09 UTC MAIN commitmail json YAML

doc: Updated math/R-dplyr to 1.0.0

(brook)

2020-07-31 20:44:49 UTC MAIN commitmail json YAML

2020-07-31 20:42:28 UTC MAIN commitmail json YAML

doc: Added math/R-generics version 0.0.2

(brook)

2020-07-31 20:41:40 UTC MAIN commitmail json YAML

R-generics: initial import of v0.0.2.

In order to reduce potential package dependencies and conflicts,
generics provides a number of commonly used S3 generics.

(brook)

2020-07-31 20:36:25 UTC MAIN commitmail json YAML

Fix incorrect entry for graphics/R-farver.

(brook)

2020-07-31 20:34:21 UTC MAIN commitmail json YAML

doc: Updated graphics/R-scales to 1.1.0

(brook)

2020-07-31 20:33:40 UTC MAIN commitmail json YAML

2020-07-31 20:32:17 UTC MAIN commitmail json YAML

doc: Updated graphics/R-farver to 2.0.3

(brook)

2020-07-31 20:31:27 UTC MAIN commitmail json YAML

2020-07-31 20:26:30 UTC MAIN commitmail json YAML

doc: Updated devel/R-tidyselect to 1.1.0

(brook)

2020-07-31 20:26:13 UTC MAIN commitmail json YAML

2020-07-31 20:23:47 UTC MAIN commitmail json YAML

doc: Updated math/R-classInt to 0.4.2

(brook)

2020-07-31 20:23:26 UTC MAIN commitmail json YAML

2020-07-31 20:18:12 UTC MAIN commitmail json YAML

doc: Updated math/R-vctrs to 0.3.2

(brook)

2020-07-31 20:17:39 UTC MAIN commitmail json YAML

2020-07-31 20:12:15 UTC MAIN commitmail json YAML

doc: Added devel/R-lifecycle version 0.2.0

(brook)

2020-07-31 20:11:23 UTC MAIN commitmail json YAML

R-lifecycle: Add new package for version 0.2.0.

Manage the life cycle of your exported functions with shared
conventions, documentation badges, and non-invasive deprecation
warnings. The 'lifecycle' package defines four development stages
(experimental, maturing, stable, and questioning) and three
deprecation stages (soft-deprecated, deprecated, and defunct). It
makes it easy to insert badges corresponding to these stages in your
documentation. Usage of deprecated functions are signalled with
increasing levels of non-invasive verbosity.

(brook)

2020-07-31 20:02:18 UTC MAIN commitmail json YAML

doc: Updated x11/qt5ct to 1.1

(pin)

2020-07-31 20:01:41 UTC MAIN commitmail json YAML

x11/qt5ct: update to 1.1

Version 1.1
* fixed issue with custom icon themes
* updated Danish translation (scootergrisen)

(pin)

2020-07-31 19:52:11 UTC MAIN commitmail json YAML

doc: Updated www/py-autobahn to 20.1.2nb1

(wiz)

2020-07-31 19:52:00 UTC MAIN commitmail json YAML

py-autobahn: fix self-conflict with other python versions

Use the ALTERNATIVES framework.

From Aleksej Lebedev on pkgsrc-users.

Bump PKGREVISION.

(wiz)

2020-07-31 19:07:47 UTC MAIN commitmail json YAML

doc: Updated net/djbdnscurve6 to 36c

(schmonz)

2020-07-31 19:07:37 UTC MAIN commitmail json YAML

Update to 36c. From the changelog:

- Streamlined with fehQlibs-15.

(schmonz)

2020-07-31 19:06:39 UTC MAIN commitmail json YAML

doc: Updated net/ucspi-ssl to 0.999.11.5

(schmonz)

2020-07-31 19:06:29 UTC MAIN commitmail json YAML

Update to 0.11.5 (as 0.999.11.5). From the changelog:

- Added pollmax limit to sslserver and sslhandle.
- sslclient streamlined with tcpclient. fehQlibs-15 are required.

(schmonz)

2020-07-31 19:06:01 UTC MAIN commitmail json YAML

doc: Updated net/ucspi-tcp6 to 1.11.5

(schmonz)

2020-07-31 19:05:51 UTC MAIN commitmail json YAML

Update to 1.11.5. From the changelog:

- Recovered tcpclient IPv4 connectivity in case of a given IPv4
  address to connect to employing fehQlibs-15 and the enhanced
  dns_ip_qualify routine.

(schmonz)

2020-07-31 19:05:09 UTC MAIN commitmail json YAML

doc: Updated net/fehqlibs to 0.9.15

(schmonz)

2020-07-31 19:04:58 UTC MAIN commitmail json YAML

Update to fehQlibs-15 (as fehqlibs-0.9.15). From the changelog:

- Added the Guninski patch for alloc from Qualys (CVE-2005-1513).
- dns_ipq (IP qualify) now with unified IPv4/IPv6 handling and evaluation
  of DNS well-know names 'localhost' and 'ipv[4|6]-loopback' (RFC 6761).
- Fixed DNS lookup for IPv6 addresses. Adjusted DNS man pages.

Bump default BUILDLINK_API_DEPENDS, as all fehware requires this version.

(schmonz)

2020-07-31 18:46:07 UTC MAIN commitmail json YAML

doc: Updated www/R-curl to 4.3

(brook)

2020-07-31 18:45:52 UTC MAIN commitmail json YAML

2020-07-31 18:44:37 UTC MAIN commitmail json YAML

doc: Updated textproc/R-stringi to 1.4.6

(brook)

2020-07-31 18:44:15 UTC MAIN commitmail json YAML

2020-07-31 18:42:39 UTC MAIN commitmail json YAML

doc: Updated security/R-digest to 0.6.25

(brook)

2020-07-31 18:42:19 UTC MAIN commitmail json YAML

2020-07-31 18:37:47 UTC MAIN commitmail json YAML

doc: Updated math/R-plyr to 1.8.6

(brook)

2020-07-31 18:37:34 UTC MAIN commitmail json YAML

2020-07-31 18:34:09 UTC MAIN commitmail json YAML

doc: Updated devel/R-rlang to 0.4.7

(brook)

2020-07-31 18:32:11 UTC MAIN commitmail json YAML

2020-07-31 18:23:00 UTC MAIN commitmail json YAML

doc: Updated devel/R-purrr to 0.3.3

(brook)

2020-07-31 18:22:35 UTC MAIN commitmail json YAML

2020-07-31 18:21:04 UTC MAIN commitmail json YAML

doc: Updated devel/R-glue to 1.4.1

(brook)

2020-07-31 18:20:26 UTC MAIN commitmail json YAML

2020-07-31 18:18:26 UTC MAIN commitmail json YAML

doc: Updated devel/R-R6 to 2.4.1

(brook)

2020-07-31 18:15:24 UTC MAIN commitmail json YAML

2020-07-31 17:04:12 UTC MAIN commitmail json YAML

Conditionally define WRKSRC.

Conditionally define WRKSRC so that R packages with an unusual organization
can override the default.

(brook)

2020-07-31 17:01:44 UTC MAIN commitmail json YAML

Fix issues with a nonstandard compiler and umask.

If the compiler is in a nonstandard location, libtool may choose the
incorrect mode.  This is described in libtool documentation:
    https://www.gnu.org/software/libtool/manual/html_node/Tags.html
The correct fix is to use --tag to explicitly set the mode.  See
https://sourceforge.net/p/openjade/patches/48/

Write permissions are removed when the package is built.  However, the
command chmod -w does not affect bits set in umask.  The correct usage
is to explicitly identify the users to which the command applies.  See
https://sourceforge.net/p/openjade/patches/49/

(brook)

2020-07-31 16:51:54 UTC MAIN commitmail json YAML

doc: Updated x11/modular-xorg-xwayland to 1.20.8nb2

(maya)

2020-07-31 16:50:57 UTC MAIN commitmail json YAML

modular-xorg-*: provide patch (making this package equivalent to
xorg-server 1.20.9, couldn't find a tarball).

X.Org security advisory: July 31, 2020

X Server Pixel Data Uninitialized Memory Information Disclosure
===============================================================

CVE-2020-14347

Allocation for pixmap data in AllocatePixmap() does not initialize the
memory in xserver, it leads to leak uninitialize heap memory to
clients. When the X server runs with elevated privileges.

This flaw can lead to ASLR bypass, which when combined with other
flaws (known/unknown) could lead to lead to privilege elevation in the
client.

Patch
=====

A patch for this issue has been commited to the xorg server git
repository.  xorg-server 1.20.9 will be released shortly and will
include this patch.

https://gitlab.freedesktop.org/xorg/xserver.git

diff --git a/dix/pixmap.c b/dix/pixmap.c
index 1186d7dbb..5a0146bbb 100644
--- a/dix/pixmap.c
+++ b/dix/pixmap.c
@@ -116,7 +116,7 @@ AllocatePixmap(ScreenPtr pScreen, int pixDataSize)
    if (pScreen->totalPixmapSize > ((size_t) - 1) - pixDataSize)
        return NullPixmap;

-    pPixmap = malloc(pScreen->totalPixmapSize + pixDataSize);
+    pPixmap = calloc(1, pScreen->totalPixmapSize + pixDataSize);
    if (!pPixmap)
        return NullPixmap;

Thanks
======

This vulnerability was discovered by Jan-Niklas Sohn working with
Trend Micro Zero Day Initiative.

(maya)

2020-07-31 16:37:14 UTC MAIN commitmail json YAML

doc: Updated x11/libX11 to 1.6.10

(maya)

2020-07-31 16:36:55 UTC MAIN commitmail json YAML

libX11: update to 1.6.10

Heap corruption in the X input method client in libX11
======================================================

CVE-2020-14344

The X Input Method (XIM) client implementation in libX11 has some
integer overflows and signed/unsigned comparison issues that can lead
to heap corruption when handling malformed messages from an input
method.

Patches
=======

Patches for these issues have been commited to the libX11 git repository.
libX11 1.6.10 will be released shortly and will include those patches.

https://gitlab.freedesktop.org/xorg/lib/libx11

commit 1703b9f3435079d3c6021e1ee2ec34fd4978103d (HEAD -> master)

    Change the data_len parameter of _XimAttributeToValue() to CARD16

    It's coming from a length in the protocol (unsigned) and passed
    to functions that expect unsigned int parameters (_XCopyToArg()
    and memcpy()).

commit 1a566c9e00e5f35c1f9e7f3d741a02e5170852b2

    Zero out buffers in functions

    It looks like uninitialized stack or heap memory can leak
    out via padding bytes.

commit 2fcfcc49f3b1be854bb9085993a01d17c62acf60

    Fix more unchecked lengths

commit 388b303c62aa35a245f1704211a023440ad2c488

    fix integer overflows in _XimAttributeToValue()

commit 0e6561efcfaa0ae7b5c74eac7e064b76d687544e

    Fix signed length values in _XimGetAttributeID()

    The lengths are unsigned according to the specification. Passing
    negative values can lead to data corruption.

Thanks
======

X.Org thanks Todd Carson for reporting these issues to our security
team and assisting them in understanding them and providing fixes.

(maya)

2020-07-31 16:03:13 UTC MAIN commitmail json YAML

2020-07-31 15:39:31 UTC MAIN commitmail json YAML

(multimedia/handbrake) Add missing BUILD_DEPENDS (meson)

(mef)

2020-07-31 15:19:48 UTC MAIN commitmail json YAML

doc: Updated devel/R-callr to 3.4.3

(mef)

2020-07-31 15:19:37 UTC MAIN commitmail json YAML

(devel/R-callr) Updated  3.4.1 to 3.4.3, make test needs pingr but N/A yet, thus fails

# callr 3.4.3

* `default_repos()` now returns a list if `getOption("repos")` is a list,
  and a vector otherwise, on R 4.x.y as well.

# callr 3.4.2

* Improved error messages. Error messages are now fully printed after
  an error. In non-interactive sessions, the stack trace is printed as well.

(mef)

2020-07-31 15:11:13 UTC MAIN commitmail json YAML

xf86-video-intel

(maya)

2020-07-31 14:41:37 UTC MAIN commitmail json YAML

2020-07-31 13:51:13 UTC MAIN commitmail json YAML

doc: Updated fonts/spleen to 1.8.2

(fcambus)

2020-07-31 13:49:28 UTC MAIN commitmail json YAML

spleen: update to 1.8.2.

Spleen 1.8.2 (2020-07-31)

- Fix size of the lower case 'ae' character in the 16x32 and 32x64 versions
- Fix size of the lower case 'oe' character in the 16x32 and 32x64 versions
- Add 'AE' and 'ae' characters with acute accent
- Add 'AE' and 'ae' characters with macron
- Add 'A', 'a', 'E', 'e', 'I', 'i', 'O', 'o', 'R', 'r', 'U', 'u' with
  inverted breve
- Add 'A', 'a', 'O', 'o' characters with dot above
- Add 'O' and 'o' characters with ogonek
- Add 'O' and 'o' characters with ogonek and macron
- Shorten parentheses, square brackets, braces, slash, backslash in the
  8x16 version, fixing alignment issues
- Shift vertical line and double vertical line characters one pixel
  up (8x16 version)

(fcambus)

2020-07-31 12:35:27 UTC MAIN commitmail json YAML

cmake: fix build on NetBSD releases such as 9.0.

NetBSD stdio.h has a bug with visibility of functions, so we get errors:
error: '::vscanf' has not been declared

Define the other macro that can reach these definitions.

Issue already fixed by joerg in NetBSD stdio.h r1.35.

(maya)

2020-07-31 11:39:33 UTC MAIN commitmail json YAML

doc: Updated textproc/yelp-tools to 3.32.2

(prlw1)

2020-07-31 11:39:11 UTC MAIN commitmail json YAML

Update yelp-tools to 3.32.2

3.32.2
======
* yelp-build: Fix spurious warning about missing stack files

3.32.1
======
* yelp-check: Fix validation for DocBook 5 with https redirects

(prlw1)

2020-07-31 11:06:16 UTC MAIN commitmail json YAML

doc: Updated editors/gedit to 3.36.2

(prlw1)

2020-07-31 11:05:49 UTC MAIN commitmail json YAML

Update gedit to 3.36.2

python based plugins need libpeas' py-gobject dep to be reinstated

Many changes including:
* Fix compilation on macOS.
* GSettings schema: enable more features by default (auto-indent,
  display-line-numbers, highlight-current-line and bracket-matching) and set
  default style scheme to 'tango'.
* Bump gedit API version to 3.36.
* New dependency: Tepl, which itself depends on Amtk and uchardet.
- Fix segfault in open document selector (Sebastien)
- Fix several crash bugs (Andrea)
- Switch to meson (Martin)
- Drop autotools support (Jeremy)
- Allow closing tabs with middle-click (Corey)
- Migrate to gettext and stop using intltool (Martin)
- Switch from gtksourceview3 to gtksourceview4 (Christian)
- Port GeditFileChooserDialogGtk to GtkFileChooserNative

(prlw1)

2020-07-31 10:48:24 UTC MAIN commitmail json YAML

doc: Updated devel/py-at-spi2 to 2.36.0

(prlw1)

2020-07-31 10:48:00 UTC MAIN commitmail json YAML

Update py-at-spi2 to 2.36.0

What's new in pyatspi 2.35.1:

* Fix dead link in README.
* Adjust accepted test results for python 3.8 compatibility (!21).
* Add ROLE_MARK and ROLE_SUGGESTION (!22).

What's new in pyatspi 2.34.0:

* Updated doap, and include it in the tarball.

What's new in pyatspi 2.33.92:

* Several test fixes (thanks to Samuel THibault).
* Add license header on some test files.

What's new in pyatspi 2.33.90:

* Fix typo in get_imageLocale.
* event.str(): show event sender.
* Remove wrapper for atspi_text_notify_reading_position, as the function has
  been removed from at-spi2-core.
* events: replace object:text:reading-position with
  screen-reader:region-changed.
* Add wrapper for atspi_set_reference_window.

(prlw1)

2020-07-31 10:43:08 UTC MAIN commitmail json YAML

doc: Updated devel/at-spi2-atk to 2.34.2

(prlw1)

2020-07-31 10:42:38 UTC MAIN commitmail json YAML

Update at-spi2-atk to 2.34.1

gnu99 only needed for test which we do not compile

What's new in at-spi2-atk 2.34.2:
* Meson: don't hard-code shared_library (!19).
* Mitigate missing window events at startup.
* Set C standard to gnu99 (#10).
* Tests: include sys/time.h (#14).

(prlw1)

2020-07-31 10:40:48 UTC MAIN commitmail json YAML

doc: Updated www/firefox-l10n to 79.0

(maya)

2020-07-31 10:36:43 UTC MAIN commitmail json YAML

firefox-l10n: catch up with firefox update to 79.0

(maya)

2020-07-31 10:34:41 UTC MAIN commitmail json YAML

doc: Updated devel/at-spi2-core to 2.36.0

(prlw1)

2020-07-31 10:34:14 UTC MAIN commitmail json YAML

Update at-spi2-core to 2.36.0

What's new in at-spi2-core 2.35.92:

* bus-launcher: make session management more robust.

(prlw1)

2020-07-31 09:42:10 UTC MAIN commitmail json YAML

2020-07-31 09:26:39 UTC MAIN commitmail json YAML

doc: Updated net/grpc to 1.30.2

(wiz)

2020-07-31 09:26:29 UTC MAIN commitmail json YAML

grpc: update to 1.30.2.

This is the 1.30.2 release (gradius) of gRPC Core.

Please see the notes for the previous releases here:
https://github.com/grpc/grpc/releases. Please consult https://grpc.io/
for all information regarding this product.

This release is a patch specifically for the Ruby plugin to address
#23490

Ruby

    Fix ruby protoc plugin when message is in another package
    (#23501)

(wiz)

2020-07-31 09:21:32 UTC MAIN commitmail json YAML

doc: Updated devel/cmake-fedora to 2.6.0nb1

(wiz)

2020-07-31 09:21:23 UTC MAIN commitmail json YAML

cmake-fedora: update to 2.6.0nb1.

Adapt for cmake-3.18.x.

(wiz)

2020-07-31 09:20:49 UTC MAIN commitmail json YAML

doc: Updated graphics/exiv2 to 0.27.3

(wiz)

2020-07-31 09:20:39 UTC MAIN commitmail json YAML

exiv2: update to 0.27.3.

Headline Features of Exiv2 v0.27.3
----------------------------------

Thank you to Phil, Sridhar, Luis, Kevin, and Andreas S for working with me on the release.
As always, thanks to my wife Alison and our cat Lizzie for their support.

I am writing a book called Image Metadata and Exiv2 Architecture.
Current Draft: https://clanmills.com/exiv2/book/
              https://clanmills.com/exiv2/book/IMaEA.pdf

1) Bug and security fixes:
  - Security fixes
  - Improved Unicode/charset handling in comments
  - Improved lens recognition
  - Updated Catalan and Dutch localisation

2) Changes to downloadable build bundles:
  - Revised documentation and man page
  - Replace license.txt with COPYING
  - Removed contrib/ directory from bundle
  - share/locale has localisation files
  - msvc bundle built with vs2019

3) Build and Test:
  - Support for C++11 and C++14
  - Improved test harness and documentation
  - Test support for Visual Studio
  - Cross compiling support
  - UNIX support (Solaris, FreeBSD and NetBSD)
  - Http test support

4) Additions:
  - contrib/vs2019 Visual Studio support
  - contrib/Qt Qt sample project
  - .github/CONTRIBUTORS file
  - Defined security process (TBD)

(wiz)

2020-07-31 09:18:03 UTC MAIN commitmail json YAML

doc: Updated sysutils/desktop-file-utils to 0.26

(wiz)

2020-07-31 09:17:53 UTC MAIN commitmail json YAML

desktop-file-utils: update to 0.26.

============
Version 0.26
============

This version fixes an error that snuck into the Meson build files in version
0.25. The Autotools build is unaffected. Since the previous release has only
been out for a day, Autotools support is maintained in this release.

update-desktop-database
  - Fix erroneous installation as "desktop-file-update" when using the Meson
    build system (fdo#58) (Antoine Jacoutot).

============
Version 0.25
============

This version adds support for the Meson build system and deprecates
Autotools. Support for the latter will be removed in the next release.

common
  - Add Meson build system (fdo#14) (Félix Piédallu).

desktop-file-validate
  - Allow desktop file spec version 1.4.
  - Make it possible to deprecate keys starting with "X-" (Bastien Nocera).
  - Add the "Implements" field from spec version 1.2 (fdo#55) (Dylan Baker).
  - Add the "PrefersNonDefaultGPU" key and deprecate "X-KDE-RunOnDiscreteGpu"
    (Bastien Nocera).
  - Set locale for correct output message encoding (Philip Withnall).
  - Add coloured output support (Philip Withnall).
  - Fix parsing of escaped double quote in quoted strings (fdo#56). Found
    by Frédéric Brière.
  - Add GNOME Flashback, GNOME Classic desktops (Alberts Muktupāvels).

(wiz)

2020-07-31 09:13:07 UTC MAIN commitmail json YAML

doc: Updated devel/gopls to 0.4.3

(wiz)

2020-07-31 09:12:58 UTC MAIN commitmail json YAML

gopls: update to 0.4.3.

0.4.3

Disable the fillstruct analysis by default.
We recently uncovered some performance issues with the analysis, leading us to disable it by default.
Once those issues are resolved, we will enable it by default again.
You can still enable it by adding the following to your VS Code settings:

"gopls": {
"analyses": {
"fillstruct": true,
}
}

gopls/v0.4.2

    Significant memory improvements (@heschik). Dependency test variants and vendored packages are no longer considered "workspace packages".
    Smart autocompletion for "append" (@muirdm).
    A "fill struct" code action to suggest populating a struct literal with default values (@luciolas, @joshbaum).
    Better cgo support with Go 1.15 (@heschik). Learn more: golang/go#35721 (comment).
    Code lens to run Go tests directly in the editor (@martskins). Currently opt-in:

"gopls": {
    "codelens": {
        "test": true,
    }
}

    Improved folding in composite literals (@joshbaum).
    Pop-up suggestion to run go mod vendor when inconsistent vendoring detected (@stamblerre).
    Respect GOPRIVATE for all document links and links on hover (@findleyr).
    A full list of issues resolved in this release can be found in the gopls/v0.4.2 milestone.

gopls/dev.go2go: You can use the new go2go prototype with gopls. See golang/go#39619.

(wiz)

2020-07-31 09:02:44 UTC MAIN commitmail json YAML

doc: Updated devel/cmake to 3.18.1

(wiz)

2020-07-31 09:02:31 UTC MAIN commitmail json YAML

cmake: update to 3.18.1.

Some of the more significant changes in CMake 3.18 are:

* The “CUDA” language can now be compiled using Clang on non-Windows platforms.
  Separable compilation is not yet supported on any platform.
* “cmake(1)” gained support for profiling of CMake scripts through the
  parameters “–profiling-output” and “–profiling-format”.
* The “add_library()” and “add_executable()” commands learned to
  create Alias Targets referencing non-“GLOBAL” Imported Targets.
* The “cmake_language()” command was added for meta-operations on
  scripted or built-in commands, starting with a mode to “CALL” other
  commands, and “EVAL CODE” to inplace evaluate a CMake script.
* The “file(CONFIGURE)” subcommand was created in order to replicate
  the “configure_file()” functionality without resorting to a pre-
  existing file on disk as input. The content is instead passed as a
  string.
* The “find_program()”, “find_library()”, “find_path()” and
  “find_file()” commands gained a new “REQUIRED” option that will stop
  processing with an error message if nothing is found.
* A “CMAKE_CUDA_ARCHITECTURES” variable was added to specify CUDA
  output architectures. Users are encouraged to use this instead of
  specifying options manually, as this approach is compiler-agnostic.
  The variable is initialized automatically when
  “CMAKE_CUDA_COMPILER_ID” is “NVIDIA”. The variable is used to
  initialize the new “CUDA_ARCHITECTURES” target property. See policy
  “CMP0104”.
* The “UNITY_BUILD_MODE” target property was added to tell generators
  which algorithm (“BATCH”, “GROUP”) to use for grouping included source
  files.
* The “CheckLinkerFlag” module has been added to provide a facility to
  check validity of link flags.
* The “$<DEVICE_LINK:…>” and “$<HOST_LINK:…>” “generator
  expressions” were added to manage device and host link steps.
* The “$<LINK_LANGUAGE:…>” and “$<LINK_LANG_AND_ID:…>” “generator expressions” were added.
* “ctest(1)” gained a new “CTEST_RESOURCE_SPEC_FILE” variable, which
  can be used to specify a resource specification file.
* “ccmake(1)” learned to read a “CCMAKE_COLORS” environment variable
  to customize colors.
* On Windows, the “Ninja” and “Ninja Multi-Config” generators, when a
  compiler is not explicitly specified, now select the first compiler
  (of any name) found in directories listed by the “PATH” environment
  variable.

(wiz)

2020-07-31 08:48:33 UTC MAIN commitmail json YAML

doc: Updated devel/catch2 to 2.13.0

(wiz)

2020-07-31 08:48:23 UTC MAIN commitmail json YAML

catch2: update to 2.13.0.

## 2.13.0

### Improvements
* `GENERATE` can now follow a `SECTION` at the same level of nesting (#1938)
  * The `SECTION`(s) before the `GENERATE` will not be run multiple times, the following ones will.
* Added `-D`/`--min-duration` command line flag (#1910)
  * If a test takes longer to finish than the provided value, its name and duration will be printed.
  * This flag is overriden by setting `-d`/`--duration`.

### Fixes
* `TAPReporter` no longer skips successful assertions (#1983)

## 2.12.4

### Improvements
* Added support for MacOS on ARM (#1971)

## 2.12.3

### Fixes
* `GENERATE` nested in a for loop no longer creates multiple generators (#1913)
* Fixed copy paste error breaking `TEMPLATE_TEST_CASE_SIG` for 6 or more arguments (#1954)
* Fixed potential UB when handling non-ASCII characters in CLI args (#1943)

### Improvements
* There can be multiple calls to `GENERATE` on a single line
* Improved `fno-except` support for platforms that do not provide shims for exception-related std functions (#1950)
  * E.g. the Green Hills C++ compiler
* XmlReporter now also reports test-case-level statistics (#1958)
  * This is done via a new element, `OverallResultsCases`

### Miscellaneous
* Added `.clang-format` file to the repo (#1182, #1920)
* Rewrote contributing docs
  * They should explain the different levels of testing and so on much better

(wiz)

2020-07-31 08:46:58 UTC MAIN commitmail json YAML

doc: Updated devel/afl to 2.57b

(wiz)

2020-07-31 08:46:47 UTC MAIN commitmail json YAML

afl: update to 2.57b.

---------------------------
Version 2.57b (2020-06-30):
---------------------------

  - llvm_mode and alf-clang-fast related fixes.

  - Android support.

  - Fixed bugs with stability calculate and testcase calibration.

(wiz)

2020-07-31 08:43:20 UTC MAIN commitmail json YAML

doc/TODO: remove subversion, update done.

(wiz)

2020-07-31 01:27:11 UTC MAIN commitmail json YAML

doc: Updated www/firefox to 79.0

(maya)

2020-07-31 01:26:43 UTC MAIN commitmail json YAML

firefox: update to 79.0

New

    We窶况e rolled out WebRender to more Windows users with Intel and AMD GPUs, bringing improved graphics performance to an even larger audience.

    Firefox users in Germany will now see more Pocket recommendations in their new tab featuring some of the best stories on the web. If you don窶冲 see them, you can turn on Pocket articles in your new tab by following these steps.

Fixed

    Various security fixes.

    Several crashes while using a screen reader were fixed, including a frequently encountered crash when using the JAWS screen reader.

    Firefox Developer Tools received significant fixes allowing screen reader users to benefit from some of the tools that were previously inaccessible.

    SVG title and desc elements (labels and descriptions) are now correctly exposed to assistive technology products such as screen readers.

Enterprise

    A number of bug fixes and new policies have been implemented in the latest version of Firefox. You can see more details in the Firefox for Enterprise 79 Release Notes.

    Updates to the password policy allow admins to require a primary password (formerly called master password. Previously the policy could disable the primary password but not force a primary password. Users required to use a primary password will only be asked to create a primary password the first time they try to save a password.

Developer

    Developer Information

    Newly added asynchronous call stacks let developers trace their async code through events, timeouts, and promises. The async execution chains are shown in the Debugger窶冱 call stack, but also for stack traces in Console errors and Network initiators.

    Erroneous network responses with 4xx/5xx status codes display as errors in the Console, making it easy to understand them in the context of related logs. The request/response details can be expanded or resent for quick debugging.

    JavaScript errors are now visible not only in the Console, but also in the Debugger. The relevant line of code will be highlighted and display error details on hover.

    Opening SCSS and CSS-in-JS sources from the Inspector now works more reliably thanks to improved source map handling across all panels.

    Inspecting accessibility properties from the browser context menu is now available to all users by default.

(maya)

2020-07-31 01:25:32 UTC MAIN commitmail json YAML

doc: Updated devel/nss to 3.55

(maya)

2020-07-31 01:24:30 UTC MAIN commitmail json YAML

nss: update to 3.55

Note that this says the NSPR dependency is bumped. I didn't encounter
any problems with 2.46. It seems to be a change that their automation
was updated to the newer version.

NSS 3.55

    P384 and P521 elliptic curve implementations are replaced with verifiable implementations from Fiat-Crypto and ECCKiila. Special thanks to the Network and Information Security Group (NISEC) at Tampere University.
    PK11_FindCertInSlot is added. With this function, a given slot can be queried with a DER-Encoded certificate, providing performance and usability improvements over other mechanisms. See Bug 1649633 for more details.
    DTLS 1.3 implementation is updated to draft-38. See Bug 1647752 for details.
    NSPR dependency updated to 4.27.

NSS 3.54

    Support for TLS 1.3 external pre-shared keys (Bug 1603042).
    Use ARM Cryptography Extension for SHA256, when available. (Bug 1528113).

(maya)

2020-07-31 01:21:18 UTC MAIN commitmail json YAML

doc: Updated devel/cbindgen to 0.14.3

(maya)

2020-07-31 01:20:43 UTC MAIN commitmail json YAML

cbindgen: update to 0.14.3

    * Introduce cbindgen:ignore comment annotation, to allow ignoring items or modules. (#519)
    * Support for casts in constant expressions. (#526)
    * Make a non-fatal error a warning message. (#535)
    * Add a --metadata option to the CLI, to allow passing pre-computed cargo metadata. (#538)

(maya)

2020-07-30 18:50:01 UTC pkgsrc-2020Q2 commitmail json YAML

Pullup tickets up to #6288

(bsiegert)

2020-07-30 18:48:45 UTC pkgsrc-2020Q2 commitmail json YAML

Pullup ticket #6283 - requested by leot
net/youtube-dl: update

Revisions pulled up:
- net/youtube-dl/Makefile                                      1.211
- net/youtube-dl/distinfo                                      1.193

---
  Module Name:    pkgsrc
  Committed By:  leot
  Date:          Mon Jul 27 22:21:45 UTC 2020

  Modified Files:
          pkgsrc/net/youtube-dl: Makefile distinfo

  Log Message:
  youtube-dl: Update to 20200728

  Changes:
  20200728
  --------
  Extractors
  * [youtube] Fix sigfunc name extraction (#26134, #26135, #26136, #26137)
  * [youtube] Improve description extraction (#25937, #25980)
  * [wistia] Restrict embed regular expression (#25969)
  * [youtube] Prevent excess HTTP 301 (#25786)
  + [youtube:playlists] Extend URL regular expression (#25810)
  + [bellmedia] Add support for cp24.com clip URLs (#25764)
  * [brightcove] Improve embed detection (#25674)

(bsiegert)

2020-07-30 18:48:39 UTC pkgsrc-2020Q2 commitmail json YAML

Pullup ticket #6282 - requested by oster
mail/opendmarc: bugfix

Revisions pulled up:
- mail/opendmarc/Makefile                                      1.19
- mail/opendmarc/distinfo                                      1.7
- mail/opendmarc/patches/patch-build-config.h.in                1.1
- mail/opendmarc/patches/patch-configure                        1.2
- mail/opendmarc/patches/patch-configure.ac                    1.2
- mail/opendmarc/patches/patch-libopendmarc_opendmarc__dns.c    1.1
- mail/opendmarc/patches/patch-libopendmarc_opendmarc__spf__dns.c 1.1

---
  Module Name:    pkgsrc
  Committed By:  oster
  Date:          Mon Jul 27 20:41:10 UTC 2020

  Modified Files:
          pkgsrc/mail/opendmarc: distinfo
          pkgsrc/mail/opendmarc/patches: patch-configure patch-configure.ac
  Added Files:
          pkgsrc/mail/opendmarc/patches: patch-build-config.h.in
              patch-libopendmarc_opendmarc__dns.c
              patch-libopendmarc_opendmarc__spf__dns.c

  Log Message:
  Fix resource leakage observed when using opendmarc on NetBSD.

  Use res_ndestroy() instead of res_nclose() to properly cleanup resources
  on NetBSD (and others that use __res_ndestroy() or res_ndestroy() instead
  of res_nclose()).  Original patch by Roy Marples.

---
  Module Name:    pkgsrc
  Committed By:  oster
  Date:          Mon Jul 27 22:28:47 UTC 2020

  Modified Files:
          pkgsrc/mail/opendmarc: Makefile

  Log Message:
  Bump pkgrevision.  Thanks, Joerg.

(bsiegert)

2020-07-30 18:40:21 UTC pkgsrc-2020Q2 commitmail json YAML

Pullup ticket #6288 - requested by nia
www/firefox68-l10n: dependent update

Revisions pulled up:
- www/firefox68-l10n/Makefile                                  1.17
- www/firefox68-l10n/distinfo                                  1.13

---
  Module Name: pkgsrc
  Committed By: nia
  Date: Wed Jul 29 14:21:29 UTC 2020

  Modified Files:
  pkgsrc/www/firefox68-l10n: Makefile distinfo

  Log Message:
  firefox68-l10n: Sync with firefox68

(bsiegert)

2020-07-30 18:13:52 UTC pkgsrc-2020Q2 commitmail json YAML

Pullup ticket #6287 - requested by nia
www/firefox68: security fix

Revisions pulled up:
- www/firefox68/Makefile                                        1.31
- www/firefox68/distinfo                                        1.21

---
  Module Name: pkgsrc
  Committed By: nia
  Date: Wed Jul 29 14:20:30 UTC 2020

  Modified Files:
  pkgsrc/www/firefox68: Makefile distinfo

  Log Message:
  firefox68: Update to 68.11.0

  Security Vulnerabilities fixed in Firefox ESR 68.11

      #CVE-2020-15652: Potential leak of redirect targets when loading scripts in
      a worker

      #CVE-2020-6514: WebRTC data channel leaks internal address to peer

      #CVE-2020-6463: Use-after-free in ANGLE
      gl::Texture::onUnbindAsSamplerTexture

      #CVE-2020-15650: Overwriting local files through malicious file picker
      application

      #CVE-2020-15649: Exfiltrating local files through malicious file picker
      application

      #CVE-2020-15659: Memory safety bugs fixed in Firefox 79 and Firefox ESR
      68.11

(bsiegert)

2020-07-30 16:13:31 UTC pkgsrc-2020Q2 commitmail json YAML

Pullup ticket #6286 - requested by leot
www/webkit-gtk: security fix (WSA-2020-0007)

Revisions pulled up:
- www/webkit-gtk/Makefile                                      1.190
- www/webkit-gtk/PLIST                                          1.62
- www/webkit-gtk/distinfo                                      1.137
- www/webkit-gtk/patches/patch-Source_WebCore_crypto_algorithms_CryptoAlgorithmAES__GCM.cpp 1.1
- www/webkit-gtk/patches/patch-Source_WebCore_rendering_RenderLayerBacking.h 1.1

---
  Module Name:    pkgsrc
  Committed By:  leot
  Date:          Tue Jul 28 14:24:03 UTC 2020

  Modified Files:
          pkgsrc/www/webkit-gtk: Makefile PLIST distinfo
  Added Files:
          pkgsrc/www/webkit-gtk/patches:
              patch-Source_WebCore_crypto_algorithms_CryptoAlgorithmAES__GCM.cpp
              patch-Source_WebCore_rendering_RenderLayerBacking.h

  Log Message:
  webkit-gtk: Update to 2.28.4

  pkgsrc changes:
    - Define non-standard __WORDSIZE if not already defined (at the moment the
      patches directly patch problematic files where __WORDSIZE is used, it would
      be probably nicer to find a common place to define it).

  Changes:
  2.28.4
  ------
    - Fix several crashes and rendering issues.

(bsiegert)

2020-07-30 16:10:24 UTC pkgsrc-2020Q2 commitmail json YAML

Pullup ticket #6285 - requested by wiz
security/tor-browser: security fix

Revisions pulled up:
- security/tor-browser/Makefile                                1.70
- security/tor-browser/distinfo                                1.25

---
  Module Name: pkgsrc
  Committed By: wiz
  Date: Wed Jul 29 07:46:37 UTC 2020

  Modified Files:
  pkgsrc/security/tor-browser: Makefile distinfo

  Log Message:
  tor-browser: update to 9.5.3.

  Tor Browser 9.5.3 -- July 28 2020
    * All Platforms
      * Update Firefox to 68.11.0esr
      * Update NoScript to 11.0.34
      * Update Tor to 0.4.3.6

  Tor Browser 9.5.2 -- July 7 2020
    * Android
      * Update Firefox to 68.10.1esr

(bsiegert)

2020-07-30 14:14:50 UTC MAIN commitmail json YAML

doc: Updated net/unifi to 5.13.32

(gdt)

2020-07-30 14:14:38 UTC MAIN commitmail json YAML

net/unifi: Update to 5.13.32

Tested on netbsd-8/amd64 with access points; updating was uneventful.

Upstream changes: basically bugfixes.

(gdt)

2020-07-30 13:32:33 UTC MAIN commitmail json YAML

2020-07-30 13:06:33 UTC pkgsrc-2020Q2 commitmail json YAML

Pullup ticket #6284 - requested by wiz
security/tor-browser-noscript: security fix

Revisions pulled up:
- security/tor-browser-noscript/Makefile                        1.4
- security/tor-browser-noscript/distinfo                        1.4

---
  Module Name: pkgsrc
  Committed By: wiz
  Date: Wed Jul 29 07:02:59 UTC 2020

  Modified Files:
  pkgsrc/security/tor-browser-noscript: Makefile distinfo

  Log Message:
  tor-browser-noscript: update to 11.0.34.

  v 11.0.34
  ============================================================
  x Fixed regression breaking network-based CSP injection

  v 11.0.33
  ============================================================
  x Switch from HTTP to DOM event based CSP reporting in
    compatible browsers
  x [XSS] Updated HTML event attributes
  x Updated TLDs

(bsiegert)

2020-07-30 08:11:03 UTC MAIN commitmail json YAML

doc: Added www/firefox78-l10n version 78.1.0

(nia)

2020-07-30 08:10:25 UTC MAIN commitmail json YAML

doc: Added www/firefox78 version 78.1.0

(nia)

2020-07-30 08:09:28 UTC MAIN commitmail json YAML

www: Add firefox78

Mozilla Firefox is a free, open-source and cross-platform web browser
for Windows, Linux, MacOS X and many other operating systems.

It is fast and easy to use, and offers many advantages over other web
browsers, such as tabbed browsing and the ability to block pop-up
windows.

Firefox also offers excellent bookmark and history management, and it
can be extended by developers using industry standards such as XML,
CSS, JavaScript, C++, etc. Many extensions are available.

This package provides Firefox 78 ESR.

(nia)

2020-07-30 07:59:19 UTC MAIN commitmail json YAML

kallisto: remove patches that were removed from distinfo during update

(wiz)

2020-07-30 07:58:18 UTC MAIN commitmail json YAML

strawberry: remove comments from distinfo

(wiz)

2020-07-30 07:03:19 UTC MAIN commitmail json YAML

Updated devel/protobuf, devel/py-protobuf

(adam)

2020-07-30 07:02:40 UTC MAIN commitmail json YAML

protobuf py-protobuf: updated to 3.12.4

3.12.4:
Unknown changes

3.12.3:
Objective-C
* Tweak the union used for Extensions to support old generated code.

(adam)

2020-07-30 03:08:43 UTC MAIN commitmail json YAML

net/terraform: Add CHECK_RELRO_SKIP, revbump

AFAIK go uses own linker, which does not support RELRO on NetBSD

(tpaul)

2020-07-30 03:03:07 UTC MAIN commitmail json YAML

2020-07-30 02:15:51 UTC MAIN commitmail json YAML

doc: Updated textproc/swath to 0.6.1

(scole)

2020-07-30 02:13:56 UTC MAIN commitmail json YAML

doc: Updated textproc/swath to 0.6.1

0.6.1 (2018-08-20)
=====
- Updated word break dictionary.
- Fix a defect in RTF parsing, so RTF gets more complete word break positions.
- Compiler warning fixes.
- Minor code cleanups.
- Useful installation instructions in INSTALL file.
  (Thanks @pepa65 for the pull request.)

0.6.0 (2017-11-28)
=====
- Updated word break dictionary.
- Drop undocumented option '-l'.
- Revamped internal word break engine.
- Updated manpage.

0.5.5 (2016-12-25)
=====
- Updated word break dictionary.

0.5.4 (2016-07-08)
=====
- Updated word break dictionary.
- Fix segfault on extremely long input lines.
- Support longer input lines.
  (Bug report by Santi Romeyen)
- Support non-ASCII word break string.
  https://github.com/tlwg/swath/issues/1
- Some source code clean-ups.
- Add test suite.

0.5.3 (2014-09-01)
=====
- Updated word break dictionary.
- Fix premature output ending on long UTF-8 input line.
  (Bug report by Sorawee Porncharoenwase)
- Fix excessive break positions in plain text mode.
  (Bug report by Sorawee Porncharoenwase)
- Remove dead codes, resulting in a little smaller binary.

0.5.2 (2013-12-23)
=====
- Fix infinite loops in LaTeX filter.
  (Bug report and patch by Neutron Soutmun)
- Fix off-by-one character loss in long HTML tokens.
  (Bug report and analysis by Nicolas Brouard)

0.5.1 (2013-10-30)
=====
- Correct word break code for Lambda.
- Updated word break dictionary.
- Adjust file filters to prevent potential buffer overflow.

0.5.0 (2013-02-11)
=====
- Character encoding conversion is now spontaneous, no more buffering via
  temporary file.
- Rewritten RTF filter. It's now tested to work with real RTF document.
- Process characters as Unicode internally, so that characters not present
  in TIS-620 are not lost in output.
- Fix potential buffer overflow vulnerability in Mule mode.
- Updated word break dictionary.
- Significant source clean-ups.
- Switch to XZ tarball compression.

For pkgsrc, use gmake and add patch to compile wchar functions on NetBSD

(scole)

2020-07-30 01:58:04 UTC MAIN commitmail json YAML

doc: Updated devel/libdatrie to 0.2.12nb1

(scole)

2020-07-30 01:56:16 UTC MAIN commitmail json YAML

Add unsigned char cast for isspace() or can fail to parse words properly, bump pkgrevision

(scole)

2020-07-30 00:02:10 UTC MAIN commitmail json YAML

kermit: fix compilation on Linux with glibc >= 2.28

Fix taken from the upstream project's 9.0.305 Alpha.01 release, noted to
be a temporary workaround. (Separately, from how I read the change log,
there has been no stable 9.0 release since 9.0.302.) Tested on Debian
9.13 (which has an older version of glibc which wouldn't reproduce the
issue) and Fedora 31 & 32.

(This issue was reported on pkgsrc-users back in July 2019 by Pierre
Dupond, and I'd provided a workaround for it in that email chain, but
I'd never actually committed anything to pkgsrc.)

(gutteridge)

2020-07-29 21:49:08 UTC MAIN commitmail json YAML

Updated lang/abcl.

(rjs)

2020-07-29 21:47:46 UTC MAIN commitmail json YAML

Update to version 1.7.1.

ChangLog:

Version 1.7.1
=============

July 18, 2020

<https://abcl.org/svn/tags/1.7.1/>
<https://github.com/armedbear/abcl/>
<https://gitlab.common-lisp.net/abcl/abcl/>

Fixes
-----

[r15337] Fix ELT on vectors specialized on (unsigned-byte 32)

[r15327] Restore svref optimizations for SIMPLE-VECTOR sorts

[r15326] Fix sorting vectors of length 0

Version 1.7.0
=============
June 3, 2020

<https://abcl.org/svn/tags/1.7.0/>
<https://github.com/armedbear/abcl/commit/91f7561840ee5ded6f35922119ed7dc8442747cd>
<https://gitlab.common-lisp.net/abcl/abcl/-/commit/799cfb697d20652e06ffa760f07288823424cf2f>

The implementation now runs on the openjdk6, openjdk7, openjdk8,
openjdk11, openjdk13, and openjdk14 JVM runtimes.

Enhancements
------------

* [r15305][r15306][r15307] The :NIO symbol is now present in
  CL:*FEATURES*, denoting the use of java.nio.ByteBuffer et. al. in
  the implementation of arrays specialized on commonly used unsigned
  byte-types.  CL:MAKE-ARRAY now has the :NIO-BUFFER and :NIO-DIRECT
  keyword arguments useful in the construction of such arrays.

* [r15280][r15283] The default implementation for CL:DISASSEMBLE has
  been switched from jad to javap.  The SYS:CHOOSE-ASSEMBLER interface
  is now able to switch between the jad, javap, fernflower, Procyon,
  and CFR backends provided as loaded ASDF definitions contained in
  the ABCL-INTROSPECT contrib.

* [r15268] ABCL-BUILD:DIRECTORY-HASHES outputs the SHA256 hashes of files in
  a directory.

* [r15282] The ABCL-INTROSPECT contrib now adds the EXT:WRITE-CLASS method
  to write the bytecode representation of a Java class to disk.

* [r15293] The Dockerfile has been updated to use openjdk11

Fixes
-----

* [r15292] Fixed all known outstanding problems with DECODE-FLOAT for
  values less than normalized floats.

* [r15287] Attempts to fill specialized 32-bit arrays with elements
  greater than 2^32-1 now properly signals a type error.

* [r15267] ABCL-BUILD:ANT/CALL no longer signals an error on failure instead
  reporting associated error messages.

* [r15281] Autoconfiguration for builds on supported platforms extended.

* [r15290] The invocation of CL-BENCH now utilizes its ASDF definition.

* [r15294][r15298] The contents of the <file:ci/> directory are now
  included in the source release, and have had all mention of
  TRAVIS_BUILD_DIR removed decoupling their use from the presence of
  Travis.

Tests
-----

* [r15277] (pdietz) Additional tests for compiler failures.

* [r15278][r15279] (phoe) Added tests for unbound slots DIVISION-BY-ZERO has
  ARITHMETIC-ERROR-OPERANDS.

* [r15284][r15285][r15288] The CI now tests the ability to use OpenSSL via
  CL+SSL.

* [r15289] The CI now tests the version CFFI with
  CFFI-SYS:MAKE-SHAREABLE-BYTE-VECTOR implemented.

* [r15291] The CI now tests IRONCLAD.

Version 1.6.1
=============
April 24, 2020

<https://abcl.org/svn/tags/1.6.1/>
<https://abcl.org/trac/changeset/15270>
<https://github.com/armedbear/abcl/commit/cef85a7f5573733d08117f04295a744f9f986c6a>
<https://gitlab.common-lisp.net/abcl/abcl/-/commit/1d237263a7a0cda49bf1b21a8cd586642aca99e4>

Enhancements
------------

* [r15223] Fix compiler for java.lang.VerifyError with PROGN
  (somewhat-functional-programmer)

* [r15250] ABCL now builds and runs across openjdk{6,7,8,11,13,14}

* [r15256] Build autoconfiguration via ci/create-build-properties.bash

* [r15252] Provide accessor in URL-STREAM for underlying java.io.InputStream

* [r15226] [INCOMPLETE] Address problems with DECODE-FLOAT
  (Robert Dodier)

Fixes
-----

* [r15229] Maven central repository now requires TLS

* [r15242] jstatic: check narrowing for explicit method reference

* [r15232] [r15233] [r15241] Reworking DWIM on java call sites

  The FFI will now find Java call sites whose types are Short or Byte
  with integers if they can be narrowed without losing information.
  This work should be considered provisional, subject to possible
  revision.

* [r15234] Fix calling Java methods with varargs parameters

* [r15233] Fix calling Java methods with short and byte parameters

* [r15231] abcl-build: test the install of maven-3.6.3

* [r15238] build: ensure javac compiles with UTF-8 encoding

* [r15243] abcl-asdf: rework Maven usage strategy

* [r15245] abcl-asdf: use WITH-AETHER macro to ensure Maven Aether is loaded

* [r15251] abcl-asdf:  assume that either 'which' or 'where' works

Updates
-------

* [r15240] Use ASDF-3.3.4

Tests
-----

* [r15239] ci: now use latest CFFI distributed with Quicklisp

* [r15247] t/format-dollar: correction for CL:FORMAT dollar usage

* [r15248] t/jcoerce-numerics: JCOERCE across numerics without losing information

* [r15249] t/decode-float: tests for currently broken handling of CL:DECODE-FLOAT

Version 1.6.0
=============
November 22, 2019

<https://abcl.org/svn/tags/1.6.0>

Compatiblity
------------

ABCL 1.6.0 supports building and running on openjdk6, openjdk7,
openjdk8, and openjdk11.

Enhancements
-----------

* [r15085] Add a restart for generics defined over functions or macros
  when arguments don't match (Alan).

* [r15086] jss: Disambiguate java class lookup in dynamic scope
  (Alan).

* [r15087] jss: Optimizations for jss field accessors (Alan).

* [r15089] [r15090] jss: JSS:TO-HASHSET converts java.util.List
  references to java.util.Hashset (Alan).

* [r15091] jss: Improve JSS:J2LIST, add JSS:JMAP (Olof).

* [r15092] Make JVM class names more intelligible (Olof).

* [r15093] abcl-asdf: Support multiple Maven repositories (Olof).

* [r15101] [r15102] [r15103] abcl-asdf: add test cases for multiple
  repositories (Olof).

* [r15095] Define undefined conditions and handler functions following
  error-fun='error pattern (Alan).

* [r15105] jss: make use of warning muffling (Olof).

* [r15133] [r15134] Support building and running in openjdk11.

* [r15142] Signal better error for out-of-bounds CL:REPLACE (Olof).

* [r15148] docker: use the now standardized openjdk8 container,
  install ant and maven dependencies.

Fixes
-----

* [r15096] Fix and check array types for JSS:JMAP/J2LIST (Olof).

* [r15097] abcl-asdf: compatiblity with maven-3.5.0.

* [r15099] Export the JVM:*RESIGNAL-COMPILER-WARNINGS* interface.

* [r15100] Fix ASDF usage of MVN module (Olof).

* [r15107] Fix translate-directory-components-aux: throw takes 2
  arguments (metawilm).

* [r15114] Intern SYSTEM:AVAILABLE-ENCODINGS symbols (Robert Dodier).

* [r15115] abcl-asdf: fix ABCL-ASDF:MVN-MODULE collect request (Alan).

* [r15116] Fix CL:PRINT-OBJECT of null pointer (Alan).

* [r15117] The compiled version of JSS:INVOKE-RESTARGS was evaluating
  the first argument twice (Alan).

* [r15118] abcl-asdf: stop complaining about not loading a file named
  the module name (Alan).

* [r15120] Don't evaluate format control string in ReaderError (Javier
  Olaechea).

* [r15124] Fix monetary floating-point formatted output (Scott
  Burson).

* [r15125] Stackframe head edge case fix (Alan).

* [r15137] Fix ANSI-TESTS GENSYM.ERROR.10 and GENSYM.ERROR.11 (Douglas
    Miles).

* [r15138] Fix ANSI-TEST MAKE-CONCATENATED-STREAM.30 failure (Douglas
    Miles).

* [r15139] Fix ANSI-TESTS FILE-POSITION.10 (Douglas Miles).

* [r15141] compiler: fix stack inconsistency errors
  (somewhat-functional-programmer).

* [r15143] Check for element type before filling vectors (Olof).

* [r15144] Fix high start index for CL:SUBSEQ (Olof).

* [r15146] JSS read sharp expression bugfixes (Alan).

* [r15149] jss: explicitly scope JSS:TO-HASHSET.

Updates
-------

* ASDF 3.3.3

* JNA 5.5.0

(rjs)

2020-07-29 21:42:30 UTC MAIN commitmail json YAML

Allow use of openjdk11 on NetBSD/aarch64.

(rjs)

2020-07-29 20:20:59 UTC pkgsrc-2020Q2 commitmail json YAML

Pullup tickets #6274 to #6276

(bsiegert)

2020-07-29 20:15:59 UTC pkgsrc-2020Q2 commitmail json YAML

Pullup ticket #6276 - requested by taca
net/samba4: security fix

Revisions pulled up:
- net/samba4/Makefile                                          1.102
- net/samba4/PLIST                                              1.31
- net/samba4/distinfo                                          1.49
- net/samba4/patches/patch-lib_replace_system_passwd.h          1.1

---
  Module Name: pkgsrc
  Committed By: adam
  Date: Mon Jul  6 14:38:06 UTC 2020

  Modified Files:
  pkgsrc/net/samba4: Makefile PLIST distinfo
  Added Files:
  pkgsrc/net/samba4/patches: patch-lib_replace_system_passwd.h

  Log Message:
  samba4: updated to 4.12.5

  Changes since 4.12.4
  --------------------
      * BUG 14301: Fix smbd panic on force-close share during async io.
      * BUG 14374: Fix segfault when using SMBC_opendir_ctx() routine for share
        folder that contains incorrect symbols in any file name.
      * BUG 14391: Fix DFS links.
      * BUG 14310: Can't use DNS functionality after a Windows DC has been in
        domain.
      * BUG 14413: ldapi search to FreeIPA crashes.
      * BUG 14396: Add net-ads-join dnshostname=fqdn option.
      * BUG 14406: Fix adding msDS-AdditionalDnsHostName to keytab with Windows DC.
      * BUG 14386: docs-xml: Update list of posible VFS operations for
        vfs_full_audit.
      * BUG 14382: winbindd: Fix a use-after-free when winbind clients exit.
      * BUG 14370: Client tools are not able to read gencache anymore.

  Samba 4.12.4
  ============
  o  CVE-2020-10730:
      A client combining the 'ASQ' and 'VLV' LDAP controls can cause a NULL pointer
      de-reference and further combinations with the LDAP paged_results feature can
      give a use-after-free in Samba's AD DC LDAP server.

  o  CVE-2020-10745: Parsing and packing of NBT and DNS packets can consume
      excessive CPU.

  o  CVE-2020-10760:
      The use of the paged_results or VLV controls against the Global Catalog LDAP
      server on the AD DC will cause a use-after-free.

  o  CVE-2020-14303:
      The AD DC NBT server in Samba 4.0 will enter a CPU spin and not process
      further requests once it receives an empty (zero-length) UDP packet to
      port 137.

  For more details, please refer to the security advisories.

  Changes since 4.12.3
  --------------------
      * BUG 14378: CVE-2020-10745: Invalid DNS or NBT queries containing dots use
        several seconds of CPU each.
      * BUG 14364: CVE-2020-10730: NULL de-reference in AD DC LDAP server when ASQ
        and VLV combined.
      * BUG 14402: CVE-2020-10760: Fix use-after-free in AD DC Global Catalog LDAP
        server with paged_result or VLV.
      * BUG 14417: CVE-2020-14303: Fix endless loop from empty UDP packet sent to
        AD DC nbt_server.
      * BUG 14364: CVE-2020-10730: NULL de-reference in AD DC LDAP server when ASQ
        and VLV combined, ldb: Bump version to 2.1.4.

(bsiegert)

2020-07-29 19:40:52 UTC pkgsrc-2020Q2 commitmail json YAML

Pullup ticket #6275 - requested by taca
databases/ldb: dependent update

Revisions pulled up:
- databases/ldb/Makefile                                        1.17
- databases/ldb/distinfo                                        1.9

---
  Module Name: pkgsrc
  Committed By: adam
  Date: Mon Jul  6 14:29:42 UTC 2020

  Modified Files:
  pkgsrc/databases/ldb: Makefile distinfo

  Log Message:
  ldb: updated to 2.1.4

  2.1.4:
  Unknown changes

(bsiegert)

2020-07-29 19:39:44 UTC pkgsrc-2020Q2 commitmail json YAML

Pullup ticket #6274 - requested by taca
mail/roundcube: security fix

Revisions pulled up:
- mail/roundcube-plugin-password/distinfo                      1.20
- mail/roundcube/Makefile.common                                1.20
- mail/roundcube/distinfo                                      1.71

---
  Module Name: pkgsrc
  Committed By: taca
  Date: Tue Jul  7 04:37:26 UTC 2020

  Modified Files:
  pkgsrc/mail/roundcube: Makefile.common distinfo
  pkgsrc/mail/roundcube-plugin-password: distinfo

  Log Message:
  mail/roundcube: update to 1.4.7

  Update roundcube to 1.4.7.

  RELEASE 1.4.7
  -------------
  - Fix bug where subfolders of special folders could have been duplicated on folder list
  - Increase maximum size of contact jobtitle and department fields to 128 characters
  - Fix missing newline after the logged line when writing to stdout (#7418)
  - Elastic: Fix context menu (paste) on the recipient input (#7431)
  - Fix problem with forwarding inline images attached to messages with no HTML part (#7414)
  - Fix problem with handling attached images with same name when using database_attachments/redundant_attachments (#7455)
  - Security: Fix cross-site scripting (XSS) via HTML messages with malicious svg/namespace

(bsiegert)

2020-07-29 14:37:06 UTC MAIN commitmail json YAML

Updated www/py-paste, devel/py-test-xdist

(adam)

2020-07-29 14:36:48 UTC MAIN commitmail json YAML

py-test-xdist: updated to 1.34.0

pytest-xdist 1.34.0
===================

Features
--------
- Make ``--pdb`` imply ``--dist no``, as the two options cannot really work together at the moment.

Bug Fixes
---------
- Fix regression with duplicated arguments via $PYTEST_ADDOPTS in 1.30.0.
- Fix ``rsyncdirs`` usage with pytest 6.0.
- Do not trigger the deprecated ``pytest_warning_captured`` in pytest 6.0+.

(adam)

2020-07-29 14:34:18 UTC MAIN commitmail json YAML

py-paste: updated to 3.4.3

3.4.3
* Patch auth ticket to be python3 compatible.

(adam)

2020-07-29 14:21:48 UTC MAIN commitmail json YAML

doc: Updated www/firefox68-l10n to 68.11.0

(nia)

2020-07-29 14:21:29 UTC MAIN commitmail json YAML

2020-07-29 14:20:51 UTC MAIN commitmail json YAML

doc: Updated www/firefox68 to 68.11.0

(nia)

2020-07-29 14:20:30 UTC MAIN commitmail json YAML

firefox68: Update to 68.11.0

Security Vulnerabilities fixed in Firefox ESR 68.11

    #CVE-2020-15652: Potential leak of redirect targets when loading scripts in
    a worker

    #CVE-2020-6514: WebRTC data channel leaks internal address to peer

    #CVE-2020-6463: Use-after-free in ANGLE
    gl::Texture::onUnbindAsSamplerTexture

    #CVE-2020-15650: Overwriting local files through malicious file picker
    application

    #CVE-2020-15649: Exfiltrating local files through malicious file picker
    application

    #CVE-2020-15659: Memory safety bugs fixed in Firefox 79 and Firefox ESR
    68.11

(nia)

2020-07-29 13:54:56 UTC MAIN commitmail json YAML

Updated devel/xxhash, sysutils/ansible

(adam)

2020-07-29 13:54:07 UTC MAIN commitmail json YAML

ansible: updated to 2.9.11

v2.9.11
=======

Minor Changes
-------------
- The ``items2dict`` filter can now create a dict whose values are the original elements of the input list, and whose keys are the value of some key in each dict. When the resulting dict is stored, this allows for O(1) lookup of a particular key without having to scan the entire list each time.
- k8s - update openshift requirements in documentation
- pipe lookup - update docs for Popen with shell=True usages (https://github.com/ansible/ansible/issues/70159).

Bugfixes
--------
- Allow TypeErrors on Undefined variables in filters to be handled or deferred when processing for loops.
- Fix ``delegate_facts: true`` when ``ansible_python_interpreter`` is not set. (https://github.com/ansible/ansible/issues/70168)
- Support check mode in NXOS BGP modules (https://github.com/ansible/ansible/pull/57360).
- TaskExecutor - Handle unexpected errors as failed while post validating loops (https://github.com/ansible/ansible/issues/70050).
- The `ansible_become` value was not being treated as a boolean value when set in an INI format inventory file (fixes bug https://github.com/ansible/ansible/issues/70476).
- To fix ios_l2_interfaces facts parsing issue (https://github.com/ansible-collections/cisco.ios/pull/59)
- To fix ios_user and ios_command test case failure fix (https://github.com/ansible-collections/cisco.ios/pull/82)
- Vault - Allow single vault encrypted values to be used directly as module parameters. (https://github.com/ansible/ansible/issues/68275)
- add constraints file for ``anisble_runner`` test since an update to ``psutil`` is now causing test failures
- ansible-galaxy - Instead of assuming the first defined server is galaxy, filter based on the servers that support the v1 API, and return the first of those (https://github.com/ansible/ansible/issues/65440)
- ansible-test no longer tracebacks during change analysis due to processing an empty python file
- ansible-test now correctly recognizes imports in collections when using the ``--changed`` option.
- ansible-test now ignores empty ``*.py`` files when analyzing module_utils imports for change detection
- assemble - fix decrypt argument in the module (https://github.com/ansible/ansible/issues/65450).
- docker_container - various error fixes in string handling for Python 2 to avoid crashes when non-ASCII characters are used in strings (https://github.com/ansible-collections/community.general/issues/640).
- eos_eapi - enable eapi by default
- group_by now should correctly refect changed status.
- json callback - Fix host result to task references in the resultant JSON output for non-lockstep strategy plugins such as free (https://github.com/ansible/ansible/issues/65931)
- nmcli - Add compatibility for new networkmanager library (https://github.com/ansible/ansible/pull/65726).
- puppet - fix command line construction for check mode and ``manifest:`` (https://github.com/ansible/ansible/issues/60576).
- selective callback - mark task failed correctly (https://github.com/ansible/ansible/issues/63767).
- windows async - use full path when calling PowerShell to reduce reliance on environment vars being correct - https://github.com/ansible/ansible/issues/70655
- winrm - preserve winrm forensic data on put_file failures

(adam)

2020-07-29 13:48:32 UTC MAIN commitmail json YAML

xxhash: updated to 0.8.0

xxHash v0.8.0 - Stable XXH3

Stable XXH3

After more than a year in the making, XXH3 has finally reached stable status, for both its 64-bit and 128-bit variants.
While the code itself was in good enough shape for production use, the generated values could still change between versions. This limited XXH3 to local sessions only.
From now on, output values produced by XXH3 for a given input and parameter set will remain identical across systems and across future versions. It makes it possible to store these values for later comparison, or to exchange them across network connections.

BSD-style checksums

Official stabilization being the main goal of this release, there are only minimal additional changes.
A notable one though is the ability for xxhsum CLI to produce and check BSD-style checksum lines, using command --tag.
One advantage of --tag format is that it explicitly specifies the algorithm and format used to represent the checksum. For example, it explicitly mentions if a checksum value follows the canonical format (XXH32) or the alternative little-endian format (XXH32_LE).
Generating BSD-style checksum lines was actually already possible, but as the CLI was unable to --check them, it remained a hidden option.
This situation changes with v0.8.0, thanks to a patch by @WayneD which makes it possible to --check BSD-style checksum lines.

Detailed list

api : stabilize XXH3
cli: xxhsum can produce BSD-style lines, with command --tag
cli : xxhsum can parse and check BSD-style lines, using command --check, by @WayneD
cli : xxhsum - accepts console input, requested by @jaki
cli : xxhsum accepts -- separator, by @jaki
cli : fix : print correct default algo for symlinked helpers, by @martinetd
install: improved pkgconfig script, allowing custom install locations, requested by @ellert

(adam)

2020-07-29 12:27:22 UTC MAIN commitmail json YAML

doc: Updated x11/dunst to 1.5.0

(wiz)

2020-07-29 12:27:13 UTC MAIN commitmail json YAML

dunst: update to 1.5.0.

## 1.5.0 - 2020-07-23

### Added
- `min_icon_size` option to automatically scale up icons to a desired value (#674)
- `vertical_alignment` option to control the text/icon alignment within the notification (#684)
- Ability to configure multiple actions for each mouse event (#705)
- `dunstctl` command line control client (#651)
- RGBA support for all color strings (#717)
- Ability to run multiple scripts for each notification
- `ignore_dbusclose` setting (#732)

### Changed
- `dunstify` notification client is now installed by default (#701)
- Keyboard follow mode falls back to the monitor with the mouse if no window has keyboard focus (#708)

### Fixed
- Overflow when setting a >=40 minute timeout (#646)
- Unset configuration options not falling back to default values (#649)
- Crash when `$HOME` environment variable is unset (#693)
- Lack of antialiasing with round corners enabled (#713)

(wiz)

2020-07-29 12:11:04 UTC MAIN commitmail json YAML

Updated devel/py-lazy-object-proxy, archivers/py-rarfile

(adam)

2020-07-29 12:10:46 UTC MAIN commitmail json YAML

py-rarfile: updated to 3.3

rarfile v3.3

Fixes:
Add the .sfx test files to MANIFEST.in for inclusion in pypi tarball.
Add all files in git to tarball.

rarfile v3.2

New features:
Support unar as decompression backend. It has much better support for RAR features than bsdtar.
Support SFX archives - archive header is searched in first 2MB of the file.
Add HACK_TMP_DIR option, to force temp files into specific directory.

Fixes:
Always use "/" for path separator in command-line, gives better results on Windows.

Cleanups:
Drop module-level options from docs, they create confusion.
Drop support for Python 2 and 3.5 and earlier. Python 2 is dead and requiring Python 3.6 gives blake2s, stdlib that supports pathlib, and ordered dict without compat hacks.
Replace PyCrypto with PyCryptodome in tests.
Use Github Actions for CI.

(adam)

2020-07-29 12:07:15 UTC MAIN commitmail json YAML

py-lazy-object-proxy: updated to 1.5.1

1.5.1:
* Added ARM64 wheels (manylinux2014).

(adam)

2020-07-29 11:22:07 UTC MAIN commitmail json YAML

doc: Updated graphics/ImageMagick to 7.0.10.24

(wiz)

2020-07-29 11:21:57 UTC MAIN commitmail json YAML

ImageMagick: update to 7.0.10.24.

Clean up pkglint while here.

2020-07-18  7.0.10-24  <quetzlzacatenango@image...>
  * Release ImageMagick version 7.0.10-24 GIT revision 17483:d11a2ec03:20200718

2020-07-18  7.0.10-24 Dirk Lemstra <dirk@lem.....org>
  * To preserve compression of input image with the tiff encoder use:
    -define tiff:preserve-compression=true.

2020-07-05  7.0.10-24  <quetzlzacatenango@image...>
  * Add support for the -white-balance command-line option.
  * Discover hidden files when globbing (e.g. *.jpg) (reference
    https://github.com/ImageMagick/ImageMagick/discussions/2239).
  * New inverse-log evaluate operator.

2020-07-04  7.0.10-23  <quetzlzacatenango@image...>
  * Release ImageMagick version 7.0.10-23 GIT revision 17437:894231bc3:20200704

2020-06-28  7.0.10-23  <quetzlzacatenango@image...>
  * Ensure that float is valid in ClampToQuantum() (reference
    https://github.com/ImageMagick/ImageMagick/pull/2219).
  * New pseudo-image format, ashlar, e.g.
    convert *.jpg -resize 320x320 ashlar:canvas.png).

2020-06-27  7.0.10-22  <quetzlzacatenango@image...>
  * Release ImageMagick version 7.0.10-22 GIT revision 17415:5318a3e0a:20200627

2020-06-24  7.0.10-22  <quetzlzacatenango@image...>
  * Fix wrapping of caption (reference
    https://github.com/ImageMagick/ImageMagick/issues/2178).
  * Sanity check of affine matrix when drawing.

2020-06-22  7.0.10-21  <quetzlzacatenango@image...>
  * Release ImageMagick version 7.0.10-21 GIT revision 17395:af81c28c9:20200622

2020-06-21  7.0.10-21  <quetzlzacatenango@image...>
  * New image property, %N, only report the # of frames in an image sequence,
    just once rather than on a per frame basis
  * Problems converting CMYK to RGB regression (reference
    https://github.com/ImageMagick/ImageMagick6/issues/83)

2020-06-21  7.0.10-21 Dirk Lemstra <dirk@lem.....org>
  * Added support for 32 bit zip with prediction format to the PSD decoder
    (reference https://github.com/ImageMagick/ImageMagick/issues/455).

2020-06-20  7.0.10-20  <quetzlzacatenango@image...>
  * Release ImageMagick version 7.0.10-20 GIT revision 17372:d91c43f3b:20200620

2020-06-14  7.0.10-20  <quetzlzacatenango@image...>
  * Fix out-of-bounds vulnerability when reading sixel images (reference
    https://github.com/ImageMagick/ImageMagick/issues/2143).
  * Fix incorrect parsing of font family list (reference
    https://github.com/ImageMagick/ImageMagick/issues/2153).

(wiz)

2020-07-29 10:47:45 UTC MAIN commitmail json YAML

doc: Updated sysutils/webmin to 1.953

(mef)

2020-07-29 10:44:32 UTC MAIN commitmail json YAML

Enable cups option by default and pull in libcups instead of cups-base.
Bump pkg revision.

(jmcneill)

2020-07-29 10:28:31 UTC MAIN commitmail json YAML

(sysutils/webmin, sysutils/wbm-*) Updated 1.941 to 1.953

Version 1.953 (5th July 2020)
  Added optional automatically generated translations for all
              languages, and switched all encodings to UTF-8.
  Updated the Authentic theme to the latest version.
  Added support for Postfix SNI certificate maps.
  Added Chrony support in the System Time module.
  Added caching for LDAP and MySQL connections for Webmin users.
  Removed several noisy messages from the error log.
  Many many other small bugfixes and features.

(mef)

2020-07-29 10:20:56 UTC MAIN commitmail json YAML

2020-07-29 10:08:13 UTC MAIN commitmail json YAML

Updated devel/py-pip, net/py-aiormq

(adam)

2020-07-29 10:07:54 UTC MAIN commitmail json YAML

py-aiormq: updated to 3.2.3

3.2.3:
Unknown changes

(adam)

2020-07-29 10:00:16 UTC MAIN commitmail json YAML

py-pip: updated to 20.2

20.2
====

Deprecations and Removals
-------------------------
- Deprecate setup.py-based builds that do not generate an ``.egg-info`` directory.
- Disallow passing install-location-related arguments in ``--install-options``.
- Add deprecation warning for invalid requirements format "base>=1.0[extra]"
- Deprecate legacy setup.py install when building a wheel failed for source
  distributions without pyproject.toml
- Deprecate -b/--build/--build-dir/--build-directory. Its current behaviour is confusing
  and breaks in case different versions of the same distribution need to be built during
  the resolution process. Using the TMPDIR/TEMP/TMP environment variable, possibly
  combined with --no-clean covers known use cases.
- Remove undocumented and deprecated option ``--always-unzip``

Features
--------
- Log debugging information about pip, in ``pip install --verbose``.
- Refine error messages to avoid showing Python tracebacks when an HTTP error occurs.
- Install wheel files directly instead of extracting them to a temp directory.
- Add a beta version of pip's next-generation dependency resolver.

  Move pip's new resolver into beta, remove the
  ``--unstable-feature=resolver`` flag, and enable the
  ``--use-feature=2020-resolver`` flag. The new resolver is
  significantly stricter and more consistent when it receives
  incompatible instructions, and reduces support for certain kinds of
  :ref:`Constraints Files`, so some workarounds and workflows may
  break. More details about how to test and migrate, and how to report
  issues, at :ref:`Resolver changes 2020` . Maintainers are preparing to
  release pip 20.3, with the new resolver on by default, in October.
- Add a subcommand ``debug`` to ``pip config`` to list available configuration sources and the key-value pairs defined in them.
- Warn if index pages have unexpected content-type
- Allow specifying ``--prefer-binary`` option in a requirements file
- Generate PEP 376 REQUESTED metadata for user supplied requirements installed
  by pip.
- Warn if package url is a vcs or an archive url with invalid scheme
- Parallelize network operations in ``pip list``.
- Allow the new resolver to obtain dependency information through wheels
  lazily downloaded using HTTP range requests.  To enable this feature,
  invoke ``pip`` with ``--use-feature=fast-deps``.
- Support ``--use-feature`` in requirements files

Bug Fixes
---------
- Use canonical package names while looking up already installed packages.
- Fix normalizing path on Windows when installing package on another logical disk.
- The VCS commands run by pip as subprocesses don't merge stdout and stderr anymore, improving the output parsing by subsequent commands.
- Correctly treat non-ASCII entry point declarations in wheels so they can be
  installed on Windows.
- Update author email in config and tests to reflect decommissioning of pypa-dev list.
- Headers provided by wheels in .data directories are now correctly installed
  into the user-provided locations, such as ``--prefix``, instead of the virtual
  environment pip is running in.

Vendored Libraries
------------------
- Vendored htmlib5 no longer imports deprecated xml.etree.cElementTree on Python 3.
- Upgrade appdirs to 1.4.4
- Upgrade certifi to 2020.6.20
- Upgrade distlib to 0.3.1
- Upgrade html5lib to 1.1
- Upgrade idna to 2.10
- Upgrade packaging to 20.4
- Upgrade requests to 2.24.0
- Upgrade six to 1.15.0
- Upgrade toml to 0.10.1
- Upgrade urllib3 to 1.25.9

Improved Documentation
----------------------
- Add ``--no-input`` option to pip docs
- List of options supported in requirements file are extracted from source of truth,
  instead of being maintained manually.
- Fix pip config docstring so that the subcommands render correctly in the docs
- replace links to the old pypa-dev mailing list with https://mail.python.org/mailman3/lists/distutils-sig.python.org/
- Fix example for defining multiple values for options which support them
- Add documentation that helps the user fix dependency conflicts
- Add feature flags to docs
- Document how to install package extras from git branch and source distributions.

(adam)

2020-07-29 07:48:45 UTC MAIN commitmail json YAML

Updated devel/git

(adam)

2020-07-29 07:47:51 UTC MAIN commitmail json YAML

git: updated to 2.28.0

Git 2.28 Release Notes
======================

Updates since v2.27
-------------------

Backward compatibility notes

* "fetch.writeCommitGraph" is deemed to be still a bit too risky and
  is no longer part of the "feature.experimental" set.

UI, Workflows & Features

* The commands in the "diff" family learned to honor "diff.relative"
  configuration variable.

* The check in "git fsck" to ensure that the tree objects are sorted
  still had corner cases it missed unsorted entries.

* The interface to redact sensitive information in the trace output
  has been simplified.

* The command line completion (in contrib/) learned to complete
  options that the "git switch" command takes.

* "git diff" used to take arguments in random and nonsense range
  notation, e.g. "git diff A..B C", "git diff A..B C...D", etc.,
  which has been cleaned up.

* "git diff-files" has been taught to say paths that are marked as
  intent-to-add are new files, not modified from an empty blob.

* "git status" learned to report the status of sparse checkout.

* "git difftool" has trouble dealing with paths added to the index
  with the intent-to-add bit.

* "git fast-export --anonymize" learned to take customized mapping to
  allow its users to tweak its output more usable for debugging.

* The command line completion support (in contrib/) used to be
  prepared to work with "set -u" but recent changes got a bit more
  sloppy.  This has been corrected.

* "git gui" now allows opening work trees from the start-up dialog.

Performance, Internal Implementation, Development Support etc.

* Code optimization for a common case.
  (merge 8777616e4d an/merge-single-strategy-optim later to maint).

* We've adopted a convention that any on-stack structure can be
  initialized to have zero values in all fields with "= { 0 }",
  even when the first field happens to be a pointer, but sparse
  complained that a null pointer should be spelled NULL for a long
  time.  Start using -Wno-universal-initializer option to squelch
  it (the latest sparse has it on by default).

* "git log -L..." now takes advantage of the "which paths are touched
  by this commit?" info stored in the commit-graph system.

* As FreeBSD is not the only platform whose regexp library reports
  a REG_ILLSEQ error when fed invalid UTF-8, add logic to detect that
  automatically and skip the affected tests.

* "git bugreport" learns to report what shell is in use.

* Support for GIT_CURL_VERBOSE has been rewritten in terms of
  GIT_TRACE_CURL.

* Preliminary clean-ups around refs API, plus file format
  specification documentation for the reftable backend.

* Workaround breakage in MSVC build, where "curl-config --cflags"
  gives settings appropriate for GCC build.

* Code clean-up of "git clean" resulted in a fix of recent
  performance regression.

* Code clean-up in the codepath that serves "git fetch" continues.

* "git merge-base --is-ancestor" is taught to take advantage of the
  commit graph.

* Rewrite of parts of the scripted "git submodule" Porcelain command
  continues; this time it is "git submodule set-branch" subcommand's
  turn.

* The "fetch/clone" protocol has been updated to allow the server to
  instruct the clients to grab pre-packaged packfile(s) in addition
  to the packed object data coming over the wire.

* A misdesigned strbuf_write_fd() function has been retired.

* SHA-256 migration work continues, including CVS/SVN interface.

* A few fields in "struct commit" that do not have to always be
  present have been moved to commit slabs.

* API cleanup for get_worktrees()

* By renumbering object flag bits, "struct object" managed to lose
  bloated inter-field padding.

* The name of the primary branch in existing repositories, and the
  default name used for the first branch in newly created
  repositories, is made configurable, so that we can eventually wean
  ourselves off of the hardcoded 'master'.

* The effort to avoid using test_must_fail on non-git command continues.

* In 2.28-rc0, we corrected a bug that some repository extensions are
  honored by mistake even in a version 0 repositories (these
  configuration variables in extensions.* namespace were supposed to
  have special meaning in repositories whose version numbers are 1 or
  higher), but this was a bit too big a change.  The behaviour in
  recent versions of Git where certain extensions.* were honored by
  mistake even in version 0 repositories has been restored.

Fixes since v2.27
-----------------

* The "--prepare-p4-only" option of "git p4" is supposed to stop
  after replaying one changeset, but kept going (by mistake?)

* The error message from "git checkout -b foo -t bar baz" was
  confusing.

* Some repositories in the wild have commits that record nonsense
  committer timezone (e.g. rails.git); "git fast-import" learned an
  option to pass these nonsense timestamps intact to allow recreating
  existing repositories as-is.
  (merge d42a2fb72f en/fast-import-looser-date later to maint).

* The command line completion script (in contrib/) tried to complete
  "git stash -p" as if it were "git stash push -p", but it was too
  aggressive and also affected "git stash show -p", which has been
  corrected.
  (merge fffd0cf520 vs/complete-stash-show-p-fix later to maint).

* On-the-wire protocol v2 easily falls into a deadlock between the
  remote-curl helper and the fetch-pack process when the server side
  prematurely throws an error and disconnects.  The communication has
  been updated to make it more robust.

* "git checkout -p" did not handle a newly added path at all.
  (merge 2c8bd8471a js/checkout-p-new-file later to maint).

* The code to parse "git bisect start" command line was lax in
  validating the arguments.
  (merge 4d9005ff5d cb/bisect-helper-parser-fix later to maint).

* Reduce memory usage during "diff --quiet" in a worktree with too
  many stat-unmatched paths.
  (merge d2d7fbe129 jk/diff-memuse-optim-with-stat-unmatch later to maint).

* The reflog entries for "git clone" and "git fetch" did not
  anonymize the URL they operated on.
  (merge 46da295a77 js/reflog-anonymize-for-clone-and-fetch later to maint).

* The behaviour of "sparse-checkout" in the state "git clone
  --no-checkout" left was changed accidentally in 2.27, which has
  been corrected.

* Use of negative pathspec, while collecting paths including
  untracked ones in the working tree, was broken.

* The same worktree directory must be registered only once, but
  "git worktree move" allowed this invariant to be violated, which
  has been corrected.
  (merge 810382ed37 es/worktree-duplicate-paths later to maint).

* The effect of sparse checkout settings on submodules is documented.
  (merge e7d7c73249 en/sparse-with-submodule-doc later to maint).

* Code clean-up around "git branch" with a minor bugfix.
  (merge dc44639904 dl/branch-cleanup later to maint).

* A branch name used in a test has been clarified to match what is
  going on.
  (merge 08dc26061f pb/t4014-unslave later to maint).

* An in-code comment in "git diff" has been updated.
  (merge c592fd4c83 dl/diff-usage-comment-update later to maint).

* The documentation and some tests have been adjusted for the recent
  renaming of "pu" branch to "seen".
  (merge 6dca5dbf93 js/pu-to-seen later to maint).

* The code to push changes over "dumb" HTTP had a bad interaction
  with the commit reachability code due to incorrect allocation of
  object flag bits, which has been corrected.
  (merge 64472d15e9 bc/http-push-flagsfix later to maint).

* "git send-email --in-reply-to=<msg>" did not use the In-Reply-To:
  header with the value given from the command line, and let it be
  overridden by the value on In-Reply-To: header in the messages
  being sent out (if exists).
  (merge f9f60d7066 ra/send-email-in-reply-to-from-command-line-wins later to maint).

* "git log -Lx,y:path --before=date" lost track of where the range
  should be because it didn't take the changes made by the youngest
  commits that are omitted from the output into account.

* When "fetch.writeCommitGraph" configuration is set in a shallow
  repository and a fetch moves the shallow boundary, we wrote out
  broken commit-graph files that do not match the reality, which has
  been corrected.

* "git checkout" failed to catch an error from fstat() after updating
  a path in the working tree.
  (merge 35e6e212fd mt/entry-fstat-fallback-fix later to maint).

* When an aliased command, whose output is piped to a pager by git,
  gets killed by a signal, the pager got into a funny state, which
  has been corrected (again).
  (merge c0d73a59c9 ta/wait-on-aliased-commands-upon-signal later to maint).

* The code to produce progress output from "git commit-graph --write"
  had a few breakages, which have been fixed.

* Other code cleanup, docfix, build fix, etc.
  (merge 2c31a7aa44 jx/pkt-line-doc-count-fix later to maint).
  (merge d63ae31962 cb/t5608-cleanup later to maint).
  (merge 788db145c7 dl/t-readme-spell-git-correctly later to maint).
  (merge 45a87a83bb dl/python-2.7-is-the-floor-version later to maint).
  (merge b75a219904 es/advertise-contribution-doc later to maint).
  (merge 0c9a4f638a rs/pull-leakfix later to maint).
  (merge d546fe2874 rs/commit-reach-leakfix later to maint).
  (merge 087bf5409c mk/pb-pretty-email-without-domain-part-fix later to maint).
  (merge 5f4ee57ad9 es/worktree-code-cleanup later to maint).
  (merge 0172f7834a cc/cat-file-usage-update later to maint).
  (merge 81de0c01cf ma/rebase-doc-typofix later to maint).

(adam)

2020-07-29 07:46:48 UTC MAIN commitmail json YAML

doc: Updated security/tor-browser to 9.5.3

(wiz)

2020-07-29 07:46:37 UTC MAIN commitmail json YAML

tor-browser: update to 9.5.3.

Tor Browser 9.5.3 -- July 28 2020
* All Platforms
  * Update Firefox to 68.11.0esr
  * Update NoScript to 11.0.34
  * Update Tor to 0.4.3.6

Tor Browser 9.5.2 -- July 7 2020
* Android
  * Update Firefox to 68.10.1esr

(wiz)

2020-07-29 07:27:23 UTC MAIN commitmail json YAML

Updated security/py-asn1crypto, www/py-uvicorn

(adam)

2020-07-29 07:27:03 UTC MAIN commitmail json YAML

py-uvicorn: updated to 0.11.7

0.11.7
SECURITY FIX: Prevent sending invalid HTTP header names and values.
SECURITY FIX: Ensure path value is escaped before logging to the console.

(adam)

2020-07-29 07:26:41 UTC MAIN commitmail json YAML

2020-07-29 07:26:23 UTC MAIN commitmail json YAML

jasper: remove patch to reset keyword substitution

(wiz)

2020-07-29 07:25:37 UTC MAIN commitmail json YAML

py-asn1crypto: updated to 1.4.0

1.4.0
- `core.ObjectIdentifier` and all derived classes now obey X.660 則7.6 and
  thus restrict the first arc to 0 to 2, and the second arc to less than
  40 if the first arc is 0 or 1. This also fixes parsing of OIDs where the
  first arc is 2 and the second arc is greater than 39.
- Fixed `keys.PublicKeyInfo.bit_size` to return an int rather than a float
  on Python 3 when working with elliptic curve keys
- Fixed the `asn1crypto-tests` sdist on PyPi to work properly to generate a
  .whl

(adam)

2020-07-29 07:07:38 UTC MAIN commitmail json YAML

Updated graphics/leptonica, graphics/jasper

(adam)

2020-07-29 07:03:59 UTC MAIN commitmail json YAML

jasper: updated to 2.0.19

version-2.0.19

Unfortunately 2.0.17 was released on a branch. Later the branch was
removed and the 2.0.17 tag was placed on another commit and branch.

This resulted in various distros who pulled the tarball at different
times two have different jasper versions for 2.0.17.

https://repology.org/project/jasper/versions shows that some even have a
2.0.18.

To reduce all this confusion I will release 2.0.19 now.
With a clean changelog referencing what @MaxKellermann and @jubalh (me)
did on our fork at jasper-maint.

If we want to revert things later or improve the changelog this can be
easily done on master ontop of this.
But I feel we need this release to reduce the confusion and put the
project on a clear track again.

(adam)

2020-07-29 07:03:09 UTC MAIN commitmail json YAML

doc: Updated security/tor-browser-noscript to 11.0.34

(wiz)

2020-07-29 07:02:59 UTC MAIN commitmail json YAML

tor-browser-noscript: update to 11.0.34.

v 11.0.34
============================================================
x Fixed regression breaking network-based CSP injection

v 11.0.33
============================================================
x Switch from HTTP to DOM event based CSP reporting in
  compatible browsers
x [XSS] Updated HTML event attributes
x Updated TLDs

(wiz)

2020-07-29 07:02:21 UTC MAIN commitmail json YAML

leptonica: updated to 1.80.0

1.80.0:
* Improve bmp handling of 1 bpp images and sanity checking of params.
* Add function to display all rgb gamut colors
* in Makefile.am, use option serial-tests to avoid races in testing
* Make md subdirectory and add ax_split_version.md there
* Simple function for hue-invariant mapping (pixMapWithInvariantHue)
* Fixed bug in limit of ptra size when used for sorting by bins.
* Use hashmap to count pixel colors in RGB(A) images.
* Convert hashtest program to regression test hash_reg.
* Convert croptest program to regression test crop_reg.
* New color segmentation by region growing (colorfill.c)
* New regression tests: colorfill_reg, circle_reg, ccbord_reg.
* Set maxima for all allocations for common leptonica data structures.
* Don't fail when downscaling 2, 4, 8, and 32 bpp images, even
  to one pixel, invoking pixScaleSmooth().
* New functions that select 1 bpp components based on their area.
* Incremental addition to sorted array of numbers.
* new prog/fuzzing directory for oss-fuzz based fuzzing programs
* use of pixcmapIsValid() with extra argument to determine validity
  with the pix it is attached to.
* Use lept_stderr() in all programs in the prog directory.
* New program rasteroptest() for thorough testing of rasterop functions.
* Removed the pixSaveTiled*() functions
* Stubbed pixDisplayWrite().  Last used in tesseract 3.04.01 (2/2016).

(adam)

2020-07-29 07:00:34 UTC MAIN commitmail json YAML

doc: Updated devel/gettext to 0.21

(wiz)

2020-07-29 07:00:16 UTC MAIN commitmail json YAML

gettext*: update to 0.21.

Version 0.21 - July 2020

* Programming languages support:
  - Shell:
    o xgettext now recognizes and ignores 'env' invocations and environment
      variable assignments in front of commands.
  - Java:
    o xgettext now recognizes format strings in the Formatter syntax.  They
      are marked as 'java-printf-format' in POT and PO files.
    o xgettext now recognizes text blocks as string literals.
  - JavaScript:
    xgettext parses JSX expressions more reliably.
  - Ruby:
    o xgettext now supports Ruby.
    o 'msgfmt -c' now verifies the syntax of translations of Ruby format
      strings.

* Runtime behaviour:
  - On native Windows platforms, the directory that contains the message
    catalogs may now contain arbitrary Unicode characters. To make use of
    this feature, use the new function 'wbindtextdomain' instead of
    'bindtextdomain'. It allows to pass a directory name in wchar_t[] encoding.
    Note: 'wbindtextdomain' exists only on native Windows platforms.

* Improvements for translators:
  - When msgfmt writes a MO file, it now does so in such a way that processes
    that are currently using an older copy of the MO file will not crash.

* Libtextstyle:
  - Added support for emitting hyperlinks.
  - New API for doing formatted output.
  - The example programs support the NO_COLOR environment variable.

(wiz)

2020-07-28 23:28:23 UTC MAIN commitmail json YAML

2020-07-28 22:43:01 UTC MAIN commitmail json YAML

2020-07-28 20:59:23 UTC MAIN commitmail json YAML

doc: Updated textproc/lowdown to 0.7.2

(fcambus)

2020-07-28 20:57:59 UTC MAIN commitmail json YAML

lowdown: update to 0.7.2.

Version 0.7.2, 2020-07-23

Invert logic of --parse-codeindent to be correct.

(fcambus)

2020-07-28 20:56:38 UTC MAIN commitmail json YAML

doc: Updated security/sqlmap to 1.4.7

(leot)

2020-07-28 20:56:21 UTC MAIN commitmail json YAML

sqlmap: Update to 1.4.7

Changes:
1.4.7
-----
Unfortunately no changelog is provided by upstream, by looking at commit
messages it seems a mostly bug fixes release.

(leot)

2020-07-28 16:38:29 UTC MAIN commitmail json YAML

remove unneeded "version" from last commit

(scole)

2020-07-28 16:35:45 UTC MAIN commitmail json YAML

doc: Updated fonts/ttf-tlwg to version 0.7.2

(scole)

2020-07-28 16:34:49 UTC MAIN commitmail json YAML

Updated to version 0.7.2

0.7.2 (2020-05-01)
=====
- Garuda has been fine-tuned by hand for balanced cubic splines
  and optimal quadratic splines.
- All families now use OS/2 Typo metrics instead of just Win/Hhea metrics.
- The OS/2 Typo metrics of each family have been normalized for equal line
  spacing on all faces, esp. regular and bold.
- Switch to Python 3 on build scripts.
- Fix a TDS zipball naming issue in the generated CTAN zipball.

(scole)

2020-07-28 14:53:34 UTC MAIN commitmail json YAML

endless-sky: Simplify distfile handling and remove redundant WRKSRC definition

Discussed with and ok by <dholland>

(leot)

2020-07-28 14:38:32 UTC MAIN commitmail json YAML

(sysutils/wbm-{acl,proc}) removed. Built in webmin package

(mef)

2020-07-28 14:34:32 UTC MAIN commitmail json YAML

2020-07-28 14:28:31 UTC MAIN commitmail json YAML

doc: Updated archivers/arqiver to 0.6.0

(pin)

2020-07-28 14:28:01 UTC MAIN commitmail json YAML

archivers/arqiver: update to 0.6.0

V0.6.0
--------
* Added an option to (not) stretch the first column.
* Added app icon.
* A workaround for a Qt bug that might give a too small height to rows if the horizontal scrollbar isn't at its minimum value when items are removed.
* Better names for extraction folders of archives without parent directories.
* Scroll to the current item when expanding or filtering.
* Fixed startup invisibility with some window managers.
* Updated the code for Qt 5.15.

(pin)

2020-07-28 14:24:14 UTC MAIN commitmail json YAML

doc: Updated www/webkit-gtk to 2.28.4

(leot)

2020-07-28 14:24:03 UTC MAIN commitmail json YAML

webkit-gtk: Update to 2.28.4

pkgsrc changes:
- Define non-standard __WORDSIZE if not already defined (at the moment the
  patches directly patch problematic files where __WORDSIZE is used, it would
  be probably nicer to find a common place to define it).

Changes:
2.28.4
------
- Fix several crashes and rendering issues.

(leot)

2020-07-28 14:23:37 UTC MAIN commitmail json YAML

wm/frankenwm: simplify Makefile

(pin)

2020-07-28 12:46:59 UTC MAIN commitmail json YAML

doc: Updated audio/libopenmpt to 0.5.1

(fcambus)

2020-07-28 12:44:18 UTC MAIN commitmail json YAML

libopenmpt: update to 0.5.1.

ChangeLog:

### libopenmpt 0.5.1 (2020-07-26)

*  [**Bug**] `libopenmpt/libopenmpt.h` failed to compile with
    `LIBOPENMPT_NO_DEPRECATE` defined.

*  MPTM: Qxy now retriggers OPL notes if new compatibility flag is set in file.
*  MPTM: Bring back old OPL note end-of-envelope behaviour for files made with
    OpenMPT 1.28.
*  IT: Global volume slides with both nibbles set preferred the "slide up"
    nibble over the "slide down" nibble in old OpenMPT versions, unlike other
    slides. Such old files are now imported correctly again.
*  IT: Fixed an edge case where, if the filter hit full cutoff / no resonance
    on the first tick of a row where a new delayed note would be triggered, the
    filter would be disabled even though it should stay active. Fixes trace.it
    by maddie.
*  OXM: Some sample loops were not imported correctly.
*  XM: Out-of-range arpeggio clamping behaviour broke in OpenMPT 1.23.05.00.
    The arpeggios in Binary World by Dakota now play correctly again.
*  S3M: Support old-style sample pre-amp value in very early S3M files.
*  S3M: Only force-enable fast slides for files ST 3.00. Previously, any S3M
    file made with an ST3 version older than 3.20 enabled them.
*  S3M: Only apply volume and middle-C speed on instrument change if the new
    sample slot has sample data.
*  MOD: Fix an infinite loop in GamerMan by MrGamer by playing non-ProTracker
    MODs more like FT2 would.
*  M15: Improve tracker detection heuristics to never assume SoundTracker 2.0
    if there is a huge number of Dxx commands, as that is a definite hint that
    they should be treated as volume slides. Fixes Monty On The Run by
    Master Blaster.
*  MO3: Support OPL patches in MO3 files created from MPTM and S3M.
*  DBM: If a global pattern command would be lost because both effect commands
    in a cell would have to go into the regular effect column (e.g. a speed and
    a tempo command), the lost command is now attempted to be written into a
    different cell on the same row. Fixes "Party-Question V" by grogon.

*  mpg123: Update to v1.26.3 (2020-07-16).
*  stb_vorbis: Update v1.20 commit b42009b3b9d4ca35bc703f5310eedc74f584be58
    (2020-07-13).

(fcambus)

2020-07-28 09:09:20 UTC MAIN commitmail json YAML

icewm: update homepage

The previous homepage is now about hotels in Copenhagen!?

(bsiegert)