Link [ pkgsrc | NetBSD | pkgsrc git mirror | PR fulltext-search | netbsd commit viewer ]


   
        usage: [branch:branch] [user:user] [path[@revision]] keyword [... [-excludekeyword [...]]] (e.g. branch:MAIN pkgtools/pkg)




switch to index mode

recent branches: MAIN (37m)  pkgsrc-2024Q1 (15d)  pkgsrc-2023Q4 (42d)  pkgsrc-2023Q2 (74d)  pkgsrc-2023Q3 (154d) 

2024-05-13 07:34:55 UTC Now

2019-08-11 18:17:03 UTC MAIN commitmail json YAML

Updated databases/py-whisper, textproc/py-html5-parser

(adam)

2019-08-11 18:16:40 UTC MAIN commitmail json YAML

2019-08-11 18:08:01 UTC MAIN commitmail json YAML

py-whisper: updated to 1.1.5

1.1.5:
Python 3.x support fixes for whisper, carbon and graphite-web
REMOTE_BUFFER_SIZE = 0 now works properly
Multi-instance settings support
Increase performance of localdatabase tag db
avg_zero consolidation function fully supported now
Carbonlink queries working now for tagged series
Docker image migrated to Alpine, reducing the image size from ~530MB to 188MB

(adam)

2019-08-11 18:06:13 UTC MAIN commitmail json YAML

Updated devel/py-flaky, www/py-httplib2

(adam)

2019-08-11 18:05:54 UTC MAIN commitmail json YAML

py-httplib2: updated to 0.13.1

0.13.1
Python3: Use no_proxy

(adam)

2019-08-11 18:04:36 UTC MAIN commitmail json YAML

stone-soup-sdl: Force instalation of fonts

(nia)

2019-08-11 18:04:35 UTC MAIN commitmail json YAML

py-flaky: updated to 3.6.1

3.6.1:
Bugfixes - Reraise KeyboardInterrupt when running tests under pytest.

(adam)

2019-08-11 17:54:53 UTC MAIN commitmail json YAML

Updated textproc/jsoncpp, multimedia/mkvtoolnix

(adam)

2019-08-11 17:54:32 UTC MAIN commitmail json YAML

mkvtoolnix: updated to 36.0.0

Version 36.0.0 "Is That Jazz?"

New features and enhancements
* mkvmerge: mkvmerge now allows appending AV1, VP8, VP9, H.264/AVC and
  H.265/HEVC tracks whose pixel dimensions differ.

Bug fixes
* source code: fixed building with Boost 1.71.0.
* all: fixed the spelling of the H.264 & H.265 codec names.
* mkvmerge: Blu-ray MPLS handling: mkvmerge will now find corresponding M2TS
  files even if the `clip_codec_identifier` playlist item field is not set to
  `M2TS` in the MPLS file.
* mkvmerge: fixed handling of text files that use both DOS-style and
  Unix-style line endings resulting in problems such as text subtitle files
  not being parsed correctly.

(adam)

2019-08-11 17:53:27 UTC MAIN commitmail json YAML

jsoncpp: updated to 1.9.1

1.9.1:
This release contains some minor build fixes.

(adam)

2019-08-11 16:53:01 UTC MAIN commitmail json YAML

doc: Added security/libdecaf version 1.0.0

(fox)

2019-08-11 16:52:12 UTC MAIN commitmail json YAML

Added libdecaf to Makefile SUBDIRs.

(fox)

2019-08-11 16:47:52 UTC MAIN commitmail json YAML

Import of libdecaf 1.0.0 as security/libdecaf

Implementation of elliptic curve cryptography using the Montgomery
and Edwards curves Curve25519, Ed25519, Ed448-Goldilocks and
Curve448, using the Decaf / Ristretto encoding.

(fox)

2019-08-11 15:39:29 UTC MAIN commitmail json YAML

R-ggtern: add a missing dependency.

(brook)

2019-08-11 15:38:22 UTC MAIN commitmail json YAML

xplanet: fix the failing build with clang on NetBSD.

On recent NetBSD with clang, the build of xplanet was failing as
described in PR pkg/54454. This patch taken from FreeBSD fixes the
build. This closes PR pkg/54454. Revbump as the code was changed.

(ng0)

2019-08-11 15:20:12 UTC MAIN commitmail json YAML

doc: Updated databases/postgresql-postgis2 to 2.5.3

(gdt)

2019-08-11 15:20:05 UTC MAIN commitmail json YAML

postgresql-postgis2: Update to 2.5.3 (bug fixes)

PostGIS 2.5.3
2019/08/11

* Bug fixes *

  - #4348, ST_AsMVTGeom (GEOS): Enforce validation at all times (Raç‚­l Mar鱈n)
  - #4361, Fix postgis_type_name with (GEOMETRYM,3) (Matt Bretl)
  - #4326, Fix circular arc distance calculation (Paul Ramsey)
  - #4380, Simple TIN support to allow viz in QGIS (Paul Ramsey)
  - #4388, AddRasterConstraints: Ignore NULLs when generating constraints (Raç‚­l Mar鱈n)
  - #4327, Avoid pfree'ing the result of getenv (Raç‚­l Mar鱈n)
  - #4406, Throw on invalid characters when decoding geohash (Raç‚­l Mar鱈n)
  - #4440, Internal type lookups fail over FDW (Paul Ramsey)
  - #4445, Fix bug in lwgeom_le (Raç‚­l Mar鱈n)
  - #4466, Fix undefined behaviour in _postgis_gserialized_stats (Raç‚­l Mar鱈n)
  - #4209, Handle NULL geometry values in pgsql2shp (Paul Ramsey)
  - #4419, Use protobuf version to enable/disable mvt/geobuf (Paul Ramsey)
  - #4437, Handle POINT EMPTY in shape loader/dumper (Paul Ramsey)
  - #4461, ST_AsTWKB doesn't always remove duplicate points (Nicklas Av辿n)
  - #4459, Fix ST_Subdivide crash on intermediate EMPTY (Darafei Praliaskouski)
  - #4470, ST_GeomFromGeoJSON crash on empty rings (Darafei Praliaskouski)
  - #4420, update path does not exists for address_standardizer extension (Regina Obe)

(gdt)

2019-08-11 13:25:21 UTC MAIN commitmail json YAML

2019-08-11 13:02:00 UTC MAIN commitmail json YAML

perl5/bl3.mk: Fix logic error in previous.

(wiz)

2019-08-11 12:46:55 UTC MAIN commitmail json YAML

libcerf: updated HOMEPAGE

(adam)

2019-08-11 12:21:55 UTC MAIN commitmail json YAML

texlive-collection-publishers: sync with rev 51837

(markd)

2019-08-11 12:19:22 UTC MAIN commitmail json YAML

texlive-collection-mathscience: sync with rev 51823

(markd)

2019-08-11 12:14:59 UTC MAIN commitmail json YAML

texlive-collection-latexextra: sync with rev 51779

(markd)

2019-08-11 12:12:30 UTC MAIN commitmail json YAML

Updated security/py-certifi, finance/py-braintree, security/py-gssapi, textproc/py-lxml

(adam)

2019-08-11 12:12:02 UTC MAIN commitmail json YAML

py-lxml: updated to 4.4.1

4.4.1:

Bugs fixed

* The order of an OrderedDict was lost in 4.4.0 when passing it as
  attrib mapping during element creation.

* The package metadata now lists the supported Python versions.

(adam)

2019-08-11 12:11:16 UTC MAIN commitmail json YAML

texlive-collection-fontsextra: sync with rev 51763

(markd)

2019-08-11 12:06:15 UTC MAIN commitmail json YAML

py-gssapi: updated to 1.6.1

v1.6.1:
Features
* Windows support, with wheels!
* GSSAPI extension rfc4178 (set_neg_mechs) support
* Expose mechanisms in the high-level API
* Test suite improvements

Documentation
* Add documentation for common cred store values
* Documentation typo fixes

(adam)

2019-08-11 12:02:17 UTC MAIN commitmail json YAML

py-braintree: updated to 3.56.0

3.56.0:
Add PayPalHere details
Add networkResponseCode and networkResponseText to transactions and verifications
Add cavv, xid, ds_transaction_id, eci_flag, and three_d_secure_version, to three_d_secure_info
Add three_d_secure_info to credit_card_verification
Add GraphQLClient to BraintreeGateway class

(adam)

2019-08-11 12:01:47 UTC MAIN commitmail json YAML

py-certifi: updated to 2019.6.16

2019.6.16:
Unknown changes

(adam)

2019-08-11 11:53:22 UTC MAIN commitmail json YAML

tex package updates

(markd)

2019-08-11 11:51:13 UTC MAIN commitmail json YAML

2019-08-11 11:43:05 UTC MAIN commitmail json YAML

Updated databases/postgresqlNN

(adam)

2019-08-11 11:40:46 UTC MAIN commitmail json YAML

2019-08-11 11:40:11 UTC MAIN commitmail json YAML

postgresqlNN: updated to 11.5, 10.10, 9.6.15, 9.5.19, 9.4.24

PostgreSQL 11.5, 10.10, 9.6.15, 9.5.19, 9.4.24

Security Issues

Four security vulnerabilities have been closed by this release:

CVE-2019-10208: TYPE in pg_temp executes arbitrary SQL during SECURITY DEFINER execution

Versions Affected: 9.4 - 11

Given a suitable SECURITY DEFINER function, an attacker can execute arbitrary SQL under the identity of the function owner. An attack requires EXECUTE permission on the function, which must itself contain a function call having inexact argument type match. For example, length('foo'::varchar) and length('foo') are inexact, while length('foo'::text) is exact. As part of exploiting this vulnerability, the attacker uses CREATE DOMAIN to create a type in a pg_temp schema. The attack pattern and fix are similar to that for CVE-2007-2138.

Writing SECURITY DEFINER functions continues to require
following the considerations noted in the documentation:

The PostgreSQL project thanks Tom Lane for reporting this problem.

CVE-2019-10209: Memory disclosure in cross-type comparison for hashed subplan

Versions Affected: 11

In a database containing hypothetical, user-defined hash equality operators, an attacker could read arbitrary bytes of server memory. For an attack to become possible, a superuser would need to create unusual operators. It is possible for operators not purpose-crafted for attack to have the properties that enable an attack, but we are not aware of specific examples.

The PostgreSQL project thanks Andreas Seltenreich for reporting this problem.

CVE-2019-10210: EnterpriseDB Windows installer writes PostgreSQL superuser password to unprotected temporary file

Versions Affected: The EnterpriseDB Windows installer for versions 9.4 - 11

The EnterpriseDB Windows installer writes a password to a temporary file in its installation directory, creates initial databases, and deletes the file. During those seconds while the file exists, a local attacker can read the PostgreSQL superuser password from the file.

The PostgreSQL project thanks Noah Misch for reporting this problem.

CVE-2019-10211: EnterpriseDB Windows installer bundled OpenSSL executes code from unprotected directory

Versions Affected: The EnterpriseDB Windows installer for versions 9.4 - 11

When the database server or libpq client library initializes SSL, libeay32.dll attempts to read configuration from a hard-coded directory. Typically, the directory does not exist, but any local user could create it and inject configuration. This configuration can direct OpenSSL to load and execute arbitrary code as the user running a PostgreSQL server or client. Most PostgreSQL client tools and libraries use libpq, and one can encounter this vulnerability by using any of them. This vulnerability is much like CVE-2019-5443, but it originated independently. One can work around the vulnerability by setting environment variable OPENSSL_CONF to "NUL:/openssl.cnf" or any other name that cannot exist as a file.

The PostgreSQL project thanks Daniel Gustafsson of the curl security team for reporting this problem.

Bug Fixes and Improvements

This update also fixes over 40 bugs that were reported in the last several months. Some of these issues affect only version 11, but many affect all supported versions.

Some of these fixes include:

Fix for ALTER TABLE ... ALTER COLUMN TYPE when multiple column types are modified in a single-command. This issue was introduced in the previous cumulative update (11.4, 10.9, 9.6.14, 9.5.18, 9.4.23, and 12 beta 2).
Ensure that partition key columns will not be dropped as the result of an "indirect drop," such as from a cascade from dropping the key column's data type (e.g. a custom data type). This fix is applied only to newly created partitioned tables: if you believe you have an affected partition table (e.g. one where the partition key uses a custom data type), you will need to either create a new table and move your data into it OR use pg_upgrade.
Prevent dropping a partitioned table's trigger if there are pending trigger events in child partitions. This particularly affects foreign key constraints, which are implemented by triggers.
Several additional fixes for partitioning, including a fix for partition pruning that could lead to inefficient queries.
Fix for parallel hash joins that could lead to duplicate result rows in EXISTS queries.
Several fixes for the query planner.
Several fixes for issues that would lead to query deadlocks.
Fix for multi-column foreign keys when rebuilding a foreign key constraint.
Prevent extended statistics from being built for inherited tables.
Fix for the canonicalization of date ranges that include -infinity/infinity endpoints to ensure the behavior matches the documentation.
Fix loss of fractional digits when converting very large money values to numeric.
Fix for PL/pgSQL functions that return composite types.
Make libpq ignore the \r carriage return in connection service files, which was causing connection failures in some edge cases.
Several fixes for psql, which includes avoiding incorrect tab completion options after SET variable =.
Improve reliability of contrib/amcheck's index verification.
Set initdb to prefer the timezone behavior defined by the C library instead of what is defined by localtime or posixrules. This ensures PostgreSQL uses the "real" timezone name instead of an artificial name.
Fix pg_dump to ensure that custom operator classes are dumped in the correct order to prevent creating an unrestorable dump.
Fix possible lockup in pgbench when using -R option.
Fix spinlock assembly code for MIPS CPUs so that it works on MIPS r6.
This update also contains tzdata release 2019b for DST law changes in Brazil, plus historical corrections for Hong Kong, Italy, and Palestine. This update also adds support for zic's new -b slim option to reduce the size of the installed zone files, though it is not currently being used by PostgreSQL.

(adam)

2019-08-11 11:36:08 UTC MAIN commitmail json YAML

tex-hyperref{,-doc}: update to 6.88h

Update to hyperref fixing issues reported on GitHub,
main log entries since last release:

  copy manifest to tds zip for ctan checks
  spurious dictionary file for an unknown spell checker
  additional html files from restructured manual
  updated version and changelog
  added aftergroup code
  remade luatex test-files
  adapt version number
  removed producer from dviwindo
  removed producer from dvipsone driver
  removed producer code from xetex/dvipdfm driver
  removed producer code from pdftex driver
  remove pdfproducer setting from luatex driver
  added \mu mapping to psdextra.def
  limiitiiationss
  README is now merged with the manual, apart from a basic stub
  testfile for issue 81
  gobble \thanks in pdftitle
  Dutch language \autoref support

(markd)

2019-08-11 11:27:36 UTC MAIN commitmail json YAML

tex-jsclasses: update to 2019.51726

* Small fixes for \BibTeX logo.

(markd)

2019-08-11 11:20:13 UTC MAIN commitmail json YAML

tex-beamer{,-doc}: update to 3.56

### Changed
- Improved parser for overlays

### Fixed
- Add missing commands with overlay specification
- Replace fixed text width in `inmargin` theme
- Treatment of `+` and `.` overlay specifiations

(markd)

2019-08-11 11:15:53 UTC MAIN commitmail json YAML

tex-changes{,-doc}: update to 3.1.3

Release 3.1.3 is a bugfix for an option clash for ulem and truncate and
introduces documentation of known problems and solutions.

(markd)

2019-08-11 11:11:53 UTC MAIN commitmail json YAML

2019-08-11 11:05:45 UTC MAIN commitmail json YAML

2019-08-11 10:50:28 UTC MAIN commitmail json YAML

texlive-collection-langother: sysnc with rev 51669

(markd)

2019-08-11 10:44:44 UTC MAIN commitmail json YAML

tex-titlesec{,-doc}: update to 2.11

- New license: MIT.
- Option nostruts, to remove struts inserted by titlesec.
- Reorganized code: only sty files, removed def and tss ones
  (although the mechanism for tss still works).
- Fix - Wrong hyperlinks in table of contents with the starred
    versions, because of a change of behavior of hyperref (it
    patches the behaviour of an internal macro in hyperref).
- Fix - Wrong spacing with titleps and displayed text after a
    section.
- Fix - Newly defined floats raised an error with titletoc.

(markd)

2019-08-11 10:35:32 UTC MAIN commitmail json YAML

tex-esint{,-doc}: update to 1.2b

This is an update of esint. There are new options intlimits and nointlimits
(like amsmath), and \idotsint is an alias of old \dotsint command to get all
the new symbols when using amsmath.

(markd)

2019-08-11 10:27:37 UTC MAIN commitmail json YAML

tex-babel{,-doc}: update to 3.33

- \prehyphenchar set to 0 in languages requiring it: kannada,
    marathi, tamil, etc. (lua).
- \AddBabelHook can be set for specific languages.
- Fix - !\grq in T1 behaved like the ligature !`.
- Minimal preliminary support for the experimental harftex.

(markd)

2019-08-11 10:22:56 UTC MAIN commitmail json YAML

2019-08-11 10:16:12 UTC MAIN commitmail json YAML

tex-lwarp{,-doc}: update to 0.73

Fixed \include.
Improved memoir, koma-script, caption, datatool, threeparttable, xy, fancyvrb.
Updated intopdf, tocdata, quotchap, versonotes, backnaur, musicography.
Added stackengine, lyluatex (music scores).

(markd)

2019-08-11 10:16:03 UTC MAIN commitmail json YAML

Updated lang/perl5, devel/p5-Scalar-List-Utils

(adam)

2019-08-11 10:15:45 UTC MAIN commitmail json YAML

p5-Scalar-List-Utils: updated to 1.51

1.51:

[CHANGES]
* Add TO_JSON to List::Util::_Pair
* Various minor docs fixes

[BUGFIXES]
* Don't segfault in subname() on deleted stashes
* Fix uniqnum for large floats and numeric strings

(adam)

2019-08-11 10:14:18 UTC MAIN commitmail json YAML

perl: updated to 5.30.0

what is new for perl v5.30.0

Core Enhancements
  Limited variable length lookbehind in regular expression pattern matching is now experimentally supported
      Using a lookbehind assertion (like "(?<=foo?)" or "(?<!ba{1,9}r)" previously would generate an error and
      refuse to compile.  Now it compiles (if the maximum lookbehind is at most 255 characters), but raises a
      warning in the new "experimental::vlb" warnings category.  This is to caution you that the precise behavior
      is subject to change based on feedback from use in the field.

      See "(?<=pattern)" in perlre and "(?<!pattern)" in perlre.

  The upper limit "n" specifiable in a regular expression quantifier of the form "{m,n}" has been doubled to 65534
      The meaning of an unbounded upper quantifier "{m,}" remains unchanged.  It matches 2**31 - 1 times on most
      platforms, and more on ones where a C language short variable is more than 4 bytes long.

  Unicode 12.1 is supported
      Because of a change in Unicode release cycles, Perl jumps from Unicode 10.0 in Perl 5.28 to Unicode 12.1 in
      Perl 5.30.

      For details on the Unicode changes, see <https://www.unicode.org/versions/Unicode11.0.0/> for 11.0;
      <https://www.unicode.org/versions/Unicode12.0.0/> for 12.0; and
      <https://www.unicode.org/versions/Unicode12.1.0/> for 12.1.  (Unicode 12.1 differs from 12.0 only in the
      addition of a single character, that for the new Japanese era name.)

      The Word_Break property, as in past Perl releases, remains tailored to behave more in line with expectations
      of Perl users.  This means that sequential runs of horizontal white space characters are not broken apart,
      but kept as a single run.  Unicode 11 changed from past versions to be more in line with Perl, but it left
      several white space characters as causing breaks: TAB, NO BREAK SPACE, and FIGURE SPACE (U+2007).  We have
      decided to continue to use the previous Perl tailoring with regards to these.

  Wildcards in Unicode property value specifications are now partially supported
      You can now do something like this in a regular expression pattern

        qr! \p{nv= /(?x) \A [0-5] \z / }!

      which matches all Unicode code points whose numeric value is between 0 and 5 inclusive.  So, it could match
      the Thai or Bengali digits whose numeric values are 0, 1, 2, 3, 4, or 5.

      This marks another step in implementing the regular expression features the Unicode Consortium suggests.

      Most properties are supported, with the remainder planned for 5.32.  Details are in "Wildcards in Property
      Values" in perlunicode.

  qr'\N{name}' is now supported
      Previously it was an error to evaluate a named character "\N{...}" within a single quoted regular expression
      pattern (whose evaluation is deferred from the normal place).  This restriction is now removed.

  Turkic UTF-8 locales are now seamlessly supported
      Turkic languages have different casing rules than other languages for the characters "i" and "I".  The
      uppercase of "i" is LATIN CAPITAL LETTER I WITH DOT ABOVE (U+0130); and the lowercase of "I" is LATIN SMALL
      LETTER DOTLESS I (U+0131).  Unicode furnishes alternate casing rules for use with Turkic languages.
      Previously, Perl ignored these, but now, it uses them when it detects that it is operating under a Turkic
      UTF-8 locale.

  It is now possible to compile perl to always use thread-safe locale operations.
      Previously, these calls were only used when the perl was compiled to be multi-threaded.  To always enable
      them, add

        -Accflags='-DUSE_THREAD_SAFE_LOCALE'

      to your Configure flags.

  Eliminate opASSIGN macro usage from core
      This macro is still defined but no longer used in core

  "-Drv" now means something on "-DDEBUGGING" builds
      Now, adding the verbose flag ("-Dv") to the "-Dr" flag turns on all possible regular expression debugging.

Incompatible Changes
  Assigning non-zero to $[ is fatal
      Setting $[ to a non-zero value has been deprecated since Perl 5.12 and now throws a fatal error.  See
      "Assigning non-zero to $[ is fatal" in perldeprecation.

  Delimiters must now be graphemes
      See "Use of unassigned code point or non-standalone grapheme for a delimiter." in perldeprecation

  Some formerly deprecated uses of an unescaped left brace "{" in regular expression patterns are now illegal
      But to avoid breaking code unnecessarily, most instances that issued a deprecation warning, remain legal and
      now have a non-deprecation warning raised.  See "Unescaped left braces in regular expressions" in
      perldeprecation.

  Previously deprecated sysread()/syswrite() on :utf8 handles is now fatal
      Calling sysread(), syswrite(), send() or recv() on a ":utf8" handle, whether applied explicitly or
      implicitly, is now fatal.  This was deprecated in perl 5.24.

      There were two problems with calling these functions on ":utf8" handles:

      o  All four functions only paid attention to the ":utf8" flag.  Other layers were completely ignored, so a
          handle with ":encoding(UTF-16LE)" layer would be treated as UTF-8.  Other layers, such as compression
          are completely ignored with or without the ":utf8" flag.

      o  sysread() and recv() would read from the handle, skipping any validation by the layers, and do no
          validation of their own.  This could lead to invalidly encoded perl scalars.

  my() in false conditional prohibited

      Declarations such as "my $x if 0" are no longer permitted.

  Fatalize $* and $#
      These special variables, long deprecated, now throw exceptions when used.

  Fatalize unqualified use of dump()
      The "dump()" function, long discouraged, may no longer be used unless it is fully qualified, i.e.,
      "CORE::dump()".

  Remove File::Glob::glob()
      The "File::Glob::glob()" function, long deprecated, has been removed and now throws an exception which
      advises use of "File::Glob::bsd_glob()" instead.

  "pack()" no longer can return malformed UTF-8
      It croaks if it would otherwise return a UTF-8 string that contains malformed UTF-8.  This protects against
      potential security threats.  This is considered a bug fix as well.

  Any set of digits in the Common script are legal in a script run of another script
      There are several sets of digits in the Common script.  "[0-9]" is the most familiar.  But there are also
      "[\x{FF10}-\x{FF19}]" (FULLWIDTH DIGIT ZERO - FULLWIDTH DIGIT NINE), and several sets for use in
      mathematical notation, such as the MATHEMATICAL DOUBLE-STRUCK DIGITs.  Any of these sets should be able to
      appear in script runs of, say, Greek.  But the design of 5.30 overlooked all but the ASCII digits "[0-9]",
      so the design was flawed.  This has been fixed, so is both a bug fix and an incompatibility.

      All digits in a run still have to come from the same set of ten digits.

  JSON::PP enables allow_nonref by default
      As JSON::XS 4.0 changed its policy and enabled allow_nonref by default, JSON::PP also enabled allow_nonref
      by default.

Deprecations
  In XS code, use of various macros dealing with UTF-8.
      This deprecation was scheduled to become fatal in 5.30, but has been delayed to 5.32 due to problems that
      showed up with some CPAN modules.  For details of what's affected, see perldeprecation.

Performance Enhancements
      o  Translating from UTF-8 into the code point it represents now is done via a deterministic finite
          automaton, speeding it up.  As a typical example, "ord("\x7fff")" now requires 12% fewer instructions
          than before.  The performance of checking that a sequence of bytes is valid UTF-8 is similarly improved,
          again by using a DFA.

      o  Eliminate recursion from finalize_op().

      o  A handful of small optimizations related to character folding and character classes in regular
          expressions.

      o  Optimization of "IV" to "UV" conversions.

      o  Speed up of the integer stringification algorithm by processing two digits at a time instead of one.

      o  Improvements based on LGTM analysis and recommendation.

      o  Code optimizations in regcomp.c, regcomp.h, regexec.c.

      o  Regular expression pattern matching of things like "qr/[^a]/" is significantly sped up, where a is any
          ASCII character.  Other classes can get this speed up, but which ones is complicated and depends on the
          underlying bit patterns of those characters, so differs between ASCII and EBCDIC platforms, but all case
          pairs, like "qr/[Gg]/" are included, as is "[^01]".

(adam)

2019-08-11 10:06:13 UTC MAIN commitmail json YAML

texlive-collection-langcyrillic: Add tex-babel-serbian

(markd)

2019-08-11 10:04:31 UTC MAIN commitmail json YAML

print: Add tex-babel-serbian

(markd)

2019-08-11 10:03:33 UTC MAIN commitmail json YAML

tex-babel-serbian: Added version 2.0

The package provides support for Serbian documents written in
Latin, in babel.

(markd)

2019-08-11 10:02:51 UTC MAIN commitmail json YAML

doc/TODO: add some

+ ImageMagick-7.0.8.60, MesaLib-19.1.4, filezilla-3.44.1, gtk-doc-1.31,
  libfilezilla-0.18.0, libuv-1.31.0, mame-0.212, ocaml-4.08.1,
  oniguruma-6.9.3, pango-1.44.3, py-gobject3-common-3.32.2,
  py-oauthlib-3.1.0, thunderbird-enigmail-2.1.1 [needs thunderbird-68.0].

(wiz)

2019-08-11 09:09:41 UTC MAIN commitmail json YAML

haproxy: re-do patch to enable XPG4.2 on SunOS.

Define _XOPEN_SOURCE 500/600 based on C mode, as we do in other patches
for this package.

From wilbury and jperkin, thanks.

(maya)

2019-08-11 05:49:07 UTC MAIN commitmail json YAML

tex package updates

(markd)

2019-08-11 05:46:39 UTC MAIN commitmail json YAML

texlive-collection-langportuguese: update to 2019.51640

Add tex-numberpt

(markd)

2019-08-11 05:44:45 UTC MAIN commitmail json YAML

print: add tex-numberpt{,-doc}

(markd)

2019-08-11 05:43:33 UTC MAIN commitmail json YAML

tex-numberpt{,-doc}: Add version 1.0

This packages defines commands to display counters spelled out
in Portuguese. The styles are \numberpt for "all lowercase"
\Numberpt for "First word capitalized" \NumberPt for "All
Capitalized" \NUMBERPT for "ALL UPPERCASE" For example,
\renewcommand{\thechapter}{\NumberPt{chapter}} makes chapter
titles to be rendered as "Capitulo Um", "Capitulo Dois" etc.
Options are offered to select variations in the spelling of
"14", or Brazilian vs. European Portuguese forms in the
spelling of "16", "17", and "19". The package requires expl3
and xparse.

(markd)

2019-08-11 05:40:19 UTC MAIN commitmail json YAML

tex-luaotfload{,-doc}: update to 2.98

- The fontloader has been synced with the context files from 2019-07-04.
- A number of small bugs has been resolved, see NEWS
- fonts can now be embolden
- missing characters are now visible

(markd)

2019-08-11 05:36:13 UTC MAIN commitmail json YAML

tex-lualibs: update to 2.66

This version syncs the files with the ConTeXt files from 2019-07-04.

(markd)

2019-08-11 05:03:13 UTC MAIN commitmail json YAML

tex-circuitikz{,-doc}: update to 0.9.3

Release 0.9.3, official date 13 Jul 2019
  This is mainly a bugfix release.
    - Added the option to have "dotless" P-MOS (to use with arrowmos option)
    - Fixed a (puzzling) problem with coupler2
    - Fixed a compatibility problem with newer PGF (>3.0.1a)
Release 0.9.2 (2019-06-21)
  - (hopefully) fixed ConTeXt compatibility. Most new functionality is not
    tested; testers and developers for the ConTeXt side are needed.
  - Added old ConTeXt version for 0.8.3
  - Added tailless ground

Release 0.9.1:
  - Added old LaTeX versions for 0.8.3, 0.7, 0.6 and 0.4
  - Added the option to have inline transformers and gyrators
  - Added rotary switches
  - Added more configurable bipole nodes (connectors) and more shapes
  - Added 7-segment displays
  - Added vacuum tubes by J. op den Brouw
  - Made the open shape of dcisources configurable
  - Made the arrows on vcc and vee configurable
  - Fixed anchors of diamondpole nodes
  - Fixed a bug about unstable anchors in the chip components
  - Fixed a regression in label placement for some values of scaling
  - Fixed problems with cute switches anchors

(markd)

2019-08-11 04:55:55 UTC MAIN commitmail json YAML

2019-08-11 04:50:53 UTC MAIN commitmail json YAML

tex-fontools{,-doc}: update to 2019.51625

- New tool in the fontools collection:
    - splitttc: splits an OpenType Collection file into separate fonts

- Changes in autoinst:
    - Added -mergeweights and -mergeshapes options
    - Improved parsing of fonts' widths and weights
    - Improved mapping of widths and weights to NFSS codes
    - Warn when installing fonts from multiple families
    - Added (simple) automatic recognition of sanserif and typewriter fonts
    - Added encoding files for T3 and TS3 to distribution
    - Bugs fixed:
        - always log results of font info parsing
        - -inferiors without value would gobble next option or argument
        - fixed error checking after calls to otfinfo

(markd)

2019-08-11 04:34:57 UTC MAIN commitmail json YAML

2019-08-11 04:27:00 UTC MAIN commitmail json YAML

tex-greek-inputenc{,-doc}: update to 1.7

iso-8859-7.def:
Use LICR macros instead of transliteration and remove ``\textbullet``
substitution character. (Missing characters will now result in the
standard ``inputenc`` error message.)

lgrenc.dfu: Remove duplicate definitions.

Update documentation and tests.

(markd)

2019-08-11 04:21:42 UTC MAIN commitmail json YAML

tex-gentium-tug{,-doc}: update to 1.1.1

This update to the gentium-tug package changes only the
lgr-gentiumplus-regular.tfm and lgr-gentiumplus-italic.tfm
metric files. Now, as expected for the LGR encoding, a sigma
at the end of a word, or followed by punctuation, will be
automatically changed (via the TeX/MF ligature mechanism)
to a final sigma. All the pfb/ttf/etc. files, and all the
other metric files, are unchanged. The documentation is
slightly updated.

Big thanks to Ralf Stubner for suggesting and then implementing this!

The major addition in this gentium-tug TeX package remains
Type 1 fonts corresponding to the TrueType originals. These
incorporate the name "Gentium" by permission of SIL given to
the TeX Users Group. The package also includes support files
for LaTeX and ConTeXt, and TeX-specific documentation
discussing the supported encodings, etc.

(markd)

2019-08-11 04:14:41 UTC MAIN commitmail json YAML

2019-08-11 04:06:00 UTC MAIN commitmail json YAML

2019-08-11 03:58:31 UTC MAIN commitmail json YAML

tex-mcf2graph{,-doc}: update to 4.44

-add binop for add()
    a << b : a rotated b
-improve embedded font
-update MCF manual
-improve to ignore unknown command

(markd)

2019-08-11 03:53:53 UTC MAIN commitmail json YAML

2019-08-11 03:49:22 UTC MAIN commitmail json YAML

2019-08-11 03:45:14 UTC MAIN commitmail json YAML

tex-babel-turkish: update to 1.4

Updated for the TU encoding.

(markd)

2019-08-11 03:42:35 UTC MAIN commitmail json YAML

2019-08-11 03:36:34 UTC MAIN commitmail json YAML

texlive-collection-latexrecommended: update to 2019.51533

Add tex-l3backend

(markd)

2019-08-11 03:33:55 UTC MAIN commitmail json YAML

devel: add tex-l3backend{,-doc}

(markd)

2019-08-11 03:32:46 UTC MAIN commitmail json YAML

tex-l3backend{,-doc}: Add version 2019

This package forms parts of expl3, and contains the code used
to interface with backends (drivers) across the expl3 codebase.
The functions here are defined differently depending on the
engine in use. As such, these are distributed separately from
l3kernel to allow this code to be updated on an independent
schedule.

(markd)

2019-08-11 03:29:45 UTC MAIN commitmail json YAML

tex-l3kernel{,-doc}: update to 2019.51546

### Added
- Experimental `\file_compare_timestamp:nNn(TF)`
### Changed
- Precedence of juxtaposition (implicit multiplication) in l3fp
  now different for keywords/variables and factors in parentheses

split some files into separate tex-l3backend package

(markd)

2019-08-11 03:22:21 UTC MAIN commitmail json YAML

2019-08-11 03:17:31 UTC MAIN commitmail json YAML

tex-l3experimental: update to 2019.51546

## Fixed
- Clipping of paths by `l3draw`
## Added
- New `l3graphics` module
### Fixed
- Missing `\scan_stop:` in benchmark code

(markd)

2019-08-10 23:46:39 UTC MAIN commitmail json YAML

doc: Updated audio/fasttracker2 to 2.165

(fox)

2019-08-10 23:45:56 UTC MAIN commitmail json YAML

fasttracker2: Update to b165

Changes since b164

Beta #165 - 09.08.2019
- Bugfix: If all 22 character slots in a sample's name were used, weird things
  would happen, and could very well end in a fatal crash where no backups
  would be saved (!). I should get the "Most Stupid Bug" award for this one.
- Bugfix: Fixed a possible issue with Nibbles highscore name entering if you
  used all character slots.

(fox)

2019-08-10 20:45:56 UTC MAIN commitmail json YAML

haproxy: -D_XPG4_2 on sunos, to fix build. from wilbury

(maya)

2019-08-10 19:49:16 UTC MAIN commitmail json YAML

doc: Updated pkgtools/x11-links to 1.24

(maya)

2019-08-10 19:47:38 UTC MAIN commitmail json YAML

2019-08-10 19:35:06 UTC MAIN commitmail json YAML

doc: Updated pkgtools/x11-links to 1.23

(maya)

2019-08-10 19:34:46 UTC MAIN commitmail json YAML

2019-08-10 13:54:35 UTC MAIN commitmail json YAML

doc: Updated net/mikutter to 3.9.3

(tsutsui)

2019-08-10 13:54:17 UTC MAIN commitmail json YAML

mikutter: update to 3.9.3.

Upstream changes:

mikutter 3.9.3

* avoid use of deperecated NUL separated strings for patterns
  passed to Dir.glob
* discard widgets when setting window is switched
* make it possible to define event listeners and filters in Setting DSL
  for this change

(tsutsui)

2019-08-10 13:25:13 UTC pkgsrc-2019Q2 commitmail json YAML

Pullup tickets up to #6030

(bsiegert)

2019-08-10 13:24:56 UTC pkgsrc-2019Q2 commitmail json YAML

Pullup ticket #6030 - requested by nia
devel/SDL2: security fix

Revisions pulled up:
- devel/SDL2/Makefile                                          1.38
- devel/SDL2/distinfo                                          1.34
- devel/SDL2/patches/patch-src_audio_netbsd_SDL__netbsdaudio.c  deleted
- devel/SDL2/patches/patch-src_joystick_bsd_SDL__sysjoystick.c  1.7

---
  Module Name: pkgsrc
  Committed By: nia
  Date: Sat Jul 27 15:29:10 UTC 2019

  Modified Files:
  pkgsrc/devel/SDL2: Makefile distinfo
  pkgsrc/devel/SDL2/patches: patch-src_joystick_bsd_SDL__sysjoystick.c
  Removed Files:
  pkgsrc/devel/SDL2/patches: patch-src_audio_netbsd_SDL__netbsdaudio.c

  Log Message:
  SDL2: Update to 2.0.10

  Changes:

  * Fixed bug 4347 - Keyboard LEDs don't work on linux console
  * Fixed bug 4349 - SDL_CreateWindow fails with KMS/DRM after upgrading Mesa to 18.2.3
  * Fix crash when GL_LoadFunctions()/GLES2_LoadFunctions() fails
  * fix NetBSD C90 build failure
  * joystick: Add Linux mappings for "Xbox One Wireless Controller (Model 1708)"
  * Closing SDL-ryan-batching-renderer branch.
  * Merge SDL-ryan-batching-renderer branch to default.
  * merge fallout: Patched to compile, fixed some compiler warnings, etc.
  * fix build using Watcom :
  * metal: remove an obsolete section of a constant buffer.
  * metal: avoid an extra buffer allocation and GPU data copy in RunCommandQueue, it's not needed. Improves overall performance.
  * Remove machine-specific IncludePath from SDL.vcxproj
  * Fixed bug 4315 - little Warning in Android_JNI_CaptureAudioBuffer
  * Fixed bug 4319 - Android remove reflection for PointerIcon
  * Fixed bug 4320 - Android remove reflection for HIDDeviceBLESteamController
  * Fixed bug 4308 - Prebuilt SDL.dll files not compiled with ASLR support (DYNAMICBASE)
  * mir: Removed mir client support.
  * metal: fix the size of the buffer used for constant data.
  * metal: fix the SDL_RENDERER_PRESENTVSYNC flag not being set on the renderer info on macOS, when vsync is used.
  * metal: SDL_RenderReadPixels on macOS synchronizes the render target's texture data if it's managed, before reading from it.
  * fix bug #4362 - SDL_syswm.h with SDL_PROTOTYPES_ONLY broken in C++ mode
  * close_code.h: #error if included without matching begin_code.h
  * close_code.h: #error if included without matching begin_code.h
  * wayland: fix resizing and fullscreen toggling
  * Added Vulkan headers version 1.1.91
  * The Debian maintainers aren't using these rules, so enable dynamic loading of shared libraries by default for the Steam Linux Runtime
  * Used confflags +=, so each option can be enabled individually, if desired
  * Add SDL_TouchDeviceType enum and SDL_GetTouchDeviceType(SDL_TouchID id).
  * cocoa: fix building with the macOS 10.7 SDK (thanks Riccardo!)
  * Fixed bug 4367 - compatibility version decreased between 2.0.8 and 2.0.9
  * Fixed bug 4366 - Compile throws a warning on RPI (Raspbian Stretch)
  * Fixed bug 4377 - SDL_PIXELFORMAT enum is anonymous, which prevents its use in a templated function
  * revert commit aad2440e3d61 for consistency (c.f. bug #4367.)
  * Fixed bug 3193 - Dualshock 3's motion sensors overwrite analog stick
  * software: fix blits with color mods that change during a command queue run.
  * fix permissions
  * The default draw blendmode is SDL_BLENDMODE_NONE
  * Fixed a few compiler warnings.
  * Back out change initializing renderer blend mode incorrectly.
  * opengles: Fixed compiler warnings.
  * libm: Watcom defines huge=__huge: undefine it to fix build using Watcom.
  * os/2 bits for SDL_malloc.c -- from libffi
  * Fixed bug 4391 - hid_enumerate() sometimes causes game to freeze for a few seconds
  * Fixed bug 4392 - SDL_cpuinfo.h breaks compilation with C bool type
  * Fixed bug 4394 - Crash in SDL_PumpEvents() after SDL_DestroyWindow()
  * wayland: ask xdg-decoration protocol extension to use server-side decorations if possible.
  * metal: SDL_RenderFillRects uses one draw call per 16k rectangles (within the given FillRects call), instead of one draw call per rectangle. Reduces CPU usage when drawing many rectangles.
  * metal: Fix an incorrect division.
  * Do a second pass to find libraries without a single version digit after the .so
  * Added atomics support for armv8-a (Raspberry Pi 3)
  * metal: use a staging texture in SDL_UpdateTexture, to make sure it doesn't stomp texture data being drawn in a previous frame on the GPU.
  * SDL_touch.h (SDL_TouchDeviceType): remove comma at end of enumerator list.
  * Fixed bug changing cursors on Raspberry Pi
  * Fixed the hotspot for cursors on Raspberry Pi
  * Added support for the Razer Raiju Mobile
  * Patched to compile on Linux with --disable-threads.
  * Patched to compile on Linux with threads enabled.  (whoops!)
  * Added some detail to a Doxygen comment (thanks, Sylvain!).
  * android: use cpufeatures to support SDL_HasNEON() (thanks, Sylvain!).
  * kmsdrm: uninitialized KMSDRM fixes
  * kmsdrm: Check for resources when validating KMSDRM device in check_modesetting.
  * directfb: Updated render backend to new internal API.
  * cmake: Comment out some debug logging that can upset build environments.
  * Patched to compile on C89 compilers.
  * render: fix some static analysis warnings.
  * android: use __ARM_NEON instead of __ARM_NEON__ to include <arm_neon.h>
  * Windows: NEON detection and intrinsic includes on Visual Studio
  * Update comment URL of USB document (HID Usage Tables 1.12)
  * Fix comment and end of lines
  * Fixed the PS4 motion controls showing up as a separate game controller on Linux
  * Warnings: fix a documentation warning and missing prototypes
  * wayland: Send SDL_TOUCH_MOUSEID mouse events for touches.
  * linux: Move SDL_LinuxSetThreadPriority() elsewhere to fix build.
  * egl: Don't force X11 support when testing for EGL.
  * joystick: Added controller config for IMS Passenger Control Unit Devices.
  * Fixed the ROCCAT Tyon mouse showing up as a joystick on Windows
  * Whoops, forgot to add a new source file.  :/
  * joystick: Removed unused variable.
  * Fix warnings detected on Android build
  * opengles2: fix prototype of glDeleteBuffers
  * Fix warnings detected on Android build
  * wayland: Do not try to lock on an invalid pointer
  * Made it more clear that the values being compared are floats
  * Added the hint SDL_HINT_GAMECONTROLLERCONFIG_FILE to specify a file to load at initialization containing SDL game controller mappings
  * Fixed bug 4415 - SDL menu bar is nonstandard on Mac
  * Fixed bug 4379 - fix parallel build with slibtool
  * Linux Haptic: Fix periodic.magnitude value
  * Rename _SDL_sensor_h in public header, not to trigger Wreserved-id-macro
  * Handle both "Sony Interactive Intertainment" and "Sony Computer Entertainment" when ignoring motion sensors
  * Fixed building with the 10.10 SDK
  * Fixed bug 4425 - promote to alpha format, palette surface with alpha values.
  * emscripten: SDL_PrivateJoystickAdded() wants an instance id, not device index.
  * Fixed bug 4426 - allows re-creation of software renderer
  * cocoa: Implement OpenGL swap interval support with CVDisplayLink.
  * testgl2: Press 'o' or 'p' to decrease/increase OpenGL swap interval.
  * Gesture: remove warnings when ENABLE_DOLLAR is undefined.
  * metal: Implement SDL_LockTexture for non-YUV textures.
  * metal: Implement SDL_LockTexture for YUV formats.
  * render: Prefer the Metal renderer over OpenGL.
  * render: Fix internal state getting out of sync when destroying a texture that was just rendered and then creating a new one, in the GL and GLES2 backends. Fixes bug #4433.
  * opengles 1: use color from 'draw' union in SetDrawState()
  * opengles 1: same fix as in bug #4433
  * PSP renderer: use colors from 'draw' union (very likely, but un-tested)
  * Fixed bug 3511 - documentation to end an Android application
  * Fixed bug 3186 - Android SW keyboard not restored when app becomes foreground.
  * Android: fixed comments and spaces
  * Android: on rare occasion, prevent Android_JNI_GetNativeWindow() from crashing
  * Fixed bug 4424 - Android windowed mode is broken (Thanks Jonas Thiem!)
  * Android: make sure surfaceChanged try to enter into 'resumed' state.
  * Fixed bug 3250 - Wrong backbuffer pixel format on Android, keep getting RGB_565
  * Android: preparation bug 4142, reduce usage of global variable Android_Window
  * Android: minor preparation for bug 4142 (concurrency issues)
  * Fixed bug 4142 - Concurrency issues in Android backend
  * Android: prevent the error message from SDL_EGL_CreateSurface() to be masked.
  * Android: use Mutex instead of Semphore for bug 4142
  * Android: concurrency issue with egl_surface EGL_BAD_SURFACE - (bug 4142)
  * Android: make Android_PumpEvents() more readable
  * Android: fixed immediate transition to pause and resume.
  * Updated copyright for 2019
  * Fixed bug 4255 - SDL_GetGlobalMouseState() returns incorrect Y on secondary display
  * Android: fix wrong state after immediate sequence pause() / resume() / pause()
  * Android: un-needed check of "isPausing" and minor typos
  * Android: remove SURFACE_TYPE_GPU, deprecated in API level 5.
  * Android: allow multiple calls to nativeResume()
  * Android: better fix for bug 3186. Run those commands from SDL thread.
  * Android: some robustness when quitting application from onDestroy()
  * Android: don't allow multiple instance of SDLActivity
  * Android: concurrency issue for Android_SetWindowFullscreen()
  * Android: native_window validity is guaranteed between surfaceCreated and Destroyed
  * Android: add some SetError for Android_SetWindowFullscreen
  * Android: prevent a dummy error message sending SDL_DISPLAYEVENT_ORIENTATION
  * Android: un-needed transition to Pause state.
  * Android: only send Quit event to SDLThread if it's not already terminated
  * Android: nativeQuit for SDLActivity thread
  * Android: some simplification, don't need mExitCalledFromJava
  * Android: remove deprecated PixelFormat in surfaceChanged()
  * Fixed bug 3930 - Android, set thread priorities and names
  * Android: add name for Touch devices and simplification, from bug 3958
  * Android: fix prototype of Android_JNI_InitTouch
  * Android: fix bad merge from previous commit
  * Android: don't call Android_JNI_ThreadDestroyed() for Java SDLThread
  * Android: use pthread_once for creating thread key 'mThreadKey'
  * Android: Audio thread is already setup for the JVM
  * Android: use the same naming for JNI env local variables
  * Android: change the way JNIEnv is retrieved
  * Android: move and group JNIEnv helper functions
  * Fixed bug 4453 - GLES / GLES2: first white renderer clear cmd is drawn as black
  * Updated minimum supported Android version to API 16, to match latest NDK toolchain
  * Fixed compiler warning
  * Initial Android OpenSL ES implementation, contributed by ANTA
  * Android/openslES: some space and indentation to match SDL conventions
  * Android/openslES: register and use CloseDevice function.
  * Android/openslES: move a few static variables to SDL_PrivateAudioData structure
  * Android/openslES: set audio in paused/resumed state for Android event loop
  * Android/openslES: start playing, after creating ressources
  * Android/openslES: check for non NULL variable, some intialization.
  * Android: minor, remove static attributes, move mIsSurfaceReady to SDLSurface
  * Android/openslES: fix Pause/ResumeDevices when openslES is not used
  * Android: create Pause/ResumeSem semaphore at higher level than CreateWindow()
  * evdev: Add touchscreen mouse emulation and pressure support (thanks, Zach!).
  * evdev: don't debug log on a BTN_TOUCH from a non-touch device.
  * Android: remove old code after Android-16 has been set as minimum requirement
  * Android: remove trailing spaces
  * Android: merge SDLJoystickHandler_API12 and SDLJoystickHandler_API16
  * Android: move static variable isPaused/isPausing to SDL_VideoData structure
  * Android: add mutex protection to onNativeOrientationChanged
  * Fixed bug 4024 - remove trailing comma of Controller mappings
  * Android: also update APP_PLATFORM to android-16 in Application.mk
  * Android: prevent concurrency in Android_SetScreenResolution() when exiting
  * Android: remove hard-coded constant for Samsung DeX (no op!)
  * Android: minor change in the evaluation of SOURCE_CLASS_JOYSTICK (no op!)
  * Android: remove another hard-coded constant for Samsung DeX (no op!)
  * Android: remove duplicate code in SDLGenericMotionListener_API24
  * Fixed bug 3657 - Color-key doesn't work when an alpha channel is present
  * Fixed compiler warning on Android
  * Android: automatically attach to the JVM non-SDL threads
  * Android: some typos
  * Fixed compiler warning
  * Fixed bug 3827 - issue with MapRGB, palette and colorkey
  * Fixed bug 3827 - issue with MapRGB, palette and colorkey
  * Revert SDL_gamecontrollerdb.h and sort_controllers.py from bug 4024
  * Fixed bug 4024 - GameController error "Unexpected controller element"
  * Fixed bug 4290 - add fastpaths for format conversion in BlitNtoN
  * Add explicit unsigned int and char types in (for bug 4290)
  * Fixed failing SDL_ConvertSurface() when blit has failed.
  * Fix blit with blending (Blit_A) to RGB332 which has no palette
  * Add fast paths in BlitNtoNKey
  * Add SDL_MEMALIGNED flag for SDL_Surface using aligned memory.
  * iOS/tvOS: fix support for SDL_GameControllerGetButton(controller, GUIDE) with MFi controllers (thanks Caleb!)
  * Rename surface aligned memory flag to SDL_SIMD_ALIGNED
  * Fix include path compilation
  * Fixed bug 4484 - use SIMD aligned memory for SDL_Surface
  * render: Fix OpenGL draw state cache for various points of texture binding.
  * opengles1: keep cached texturing state correct.
  * opengles2: keep cached texturing state correct.
  * opengles2: patched to compile.
  * Android/openslES: prevent to run out of buffers if Enqueue() fails.
  * Android/openslES: set number of buffers of DATALOCATOR to internal NUM_BUFFER
  * Android/openslES: fix warnings, comment out un-used interface
  * Faster blit when using CopyAlpha + ColorKey
  * Fix pointer warnings
  * Faster blit when using No Alpha or Set Alpha, + ColorKey
  * Faster blit with no ColorKey
  * Fix wrong comment
  * Code factorization of the pixel format permutation
  * Faster blit with CopyAlpha, no ColorKey
  * Some simplification of previous commit
  * Fix wrong access and simplify
  * Faster blit colorkey or not, applied to bpp: 3->4 and 4->3
  * Better naming for the blit permutation variables
  * Fix invalid memory access and optimise Blit_3or4_to_3or4__*
  * Fixed bug 4500 - Heap-Buffer Overflow in Map1toN pertaining to SDL_pixels.c
  * Fixed bug 4500 - Heap-Buffer Overflow in Map1toN pertaining to SDL_pixels.c
  * Fix bug 4053: Blit issues on Big Endian CPU
  * Fix windows build
  * raspberry: expose second display.
  * BlitNtoN BlitNtoNKey: remove non-aligned word read/store (bpp 3<->4) (Bug 4503)
  * Un-activate some routine on mips because they are slowers (Bug 4503)
  * KMSDRM: change calls free() to SDL_free() (Bug 4529)
  * KMSDRM: missing return value in VideoInit() (Bug 4530)
  * SDL_MouseQuit(): clear mouse->cur_cursor (Bug 4530)
  * Fixed bug 4542 - Image flipped vertically when rendering on texture
  * SDL_EVDEV_kbd_init: uninitialized data for ioctl (Bug 4530)
  * Fixed bug 4513 - Wayland, fix crash when remove event is sent (from Sebastian Krzyszkowiak)
  * HIDAPI: fix bug that caused non-HID class parts of composite devices to have windows HID functions called on them.
  * Fixed initial display orientation at Android app start
  * [iOS DAC] Fix touch events getting from SDL2 to source2.
  * Android: check SDL is initialized before sending the event
  * Android: minor comment update
  * KMSDRM: valid file descriptors could positive or 0. -1 is invalid. (Bug 4530)
  * events: Make debug logging of the event queue a hint instead of an #ifdef.
  * events: Let arbitrary signals to simulate iOS/Android backgrounding events.
  * events: Disable all the signal-handling code on platforms without support.
  * test: Moved testgesture.c over to the common SDLtest framework.
  * testgesture: minor cleanups.
  * testgesture: cleaned up code formatting, etc.
  * testgesture: Add dependency to SDLtest to Visual Studio project.
  * Fix compiler warnings.
  * Use host system pkg-config when (cross-)compiling and convert to PKG_CHECK_MODULES
  * Added missing PKG_CONFIG macros
  * Fixed bug 4452 - Please replace AC_HELP_STRING with AS_HELP_STRING
  * Fix DirectInput error codes being lost
  * Fix polling left trigger reporting right trigger's values.
  * Fixed CVE-2019-7635 and bug 4498 - Heap-Buffer Overflow in Blit1to4 pertaining to SDL_blit_1.c
  * @@ -, +, @@
  * Reject 2, 3, 5, 6, 7-bpp BMP images
  * Fixed bug 4544 - SDL2.m4 SDL2.framework patch made it impossible to fail detection
  * Fixed bug 4525 - Fix crash in ALSA_HotplugThread caused by bad return value check
  * Fixed DualShock 3 mapping
  * Fixed bug 4511 - SDL_gamecontrollerdb Mapping for Sony Playstation USB controller
  * Fixed bug 4450 - SDL_mouse.c fails to compile with CMake generated Visual Studio files if SDL_VIDEO_VULKAN 0/undefined
  * emscripten: force resize event when pixel ratio changes
  * CVE-2019-7637: Fix in integer overflow in SDL_CalculatePitch
  * Fixed configure error if pkg modules aren't available
  * Fixed Mac OS X build
  * Fixed iOS build
  * Fixed Visual Studio build
  * testgesture: Make the background gray.
  * Added support for building SDL as a dynamic library on iOS
  * Added support for building SDL as a dynamic library on tvOS
  * Fixed declaration of SDL_main_func for C++
  * Fixed building with C++
  * Fixed building with C++
  * Fixed archiving the SDL dynamic library on iOS and tvOS
  * Fixed Windows RT build
  * Didn't need to add SDL_windows.h include, that was already included
  * Fixed Visual Studio build
  * Hopefully fixed the mingw32 build
  * opengles2: Fix static analysis warning.
  * Backed out changeset ffd52bb02bcc
  * coreaudio: Set audio callback thread priority.
  * Handle potentially calling SDL_JoystickUpdate() and SDL_JoystickQuit() at the same time.
  * configure.in: Rename to configure.ac to fix an 'aclocal' warning
  * docs: Replace references to configure.in with configure.ac
  * configure.in: Rename configure.ac to fix an 'aclocal' warning
  * Bug 4576: handle mapping of TouchEvents to MouseEvents at higher level
  * Bug 4576: remove touch/mouse duplication for Windows
  * Bug 4576: remove touch/mouse duplication for linux/EVDEV
  * Bug 4576: remove touch/mouse duplication for Wayland
  * Bug 4576: remove touch/mouse duplication for Android
  * Bug 4576: fix warning and compile
  * Bug 4576: one more warning
  * Bug 4576: fix wrong scaling
  * Bug 4576: track both FingerId and TrackId
  * Add hint SDL_HINT_MOUSE_TOUCH_EVENTS for mouse events to generate touch events
  * Android: remove SDL_HINT_ANDROID_SEPARATE_MOUSE_AND_TOUCH
  * Update WhatsNew.txt
  * Update WhatsNew.txt
  * Android: default SDL_HINT_MOUSE_TOUCH_EVENTS to 1 as previous behaviour
  * Android: add hint SDL_HINT_ANDROID_BLOCK_ON_PAUSE
  * https://bugzilla.libsdl.org/show_bug.cgi?id=4577
  * Set SDL_HINT_MOUSE_TOUCH_EVENTS for iPhone and iPad as well
  * Fixed bug 4579 - SDL_android.c s_active not being atomic
  * Bug 4581: move tracking appart so it doesn't require the window to have focus
  * SDL_HINT_MOUSE_TOUCH_EVENTS: move tracking appart in case of 'window' is null
  * Fixed bug 4582 - Maximize/Resize not working on Windows 10
  * Fixed bug 4581 - mouse events with SDL_TOUCH_MOUSEID make window lost focus
  * Fixed bug 4581 - generate synthetic mouse events at window boundaries
  * Fix disabling OpenGL vsync on macOS 10.14.4+ (bug #4575).
  * Android: when event loop is not blocking in pause, backup EGL context (Bug 4578)
  * hidapi: Add GCN L/R buttons, just in case someone wants them...
  * Explicitly load hidapi as a dependency of the SDL library
  * macOS: Fix compilation when using the 10.9 SDK or older.
  * iOS: Remove code trying to support compilation on the iOS 7 SDK, the deployment target has been set to iOS 8 for years and there's other unconditionally compiled code that depends on newer SDKs so that code is useless.
  * configure: Cleaned up audio/video summaries when building for Windows.
  * Fixed bug 4580 - Android 8: immersive fullscreen notification causes flickering between fullscreen and non-fullscreen and app is unresponsive
  * Only leave fullscreen mode if we're actually going to minimize
  * Added a helper function to tell whether or not a window can be minimized
  * Android: add static variable initialization in non blocking event loop
  * Add a configure option allowing users to choose whether to install sdl2-config
  * Use _Exit() when available
  * Fix compile errors I hit when building org.libsdl in source2 (part 1 of 2)
  * Fix compile errors I hit when building org.libsdl in source2 (part 2 of 2) @saml
  * Created Xcode schemes for building on iOS and tvOS
  * Change my previous fix based on feedback from dev @saml
  * Don't redefine __SSE__ and related macros if they're already defined
  * Fixed bug 4566 - Hot-plugging Bluetooth controller causes force-quit on Android
  * Remove initial declaration from for loop
  * Remove duplicate case value
  * Fixed bug 4608 - Android: not getting SDL_WINDOWEVENT_FOCUS_GAINED on start of our app
  * Patched to compile.
  * [SDL] ios Touch Fix.
  * [SDL] iOS fix bug with audio interrupted by a phone call not restoring.
  * Windows are not in a minimized state when they are shown
  * test: configure/make shouldn't build GL/GLES1/GLES2 programs if unsupported.
  * test: added SDLTest_CommonDefaultArgs()
  * video: Add Vulkan support for vivante fb
  * Fixed bug 3911 - SYSWM generic X11 events missing event data
  * Fixed bug 4025 - SDL_Renderer OpenGL : add support for textures ABGR, RGB, BGR
  * Fixed bug 4401 - SDL_GetWindowPosition() wrong after SDL_SetWindowPosition() until window is moved on macOS
  * Fix WORKING_DIR parameter
  * Fixed bug 4436 - [OpenBSD] fix D-pad
  * Fixed bug 4469 - make SDL_CreateTextureFromSurface pick a more appropriate format
  * Fixed bug 4474 - Add support for an ASUS Gamepad variation
  * Patched to compile in C89 mode.
  * vulkan: Patched to compile on Visual Studio.
  * vulkan: Swapped out a free() that should have been an SDL_free().
  * Fixed mouse focus for touch events on iOS
  * Added support for Bluetooth keyboards on iOS
  * Fix use-after-free when pumping the event loop after SDL_DestroyWindow()
  * Fixed bug 4639 - CMake build does not generate libhidapi.so for Android
  * Use Supexec() to query EdDI version. Fixes for Coldfire CPU build.
  * Fix SHIFT + Fx reporting in GEM. Contributed by Miro Kropacek
  * Improved iOS Bluetooth keyboard support
  * Android: minimum size for IME, so that it takes focus
  * Fixed hiding the Android virtual keyboard when the return key is pressed
  * Return an error if both mouse relative mode and mouse warping are unavailable, instead of asserting.
  * Fixed static and buzzing when trying to use floating point audio on the OpenSL ES audio driver.
  * Use the OpenSL ES audio driver by default on Android, as it has the lowest latency.
  * Added a function to get the current Android SDK version at runtime
  * iOS: return SDL_GetWindowSize from SDL_GL_GetDrawableSize if there's no GLES view in the window (matches the behaviour of SDL_GL_GetDrawableSize on other platforms). Addresses bug #4629.
  * test: unify all the command line usage logging.
  * Fixed bug 4171 - SDL_GetQueuedAudioSize is broken with WASAPI
  * Fixed bug 4656 - SDL_evdev.c uses Linux specific integer types
  * Use SDL sized types
  * Fixed bug 4655 - evdev is available on FreeBSD, check in 'configure' limited to Linux
  * Added support for the Rotor Riot gamepad, and upcoming Xbox and PS4 controller support on iOS and tvOS
  * Potential fix for a crash we're seeing on Android that should in theory never happen.
  * Protect against NULL device in the Android hidapi implementation
  * Fixed surround sound channel setup for Android OpenSL ES audio driver
  * OpenSL ES audio cleanup and added a note with low latency audio discussion
  * Fixed Android build warning
  * Ignore Xbox One S gamepads with older firmware in HIDAPI
  * Fixed bug 4443 - Incorrect scan code reported for numpad 5
  * Fixed bug 4642 - Rework SDL_netbsdaudio to improve performance
  * Fixed bug 4605 - WASAPI_WaitDevice hang
  * Fixed bug 4603 - The iOS Test Xcode project file needs to add the metal framework
  * Fixed bug 4600 - Dualshock 4 touchpad press is not detectable with SDL_JoystickGetButton
  * Fixed bug 4594 - Fix install location of CMake targets on Apple platforms
  * Fixed bug 4593 - Respect CMake's BUILD_SHARED_LIBS default behavior
  * Fixed bug 4583 - PollAllValues appears to use an incorrect index for all axes above 0x18
  * Fixed bug 4557 - SDL_SIMDAlloc and *Free should be in the public interface
  * Add mapping for Chinese-made Xbox Controller
  * Backed out Ben's chinese Xbox controller patch, as the generic catch-all for Xbox controllers should handle it.
  * cocoa: Fix assert to use SDL_assert
  * Fixed bug 4533 - Update ANGLE to load d3dcompiler_47.dll instead of d3dcompiler_46.dll
  * Fixed bug 4526 - replace SDL_RW* macros with functions for using in bindings
  * CVE-2019-7572: Fix a buffer overread in IMA_ADPCM_nibble
  * CVE-2019-7578: Fix a buffer overread in InitIMA_ADPCM
  * CVE-2019-7578: Fix a buffer overread in InitIMA_ADPCM
  * Fixed bug 4294 - Audio: perform more validation on conversion request
  * Temporary fix for bug 4254 - a _lot_ of strict aliasing warnings
  * Fixed bug 4041 - Android, SDL_Renderer OpenGLES 1 is loading GLESv2 library
  * Fixed bug 3894 - Fuzzing crashes for SDL_LoadWAV
  * Fixed build
  * Fixed compiler warning
  * Cleanup on bug 3894 - Fuzzing crashes for SDL_LoadWAV
  * Add notes for SDL_WinRTRunApp and SDL2-WinRTResources for non-C++ projects
  * Fixed bug 4658 - iOS 12 fullscreen flag and SDL_HINT_IOS_HIDE_HOME_INDICATOR not working
  * cocoa: report proper input IDs for mouse/touch events.
  * Fixed bug 4641 - clang and clang-cl builds on windows create -Wpragma-pack warnings
  * Fixed bug 4662 - SDL failed to build due to error LNK2019: unresolved external symbol _memset referenced in function _IMA_ADPCM_Decode with MSVC on Windows
  * CVE-2019-7574: Fix a buffer overread in IMA_ADPCM_decode
  * CVE-2019-7577: Fix a buffer overread in MS_ADPCM_decode
  * CVE-2019-7577: Fix a buffer overread in MS_ADPCM_nibble and MS_ADPCM_decode
  * CVE-2019-7572: Fix a buffer overwrite in IMA_ADPCM_decode
  * CVE-2019-7573, CVE-2019-7576: Fix buffer overreads in InitMS_ADPCM
  * Add mapping for Chinese-made Xbox Controller
  * CVE-2019-7575: Fix a buffer overwrite in MS_ADPCM_decode
  * Android: fix typo calling onBackPressed() (Bug 4657)
  * Android: add MinimizeWindow function (Bug 4580, 4657)
  * windows: Drop WM_ACTIVATE when window is hidden, but only if being activated.
  * windows: Don't let Visual Studio insert an implicit dependency on memset().
  * video: fixed compiler warning on Visual Studio.
  * testoverlay2: Changed some C runtime calls to be SDL equivalents.
  * Android: revert wrong fix typo calling onBackPressed() (Bug 4657)
  * Android: fix coordinates for Surface.ROTATION_180
  * CVE-2019-7635: Reject BMP images with pixel colors out the palette
  * Fix build with the 10.10 SDK
  * software: Correctly track viewport and cliprect.
  * Fixed bug 4570 - Support Vulkan Portability rather than MoltenVK specifically
  * Fixed bug 4615 - RPM Build fails due to unpackaged files
  * cocoa: Backed out CVDisplayLink code for macOS vsync.
  * assert: mark SDL_ExitProcess as SDL_NORETURN again.
  * SDL_Wave: missing field 'length' initializer
  * fix permissions
  * wayland: HiDPI support
  * Fixed bug 4665 - Add support for single touch evdev devices
  * Fixed bug 4486 - Segfault when pressing a trigger on the Steam Controller (Linux)
  * The hat index passed to the application should be zero-based with no holes
  * Better patch to make it more clear what's going on
  * assert: Fixed some compiler warnings.
  * vulkan: Fixed use-after-free bug.
  * wave: Fixed static analysis warning about dead assignment.
  * macOS: Fix the coordinate space of SDL_GetDisplayUsableBounds (thanks Tim!)
  * cocoa: Revised synthesized mouse/touch event strategy.
  * cocoa: Another attempt at synthesized mouse/touch events.
  * Check src alignment for S32_to_F32 conversions
  * audio: patched to compile.
  * audio: Fix ARM NEON audio converter bugs.
  * audio: Attempt to fix build on ARM versions of Visual Studio.
  * Worked around "Undefined symbol: ___isPlatformVersionAtLeast()" link error on Xcode 11 beta
  * Added support for Xbox and PS4 wireless controllers on iOS and tvOS
  * A few minor changes to placate static analysis.
  * cocoa: ignore compiler warnings about OpenGL being deprecated.
  * assert: Possibly fixing compiler warning on Android.
  * assert: Another attempt to quiet compiler warnings.
  * iOS: remove some code which could affect the state of UIViews that aren't owned by SDL.
  * Fix synthetically generated mouse events getting lost forever after the device orientation changes (or the window is otherwise resized) while a finger is touching the screen.
  * Fixed bug 4667 - Build errors on Linux when building without Threads support
  * Updated version to 2.0.10
  * Removed extraneous fprintf() call
  * Fixed bug 4669: Android software renderer, black screen when window resizes
  * Android: revert previous commit (Bug 4669)
  * Android: prevent using SW_GetOutputSize with software renderer (Bug 4669)
  * Android: prevent ignoring surfaceChanged() in MultiWindow
  * Make sure we haven't changed the size of the SDL_Event structure and broken binary compatibility.
  * Added patch notes for 2.0.10
  * Added a patch note about batched rendering
  * Android: revert commit SW_GetOutputSize, again (Bug 4669)
  * Android: try to fix resize with software rendering (bug 4669)
  * Android: resize with software rendering, reverted again (Bug 4669)
  * Fixed 4669 - Using the software SDL_Renderer on Android leads to GL errors & black screen when window resizes
  * Fixed potential double-free in mouse cleanup code
  * cocoa: Patched to compile and also handle possible malloc failure.
  * Fixed bug 4624 - KMS/DRM fails on FreeBSD because /dev/dri/card* nodes are symlinks
  * Fixed compiler warning
  * Only warp the mouse to set focus if we're definitely going into relative mode
  * opengl: Be more robust in failing cases.
  * Fixed building DMG archive on Mac OS X
  * wayland: Fixed C99-style variable declaration inside for-loop.
  * KMSDRM: fix compilation on linux, no d_namlen (Bug 4624)
  * KMSDRM: fix inverted strcmp, remove useless if test (Bug 4624)
  * Use SDL C runtime functions
  * Fixed bug 4672 - Warnings in SDL_LogEvent()
  * Enable Raspberry Pi video by default
  * Fixed bug 4684 - GLES1 variables missing under Android with CMake
  * Android: export Lock/Unlock activity API
  * fix permissions
  * update version in os/2 makefile
  * define __ARM_NEON for Windows only if _M_ARM or _M_ARM64 is defined.  fixes Visual Studio builds.
  * windows: Call GetWindowText() with the correct parameters (thanks, Zebediah!)
  * cocoa: Check for capslock in -[NSResponder flagsChanged], not with IOKit.
  * Android: explicitly expand Android_GLES_MakeCurrent/Android_GLES_CreateContext
  * Add an "error" label in SDL_CreateRenderer (no op)
  * Android: concurrency issues, make sure Activity is in running State when calling
  * Fixed bug 4436 - [OpenBSD] fix D-pad
  * Fixed bug 4683 - SDL_atomic infinite recursion on armv6/armv5 w/ thumb
  * Limit the compile error to the case where we actually define the memory barrier macro as the function
  * Fixed memory barrier macro check so it isn't quite so fragile
  * Documented that the SDL_RW* macros no longer exist, and you can't use an older SDL library if you build with SDL 2.0.10.
  * Made it more explicit that 2.0.10 and newer are required for the SDL_RW* functions
  * iOS: Fix the window size not being set properly when Split View is used on an iPad (bug #4586).
  * dbus: Add org.freedesktop.ScreenSaver.SimulateUserActivity support.
  * dbus: Don't SimulateUserActivity if we're already inhibiting the screensaver.
  * raspberry: Fixed missing mouse cursor (thanks, Joe!)
  * cocoa: Don't report trackpad mouse events as synthesized touches.
  * raspberry: Actually commit the whole patch.  :)  (Thanks, Joe!)
  * Fixed bug 4708 - testdropfile: double-free
  * Fixed bug 4702 - Android back button does not send SDL_KEYDOWN event
  * Fixed bug 4707 - SDL_SetRelativeMouseMode fails on Vivante
  * Fixed bug 4710 - audio/alsa: avoid configuring hardware parameters with only a single period
  * cocoa: Another attempt at mouse vs touch support.
  * Ignore synthetic mouse events generated for touchscreens
  * configure: Windows and macOS now respect --enable-hidapi.
  * cmake: Added HIDAPI support.
  * fix permissions
  * SDL_Mouse/Touch: discard synthetic events when hints are not set.
  * x11: set some modality things on message boxes with parent windows.
  * x11: prevent a synthetic mouse event when using a touchscreen
  * cocoa: Set keyboard mod state correctly when turning off capslock.
  * cmake: Add setupapi library to Windows build dependencies (hidapi needs it).
  * ios: Fixed MFi guide button not being detected (thanks, Caleb!).
  * macOS: Fix SDL_GL_CreateContext/MakeCurrent on non-main threads causing a Main Thread Checker warning when built with Xcode 11 / the macOS 10.15 SDK.
  * Blacklist Corsair device causing hang
  * Fixed bug 4723 - Generic Xbox pad controller bindings seem odd/broken
  * Fixed bug 4704 - SDL_HINT_ANDROID_SEPERATE_MOUSE_AND_TOUCH on Windows?
  * Allow hotplugging joysticks without udev
  * Added support for the Victrix Pro Fight Stick for PS4
  * Add linked list of opened HID devices to prevent accessing already freed devices in device removal callback that is sometimes called even after being unregistered
  * Merged latest changes from Steam into controller_type.h
  * Fixed build error
  * Fixed bug 4726 - Fix for tvOS GetPrefPath
  * Copypaste SDL_NSLog to UIKit backend, document it as such
  * hidapi: Zero out new hid_device_info structs

(bsiegert)

2019-08-10 13:12:45 UTC pkgsrc-2019Q2 commitmail json YAML

Pullup ticket #6029 - requested by taca
databases/mysql57-client, databases/mysql57-server: security fix

Revisions pulled up:
- databases/mysql57-client/Makefile                            1.24
- databases/mysql57-client/Makefile.common                      1.20
- databases/mysql57-client/PLIST                                1.14
- databases/mysql57-client/distinfo                            1.30-1.31
- databases/mysql57-client/patches/patch-cmake_boost.cmake      1.11
- databases/mysql57-server/Makefile                            1.24
- databases/mysql57-server/PLIST                                1.13

---
  Module Name:    pkgsrc
  Committed By:  ryoon
  Date:          Mon Jul  1 04:08:55 UTC 2019

  Modified Files:
          pkgsrc/databases/mysql57-client: Makefile
          pkgsrc/databases/mysql57-server: Makefile

  Log Message:
  Recursive revbump from boost-1.70.0

---
  Module Name:    pkgsrc
  Committed By:  adam
  Date:          Mon Jul  1 10:25:49 UTC 2019

  Modified Files:
          pkgsrc/databases/mysql57-client: distinfo
          pkgsrc/databases/mysql57-client/patches: patch-cmake_boost.cmake

  Log Message:
  mysql57-client: allow newer Boost; fixes building with boost-1.70.0

---
  Module Name:    pkgsrc
  Committed By:  adam
  Date:          Tue Aug  6 06:56:43 UTC 2019

  Modified Files:
          pkgsrc/databases/mysql57-client: Makefile Makefile.common PLIST
              distinfo
          pkgsrc/databases/mysql57-server: Makefile PLIST

  Log Message:
  mysql57: updated to 5.7.27

  Changes in MySQL 5.7.27:

  Keyring Notes

  The keyring_aws plugin has been updated to use the latest AWS SDK and so that it works with OpenSSL 1.1.

  Packaging Notes

  Binary packages that include curl rather than linking to the system curl library now use curl 7.64.0.

  X Plugin Notes

  On Windows, X Plugin logged some messages that were unnecessary or insufficiently informative. The messages have been removed or improved as appropriate.

  Functionality Added or Changed

  Microsoft Windows: A new warning message now reminds DBAs that connections made using the MySQL named pipe on Windows has limited the permissions a connector can request on the named pipe.

  Previously, the named_pipe_full_access_group system variable was set to a value that maps to the built-in Windows Everyone group (SID S-1-1-0) by default. However, this group is not ideal and should be replaced with a group that restricts its membership for connectors that are unable to request fewer permissions on the MySQL named pipe.

  The new warning is written to the error log at startup if the string value assigned to named_pipe_full_access_group is '*everyone*' (or the Windows System Language equivalent) and named pipes are enabled. In addition, the warning is written to the error log and raised to the client if the system variable is reset to the Everyone group at runtime.

  Bugs Fixed

  InnoDB: Insufficient memory barriers in the rw-lock implementation caused deadlocks on ARM.

  Thanks to Yibo Cai from Arm Technology for the contribution.

  InnoDB: Manually changing the system time while the MySQL server was running caused page cleaner thread delays.

  InnoDB: During log application, after an OPTIMIZE TABLE operation, InnoDB did not populate virtual columns before checking for virtual column index updates.

  InnoDB: An INSERT operation involving a generated virtual BLOB column resulted a secondary index being updated with an incorrect value.

  InnoDB: A full-text cache lock taken when data is synchronized was not released if the full-text cache size exceeded the full-text cache size limit.

  InnoDB: Client sessions using different auto_increment_increment values while performing concurrent insert operations could cause a duplicate key error.

  Partitioning: ALTER TABLE ... EXCHANGE PARTITION failed with the error Non matching attribute 'ROW_FORMAT' between partition and table when the partitioned table had partitions using different row formats, even when the partition to be exchanged used the same row format as the non-partitioned table.

  Replication: The error message that is issued for a discrepancy between the number of group members and the auto-increment interval incorrectly referred to the group_replication_auto_increment_increment system variable, instead of the auto_increment_increment system variable. The value of auto_increment_increment is changed to the value specified by group_replication_auto_increment_increment when Group Replication starts, but only if auto_increment_increment and auto_increment_offset have their default values, and from MySQL 8.0, only in multi-primary mode. The value of auto_increment_increment was always the value that was checked for the error message, and it has now been corrected to give the accurate system variable name.

  Replication: When events generated by one MySQL server instance were written to the binary log of another instance, the second server implicitly assumed that the first server supported the same number of binary log event types as itself. Where this was not the case, the event header was handled incorrectly. The issue has now been fixed. Thanks to Facebook for the contribution.

  Replication: In Group Replication, joining members could wrongly identify themselves as incompatible with an existing replication group even if there were members at the same version already in the group, because they checked against all other members, including the member at the highest version. Joining members also included their own version in the compatibility check. Now, joining members only compare themselves with the existing group member at the lowest version, and do not count their own version.

  Replication: If a FLUSH LOGS statement was issued before the binary log file was initialized, the statement attempted to write a binary log rotation event to the uninitialized file. The server now checks first that a binary log file is available.

  Replication: When a MEMORY table is implicitly deleted on a master following a server restart, the master writes a DELETE statement to the binary log so that slaves also empty the table. This generated event now includes a comment in the binary log so that the reason for the DELETE statement is easy to identify. Thanks to Daniè°·l van Eeden for the contribution.

  Replication: With statement-based replication in use, if super_read_only was set to ON for a server at the point when a no-op transaction was between its UPDATE and COMMIT operations, the transaction was written to the binary log and assigned a GTID. The transaction is now blocked in this situation. From MySQL 8.0, the value of super_read_only cannot be changed while a transaction is in progress.

  Replication: The group communication engine for Group Replication (XCom, a Paxos variant) did not handle out of memory errors in an appropriate way. If memory could not be allocated to make a copy of the payload for a message, an error was logged but the message was still sent, with a null payload. The Group Communication System (GCS) on the receiving member discarded the message as empty, and the XCom instance on the receiving member accepted this action and did not retry, resulting in the message effectively being skipped. This caused the GTID set on the receiving member to diverge from the group, leading to replication errors. XCom now terminates gracefully if it experiences an out of memory error, so that this situation cannot occur.

  Replication: In query log events in the binary log, the thread ID used for the execution of DROP TABLE and DELETE statements was identified incorrectly or not at all. On a multi-threaded replication slave, where temporary tables were involved (which require the correct thread ID as they are session specific), this omission resulted in errors when using mysqlbinlog to replay the binary log for point-in-time recovery. The thread ID is now set correctly.

  Replication: When a slave server logs master status and connection information to a table (master_info_repository=TABLE), which is the default in MySQL 8.0, the mysql.slave_master_info table was not being updated on shutdown if the server was in super read only mode (super_read_only=ON). No error was written to the error log at this time, but replication failed after server startup because the master log file and master log position information was out of date. The thread that updates the master info log at shutdown is now excluded from read-only checks like other replication threads are, so it can update the table even if the server is in super read only mode. Error handling for a slave that is shutting down has also been improved so that any failure to write to the slave status logs results in an error in the error log.

  An overly strict assertion could be raised during sorting of stored program local objects.

  Installing from RPM packages could result in an error log with incorrect permissions.

  Enabling audit log encryption could cause a server exit.

  On Debian and Ubuntu, MySQL packages did not enable mysql.service after upgrades from native MySQL packages.

  The server did not properly close shared-memory connections when an error occurred, which could result in unexpected server behavior.

  MySQL Installer did not install OpenSSL DLL dependencies if the Development component was not selected.

  The parser could leak memory for certain multiple-statement queries.

  CREATE USER and ALTER USER did not check the validity of a hashed authentication string when used with IDENTIFIED WITH auth_plugin AS 'hash_string' syntax.

  For InnoDB tables that contained an index on a VARCHAR column and were created prior to MySQL 5.7.23, some simple ALTER TABLE statements that should have been done in place were performed with a table rebuild after an upgrade to MySQL 5.7.23 or higher.

  HANDLER statements did not always work correctly with tables having generated columns.

  Session-tracking information in the client/server protocol could be mishandled.

  With the PAD_CHAR_TO_FULL_LENGTH SQL mode enabled, password changes failed, with no warning or error reported.

  The audit_log plugin did not log UNINSTALL PLUGIN audit_log statements.

  audit_log filtering operations could leak memory.

  An index defined on a virtual generated column could fail to be updated if the column had a base column in a foreign key relationship.

  Privileges for dropping some Performance Schema tables were checked incorrectly.

  A query that employed a derived table which included an ORDER BY was not always handled correctly.

  Base columns were not excluded from index-only access by a generated column.

  A thread pool group could be blocked when a thread process tick time exceeded the maximum permitted value. The tick time now uses a larger data type to permit larger values.

  MySQL does not support OpenSSL session tickets, but did not set the SSL_OP_NO_TICKET flag to inform OpenSSL of that. The flag is now set.

  The audit_null plugin did not properly check for a null event record.

  UpdateXML() did not always free memory properly in certain cases.

  Empty values in the name column of the mysql.plugin system table caused the server to exit during startup.

  With the thread_pool plugin enabled, the Performance Schema status_by_thread table contained no data.

  If an INSTALL PLUGIN statement contained invalid UTF-8 characters in the shared library name, it caused the server to hang (or to raise an assertion in debug builds).

  Inner tables of different semijoin nests were interleaved during materialization, which could lead to a different result for the same query when it used a different query plan. To keep this from occurring, a check is added to prevent such interleaving.

  A query involving GROUP BY on a TIMESTAMP column resulted in a duplicate entry for key (ER_DUP_ENTRY) error. This problem arose when TIMESTAMP values were inserted into a table using a given setting for the time zone and these values were later fetched after the time zone setting had been changed, such that at least some of the inserted TIMESTAMP values occurred during the hour that the time changed from standard to daylight time (DST) in the new time zone, during which time the same TIMESTAMP value can exist twice. Now, when the server would otherwise return the error DUPLICATE ENTRY FOR KEY 'group_key', if the grouping involves a TIMESTAMP column, it instead raises the error Grouping on temporal is non-deterministic for time zones having DST. Please consider switching to UTC for this query.

  In addition, it is suggested to set explicit_defaults_for_timestamp to ON as well as one or more of MODE_NO_ZERO_IN_DATE, MODE_NO_ZERO_DATE, or MODE_INVALID_DATES as part of the server SQL mode to help avoid this issue.

(bsiegert)

2019-08-10 12:32:34 UTC pkgsrc-2019Q2 commitmail json YAML

Pullup ticket #6027 - requested by maya
devel/libusb1: clang build fix

Revisions pulled up:
- devel/libusb1/Makefile                                        1.19
- devel/libusb1/distinfo                                        1.11
- devel/libusb1/patches/patch-ub                                1.1

---
  Module Name: pkgsrc
  Committed By: maya
  Date: Tue Aug  6 08:50:28 UTC 2019

  Modified Files:
  pkgsrc/devel/libusb1: Makefile distinfo
  Added Files:
  pkgsrc/devel/libusb1/patches: patch-ub

  Log Message:
  libusb1: patch some undefined behaviour, disable strict aliasing, change
  -O2 to -O1 when building with clang.

  This isn't in a separate hacks.mk file because I think that hides the
  problem too much, it's an issue with the code in the package, not with
  the compiler's choices.

  Fixes functionality when built with clang.

  >From Shingo Nishioka in PR pkg/54441.

(bsiegert)

2019-08-10 12:12:55 UTC pkgsrc-2019Q2 commitmail json YAML

Pullup ticket #6026 - requested by taca
textproc/ruby-yard: security fix

Revisions pulled up:
- textproc/ruby-yard/Makefile                                  1.11
- textproc/ruby-yard/PLIST                                      1.9
- textproc/ruby-yard/distinfo                                  1.9

---
  Module Name: pkgsrc
  Committed By: taca
  Date: Mon Aug  5 09:55:00 UTC 2019

  Modified Files:
  pkgsrc/textproc/ruby-yard: Makefile PLIST distinfo

  Log Message:
  textproc/ruby-yard: update to 0.9.20

  Update ruby-yard to 0.9.20, fixing CVE-2019-14369.

  # 0.9.20 - June 27th, 2019

  [0.9.20]: https://github.com/lsegal/yard/compare/v0.9.19...v0.9.20

  - Fix parsing of stringified Symbols in Ruby source (#1256).
  - Fix path traversal vulnerability in `yard server`. This bug would allow
    unsanitized HTTP requests to access arbitrary files on the machine of a
    `yard server` host under certain conditions. Thanks to CuongMX from
    Viettel Cyber Security for discovering this vulnerability.

  # 0.9.19 - April 2nd, 2019

  [0.9.19]: https://github.com/lsegal/yard/compare/v0.9.16...v0.9.19

  - Fixed bug in browser back button (#1071, #1228)
  - Fixed handling of ArgumentError in ExtraFileObject (#1198)
  - Fixed double return tag displaying on boolean methods (#1226)
  - Removed unused `Module#namespace_name` function (#1229)
  - Fixed parsing order of README files. YARD will now prefer README over
    README.md over README.x.md or README-x.md (and the like). READMEs will now
    also be ordered by filename; the first README is still chosen unless
    `--readme` is provided.
  - Updated AsciiDoc markup support to use non-deprecated calls.

(bsiegert)

2019-08-10 12:11:27 UTC pkgsrc-2019Q2 commitmail json YAML

Pullup ticket #6021 - requested by taca
lang/php71: security fix

Revisions pulled up:
- lang/php/phpversion.mk                                        1.265
- lang/php71/distinfo                                          1.53

---
  Module Name: pkgsrc
  Committed By: taca
  Date: Thu Aug  1 14:20:58 UTC 2019

  Modified Files:
  pkgsrc/lang/php: phpversion.mk
  pkgsrc/lang/php71: distinfo

  Log Message:
  lang/php71: update to 7.1.31

  01 Aug 2019, PHP 7.1.31

  - SQLite:
    . Upgraded to SQLite 3.28.0. (cmb)

  - EXIF:
    . Fixed bug #78256 (heap-buffer-overflow on exif_process_user_comment).
    (CVE-2019-11042) (Stas)
    . Fixed bug #78222 (heap-buffer-overflow on exif_scan_thumbnail).
    (CVE-2019-11041) (Stas)

  - Phar:
    . Fixed bug #77919 (Potential UAF in Phar RSHUTDOWN). (cmb)

(bsiegert)

2019-08-10 12:07:22 UTC pkgsrc-2019Q2 commitmail json YAML

Pullup ticket #6020 - requested by taca
lang/php73: security fix

Revisions pulled up:
- lang/php/phpversion.mk                                        1.262-1.263
- lang/php73/distinfo                                          1.9-1.10

---
  Module Name:    pkgsrc
  Committed By:  taca
  Date:          Mon Jul  8 13:20:29 UTC 2019

  Modified Files:
          pkgsrc/lang/php: phpversion.mk
          pkgsrc/lang/php73: distinfo

  Log Message:
  lang/php73: update to 7.3.7

  Update php73 to 7.3.7.

  04 Jul 2019, PHP 7.3.7

  - Core:
    . Fixed bug #76980 (Interface gets skipped if autoloader throws an exception).
      (Nikita)

  - DOM:
    . Fixed bug #78025 (segfault when accessing properties of DOMDocumentType).
      (cmb)

  - MySQLi:
    . Fixed bug #77956 (When mysqli.allow_local_infile = Off, use a meaningful
      error message). (Sjon Hortensius)
    . Fixed bug #38546 (bindParam incorrect processing of bool types).
      (camporter)

  - MySQLnd:
    . Fixed bug #77955 (Random segmentation fault in mysqlnd from php-fpm).
      (Nikita)

  - Opcache:
    . Fixed bug #78015 (Incorrect evaluation of expressions involving partials
      arrays in SCCP). (Nikita)
    . Fixed bug #78106 (Path resolution fails if opcache disabled during request).
      (Nikita)

  - OpenSSL:
    . Fixed bug #78079 (openssl_encrypt_ccm.phpt fails with OpenSSL 1.1.1c).
      (Jakub Zelenka)

  - phpdbg:
    . Fixed bug #78050 (SegFault phpdbg + opcache on include file twice).
      (Nikita)

  - Sockets:
    . Fixed bug #78038 (Socket_select fails when resource array contains
      references). (Nikita)

  - Sodium:
    . Fixed bug #78114 (segfault when calling sodium_* functions from eval). (cmb)

  - Standard:
    . Fixed bug #77135 (Extract with EXTR_SKIP should skip $this).
      (Craig Duncan, Dmitry)
    . Fixed bug ##77937  (preg_match failed). (cmb, Anatol)

  - Zip:
    . Fixed bug #76345 (zip.h not found). (Michael Maroszek)

---
  Module Name:    pkgsrc
  Committed By:  taca
  Date:          Thu Aug  1 14:14:04 UTC 2019

  Modified Files:
          pkgsrc/lang/php: phpversion.mk
          pkgsrc/lang/php73: distinfo

  Log Message:
  lang/php73: update to 7.3.8

  01 Aug 2019, PHP 7.3.8

  - Core:
    . Added syslog.filter=raw option. (Erik Lundin)
    . Fixed bug #78212 (Segfault in built-in webserver). (cmb)

  - Date:
    . Fixed bug #69044 (discrepency between time and microtime). (krakjoe)
    . Updated timelib to 2018.02. (Derick)

  - EXIF:
    . Fixed bug #78256 (heap-buffer-overflow on exif_process_user_comment).
      (CVE-2019-11042) (Stas)
    . Fixed bug #78222 (heap-buffer-overflow on exif_scan_thumbnail).
      (CVE-2019-11041) (Stas)

  - FTP:
    . Fixed bug #78039 (FTP with SSL memory leak). (Nikita)

  - Libxml:
    . Fixed bug #78279 (libxml_disable_entity_loader settings is shared between
      requests (cgi-fcgi)). (Nikita)

  - LiteSpeed:
    . Updated to LiteSpeed SAPI V7.4.3 (increased response header count limit from
      100 to 1000, added crash handler to cleanly shutdown PHP request, added
      CloudLinux mod_lsapi mode). (George Wang)
    . Fixed bug #76058 (After "POST data can't be buffered", using php://input
      makes huge tmp files). (George Wang)

  - Openssl:
    . Fixed bug #78231 (Segmentation fault upon stream_socket_accept of exported
      socket-to-stream). (Nikita)

  - Opcache:
    . Fixed bug #78341 (Failure to detect smart branch in DFA pass). (Nikita)
    . Fixed bug #78189 (file cache strips last character of uname hash). (cmb)
    . Fixed bug #78202 (Opcache stats for cache hits are capped at 32bit NUM).
      (cmb)
    . Fixed bug #78271 (Invalid result of if-else). (Nikita)
    . Fixed bug #78291 (opcache_get_configuration doesn't list all directives).
      (Andrew Collington)

  - PCRE:
    . Fixed bug #78338 (Array cross-border reading in PCRE). (cmb)
    . Fixed bug #78197 (PCRE2 version check in configure fails for "##.##-xxx"
      version strings). (pgnet, Peter Kokot)

  - PDO_Sqlite:
    . Fixed bug #78192 (SegFault when reuse statement after schema has changed).
      (Vincent Quatrevieux)

  - Phar:
    . Fixed bug #77919 (Potential UAF in Phar RSHUTDOWN). (cmb)

  - Phpdbg:
    . Fixed bug #78297 (Include unexistent file memory leak). (Nikita)

  - SQLite:
    . Upgraded to SQLite 3.28.0. (cmb)

  - Standard:
    . Fixed bug #78241 (touch() does not handle dates after 2038 in PHP 64-bit). (cmb)
    . Fixed bug #78269 (password_hash uses weak options for argon2). (Remi)

(bsiegert)

2019-08-10 11:59:33 UTC pkgsrc-2019Q2 commitmail json YAML

Pullup ticket #6019 - requested by taca
lang/php72: security fix

Revisions pulled up:
- lang/php/phpversion.mk                                        1.261,1.264
- lang/php72/distinfo                                          1.42-1.43

---
  Module Name:    pkgsrc
  Committed By:  taca
  Date:          Mon Jul  8 13:18:52 UTC 2019

  Modified Files:
          pkgsrc/lang/php: phpversion.mk
          pkgsrc/lang/php72: distinfo

  Log Message:
  lang/php72: update to 7.2.20

  Update php72 to 7.2.20.

  04 Jul 2019, PHP 7.2.20

  - Core:
    . Fixed bug #76980 (Interface gets skipped if autoloader throws an exception).
      (Nikita)

  - DOM:
    . Fixed bug #78025 (segfault when accessing properties of DOMDocumentType).
      (cmb)

  - MySQLi:
    . Fixed bug #77956 (When mysqli.allow_local_infile = Off, use a meaningful
      error message). (Sjon Hortensius)
    . Fixed bug #38546 (bindParam incorrect processing of bool types).
      (camporter)

  - Opcache:
    . Fixed bug #78106 (Path resolution fails if opcache disabled during request).
      (Nikita)
    . Fixed bug #78185 (File cache no longer works). (Dmitry)

  - OpenSSL:
    . Fixed bug #78079 (openssl_encrypt_ccm.phpt fails with OpenSSL 1.1.1c).
      (Jakub Zelenka)

  - Sockets:
    . Fixed bug #78038 (Socket_select fails when resource array contains
      references). (Nikita)

  - Standard:
    . Fixed bug #77135 (Extract with EXTR_SKIP should skip $this).
      (Craig Duncan, Dmitry)
    . Fixed bug ##77937  (preg_match failed). (cmb, Anatol)

  - Zip:
    . Fixed bug #76345 (zip.h not found). (Michael Maroszek)

---
  Module Name:    pkgsrc
  Committed By:  taca
  Date:          Thu Aug  1 14:19:40 UTC 2019

  Modified Files:
          pkgsrc/lang/php: phpversion.mk
          pkgsrc/lang/php72: distinfo

  Log Message:
  lang/php72: update to 7.2.21

  01 Aug 2019, PHP 7.2.21

  - Date:
    . Fixed bug #69044 (discrepency between time and microtime). (krakjoe)

  - EXIF:
    . Fixed bug #78256 (heap-buffer-overflow on exif_process_user_comment).
      (CVE-2019-11042) (Stas)
    . Fixed bug #78222 (heap-buffer-overflow on exif_scan_thumbnail).
      (CVE-2019-11041) (Stas)

  - Fileinfo:
    . Fixed bug #78183 (finfo_file shows wrong mime-type for .tga file).
      (Joshua Westerheide)

  - FTP:
    . Fixed bug #77124 (FTP with SSL memory leak). (Nikita)

  - Libxml:
    . Fixed bug #78279 (libxml_disable_entity_loader settings is shared between
      requests (cgi-fcgi)). (Nikita)

  - LiteSpeed:
    . Updated to LiteSpeed SAPI V7.4.3 (increased response header count limit from
      100 to 1000, added crash handler to cleanly shutdown PHP request, added
      CloudLinux mod_lsapi mode). (George Wang)
    . Fixed bug #76058 (After "POST data can't be buffered", using php://input
      makes huge tmp files). (George Wang)

  - Openssl:
    . Fixed bug #78231 (Segmentation fault upon stream_socket_accept of exported
      socket-to-stream). (Nikita)

  - OPcache:
    . Fixed bug #78189 (file cache strips last character of uname hash). (cmb)
    . Fixed bug #78202 (Opcache stats for cache hits are capped at 32bit NUM).
      (cmb)
    . Fixed bug #78291 (opcache_get_configuration doesn't list all directives).
      (Andrew Collington)

  - Phar:
    . Fixed bug #77919 (Potential UAF in Phar RSHUTDOWN). (cmb)

  - Phpdbg:
    . Fixed bug #78297 (Include unexistent file memory leak). (Nikita)

  - PDO_Sqlite:
    . Fixed bug #78192 (SegFault when reuse statement after schema has changed).
      (Vincent Quatrevieux)

  - SQLite:
    . Upgraded to SQLite 3.28.0. (cmb)

  - Standard:
    . Fixed bug #78241 (touch() does not handle dates after 2038 in PHP 64-bit).
      (cmb)
    . Fixed bug #78269 (password_hash uses weak options for argon2). (Remi)

  - XMLRPC:
    . Fixed bug #78173 (XML-RPC mutates immutable objects during encoding).
      (Asher Baker)

(bsiegert)

2019-08-10 11:42:42 UTC MAIN commitmail json YAML

Remove misc/howm

(ryoon)

2019-08-10 11:42:19 UTC MAIN commitmail json YAML

Updated misc/libreoffice to 6.3.0.4

(ryoon)

2019-08-10 11:41:29 UTC MAIN commitmail json YAML

Update to 6.3.0.4

* qt4 option is no longer provided

Changelog:
See: https://wiki.documentfoundation.org/ReleaseNotes/6.3 in detail

* Improve performances
* Improve file load an save performances in Writer
* Improve MS Office file supoort in Calc
* Use tabcompact UI by default
* Use context single mode for Writer and Draw
* Support PDF/A-2 export
* And many improvements and bugfixes

(ryoon)

2019-08-10 11:29:15 UTC MAIN commitmail json YAML

Updated misc/howm to 1.4.5

(ryoon)

2019-08-10 11:28:43 UTC MAIN commitmail json YAML

Update to 1.4.5

Changelog:
1.4.5
* Support cmigemo too
* Add French translation
* CLean up autotools stuff

1.4.4
* Fix bytecompile errors
* Add a link to MELPA

1.4.3
* Support Emacs 25.2.50.1 or later
* Fix broken howm-list-title
* Suppress password requests for remote files in howm-recentf
* Fix file modes

1.4.2
* Support Emacs 24.3 or later
* Improve performance of howm-list-all
* Fix bytecompile errors by Emacs 24.3.1
* Fix new memo file mode under symlink
* FIx misc bytecompile errors

(ryoon)

2019-08-10 11:16:24 UTC MAIN commitmail json YAML

2019-08-10 07:00:35 UTC MAIN commitmail json YAML

doc: Updated editors/xournal to 0.4.8.2016

(yhardy)

2019-08-10 06:53:28 UTC MAIN commitmail json YAML

editors/xournal: update to 0.4.8.2016

Changes:
Version 0.4.8.2016 (July 20, 2017 bugfix release):
* Bug fixes:
  - pen and touchscreen input handling bugfixes (bug #136 and others)
  - fix a minor bug with save file paths in Windows (D. German)
  - use GDK macros (not WIN32) to disable X11-specific code (T. Schoonjans)
  - export to PDF and printing: fix resolution loss on some pdf backgrounds
  - disable xinput during modal dialog boxes (bug #159)
  - avoid data corruption when exporting to overwrite a PDF
  - fix path search order for toolbar bitmaps
  - text and image tools activate on button release instead of button press
    to avoid subsequent confusion between clicks in toolbar and drawing area
  - fix "pen disable touch" when touchscreen sends prox events (A. Kittenberger)
  - fix crash when pasting text or images via xclip (bug #171)
  - updated Italian translation (Marco Ciampa)
* Features:
  - add space and shift-space bindings to page down/up (D. German)
  - add A5 paper (D. German)
  - config option to export successive layers to separate PDF pages
  - config option to create new file when trying to open non-existent .xoj

OK: wiz@

(yhardy)

2019-08-09 21:52:34 UTC MAIN commitmail json YAML

py-biopython: initial commit

The Biopython package contains high-quality, reusable modules and
scripts written in Python to make it as easy as possible to use Python
for bioinformatics.  The Biopython includes the follwing: the ability
to parse bioinformatics files into python utilizable data structures,
including support for the formats such as Blast output, Clustalw,
FASTA, GenBank, PubMed and Medicine, various Expasy files, SCOP,
Rebase, UniGene, and SwissProt.

(brook)

2019-08-09 20:56:19 UTC MAIN commitmail json YAML

R-ggExtra: initial commit

Collection of functions and layers to enhance 'ggplot2'. The flagship
function is 'ggMarginal()', which can be used to add marginal
histograms/boxplots/density plots to 'ggplot2' scatterplots.

(brook)

2019-08-09 20:55:25 UTC MAIN commitmail json YAML

R-colourpicker: initial commit

A colour picker that can be used as an input in Shiny apps or
Rmarkdown documents. The colour picker supports alpha opacity, custom
colour palettes, and many more options. A Plot Colour Helper tool is
available as an RStudio Addin, which helps you pick colours to use in
your plots. A more generic Colour Picker RStudio Addin is also
provided to let you select colours to use in your R code.

(brook)

2019-08-09 20:54:29 UTC MAIN commitmail json YAML

R-miniUI: initial commit

Provides UI widget and layout functions for writing Shiny apps that
work well on small screens.

(brook)

2019-08-09 20:53:39 UTC MAIN commitmail json YAML

R-shinyjs: initial commit

Perform common useful JavaScript operations in Shiny apps that will
greatly improve your apps without having to know any JavaScript.
Examples include: hiding an element, disabling an input, resetting an
input back to its original value, delaying code execution by a few
seconds, and many more useful functions for both the end user and the
developer. 'shinyjs' can also be used to easily call your own custom
JavaScript functions from R.

(brook)

2019-08-09 20:52:49 UTC MAIN commitmail json YAML

R-shiny: initial commit

Makes it incredibly easy to build interactive web applications with R.
Automatic "reactive" binding between inputs and outputs and extensive
prebuilt widgets make it possible to build beautiful, responsive, and
powerful applications with minimal effort.

(brook)

2019-08-09 20:39:26 UTC pkgsrc-2019Q2 commitmail json YAML

Pullup tickets #6012 to #6018

(bsiegert)

2019-08-09 20:26:46 UTC MAIN commitmail json YAML

R-httpuv: initial commit

Provides low-level socket and protocol support for handling HTTP and
WebSocket requests directly from within R. It is primarily intended as
a building block for other packages, rather than making it
particularly easy to create complete web applications using httpuv
alone. httpuv is built on top of the libuv and http-parser C
libraries, both of which were developed by Joyent, Inc. (See LICENSE
file for libuv and http-parser license information.)

(brook)

2019-08-09 20:25:29 UTC MAIN commitmail json YAML

R-promises: initial commit

Provides fundamental abstractions for doing asynchronous programming
in R using promises. Asynchronous programming is useful for allowing a
single R process to orchestrate multiple tasks in the background while
also attending to something else. Semantics are similar to
'JavaScript' promises, but with a syntax that is idiomatic R.

(brook)

2019-08-09 20:24:22 UTC MAIN commitmail json YAML

R-later: initial commit

Executes arbitrary R or C functions some time after the current time,
after the R execution stack has emptied.

(brook)

2019-08-09 19:13:16 UTC pkgsrc-2019Q2 commitmail json YAML

Pullup ticket #6018 - requested by maya
devel/pango: security fix

Revisions pulled up:
- devel/pango/Makefile                                          1.221
- devel/pango/distinfo                                          1.119
- devel/pango/patches/patch-pango_pango-bidi-type.c            1.1

---
  Module Name: pkgsrc
  Committed By: maya
  Date: Thu Aug  1 10:09:38 UTC 2019

  Modified Files:
  pkgsrc/devel/pango: Makefile distinfo
  Added Files:
  pkgsrc/devel/pango/patches: patch-pango_pango-bidi-type.c

  Log Message:
  pango: patch buffer overflow (CVE-2019-1010238)

  bump pkgrevision.

(bsiegert)

2019-08-09 19:13:06 UTC MAIN commitmail json YAML

2019-08-09 19:12:15 UTC MAIN commitmail json YAML

R-roxygen2: initial commit

Generate your Rd documentation, 'NAMESPACE' file, and collation field
using specially formatted comments. Writing documentation in-line with
code makes it easier to keep your documentation up-to-date as your
requirements change. 'Roxygen2' is inspired by the 'Doxygen' system
for C++.

(brook)

2019-08-09 19:11:22 UTC MAIN commitmail json YAML

R-pkgload: initial commit

Simulates the process of installing a package and then attaching it.
This is a key part of the 'devtools' package as it allows you to
rapidly iterate while developing a package.

(brook)

2019-08-09 19:10:28 UTC MAIN commitmail json YAML

R-rcmdcheck: initial commit

Run 'R CMD check' from 'R' and capture the results of the individual
checks. Supports running checks in the background, timeouts, pretty
printing and comparing check results.

(brook)

2019-08-09 19:09:29 UTC MAIN commitmail json YAML

R-usethis: initial commit

Automate package and project setup tasks that are otherwise performed
manually. This includes setting up unit testing, test coverage,
continuous integration, Git, 'GitHub', licenses, 'Rcpp', 'RStudio'
projects, and more.

(brook)

2019-08-09 19:08:33 UTC MAIN commitmail json YAML

2019-08-09 19:07:44 UTC MAIN commitmail json YAML

R-httr: initial commit

Useful tools for working with HTTP organised by HTTP verbs (GET(),
POST(), etc). Configuration functions make it easy to control
additional request components (authenticate(), add_headers() and so
on).

(brook)

2019-08-09 19:06:46 UTC MAIN commitmail json YAML

R-pkgbuild: initial commit

Provides functions used to build R packages. Locates compilers needed
to build R packages on various platforms and ensures the PATH is
configured appropriately so R can use them.

(brook)

2019-08-09 19:05:49 UTC MAIN commitmail json YAML

R-callr: initial commit

It is sometimes useful to perform a computation in a separate R
process, without affecting the current R process at all. This packages
does exactly that.

(brook)

2019-08-09 19:04:58 UTC MAIN commitmail json YAML

R-openssl: initial commit

Bindings to OpenSSL libssl and libcrypto, plus custom SSH key parsers.
Supports RSA, DSA and EC curves P-256, P-384, P-521, and curve25519.
Cryptographic signatures can either be created and verified manually
or via x509 certificates. AES can be used in cbc, ctr or gcm mode for
symmetric encryption; RSA for asymmetric (public key) encryption or EC
for Diffie Hellman. High-level envelope functions combine RSA and AES
for encrypting arbitrary sized data. Other utilities include key
generators, hash functions (md5, sha1, sha256, etc), base64 encoder, a
secure random number generator, and 'bignum' math methods for manually
performing crypto calculations on large multibyte integers.

(brook)

2019-08-09 19:04:11 UTC MAIN commitmail json YAML

R-xopen: initial commit

Cross platform solution to open files, directories or 'URLs' with
their associated programs.

(brook)

2019-08-09 19:03:18 UTC MAIN commitmail json YAML

R-processx: initial commit

Tools to run system processes in the background. It can check if a
background process is running; wait on a background process to finish;
get the exit status of finished processes; kill background processes.
It can read the standard output and error of the processes, using
non-blocking connections. 'processx' can poll a process for standard
output or error, with a timeout. It can also poll several processes at
once.

(brook)

2019-08-09 19:02:20 UTC MAIN commitmail json YAML

R-askpass: initial commit

Cross-platform utilities for prompting the user for credentials or a
passphrase, for example to authenticate with a server or read a
protected key. Includes native programs for MacOS and Windows, hence
no 'tcltk' is required. Password entry can be invoked in two different
ways: directly from R via the askpass() function, or indirectly as
password-entry back-end for 'ssh-agent' or 'git-credential' via the
SSH_ASKPASS and GIT_ASKPASS environment variables. Thereby the user
can be prompted for credentials or a passphrase if needed when R calls
out to git or ssh.

(brook)

2019-08-09 19:01:08 UTC MAIN commitmail json YAML

R-desc: initial commit

Tools to read, write, create, and manipulate DESCRIPTION files. It is
intended for packages that create or manipulate other packages.

(brook)

2019-08-09 18:39:07 UTC MAIN commitmail json YAML

R-testthat: initial commit

Software testing is important, but, in part because it is frustrating
and boring, many of us avoid it. 'testthat' is a testing framework for
R that is easy to learn and use, and integrates with your existing
'workflow'.

(brook)

2019-08-09 18:38:12 UTC MAIN commitmail json YAML

R-ps: initial commit

List, query and manipulate all system processes, on 'Windows', 'Linux'
and 'macOS'.

(brook)

2019-08-09 18:37:22 UTC MAIN commitmail json YAML

R-git2r: initial commit

Interface to the 'libgit2' library, which is a pure C implementation
of the 'Git' core methods. Provides access to 'Git' repositories to
extract data and running some basic 'Git' commands.

(brook)

2019-08-09 18:36:29 UTC MAIN commitmail json YAML

R-sys: initial commit

Drop-in replacements for the base system2() function with fine control
and consistent behavior across platforms. Supports clean interruption,
timeout, background tasks, and streaming STDIN / STDOUT / STDERR over
binary or text connections. Arguments on Windows automatically get
encoded and quoted to work on different locales.

(brook)

2019-08-09 18:35:36 UTC MAIN commitmail json YAML

R-rprojroot: initial commit

Robust, reliable and flexible paths to files below a project root. The
'root' of a project is defined as a directory that matches a certain
criterion, e.g., it contains a certain regular file.

(brook)

2019-08-09 18:34:34 UTC MAIN commitmail json YAML

R-sessioninfo: initial commit

Query and print information about the current R session. It is similar
to 'utils::sessionInfo()', but includes more information about
packages, and where they were installed from.

(brook)

2019-08-09 18:33:40 UTC MAIN commitmail json YAML

R-remotes: initial commit

Download and install R packages stored in 'GitHub', 'BitBucket', or
plain 'subversion' or 'git' repositories. This package provides the
'install_*' functions in 'devtools'. Indeed most of the code was
copied over from 'devtools'.

(brook)

2019-08-09 18:32:49 UTC MAIN commitmail json YAML

R-brew: initial commit

brew implements a templating framework for mixing text and R code for
report generation. brew template syntax is similar to PHP, Ruby's erb
module, Java Server Pages, and Python's psp module.

(brook)

2019-08-09 18:32:00 UTC MAIN commitmail json YAML

R-commonmark: initial commit

The CommonMark specification defines a rationalized version of
markdown syntax. This package uses the 'cmark' reference
implementation for converting markdown text into various formats
including html, latex and groff man. In addition it exposes the
markdown parse tree in xml format. Also includes opt-in support for
GFM extensions including tables, autolinks, and strikethrough text.

(brook)

2019-08-09 18:31:06 UTC MAIN commitmail json YAML

R-xml2: initial commit

Work with XML files using a simple, consistent interface. Built on top
of the 'libxml2' C library.

(brook)

2019-08-09 18:29:51 UTC MAIN commitmail json YAML

R-praise: initial commit

Build friendly R packages that praise their users if they have done
something good, or they just need it to feel better.

(brook)

2019-08-09 18:28:57 UTC MAIN commitmail json YAML

R-clisymbols: initial commit

A small subset of Unicode symbols, that are useful when building
command line applications. They fall back to alternatives on terminals
that do not support Unicode. Many symbols were taken from the
'figures' 'npm' package (see
<https://github.com/sindresorhus/figures>).

(brook)

2019-08-09 18:28:06 UTC MAIN commitmail json YAML

R-fs: initial commit

A cross-platform interface to file system operations, built on top of
the 'libuv' C library.

(brook)

2019-08-09 18:27:14 UTC MAIN commitmail json YAML

R-ini: initial commit

Parse simple '.ini' configuration files to an structured list. Users
can manipulate this resulting list with lapply() functions. This same
structured list can be used to write back to file after modifications.

(brook)

2019-08-09 18:26:15 UTC MAIN commitmail json YAML

R-whisker: initial commit

logicless templating, reuse templates in many programming languages
including R

(brook)

2019-08-09 17:43:37 UTC MAIN commitmail json YAML

Updated x11/qt5

(adam)

2019-08-09 17:43:22 UTC MAIN commitmail json YAML

Updated x11/qt5

(adam)

2019-08-09 17:42:46 UTC MAIN commitmail json YAML

qt5-qtscript: distinfo fix

(adam)

2019-08-09 17:41:42 UTC MAIN commitmail json YAML

2019-08-09 17:17:13 UTC MAIN commitmail json YAML

doc: Updated games/flare-game to 1.11

(nia)

2019-08-09 17:16:46 UTC MAIN commitmail json YAML

doc: Updated games/flare-engine to 1.11

(nia)

2019-08-09 17:16:27 UTC MAIN commitmail json YAML

flare{-engine,-game}: Update to 1.11

Changelog

Engine features

* Players now have their own private stash in addition to the shared stash.
* Expanded the 'no_stash' Item variable to account for having multiple stashes.

Engine fixes

* Fix bug where items could be dragged from the vendor window and dropped in the opposite vendor tab.
* Fix bug that caused item max_quantity to be reset when attempting to append an item definition.
* Fix bug where Powers with 'replace_by_effect' would still use properties from the parent power, such as animation state.

Game updates

* Items that couldn't be stashed in the last update can now be put in the private stash.
* Salted Field: moved chest to the south end of the map to prevent easy farming.

Translation updates

* Belarusian (be) update (Zmicer Turok)
* German (de) update (Wuzzy2)
* Hungarian (hu) by bzt
* Ukranian (uk) update (Igor Paliychuk)

(nia)

2019-08-09 16:26:34 UTC MAIN commitmail json YAML

doc: Added games/openmw version 0.45.0

(nia)

2019-08-09 16:26:09 UTC MAIN commitmail json YAML

2019-08-09 16:25:23 UTC MAIN commitmail json YAML

R-tidyr: initial commit

An evolution of 'reshape2'. It's designed specifically for data
tidying (not general reshaping or aggregating) and works well with
'dplyr' data pipelines.

(brook)

2019-08-09 16:23:47 UTC MAIN commitmail json YAML

R-dplyr: initial commit

A fast, consistent tool for working with data frame like objects, both
in memory and out of memory.

(brook)

2019-08-09 16:22:31 UTC MAIN commitmail json YAML

R-tidyselect: initial commit

A backend for the selecting functions of the 'tidyverse'. It makes it
easy to implement select-like functions in your own packages in a way
that is consistent with other 'tidyverse' interfaces for selection.

(brook)

2019-08-09 16:20:55 UTC MAIN commitmail json YAML

R-purrr: initial commit

A complete and consistent functional programming toolkit for R.

(brook)

2019-08-09 16:04:44 UTC MAIN commitmail json YAML

graphics: +mygui

(nia)

2019-08-09 16:04:00 UTC MAIN commitmail json YAML

fix changelog entry

(nia)

2019-08-09 16:03:17 UTC MAIN commitmail json YAML

doc: Updated graphics/mygui to 3.2.3.20190707

(nia)

2019-08-09 16:03:00 UTC MAIN commitmail json YAML

Add graphics/mygui.

MyGUI is a cross-platform library for creating graphical user interfaces
for games and 3D applications.

(nia)

2019-08-09 16:00:38 UTC MAIN commitmail json YAML

doc: Updated devel/bullet to 2.88

(nia)

2019-08-09 16:00:22 UTC MAIN commitmail json YAML

bullet: Update to 2.88

No changelog.
Needed for some software I plan to import later...

(nia)

2019-08-09 15:51:57 UTC MAIN commitmail json YAML

R-ggtern: initial commit

Extends the functionality of 'ggplot2', providing the capability to
plot ternary diagrams for (subset of) the 'ggplot2' geometries.
Additionally, 'ggtern' has implemented several NEW geometries which
are unavailable to the standard 'ggplot2' release. For further
examples and documentation, please proceed to the 'ggtern' website.

(brook)

2019-08-09 15:50:06 UTC MAIN commitmail json YAML

R-compositions: initial commit

Provides functions for the consistent analysis of compositional data
(e.g. portions of substances) and positive numbers (e.g.
concentrations) in the way proposed by J. Aitchison and V.
Pawlowsky-Glahn.

(brook)

2019-08-09 15:48:20 UTC MAIN commitmail json YAML

R-robustbase: initial commit

"Essential" Robust Statistics. Tools allowing to analyze data with
robust methods.  This includes regression methodology including model
selections and multivariate statistics where we strive to cover the
book "Robust Statistics, Theory and Methods" by 'Maronna, Martin and
Yohai'; Wiley 2006.

(brook)

2019-08-09 15:46:29 UTC MAIN commitmail json YAML

R-tensorA: initial commit

Provides convenience functions for advanced linear algebra with
tensors and computation with datasets of tensors on a higher level
abstraction. It includes Einstein and Riemann summing conventions,
dragging, co- and contravariate indices, parallel computations on
sequences of tensors.

(brook)

2019-08-09 15:43:48 UTC MAIN commitmail json YAML

R-DEoptimR: initial commit

Differential Evolution (DE) stochastic algorithms for global
optimization of problems with and without constraints. The aim is to
curate a collection of its state-of-the-art variants that (1) do not
sacrifice simplicity of design, (2) are essentially tuning-free, and
(3) can be efficiently implemented directly in the R language.
Currently, it only provides an implementation of the 'jDE' algorithm
by Brest et al. (2006) <doi:10.1109/TEVC.2006.872133>.

(brook)

2019-08-09 15:42:02 UTC MAIN commitmail json YAML

R-energy: initial commit

E-statistics (energy) tests and statistics for multivariate and
univariate inference, including distance correlation, one-sample,
two-sample, and multi-sample tests for comparing multivariate
distributions, are implemented. Measuring and testing multivariate
independence based on distance correlation, partial distance
correlation, multivariate goodness-of-fit tests, k-groups and
hierarchical clustering based on energy distance, testing for
multivariate normality, distance components (disco) for non-parametric
analysis of structured data, and other energy statistics/methods are
implemented.

(brook)

2019-08-09 15:39:05 UTC MAIN commitmail json YAML

R-bayesm: initial commit

Covers many important models used in marketing and micro-econometrics
applications. The package includes: Bayes Regression (univariate or
multivariate dep var), Bayes Seemingly Unrelated Regression (SUR),
Binary and Ordinal Probit, Multinomial Logit (MNL) and Multinomial
Probit (MNP), Multivariate Probit, Negative Binomial (Poisson)
Regression, Multivariate Mixtures of Normals (including clustering),
Dirichlet Process Prior Density Estimation with normal base,
Hierarchical Linear Models with normal prior and covariates,
Hierarchical Linear Models with a mixture of normals prior and
covariates, Hierarchical Multinomial Logits with a mixture of normals
prior and covariates, Hierarchical Multinomial Logits with a Dirichlet
Process prior and covariates, Hierarchical Negative Binomial
Regression Models, Bayesian analysis of choice-based conjoint data,
Bayesian treatment of linear instrumental variables models, Analysis
of Multivariate Ordinal survey data with scale usage heterogeneity (as
in Rossi et al, JASA (01)), Bayesian Analysis of Aggregate Random
Coefficient Logit Models as in BLP (see Jiang, Manchanda, Rossi 2009)
For further reference, consult our book, Bayesian Statistics and
Marketing by Rossi, Allenby and McCulloch (Wiley 2005) and Bayesian
Non- and Semi-Parametric Methods and Applications (Princeton U Press
2014).

(brook)

2019-08-09 15:20:31 UTC MAIN commitmail json YAML

R-latex2exp: initial commit.

Parses and converts LaTeX math formulas to R's plotmath expressions,
used to enter mathematical formulas and symbols to be rendered as
text, axis labels, etc. throughout R's plotting system.

(brook)

2019-08-09 13:37:33 UTC pkgsrc-2019Q2 commitmail json YAML

Pullup ticket #6017 - requested by leot
net/youtube-dl: update

Revisions pulled up:
- net/youtube-dl/Makefile                                      1.177-1.182
- net/youtube-dl/PLIST                                          1.88-1.90
- net/youtube-dl/distinfo                                      1.160-1.165

---
  Module Name:    pkgsrc
  Committed By:  leot
  Date:          Sun Jun 30 19:26:32 UTC 2019

  Modified Files:
          pkgsrc/net/youtube-dl: Makefile PLIST distinfo

  Log Message:
  youtube-dl: Update to 20190627

  Changes:
  20190627
  --------
  Extractors
  + [go] Add support for disneynow.com (#21528)
  * [mixer:vod] Relax URL regular expression (#21531, #21536)
  * [drtv] Relax URL regular expression
  * [fusion] Fix extraction (#17775, #21269)
  - [nfb] Remove extractor (#21518)
  + [beeg] Add support for api/v6 v2 URLs (#21511)
  + [brightcove:new] Add support for playlists (#21331)
  + [openload] Add support for oload.life (#21495)
  * [vimeo:channel,group] Make title extraction non fatal
  * [vimeo:likes] Implement extrator in terms of channel extractor (#21493)
  + [pornhub] Add support for more paged video sources
  + [pornhub] Add support for downloading single pages and search pages (#15570)
  * [pornhub] Rework extractors (#11922, #16078, #17454, #17936)
  + [youtube] Add another signature function pattern
  * [tf1] Fix extraction (#21365, #21372)
  * [crunchyroll] Move Accept-Language workaround to video extractor since
    it causes playlists not to list any videos
  * [crunchyroll:playlist] Fix and relax title extraction (#21291, #21443)

---
  Module Name:    pkgsrc
  Committed By:  leot
  Date:          Wed Jul  3 10:36:06 UTC 2019

  Modified Files:
          pkgsrc/net/youtube-dl: Makefile distinfo

  Log Message:
  youtube-dl: Update to 20190702

  Changes:
  2019.07.02
  ----------
  Core
  + [utils] Introduce random_user_agent and use as default User-Agent (#21546)

  Extractors
  + [vevo] Add support for embed.vevo.com URLs (#21565)
  + [openload] Add support for oload.biz (#21574)
  * [xiami] Update API base URL (#21575)
  * [yourporn] Fix extraction (#21585)
  + [acast] Add support for URLs with episode id (#21444)
  + [dailymotion] Add support for DM.player embeds
  * [soundcloud] Update client id

---
  Module Name:    pkgsrc
  Committed By:  leot
  Date:          Thu Jul 11 18:56:16 UTC 2019

  Modified Files:
          pkgsrc/net/youtube-dl: Makefile PLIST distinfo

  Log Message:
  youtube-dl: Update to 20190712

  Changes:
  2019.07.12
  ----------
  Core
  + [adobepass] Add support for AT&T U-verse (mso ATT) (#13938, #21016)

  Extractors
  + [mgtv] Pass Referer HTTP header for format URLs (#21726)
  + [beeg] Add support for api/v6 v2 URLs without t argument (#21701)
  * [voxmedia:volume] Improvevox embed extraction (#16846)
  * [funnyordie] Move extraction to VoxMedia extractor (#16846)
  * [gameinformer] Fix extraction (#8895, #15363, #17206)
  * [funk] Fix extraction (#17915)
  * [packtpub] Relax lesson URL regular expression (#21695)
  * [packtpub] Fix extraction (#21268)
  * [philharmoniedeparis] Relax URL regular expression (#21672)
  * [peertube] Detect embed URLs in generic extraction (#21666)
  * [mixer:vod] Relax URL regular expression (#21657, #21658)
  + [lecturio] Add support id based URLs (#21630)
  + [go] Add site info for disneynow (#21613)
  * [ted] Restrict info regular expression (#21631)
  * [twitch:vod] Actualize m3u8 URL (#21538, #21607)
  * [vzaar] Fix videos with empty title (#21606)
  * [tvland] Fix extraction (#21384)
  * [arte] Clean extractor (#15583, #21614)

---
  Module Name:    pkgsrc
  Committed By:  leot
  Date:          Wed Jul 17 09:55:56 UTC 2019

  Modified Files:
          pkgsrc/net/youtube-dl: Makefile PLIST distinfo

  Log Message:
  youtube-dl: Update to 20190716

  Changes:
  2019.07.16
  ----------
  Extractors
  + [asiancrush] Add support for yuyutv.com, midnightpulp.com and cocoro.tv
    (#21281, #21290)
  * [kaltura] Check source format URL (#21290)
  * [ctsnews] Fix YouTube embeds extraction (#21678)
  + [einthusan] Add support for einthusan.com (#21748, #21775)
  + [youtube] Add support for invidious.mastodon.host (#21777)
  + [gfycat] Extend URL regular expression (#21779, #21780)
  * [youtube] Restrict is_live extraction (#21782)

  2019.07.14
  ----------
  Extractors
  * [porn91] Fix extraction (#21312)
  + [yandexmusic] Extract track number and disk number (#21421)
  + [yandexmusic] Add support for multi disk albums (#21420, #21421)
  * [lynda] Handle missing subtitles (#20490, #20513)
  + [youtube] Add more invidious instances to URL regular expression (#21694)
  * [twitter] Improve uploader id extraction (#21705)
  * [spankbang] Fix and improve metadata extraction
  * [spankbang] Fix extraction (#21763, #21764)
  + [dlive] Add support for dlive.tv (#18080)
  + [livejournal] Add support for livejournal.com (#21526)
  * [roosterteeth] Fix free episode extraction (#16094)
  * [dbtv] Fix extraction
  * [bellator] Fix extraction
  - [rudo] Remove extractor (#18430, #18474)
  * [facebook] Fallback to twitter:image meta for thumbnail extraction (#21224)
  * [bleacherreport] Fix Bleacher Report CMS extraction
  * [espn] Fix fivethirtyeight.com extraction
  * [5tv] Relax video URL regular expression and support https URLs
  * [youtube] Fix is_live extraction (#21734)
  * [youtube] Fix authentication (#11270)

---
  Module Name:    pkgsrc
  Committed By:  leot
  Date:          Sat Jul 27 20:22:53 UTC 2019

  Modified Files:
          pkgsrc/net/youtube-dl: Makefile distinfo

  Log Message:
  youtube-dl: Update to 20190727

  Changes:
  20190727
  --------
  Extractors
  + [yahoo:japannews] Add support for yahoo.co.jp (#21698, #21265)
  + [discovery] Add support go.discovery.com URLs
  * [youtube:playlist] Relax video regular expression (#21844)
  * [generic] Restrict --default-search schemeless URLs detection pattern
    (#21842)
  * [vrv] Fix CMS signing query extraction (#21809)

---
  Module Name:    pkgsrc
  Committed By:  leot
  Date:          Wed Jul 31 13:51:52 UTC 2019

  Modified Files:
          pkgsrc/net/youtube-dl: Makefile distinfo

  Log Message:
  youtube-dl: Update to 20190730

  Changes:
  20190730
  --------
  Extractors
  * [youtube] Fix and improve title and description extraction (#21934)

(bsiegert)

2019-08-09 13:25:41 UTC pkgsrc-2019Q2 commitmail json YAML

Pullup ticket #6016 - requested by abs
mail/exim: security fix

Revisions pulled up:
- mail/exim/Makefile                                            1.168
- mail/exim/distinfo                                            1.71

---
  Module Name:    pkgsrc
  Committed By:  abs
  Date:          Sun Jul 28 21:17:28 UTC 2019

  Modified Files:
          pkgsrc/mail/exim: Makefile distinfo

  Log Message:
  Updated mail/exim to 4.92.1

  Exim version 4.92.1
  -------------------

  JH/31 Avoid re-expansion in ${sort } expansion.
  (CVE-2019-13917, OVE-20190718-0006)

(bsiegert)

2019-08-09 13:16:07 UTC pkgsrc-2019Q2 commitmail json YAML

Pullup ticket #6015 - requested by nia
audio/jack: build fix

Revisions pulled up:
- audio/jack/buildlink3.mk                                      1.11

---
  Module Name: pkgsrc
  Committed By: nia
  Date: Fri Jul 26 11:47:00 UTC 2019

  Modified Files:
  pkgsrc/audio/jack: buildlink3.mk

  Log Message:
  jack: Add BDB_ACCEPTED to buildlink3.mk

(bsiegert)

2019-08-09 13:11:05 UTC pkgsrc-2019Q2 commitmail json YAML

Pullup ticket #6014 - requested by nia
audio/mpg123: security fix

Revisions pulled up:
- audio/mpg123/Makefile                                        1.58
- audio/mpg123/Makefile.common                                  1.49
- audio/mpg123/distinfo                                        1.49

---
  Module Name: pkgsrc
  Committed By: nia
  Date: Sat Jul 27 15:14:40 UTC 2019

  Modified Files:
  pkgsrc/audio/mpg123: Makefile Makefile.common distinfo

  Log Message:
  mpg123: Update to 1.25.11

  libmpg123:
  * Fix out-of-bounds reads in ID3 parser for unsynced frames. (oss-fuzz-bug 15852)
  * Fix out-of-bounds read for RVA2 frames with non-delimited identifier. (oss-fuzz-bug 15852)
  * Fix implementation-defined parsing of RVA2 values. (oss-fuzz-bug 15862)
  * Fix undefined parsing of APE header for skipping. Also prevent endless loop on premature end of supposed APE header. (oss-fuzz-bug 15864)
  * Fix some syntax to make pedantic compiler happy.

  The serious bugs trigger Denial of Service either via the nasty endless
  loop in supposed APE tags or by crashes if the invalid reads hit a
  diagnostic by the OS or, more likely, a security mechanism like the
  sanitizer instrumentation that enabled finding the bugs.

  I do not have CVE numbers for these bugs.
  I rather fix the bugs than name them. Just update, will you?

(bsiegert)

2019-08-09 13:09:32 UTC pkgsrc-2019Q2 commitmail json YAML

Pullup ticket #6013 - requested by bacon
devel/subversion: build fix

Revisions pulled up:
- devel/subversion/distinfo                                    1.113
- devel/subversion/patches/patch-configure                      1.5
- devel/subversion/patches/patch-subversion_bindings_swig_python_libsvn_swig_py_swigutil_py.c 1.1

---
  Module Name:    pkgsrc
  Committed By:  markd
  Date:          Wed Jul  3 10:42:54 UTC 2019

  Modified Files:
          pkgsrc/devel/subversion: distinfo
          pkgsrc/devel/subversion/patches: patch-configure
  Added Files:
          pkgsrc/devel/subversion/patches:
              patch-subversion_bindings_swig_python_libsvn_swig_py_swigutil_py.c

  Log Message:
  subversion: more reliable fix for APR 1.7.0

  From: Stefan Sperling <stsp%apache.org@localhost>
  Date: Fri, 12 Apr 2019 09:27:33 +0000
  Subject: [PATCH] Get rid of apr_int64_t format string check in swig py
    configure.

  This check relied on APR implementation details and broke with APR 1.7.0.
  Rather than trying to guess a perfect format string to use, just use the
  largest possible format and cast the argument accordingly.

  Should fix build against APR 1.7.0 and later.

  Suggested by: brane

  * build/ac-macros/swig.m4: Remove code related to SVN_APR_INT64_T_PYCFMT.

  * subversion/bindings/swig/python/libsvn_swig_py/swigutil_py.c
    (svn_swig_py_client_blame_receiver_func): Stop relying on the
      SVN_APR_INT64_T_PYCFMT constant from configure. Use "L" and
      acast to PY_LONG_LONG instead.

(bsiegert)

2019-08-09 12:59:26 UTC MAIN commitmail json YAML

Updated graphics/libimagequant, graphics/pngquant

(adam)

2019-08-09 12:59:03 UTC MAIN commitmail json YAML

2019-08-09 12:38:43 UTC pkgsrc-2019Q2 commitmail json YAML

Pullup ticket #6012 - requested by taca
mail/squirrelmail: security fix

Revisions pulled up:
- mail/squirrelmail/Makefile                                    1.137
- mail/squirrelmail/PLIST                                      1.42
- mail/squirrelmail/distinfo                                    1.71

---
  Module Name: pkgsrc
  Committed By: taca
  Date: Wed Jul 24 03:49:35 UTC 2019

  Modified Files:
  pkgsrc/mail/squirrelmail: Makefile PLIST distinfo

  Log Message:
  mail/squirrelmail: update to 1.4.23pre14832

  Update squirrelmail to 1.4.23pre14832.

  - Changed anti-CSRF security token lifetime to be session-based.
  - Added favicon and ability for admins to use their own by setting
    $head_tag_extra in config_local.php (see documented comments in,
    for example, src/webmail.php)
  - Altered hook types "do_hook_function" and "concat_hook_function"
    such that the ultimate hook return value (in its current state,
    as computed (or not) by the plugins that have executed previously)
    is both globalized and passed as an additional argument to each
    plugin.  This allows plugins to cooperate better and not overwrite
    each other's return values.
  - Updated SVG handling, closing several related vulnerabilities
    (#2831) [CVE-2018-14950] [CVE-2018-14951] [CVE-2018-14952]
    [CVE-2018-14953] [CVE-2018-14954] [CVE-2018-14955]
  - Added IMAP ID command (RFC2971), sent after every login - use
    by setting $imap_id_command_args in config/config_local.php
    (see notes in functions/imap_general.php for more details)
  - Fixed PHP7 warnings (#2847)
  - Added handling for RCDATA and RAWTEXT elements in HTML sanitizer
    [CVE-2019-12970]

(bsiegert)

2019-08-09 12:03:28 UTC MAIN commitmail json YAML

Updated net/zeromq, net/py-zmq

(adam)

2019-08-09 12:03:17 UTC MAIN commitmail json YAML

2019-08-09 12:03:06 UTC MAIN commitmail json YAML

py-zmq: updated to 18.1.0

18.1.0
- Compatibility with Python 3.8 release candidate by regenerating Cython courses with Cython 0.29.13
- bump bundled libzmq to 4.3.2
- handle cancelled futures in asyncio
- make :meth:`zmq.Context.instance` fork-safe
- fix errors in :meth:`zmq.Context.destroy` when opening and closing many sockets

(adam)

2019-08-09 12:01:34 UTC MAIN commitmail json YAML

zeromq: updated to 4.3.2

libzmq 4.3.2

CVE-2019-13132: a remote, unauthenticated client connecting to a
libzmq application, running with a socket listening with CURVE
encryption/authentication enabled, may cause a stack overflow and
overwrite the stack with arbitrary data, due to a buffer overflow in
the library. Users running public servers with the above configuration
are highly encouraged to upgrade as soon as possible, as there are no
known mitigations. All versions from 4.0.0 and upwards are affected.
Thank you Fang-Pen Lin for finding the issue and reporting it!

New DRAFT (see NEWS for 4.2.0) zmq_socket_monitor_versioned API that supports
a versioned monitoring events protocol as a parameter. Passing 1 results in
the same behaviour as zmq_socket_monitor.
Version 2 of the events protocol allows new events, new metadata, different
socket types for the monitors and more. It is described in details in
doc/zmq_socket_monitor_versioned.txt

New DRAFT (see NEWS for 4.2.0) zmq_socket_monitor_pipes_stats that triggers
a new ZMQ_EVENT_PIPES_STATS to be delivered via zmq_socket_monitor_versioned
v2 API, which contains the current status of all the queues owned by the
monitored socket. See doc/zmq_socket_monitor_versioned.txt for details.

New DRAFT (see NEWS for 4.2.0) zmq_poller_fd that returns the FD of a thread
safe socket. See doc/zmq_poller.txt for details.

New DRAFT (see NEWS for 4.2.0) socket options:

ZMQ_XPUB_MANUAL_LAST_VALUE is similar to ZMQ_XPUB_MANUAL but allows to avoid
duplicates when using last value caching.
ZMQ_SOCKS_USERNAME and ZMQ_SOCKS_PASSWORD that implement SOCKS5 proxy
authentication.
See doc/zmq_setsockopt.txt and doc/zmq_getsockopt.txt for details.
Implemented background thread names for Windows, when the Visual Studio
debugger is being used.

Fixed 3358 - test_security_zap failing due to SIGBUS on SPARC64, hard-coded
IPC socket binds in tests cause race conditions

Fixed 3361 - enabling GSSAPI support (when using autools) does not work due
to regression introduced in 4.2.3

Fixed 3362 - remove documentation for ZMQ_THREAD_PRIORITY context option
getter, it's not implemented

Fixed 3363 - tests fail to build due to stricter compiler printf validation
in new versions of GCC

Fixed 3367 - try to infer cacheline size at build time, first with
getconf LEVEL1_DCACHE_LINESIZE, and then by reading
/sys/devices/system/cpu/cpu0/cache/index0/coherency_line_size
(autoconf only), and only then falling back to the previous
default of 64 bytes. Avoids false sharing on POWER and s390x.
Import ax_func_posix_memalign.m4 as a more reliable check for
posix_memalign presence on some unix platforms.
Prefer c++11 atomic primitives to compiler intrinsics, when
both are available, as the former is more reliable.
Set test_pair_ipc and test_rebind_ipc to XFAIL on GNU/Hurd due
to non-functioning getsockname on AF_UNIX.

Fixed 3370 - Make queue length and HWM state observable

Fixed 3373 - performance regression in zmq_poll on CentOS 6/7

Fixed 3375 - assign names to all pthreads created by the library to ease
debugging

Fixed 3376 - assigned random TIPC port is not returned by ZMQ_LAST_ENDPOINT

Fixed 3385 - TCP port in ZMQ_LAST_ENDPOINT depends on global locale

Fixed 3404 - use std::condition_variable_any when possible

Fixed 3436 - reconnect interval exponential backoff and may lead to integer
overflows

Fixed 3440 - improve zmq_proxy performance by batching of up to 1000
consecutive messages (if any) and add perf/proxy_thr tool

Fixed 3451 - fix support of /dev/poll on Solaris

Fixed 3452 - strnlen may not be available

Fixed 1462 - test failure in test_filter_ipc due to invalid system groups

Fixed 3269 - Boost.ASIO integration stopped working with v4.3.0

Fixed 3479 - ZeroMQ does not build for QNX 6.6 with CMake

Fixed 3481 - add include to fix uClibc++ compilation

Fixed 3491 - build broken on Fedora 30

Fixed 3494 - ZeroMQConfig.cmake fails if shared libraries are not built

Fixed 3498 - syntax error on Windows related to socket descriptor type

Fixed 3500 - PLAIN HELLO message incorrectly uses WELCOME literal, regression
introduced in 4.3.0

Fixed 3517 - configure errors because of syntax errors in the use of test
shell command

Fixed 3521 - document how to achieve high performance with the PGM transport

Fixed 3526 - failure case behavior unclear in zmq_msg_send documentation

Fixed 3537 - fix build on z/OS by using pthread_equal instead of comparing
variables directly

Fixed 3546 - CMake links with librt on MinGW which is not available

Many coding style, duplication, testing and static analysis improvements.

(adam)

2019-08-09 09:07:00 UTC MAIN commitmail json YAML

Updated devel/protobuf, devel/py-protobuf

(adam)

2019-08-09 09:06:34 UTC MAIN commitmail json YAML

[py-]protobuf: updated to 3.9.1

Protocol Buffers v3.9.1
Python
Drop building wheel for python 3.4

(adam)

2019-08-09 07:46:54 UTC MAIN commitmail json YAML

Updated misc/py-tqdm, devel/py-execnet, devel/py-packaging, textproc/py-yaml

(adam)

2019-08-09 07:46:31 UTC MAIN commitmail json YAML

py-yaml: updated to 5.1.2

5.1.2:
* Re-release of 5.1 with regenerated Cython sources to build properly for Python 3.8b2+

(adam)

2019-08-09 07:42:59 UTC MAIN commitmail json YAML

py-packaging: updated to 19.1

19.1:
* Add the packaging.tags module.
* Correctly handle two-digit versions in python_version

(adam)

2019-08-09 07:37:38 UTC MAIN commitmail json YAML

py-execnet: updated to 1.7.0

1.7.0:
Show paths in stack traces generated by remote_exec().
Fix flaky hangs in workerpool.waitall.

(adam)

2019-08-09 07:35:15 UTC MAIN commitmail json YAML

py-tqdm: updated to 4.33.0

tqdm v4.33.0 stable
fix pandas==0.25 API change
add contributor badges
fix py26 travis CI
metadata fixes
.zenodo.json
CODEOWNERS
GitHub package registry docker deployment
minor linting
documentation updates

(adam)

2019-08-08 21:18:43 UTC MAIN commitmail json YAML

Use https for kcat.strangesoft.net

(nia)

2019-08-08 21:17:48 UTC MAIN commitmail json YAML

2019-08-08 20:57:23 UTC MAIN commitmail json YAML

doc: Updated graphics/p5-GraphicsMagick to 1.3.33

(nia)

2019-08-08 20:57:00 UTC MAIN commitmail json YAML

doc: Updated graphics/GraphicsMagick to 1.3.33

(nia)

2019-08-08 20:56:40 UTC MAIN commitmail json YAML

{p5-}GraphicsMagick: Update to 1.3.33

1.3.33 (July 20, 2019)
==========================

Special Issues:

* It has been discovered that the 'ICU' library (a perhaps 30MB C++
  library) which is now often a libxml2 dependendency causes huge
  process initialization overhead.  This is noticed as unexpected
  slowness when GraphicsMagick utilities are used to process small to
  medium sized files.  The time to initialize is often longer than the
  time to read the input file, process the image, and write the output
  file.  If the 'ICU' dependency can not be avoided, then make sure to
  use the modules build.  Please lobby the 'ICU' library developers to
  change their implementation to avoid long start-up times due to
  merely linking with the library.

Security Fixes:

* GraphicsMagick is now participating in Google's oss-fuzz project due
  to the contributions and assistance of Alex Gaynor. Since February 4
  2018, 353 issues have been opened by oss-fuzz and 338 of those
  issues have been resolved.  The issues list is available at
  https://bugs.chromium.org/p/oss-fuzz/issues/list under search term
  "graphicsmagick".  Issues are available for anyone to view and
  duplicate if they have been in "Verified" status for 30 days, or if
  they have been in "New" status for 90 days.  There are too many
  fixes to list here.  Please consult the GraphicsMagick ChangeLog
  file, Mercurial repository commit log, and the oss-fuzz issues list
  for details.

* Documentation has been added regarding security hazards due to
  commands which support a '@filename' syntax.

* MontageImages(): Fix wrong length argument to strlcat() when
  building montage directory, which could allow heap overwrite.

Bug fixes:

* PNG: Pass correct size value to strlcat() in module registration
  code.  This bug is noticed to cause problems for Apple's OS X and
  Linux Alpine with musl libc.  This fixes a regression introduced by
  the 1.3.32 release.

* Re-implement command-line utility `'@'` file inclusion support for
  `-comment`, `-draw`, `-format`, and `-label` which was removed for
  the 1.3.32 release.  The new implementation is isolated to
  command-line utility implementation code rather than being deeply
  embedded in the library and exposed in other usage contexts.  This
  fixes a regression introduced by the 1.3.32 release.

* CAPTION: The The CAPTION reader did not appear to work at all any
  more.  Now it works again, but still not very well.

* MagickXDisplayImage(): Fix heap overwrite of windows->image.name and
  windows->image.icon_name buffers.  This bug has surely existed since
  early GraphicsMagick releases.

* MagickXAnimateImages(): Fix memory leak of scene_info.pixels.

* AcquireTemporaryFileDescriptor(): Fix compilation under Cygwin. This
  fixes a regression introduced by the 1.3.32 release.

* PNG: Fix saving to palette when mage has an alpha channel but no
  color is marked as transparent.

* Compilation warnings in the Visual Studio WIN64 build due to the
  'long' type being only 32-bits have been addressed.

New Features:

* None

API Updates:

* None

Feature improvements:

* None

Windows Delegate Updates/Additions:

* None

Build Changes:

* None

Behavior Changes:

* Support for `'@'` file inclusion support for `-comment`, `-draw`,
  `-format`, and `-label` has been restored.

(nia)

2019-08-08 20:55:04 UTC MAIN commitmail json YAML

Update all R packages to canonical form.

The canonical form [1] of an R package Makefile includes the
following:

- The first stanza includes R_PKGNAME, R_PKGVER, PKGREVISION (as
  needed), and CATEGORIES.

- HOMEPAGE is not present but defined in math/R/Makefile.extension to
  refer to the CRAN web page describing the package.  Other relevant
  web pages are often linked from there via the URL field.

This updates all current R packages to this form, which will make
regular updates _much_ easier, especially using pkgtools/R2pkg.

[1] http://mail-index.netbsd.org/tech-pkg/2019/08/02/msg021711.html

(brook)

2019-08-08 20:51:25 UTC MAIN commitmail json YAML

doc: Updated audio/musicpd to 0.21.13

(nia)

2019-08-08 20:51:08 UTC MAIN commitmail json YAML

musicpd: Update to 0.21.13

ver 0.21.13 (2019/08/06)
* input
  - cdio_paranoia: require libcdio-paranoia 10.2+0.93+1
* decoder
  - mad: fix crackling sound (0.21.12 regression)
* output
  - jack: improved Windows compatibility

ver 0.21.12 (2019/08/03)
* decoder
  - mad: update bit rate after seeking
  - mad: fix several bugs preventing the plugin from decoding the last frame
  - opus: ignore case in replay gain tag names
  - opus, vorbis: decode the "end of stream" packet
* output
  - jack: fix mono-to-stereo conversion
* player
  - don't restart unseekable song after failed seek attempt
* Windows
  - support backslash in relative URIs loaded from playlists

(nia)

2019-08-08 20:39:15 UTC MAIN commitmail json YAML

doc: Updated graphics/libraw to 0.19.4

(nia)

2019-08-08 20:38:57 UTC MAIN commitmail json YAML

libraw: Update to 0.19.4

Changes:

* CRW/metadata loop prevention code is rolled back due to ABI incompatibility. To enable, use -DLIBRAW_METADATA_LOOP_PREVENTION=1 compile flag for LibRaw and ALL APPS.
* Fixed possible buffer underflow

(nia)