public inbox for development@lists.ipfire.org
 help / color / mirror / Atom feed
* [PATCH] bird: Update to version 3.3.3
@ 2026-10-07 10:56 Adolf Belka
  2026-10-07 10:56 ` [PATCH] borgbackup: patch forgotten in 1.4.5 update Adolf Belka
                   ` (7 more replies)
  0 siblings, 8 replies; 9+ messages in thread
From: Adolf Belka @ 2026-10-07 10:56 UTC (permalink / raw)
  To: development; +Cc: Adolf Belka

- Update from version 2.15.1 to 3.3.3
- No change in rootfile
- Although there are no CVE's mentioned some of the bug fixes look to be security related
- Changelog
3.3.3
  o BMP/Nest: No refeed after listener or protocol restart
  o BMP: Fix crash on sending routes
  o BMP: Fix route sending when no import table is configured
  o EVPN: Improve tunnel and bridge intarface handling
  o Netlink: Fix handling of interface attributes for slave interfaces
  o OSPF: Fix LSA length overflow
  o RAdv: Add hop limit validation
  o RPKI: Fix socket close detection during rx_hook
  o Proto: Fix VRF settings
  o MPLS: Fix crash on reconfiguring label ranges
  o Tools: Fix version script for Git 2.55+
  o Conf: Fix use-after-free in cf_include() error path
  o Lib: Fix bvsnprintf() on too long net_addr values
  o Lib: Fix endptr in bstrtoul16()
3.3.2
  o BGP: Fix stack buffer overflow in Flowspec NLRI decoder
  o BGP: Minor improvements in Flowspec parsing
  o BGP: Fix minor issues with send hold timer
  o Fix null byte handling in authentication keys
  o Pipe, L3VPN: Fix hostentry stripping
  o Filter: Fix zero arg handling
  o Logging: Fix use-after-free on failed rotation
  o CLI: Fix crashes in show route
  o Allocator: Pre-fill hot pages when entering RCU critical section
  o Fix obstacle cleanup
  o Update bird-users mailing list links
3.3.1
  o BGP: Fix crash when incoming connection for disabled protocol arrives
  o BGP: Fix parsing labelled NLRIs with no next hop
  o BGP: Fix cork behavior in collision with graceful restart
  o BGP: Fix crash on dumping pending export statistics
  o BGP: Fix several issues in Flowspec handling
  o BMP/Nest: No refeed after listener or protocol restart
  o MPLS: Fix crash on reconfiguring CS_DOWN channel
  o OSPF: Fix handling of LLS data length field
  o OSPF: Fix OOB read in authentication check
  o OSPF: Fix OOB read in Router-LSA validation
  o Proto: Fix regression in protocol enabling
  o Channel: Fix refeeds and reloads during graceful restart
  o Export: Mitigate duplicate withdrawals
  o Filters: Fix crash when setting gateway on recursive nexthops
  o Filters: Fix path matching when AS path is too long.
  o Table: Fix RCU double-anchor
  o Table: Propagate thread group config into aux
  o RCU: Catch leaks sooner
3.3.0
  o BGP: Export memory consumption optimization
  o BGP: Fix hostentry handling of MPLS and EVPN routes
  o BGP: Block connections on explicitly disabled instances
  o Proto/CLI: Lock show-commands
  o Proto: Loop persists through down state
  o Nest/CLI: Show only the longest prefix match in 'show route for'
  o Nest: Lockless attribute cache
  o Removed locking in random number generation
  o ASPA: Fix downstream validation
  o BMP: Fix route sending
  o BGP: Fix route refresh after restart
  o BGP: Fix dynamic peer connection
  o Filters: Fix string attributes
  o Filters: Fix ROA check autoreload reconfiguration
  o Logging: Fix error handling
  o Kernel: Fix graceful recovery
  o Pipe: Fix rare collision bug
  o Config: Allow keyword redefinition
  o Merged 2.19
3.2.0
  o BGP: Listening socket rework
  o IGP metric: Split out local_metric again
  o Table: Optimal and Any Export refactoring
  o Various race condition fixes
  o All fixes included in 3.1.0 -- 3.1.5
  o Merged 2.18
3.1.0
  o CLI v2 compatibility layer for show route
  o Thread configuration rework
  o Merged 2.17
3.0.2
  o Multiple route propagation crash fixes
  o BGP export table route source leak
  o Kernel export of source.specific routes fix
  o Filter gw setting fix
  o Merged 2.16.2
3.0.1
  o BGP: Fixed crash in dynamic spawn
  o BGP: Fixed crash in graceful recovery
  o BGP: Fixed crash with deterministic med
  o BGP: Renamed the otc attribute to bgp_otc
  o BFD: Fixed crash in session reconfiguration
  o Kernel: Fixed crash with merged paths
  o Kernel: Simplified initial scan
  o Tables: Fixed old best route propagation
  o Tables: Fixed debug configuration propagation
  o Tables: Fixed initial feeds
  o CLI: Fixed buffer allocation heap bloating
  o Reduced route attribute normalization heap bloating
  o Merged 2.16.1
3.0.0
  o Multithreaded execution
  o Decoupled exports from imports
  o Unified route attribute names
  o Slightly different log format
  o Separate reload command for filters and protocols
  o BGP: Export tables show the state as on wire
  o Lots of internal changes
  o Merged changes from 2.16
  o BMP and MRT converted to the new API and working
  o Internal protocol state journal
  o Optimized table journal cleanup
  o Fixed "show route export"
  o Fixed minor bugs
3.0.alpha3
  o Merged 2.15.1
  o Fixed major issues with channel reloads
  o Fixed data inconsistencies in many corner cases
  o Fixed internal scheduler corner cases
  o MRT and BMP still switched off
  o Expected one more alpha before stable
3.0.alpha2
  o Fixed memory leaks and use-after free bugs
  o Simple thread work balancing
  o MRT switched off
  o Slow kernel route synchronization to be fixed later
3.0.alpha1
  o Worker threads for BGP, Pipe, RPKI and BFD
  o Configurable number of threads
  o Asynchronous route export
  o Flat attribute structure
  o Inline import tables
  o Export tables merged with BGP prefix / attribute buckets
  o Fixed ROA check locking inversion in route table dumps
  o MRT switched off
3.0.alpha0
  o Removal of fixed protocol-specific route attributes
  o Asynchronous route export
  o Explicit table import / export hooks
  o Partially lockless route attribute cache
  o Thread-safe resource management
  o Thread-safe interface notifications
  o Thread-safe protocol API
  o Adoption of BFD IO loop for general use
  o Parallel Pipe protocol
  o Parallel RPKI protocol
  o Parallel BGP protocol
  o Lots of refactoring
  o Bugfixes and improvements as they came along
2.19.0
  o BGP/MPLS Ethernet VPNs using VXLAN tunnels
  o BGP: PMSI tunnel attribute
  o Linux Netlink implementation for bridge interfaces
  o BGP: Automatic peering based on discovered neighbors
  o RAdv: Router discovery based on incoming Router Advertisments
  o Nest: Add message when attempting to reload protocol that is not UP
  o BMP: Fix off-by-one buffer overflow
  o OSPF: Fix infinite loop in OSPF Graceful Restart
  o ASPA: Fix downstream validation
  o Filters: Fix string attributes
  o Logging: Fix error handling
  o Minor filter improvements
  o Various documentation fixes
2.18
  o BGP: Support for dynamic onlink and link-local connections
  o BGP: Listening socket refactoring
  o BGP: Fix restart behavior on outgoing next hop setting
  o BGP: Configuring global/link-local IPv6 nexthop
  o BGP: Disallow AS Sets by default
  o L3VPN: Support for import/export target none and import target all
  o RAdv: P-flag to prefer prefix delegation in DHCPv6
  o Filter: Merging of case intervals
  o Filter: Append operator
  o ASPA: Paths containing AS_SET are invalid
  o Doc: Update website to bird.nic.cz
  o CI: Upstream packaging cleanup and reproducible builds
  o Various minor fixes in code, comments, documentation and tooling
2.17.1
  o BSD: Fix build on NetBSD
  o BGP: Fix crash when incoming connection for disabled protocol arrives
  o Documentation fixes
2.17
  o Babel: next hop control for IPv4
  o BGP: link-local next hop format configuration
  o TCP-AO implementation for Linux
2.16.2
  o BFD: password reconfiguration crash fix
  o L3VPN attribute fix
  o Table removal rare crash fix
  o Logging minor fix
2.16.1
  o ASPA: fixed parser bug in static protocol
  o ASPA: fixed static protocol reconfiguration
  o Babel: fixed seqno comparison
  o BSD: fixed onlink flag assumption with Netlink
  o Fixed memory alignment issues
  o Fixed possible rte src collisions in L3VPN
2.16
  o BFD: Set password per session
  o BFD: Accept zero checksum for IPv6-UDP
  o BMP: Refactoring and optimizations
  o OSPF: Allow loopback nexthop in OSPFv3-IPv4
  o RPKI: TCP-MD5 authentication option
  o Filters: Add enum types to filter grammar
  o CLI: Configurable additional control sockets
  o CLI: Timeformat command
  o CLI: Dump commands need a target file
  o ASPA support in filters, Static and RPKI
  o Formalized contributions and credits policy
  o Many bugfixes and improvements

Signed-off-by: Adolf Belka <adolf.belka@ipfire.org>
---
 lfs/bird | 18 ++++++++----------
 1 file changed, 8 insertions(+), 10 deletions(-)

diff --git a/lfs/bird b/lfs/bird
index be78593c3..d5d582ab9 100644
--- a/lfs/bird
+++ b/lfs/bird
@@ -1,7 +1,7 @@
 ###############################################################################
 #                                                                             #
 # IPFire.org - A linux based firewall                                         #
-# Copyright (C) 2007-2024  IPFire Team  <info@ipfire.org>                     #
+# Copyright (C) 2007-2026  IPFire Team  <info@ipfire.org>                     #
 #                                                                             #
 # This program is free software: you can redistribute it and/or modify        #
 # it under the terms of the GNU General Public License as published by        #
@@ -26,7 +26,7 @@ include Config
 
 SUMMARY    = The BIRD Internet Routing Daemon
 
-VER        = 2.15.1
+VER        = 3.3.3
 
 THISAPP    = bird-$(VER)
 DL_FILE    = $(THISAPP).tar.gz
@@ -34,7 +34,7 @@ DL_FROM    = $(URL_IPFIRE)
 DIR_APP    = $(DIR_SRC)/$(THISAPP)
 TARGET     = $(DIR_INFO)/$(THISAPP)
 PROG       = bird
-PAK_VER    = 14
+PAK_VER    = 15
 
 DEPS       =
 
@@ -48,7 +48,7 @@ objects = $(DL_FILE)
 
 $(DL_FILE) = $(DL_FROM)/$(DL_FILE)
 
-$(DL_FILE)_BLAKE2 = c3fe95ae2b8a3dca036278c8014f3ce2d1fd224c65c10abcc77b2cc1dbdfaa1b5766e8643b873a12ac33f00cd5e866aa7ce853ead78150ec4314b53457ad554a
+$(DL_FILE)_BLAKE2 = 0e3218b343c55787eec300155c6c96205f6c433e4fb3d8e38a96919b1e2cbb92d80dec43f5548d22d33ad90f05dcd64fe093d09c0aa23c7fd882cbe48e17a0d0
 
 install : $(TARGET)
 
@@ -81,12 +81,10 @@ $(subst %,%_BLAKE2,$(objects)) :
 $(TARGET) : $(patsubst %,$(DIR_DL)/%,$(objects))
 	@$(PREBUILD)
 	@rm -rf $(DIR_APP) && cd $(DIR_SRC) && tar axf $(DIR_DL)/$(DL_FILE)
-	$(UPDATE_AUTOMAKE)
-	cd $(DIR_APP) && \
-		./configure \
-			--prefix=/usr \
-			--sysconfdir=/etc \
-			--localstatedir=/var
+	cd $(DIR_APP) && ./configure \
+				--prefix=/usr \
+				--sysconfdir=/etc \
+				--localstatedir=/var
 	cd $(DIR_APP) && make $(MAKETUNING)
 	cd $(DIR_APP) && make install
 
-- 
2.55.0



^ permalink raw reply	[flat|nested] 9+ messages in thread

* [PATCH] borgbackup: patch forgotten in 1.4.5 update
  2026-10-07 10:56 [PATCH] bird: Update to version 3.3.3 Adolf Belka
@ 2026-10-07 10:56 ` Adolf Belka
  2026-10-07 10:56 ` [PATCH] borgbackup: Update to version 1.4.5 Adolf Belka
                   ` (6 subsequent siblings)
  7 siblings, 0 replies; 9+ messages in thread
From: Adolf Belka @ 2026-10-07 10:56 UTC (permalink / raw)
  To: development; +Cc: Adolf Belka

Signed-off-by: Adolf Belka <adolf.belka@ipfire.org>
---
 ...borgbackup-1.4.5_remove_python_3.14_reference.patch | 10 ++++++++++
 1 file changed, 10 insertions(+)
 create mode 100644 src/patches/borgbackup-1.4.5_remove_python_3.14_reference.patch

diff --git a/src/patches/borgbackup-1.4.5_remove_python_3.14_reference.patch b/src/patches/borgbackup-1.4.5_remove_python_3.14_reference.patch
new file mode 100644
index 000000000..004181d3a
--- /dev/null
+++ b/src/patches/borgbackup-1.4.5_remove_python_3.14_reference.patch
@@ -0,0 +1,10 @@
+--- borgbackup-1.4.5/pyproject.toml.orig	2026-10-05 23:12:26.930081528 +0200
++++ borgbackup-1.4.5/pyproject.toml	2026-10-05 23:19:05.418979242 +0200
+@@ -23,7 +23,6 @@
+     "Programming Language :: Python :: 3.11",
+     "Programming Language :: Python :: 3.12",
+     "Programming Language :: Python :: 3.13",
+-    "Programming Language :: Python :: 3.14",
+     "Topic :: Security :: Cryptography",
+     "Topic :: System :: Archiving :: Backup",
+ ]
-- 
2.55.0



^ permalink raw reply	[flat|nested] 9+ messages in thread

* [PATCH] borgbackup: Update to version 1.4.5
  2026-10-07 10:56 [PATCH] bird: Update to version 3.3.3 Adolf Belka
  2026-10-07 10:56 ` [PATCH] borgbackup: patch forgotten in 1.4.5 update Adolf Belka
@ 2026-10-07 10:56 ` Adolf Belka
  2026-10-07 10:56 ` [PATCH] cifs-utils: Update to version 7.8 Adolf Belka
                   ` (5 subsequent siblings)
  7 siblings, 0 replies; 9+ messages in thread
From: Adolf Belka @ 2026-10-07 10:56 UTC (permalink / raw)
  To: development; +Cc: Adolf Belka

- Update from version 1.4.1 to 1.4.5
- Update of rootfile
- 1 CVE fix in 1.4.5
- patch to remove reference to python 3.14 otherwise build fails as a module has a name
   change in python 3.14. Borgbackup is still able to be built with python 3.10 or newer
- Changelog
1.4.5
  New features:
    create/import-tar/delete/prune --quick-stats: faster than --stats by omitting
	“All archives” and repository chunk statistics, #9579, #9757
    prune: show total vs matching archives in output, #9262
    create --exclude-dataless: macOS: skip cloud files not materialized locally, #9746
    support BORG_HOSTNAME and BORG_USERNAME env vars to override the
	hostname/username stored in archives and used by the {hostname}/{user}
	placeholders, #9651
    Minimal implementation of “related repositories”, #9645
    This feature allows multiple repositories to share deduplication-relevant
     secrets (id_key and chunk_seed) while maintaining secure, independent encryption
     keys.
        borg key export-related-secrets <REPO> <SPATH>
        borg init --import-related-secrets <SPATH> <REPO>
    BORG_JSON_INDENT env var for JSON output formatting, #3605
    BORG_HOSTNAME and BORG_USERNAME env vars, #9651
  Fixes:
    extract: security fixes for CVE-2026-62268 (low severity: attacker would need
	repository write access and, if the repo is encrypted, also borg key and
	passphrase).
    create: do not wrap repository writes in backup_io(“read”), #9854
    Archive.delete: don’t reuse msgpack Unpacker after an unpacking failure
    slashdot hack: fix exclusion of source directory metadata, #9534
    hashindex: fix new checks for big endian archs, #9521
    Note:
        Many of the fixed issues listed below relate to rather rare or theoretical
	 issues and were found by automated code checking.
    LRUCache: resolve KeyError and memory leaks, #9587
    crypto.low_level: fix freeing of memory, #9585
    extract: resolve memory leak on abandoned async requests in RemoteRepository,
	 (#9588). This can happen if borg fails to extract a file due to permission
	 or other errors or if the archived file had all-zero replacement chunks or
	 inconsistent size.
    Chunker fixes, #9586:
        Strictly check the return value of fd.read(n) and reject if it returns more
	 bytes than requested.
        Avoid giving len <= 0 to posix_fadvise(), which could drop the rest of the
	 file from the cache.
        buzhash: check for len == 0 edge case
        Correctly Py_DECREF in cases of errors.
        Check for malloc/calloc failures.
    Hashindex fixes, #9575:
        Make it possible to look up in compacted hashtables.
        Avoid buckets_length integer overflow on 32-bit systems via huge num_buckets.
        Deal safely with empty index: we must use num_buckets = 1 to avoid division
	 by zero and sanity check in hashindex_read.
        Always initialize min_empty and num_empty.
        Reinitialize upper/lower limit and min_empty after compact.
        Fix size_idx / fit_size / grow_size / shrink_size (mind array bounds).
        Deal with growing when already at max capacity.
        hashindex_resize: replace num_entries assertion, return an error instead.
        Correctly free memory when header validation fails.
        BaseIndex.clear: always stay in valid state. Do not free the old index before
	 we successfully have allocated a new one.
  Other changes:
    msgpack: also allow up to 1.2.1
    use F_FULLFSYNC on macOS for SyncFile data durability, #9383
    mount: drop runtime warning about symlinks and improve corresponding docs
    mount: improve error msg when uid/gid cannot be resolved, #9574
    properly handle invalid and dev versions in version parser, fixes #9014
    tests: reset borg.output.progress logger between tests to fix flakiness
    docs:
        borgbackup.readthedocs.io: offer PDF and html downloads in sidebar, #9731
        fix ‘borg key change-passphrase’ docs, #9697
        impact of the slashdot hack on pattern matching, #9647
        pull-backup.rst minor fixes
        sshfs + chroot does not support different CPU architectures, #6878
        document max_segment_size adjustment, #7858
        add section about rolling back a transaction, #9270
        clarify storage quota run-time settings, #3948
        add FAQ entry about scalability, #4742
        add FAQ entry for full repository filesystem, #9573
        add FAQ entry for bad backups and deduplication, #4744
        add FAQ entry for SSH connection timeouts, #5629
        improve macOS Keychain instructions, #5156
        add DoS warning for none encryption mode, #6715
        document error handling in borg create, #4912
        update year in LICENSE and docs/conf.py
1.4.4
  New features:
    prune: added -v / --info output, #9262.
    mount: warn about symlinks pointing outside of the mount point, #9254.
    create/info: remember/show cwd at the time of archive creation, #6191.
  Fixes:
    hashindex: fix memory leak, #9497.
    hashindex: check values in read HashHeader, #9485.
    hashindex_size: return int64_t, #9423.
    hashindex: fix iteritems segfaulting with non-existent marker, #9368. Never
	happened in borg, because borg always gives existing markers to iteritems.
    compress: make Padme size obfuscation usable (“obfuscate,250,…”).
    borgfs/mount: get_base_dir: avoid using incorrect HOME, #3395.
  Other changes:
    PyInstaller binary: do not exclude SSL, needed for pyfuse3/trio, #9196.
    mount: FUSE FS performance improvement.
    warn when replaying segments, #9233.
    CI / tests:
        build Linux binaries with pyfuse3.
        use macOS 15 to build the binaries.
        scripts/linux-run: run commands (e.g. tox) in a Podman Linux container.
        fix race condition in test_with_lock, #8810.
        fix spurious sparse test failure on Win32, #7616.
        Cygwin: skip ~root base dir test.
        fix coverage collection for daemonized borg mount, #9448.
    docs:
        move RTD version selector to sidebar top-left, #8204.
        consolidate key backup info in borg key export help, #6204.
        clarify append-only != write-only, #9304.
        fix typos found by codespell.
        update binary README.
        GitHub: enhance pull request template.
1.4.3
  Fixes:
    compact: replace AssertionError with a warning, #8535.
    compact: also fix segment hints data for lost segment files.
    CI: FUSE-related fixes and improvements, #9182:
        The Linux and FreeBSD binaries built on GitHub now include working FUSE
	 support (based on llfuse).
        We can’t include FUSE support in the macOS binaries built on GitHub, because
	 we can’t install macFUSE there; use our Homebrew tap for that.
  Other changes:
    Drop Python 3.9 support (has reached end of life at python.org).
    CI:
        Install the correct FUSE library depending on the tox environment.
        PyInstaller binary building: build and upload early, then run CI tests.
        For now, use llfuse, as there is an issue with PyInstaller and pyfuse3.
        Backported vm_tests (FreeBSD/NetBSD/OpenBSD/Haiku) from the master branch.
        Dynamic code analysis (Address and Undefined Behavior Sanitizers), #6819.
        Add tag-based workflows and provenance attestation for GitHub-built binaries,
	(#9135, #9136).
    Docs:
        Some fixes and updates to the FAQ, #9188.
        Update binary README; release binaries are built on GitHub now.
1.4.2
  New features:
    BORG_MSGPACK_VERSION_CHECK=no to optionally disable the msgpack version check;
	default is “yes”; use at your own risk, #9109.
    fat binary builds on GitHub (see assets on the GitHub releases page):
        for Linux with glibc 2.35+ (Intel/AMD and ARM64)
        for macOS 14+ (Apple Silicon/ARM64) and macOS 13+ (Intel)
    diff --sort-by: enhanced sorting, #8998
    create: add --files-changed=MODE option (controls how borg detects whether a file
	has changed while it is being backed up)
    improve tty-less progress reporting (--progress)
  Fixes:
    extract: fs flags: use get/set to influence only specific flags, #9039,
	Linux/macOS/FreeBSD only.
    extract: fs flags: remove support for the compression flag; this wasn’t working
	correctly anyway.
    create/info: fix discrepancies in archive stats, #8898, #9003
    import-tar: fix the dot-slash issue; add a test, #8947
    import-tar: when printing the path, use the already-normalized item.path
    preprocess_args: fix option name matching
    fix ChunkerParams validation
    mount --show-rc: display main process rc, #8308
    json: include archive keys in JSON lines when requested via --format, #9095
  Other changes:
    support Python 3.14
    msgpack: allow 1.1.2
    Brewfile: use openssl@3 rather than openssl@3.0, to have a more recent OpenSSL.
    msgpack version check: ignore “rc” and other version elements
    pyproject.toml: use SPDX expression for license, add license-files, #8771. Also
	raise the setuptools version requirement appropriately.
    If the setuptools requirement is problematic when packaging borg for an OS
	distribution that must use an older setuptools, apply a reverse patch when
	packaging borg; using an older setuptools should not be a problem.
    Chunker params: warn about an even window size for buzhash, #8868
    suppress compiler warning about CYTHON_FALLTHROUGH
    remove unnecessary check that Padmé overhead is at most 12%
    PyInstaller spec: avoid pkg_resources warning
    update requirements.lock.txt to current versions
    docs:
        borg-serve: simplify example of environment variables in authorized_keys, #8318
        unify master and 1.4-maint installation docs
        update install docs to include SETUPTOOLS_SCM_PRETEND_VERSION
        add Arch Linux to the “Installing from source” docs
        add systemd-inhibit and examples, #8989
        fix typos / grammar in docs and code
        document how to debug borg mount, #5461
        document what happens when a new keyfile repo is created at the same path, #6230
        borg serve: recommend using a simple shell, #8318
        update the README for the binaries
        extract: document how to use wildcards in PATHs, #8589
        improve borg help patterns, #7144
        clarify the scope of the default pattern style, #9004
        explain how to get maximum compaction with --threshold 0 and trade-offs,
	 (#9112, #8716)
        rewrite borg init --encryption docs
    tests:
        save temporary space
        test_chunkpoints_unchanged: do not use blake2b_256
        fix diff command test on macOS HFS+, #8860
        fuzzing test for default chunker
        read_only CM: skip test if cmd_immutable is unsuccessful, #9021
        pyproject.toml: correctly define test environments for FUSE testing
        coverage/tox: use pyproject.toml, disable no-ctracer warning
        CI: speed up pull requests
        vagrant:
            use Python 3.11.14
            add debian trixie box
            drop broken/EOL debian buster VM / borg-linux-glibc228
            drop outdated/slow/unsupported macOS 10.12 VM / borg-macos1012 (Intel)
            add an OpenBSD 7.7 box
            try to fix OpenIndiana box, please see #9118

Signed-off-by: Adolf Belka <adolf.belka@ipfire.org>
---
 config/rootfiles/packages/borgbackup | 19 +++++++++++--------
 lfs/borgbackup                       |  9 +++++----
 2 files changed, 16 insertions(+), 12 deletions(-)

diff --git a/config/rootfiles/packages/borgbackup b/config/rootfiles/packages/borgbackup
index d17f41212..bd804e2fa 100644
--- a/config/rootfiles/packages/borgbackup
+++ b/config/rootfiles/packages/borgbackup
@@ -73,8 +73,9 @@ usr/lib/python3.10/site-packages/borg/testsuite/crypto.py
 usr/lib/python3.10/site-packages/borg/testsuite/efficient_collection_queue.py
 usr/lib/python3.10/site-packages/borg/testsuite/file_integrity.py
 usr/lib/python3.10/site-packages/borg/testsuite/hashindex.py
-usr/lib/python3.10/site-packages/borg/testsuite/hashindex_stress.py
+usr/lib/python3.10/site-packages/borg/testsuite/hashindex_pytest.py
 usr/lib/python3.10/site-packages/borg/testsuite/helpers.py
+usr/lib/python3.10/site-packages/borg/testsuite/issue_8535.py
 usr/lib/python3.10/site-packages/borg/testsuite/item.py
 usr/lib/python3.10/site-packages/borg/testsuite/key.py
 usr/lib/python3.10/site-packages/borg/testsuite/locking.py
@@ -93,10 +94,12 @@ usr/lib/python3.10/site-packages/borg/testsuite/xattr.py
 usr/lib/python3.10/site-packages/borg/upgrader.py
 usr/lib/python3.10/site-packages/borg/version.py
 usr/lib/python3.10/site-packages/borg/xattr.py
-usr/lib/python3.10/site-packages/borgbackup-1.4.1-py3.10.egg-info
-usr/lib/python3.10/site-packages/borgbackup-1.4.1-py3.10.egg-info/PKG-INFO
-usr/lib/python3.10/site-packages/borgbackup-1.4.1-py3.10.egg-info/SOURCES.txt
-usr/lib/python3.10/site-packages/borgbackup-1.4.1-py3.10.egg-info/dependency_links.txt
-usr/lib/python3.10/site-packages/borgbackup-1.4.1-py3.10.egg-info/entry_points.txt
-usr/lib/python3.10/site-packages/borgbackup-1.4.1-py3.10.egg-info/requires.txt
-usr/lib/python3.10/site-packages/borgbackup-1.4.1-py3.10.egg-info/top_level.txt
+usr/lib/python3.10/site-packages/borgbackup-1.4.5-py3.10.egg-info
+usr/lib/python3.10/site-packages/borgbackup-1.4.5-py3.10.egg-info/PKG-INFO
+usr/lib/python3.10/site-packages/borgbackup-1.4.5-py3.10.egg-info/SOURCES.txt
+usr/lib/python3.10/site-packages/borgbackup-1.4.5-py3.10.egg-info/dependency_links.txt
+usr/lib/python3.10/site-packages/borgbackup-1.4.5-py3.10.egg-info/entry_points.txt
+usr/lib/python3.10/site-packages/borgbackup-1.4.5-py3.10.egg-info/requires.txt
+usr/lib/python3.10/site-packages/borgbackup-1.4.5-py3.10.egg-info/scm_file_list.json
+usr/lib/python3.10/site-packages/borgbackup-1.4.5-py3.10.egg-info/scm_version.json
+usr/lib/python3.10/site-packages/borgbackup-1.4.5-py3.10.egg-info/top_level.txt
diff --git a/lfs/borgbackup b/lfs/borgbackup
index 2e64177e9..5fe2eaaaf 100644
--- a/lfs/borgbackup
+++ b/lfs/borgbackup
@@ -1,7 +1,7 @@
 ###############################################################################
 #                                                                             #
 # IPFire.org - A linux based firewall                                         #
-# Copyright (C) 2007-2025  IPFire Team  <info@ipfire.org>                     #
+# Copyright (C) 2007-2026  IPFire Team  <info@ipfire.org>                     #
 #                                                                             #
 # This program is free software: you can redistribute it and/or modify        #
 # it under the terms of the GNU General Public License as published by        #
@@ -24,7 +24,7 @@
 
 include Config
 
-VER        = 1.4.1
+VER        = 1.4.5
 SUMMARY    = Deduplicating backup program with compression and authenticated encryption
 
 THISAPP    = borgbackup-$(VER)
@@ -33,7 +33,7 @@ DL_FROM    = $(URL_IPFIRE)
 DIR_APP    = $(DIR_SRC)/$(THISAPP)
 TARGET     = $(DIR_INFO)/$(THISAPP)
 PROG       = borgbackup
-PAK_VER    = 19
+PAK_VER    = 20
 
 DEPS       = python3-msgpack python3-packaging python3-pyfuse3 libxxhash
 # borgbackup only works with specific versions of python3-msgpack
@@ -48,7 +48,7 @@ objects = $(DL_FILE)
 
 $(DL_FILE) = $(DL_FROM)/$(DL_FILE)
 
-$(DL_FILE)_BLAKE2 = fbf5cd06bcddd5b90db75ed1b2276d2eba0d17d0545a751acfd40d051053d9d3e1a0ea2f1dd87e6541aeca6199e98ad1885b9d3155696268752069b763b660a4
+$(DL_FILE)_BLAKE2 = 4a72bf303edb3fc680ef90000a4183e6951c5995a15abe1e1f9a330a6d0e57ca236ec5ebc2b4f46e89b272cb14b4d6e73b62c041310a7461d2c83679c6cf974f
 
 install : $(TARGET)
 
@@ -81,6 +81,7 @@ $(subst %,%_BLAKE2,$(objects)) :
 $(TARGET) : $(patsubst %,$(DIR_DL)/%,$(objects))
 	@$(PREBUILD)
 	@rm -rf $(DIR_APP) && cd $(DIR_SRC) && tar zxf $(DIR_DL)/$(DL_FILE)
+	cd $(DIR_APP) && patch -Np1 < $(DIR_SRC)/src/patches/borgbackup-1.4.5_remove_python_3.14_reference.patch
 	cd $(DIR_APP) && python3 setup.py build
 	cd $(DIR_APP) && python3 setup.py install --root=/
 	@rm -rf $(DIR_APP)
-- 
2.55.0



^ permalink raw reply	[flat|nested] 9+ messages in thread

* [PATCH] cifs-utils: Update to version 7.8
  2026-10-07 10:56 [PATCH] bird: Update to version 3.3.3 Adolf Belka
  2026-10-07 10:56 ` [PATCH] borgbackup: patch forgotten in 1.4.5 update Adolf Belka
  2026-10-07 10:56 ` [PATCH] borgbackup: Update to version 1.4.5 Adolf Belka
@ 2026-10-07 10:56 ` Adolf Belka
  2026-10-07 10:56 ` [PATCH] expat: Update to version 2.9.0 Adolf Belka
                   ` (4 subsequent siblings)
  7 siblings, 0 replies; 9+ messages in thread
From: Adolf Belka @ 2026-10-07 10:56 UTC (permalink / raw)
  To: development; +Cc: Adolf Belka

- Update from version 7.7 to 7.8
- No change in rootfile
- Changelog
7.8
	cifs-utils: bump version to 7.8
	cifs.upcall: resolve scraped ccache name explicitly
	smbinfo: add filenormalizednameinfo subcommand
	smbinfo: add filealternatenameinfo subcommand
	cifs.mount.rst: update AUTHOR entry
	cifs.upcall.rst: update AUTHOR entry
	Update AUTHORS list
	cifs.upcall: fix krb5 regression with --trust-dns
	mount.cifs: prevent stolen creds through SUDO_UID

Signed-off-by: Adolf Belka <adolf.belka@ipfire.org>
---
 lfs/cifs-utils | 6 +++---
 1 file changed, 3 insertions(+), 3 deletions(-)

diff --git a/lfs/cifs-utils b/lfs/cifs-utils
index 053ff928d..5d10bd78b 100644
--- a/lfs/cifs-utils
+++ b/lfs/cifs-utils
@@ -26,7 +26,7 @@ include Config
 
 SUMMARY    = Utilities for doing and managing mounts of the Linux CIFS filesystem
 
-VER        = 7.7
+VER        = 7.8
 
 THISAPP    = cifs-utils-$(VER)
 DL_FILE    = $(THISAPP).tar.bz2
@@ -34,7 +34,7 @@ DL_FROM    = $(URL_IPFIRE)
 DIR_APP    = $(DIR_SRC)/$(THISAPP)
 TARGET     = $(DIR_INFO)/$(THISAPP)
 PROG       = cifs-utils
-PAK_VER    = 9
+PAK_VER    = 10
 
 DEPS       = libtalloc
 
@@ -51,7 +51,7 @@ objects = $(DL_FILE)
 
 $(DL_FILE) = $(DL_FROM)/$(DL_FILE)
 
-$(DL_FILE)_BLAKE2 = 4b0934778a803863cdca37375c9273c601494a6656d070ab5ad510616adbce92c68b0c952146257b839a19d15c42216d3c4f0f1b83942b9f0dd8e0d3d06916ea
+$(DL_FILE)_BLAKE2 = 3d87077e862d6106293b207f826bc1266d27fef46a9185d43e7b934b8675f2faacc8ba0b61ec475310edde83654839db4a1bd86bf489ee0b5c78e7de6e12d23f
 
 install : $(TARGET)
 
-- 
2.55.0



^ permalink raw reply	[flat|nested] 9+ messages in thread

* [PATCH] expat: Update to version 2.9.0
  2026-10-07 10:56 [PATCH] bird: Update to version 3.3.3 Adolf Belka
                   ` (2 preceding siblings ...)
  2026-10-07 10:56 ` [PATCH] cifs-utils: Update to version 7.8 Adolf Belka
@ 2026-10-07 10:56 ` Adolf Belka
  2026-10-07 10:56 ` [PATCH] fetchmail: Update to version 6.6.9 Adolf Belka
                   ` (3 subsequent siblings)
  7 siblings, 0 replies; 9+ messages in thread
From: Adolf Belka @ 2026-10-07 10:56 UTC (permalink / raw)
  To: development; +Cc: Adolf Belka

- Update from version 2.8.5 to 2.9.0
- Update of rootfile
- 2 CVE fixes
- Changelog
2.9.0
        Security fixes:
           (#1392)  CVE-2026-102633 -- Integer overflow in function
                    expat_realloc on 32bit platforms
           (#1393)  CVE-2026-77214 -- Validate parameter `len` against available
                    buffer capacity in XML_ParseBuffer
        Bug fixes:
           (#1387)  lib: Handle OOM when copying encodingName in XML_ParserReset
        New features:
           (#1327)  lib: Introduce new "Properties API" to get and set
                    scalar properties for a single parser instance.
                    There are six new functions:
                    - XML_GetPropertyBool
                    - XML_GetPropertyDouble
                    - XML_GetPropertyUInt64
                    - XML_SetPropertyBool
                    - XML_SetPropertyDouble
                    - XML_SetPropertyUInt64
                    And two new enums:
                    - XML_Prop_Error
                    - XML_Parser_Property
           (#1323)  lib: Introduce five new 64bit location API functions:
                    - XML_GetCurrentByteCount64
                    - XML_GetCurrentByteIndex64
                    - XML_GetCurrentColumnNumber64
                    - XML_GetCurrentLineNumber64
                    - XML_GetInputContext64
                    These five functions closely mirror their predecessors
                    but are not prone to 32bit integer wrap-around.
        Other changes:
           (#1391)  docs: Document the scope of function XML_GetErrorCode
           (#1395)  docs: Document length expectations for XML_ParseBuffer
           (#1394)  lib: Call unknown encoding release before parser teardown
     (#1370 #1373)  lib: Drop (disabled-by-default) attribute info feature
                    These things are now gone:
                    - Public function XML_GetAttributeInfo
                    - Public struct XML_AttrInfo
                    - Macro XML_ATTR_INFO
                    These things are now causing build errors:
                    - Configure option --enable-xml-attr-info
                    - CMake option -DEXPAT_ATTR_INFO=ON
     (#1379 #1382)  lib: Drop (disabled-by-default) minimum size feature
                    These things are now gone:
                    - Macro XML_MIN_SIZE
                    These things are now causing build errors:
                    - Configuring with -DXML_MIN_SIZE for CPPFLAGS/CFLAGS
                    - CMake option -DEXPAT_MIN_SIZE=ON
     (#1323 #1411)  lib: Deprecate macro XML_LARGE_SIZE (use the new 64bit
                    location API functions instead please)
           (#1323)  lib: Deprecate five location API functions that are cursed
                    with integer wrap-around:
                    - XML_GetCurrentByteCount
                    - XML_GetCurrentByteIndex
                    - XML_GetCurrentColumnNumber
                    - XML_GetCurrentLineNumber
                    - XML_GetInputContext
           (#1399)  lib: Guard against out-of-handler use of XML_DefaultCurrent
           (#1400)  lib: Use size_t for bytesAllocated and peakBytesAllocated
  (#1401 #1402) ..
     (#1404 #1405)  lib|xmlwf|tests: Unify use of xcslen, xcscmp and xcsncmp
           (#1406)  xmlwf: Add missing `#include "expat.h"`
     (#1389 #1396)  Version info bumped from 13:5:12 (libexpat*.so.1.12.5)
                    to 14:0:13 (libexpat*.so.1.13.0); see https://verbump.de/
                    for what these numbers do
        Infrastructure:
           (#1386)  CI: Bump MinGW Clang from 23.1.1 to 23.1.2
           (#1410)  CI: Bump Fil-C from 0.685 to 0.686
           (#1388)  CI: Adapt to breaking changes regarding windows-11-arm image
           (#1403)  CI: Limit package cache download runtime

Signed-off-by: Adolf Belka <adolf.belka@ipfire.org>
---
 config/rootfiles/common/expat | 20 ++++++++++----------
 lfs/expat                     |  4 ++--
 2 files changed, 12 insertions(+), 12 deletions(-)

diff --git a/config/rootfiles/common/expat b/config/rootfiles/common/expat
index a32adc876..f0ef98fe7 100644
--- a/config/rootfiles/common/expat
+++ b/config/rootfiles/common/expat
@@ -2,21 +2,21 @@
 #usr/include/expat.h
 #usr/include/expat_config.h
 #usr/include/expat_external.h
-#usr/lib/cmake/expat-2.8.5
-#usr/lib/cmake/expat-2.8.5/expat-config-version.cmake
-#usr/lib/cmake/expat-2.8.5/expat-config.cmake
-#usr/lib/cmake/expat-2.8.5/expat-noconfig.cmake
-#usr/lib/cmake/expat-2.8.5/expat.cmake
+#usr/lib/cmake/expat-2.9.0
+#usr/lib/cmake/expat-2.9.0/expat-config-version.cmake
+#usr/lib/cmake/expat-2.9.0/expat-config.cmake
+#usr/lib/cmake/expat-2.9.0/expat-noconfig.cmake
+#usr/lib/cmake/expat-2.9.0/expat.cmake
 #usr/lib/libexpat.la
 #usr/lib/libexpat.so
 usr/lib/libexpat.so.1
-usr/lib/libexpat.so.1.12.5
+usr/lib/libexpat.so.1.13.0
 #usr/lib/pkgconfig/expat.pc
 #usr/share/doc/expat
-#usr/share/doc/expat-2.8.5
-#usr/share/doc/expat-2.8.5/ok.min.css
-#usr/share/doc/expat-2.8.5/reference.html
-#usr/share/doc/expat-2.8.5/style.css
+#usr/share/doc/expat-2.9.0
+#usr/share/doc/expat-2.9.0/ok.min.css
+#usr/share/doc/expat-2.9.0/reference.html
+#usr/share/doc/expat-2.9.0/style.css
 #usr/share/doc/expat/AUTHORS
 #usr/share/doc/expat/changelog
 #usr/share/man/man1/xmlwf.1
diff --git a/lfs/expat b/lfs/expat
index b5f9466e4..d47d3833f 100644
--- a/lfs/expat
+++ b/lfs/expat
@@ -24,7 +24,7 @@
 
 include Config
 
-VER        = 2.8.5
+VER        = 2.9.0
 
 THISAPP    = expat-$(VER)
 DL_FILE    = $(THISAPP).tar.xz
@@ -40,7 +40,7 @@ objects = $(DL_FILE)
 
 $(DL_FILE) = $(DL_FROM)/$(DL_FILE)
 
-$(DL_FILE)_BLAKE2 = 7d10459714722c6e4e858da92d3f7def6950240275ad5054b97f5d7612524f2813b8add75d6693698c8e7cdb4a64f73750346783e438ff6271dbc80643d51ee7
+$(DL_FILE)_BLAKE2 = b029962cd2ea06fbbe922837e6c708512a5c77a4617ee399779788ffe91537533d8c66e0ca63e0b92b76da8e84c10fa82216f27a6e48b16b898905b06e116562
 
 install : $(TARGET)
 
-- 
2.55.0



^ permalink raw reply	[flat|nested] 9+ messages in thread

* [PATCH] fetchmail: Update to version 6.6.9
  2026-10-07 10:56 [PATCH] bird: Update to version 3.3.3 Adolf Belka
                   ` (3 preceding siblings ...)
  2026-10-07 10:56 ` [PATCH] expat: Update to version 2.9.0 Adolf Belka
@ 2026-10-07 10:56 ` Adolf Belka
  2026-10-07 10:56 ` [PATCH] harfbuzz: Update to version 14.5.1 Adolf Belka
                   ` (2 subsequent siblings)
  7 siblings, 0 replies; 9+ messages in thread
From: Adolf Belka @ 2026-10-07 10:56 UTC (permalink / raw)
  To: development; +Cc: Adolf Belka

- Update from version 6.6.7 to 6.6.9
- No change in rootfile
- Changelog
6.6.9
 BUGFIXES:
	* When fetchmail was built with NTLM support, and a POP3 server send
	  a malformed challenge to the authentication request,
	  fetchmail would call strtok() on an uninitialized stack buffer and
	  could in extreme cases read off the end of the buffer if it did not
	  contain 0x00 or 0x20 bytes, and corrupt the first 0x20 character to 0x00.
	  This will not allow remote code injection but can cause undefined
	  behavior including crashes of fetchmail or corrupting one bit of memory.
	  This is a regression introduced by commit 09f95921 that also became
	  part of all fetchmail-6.6.7.rc1 and later release candidates and the
	  6.6.7 and 6.6.8 releases. It is separate from CVE-2026-94184 and
	  just happened to be introduced anew in the same releases that fixed
	  the mentioned CVE.
	  Reported by Jakub Kulik, Gitlab Issue #98.
	* Fix missing CR when sending multi-line warning messages from
	  daemon mode. Reported by Andrea Venturoli, Gitlab Issue #99.
6.6.8
 SECURITY ADVISORY:
	* fetchmail 6.6.8 updates the NEWS file (which you appear to be reading)
	  and the fetchmail-SA-2026-01 security announcement.  There are no code
	  changes since 6.6.7, but we need to prominently get the new documentation
	  out.  fetchmail-SA-2026-01 has been assigned CVE Id CVE-2026-94184.
 BUGFIX:
	* The Serbian (sr) translation was not installed due to an oversight in the
	  po/LINGUAS file.
 DEVELOPER-FACING CHANGE:
	* The "make check-git" target in the autotools build is more verbose
	  in case it errors out, usually due to uncommitted changes in the local
	  checkout.
 TRANSLATION UPDATES were contributed by these fine people - thank you!
	Please welcome the new traditional Chinese <zh_TW> translation!  非常感謝!
	* zh_TW: Alang Hsu [Chinese (traditional)]
	* sr:    Мирослав Николић [Serbian]

Signed-off-by: Adolf Belka <adolf.belka@ipfire.org>
---
 lfs/fetchmail | 6 +++---
 1 file changed, 3 insertions(+), 3 deletions(-)

diff --git a/lfs/fetchmail b/lfs/fetchmail
index 6d9c4c2d5..2c1e27f3d 100644
--- a/lfs/fetchmail
+++ b/lfs/fetchmail
@@ -26,7 +26,7 @@ include Config
 
 SUMMARY    = Full-Featured POP and IMAP Mail Retrieval Daemon
 
-VER        = 6.6.7
+VER        = 6.6.9
 
 THISAPP    = fetchmail-$(VER)
 DL_FILE    = $(THISAPP).tar.xz
@@ -34,7 +34,7 @@ DL_FROM    = $(URL_IPFIRE)
 DIR_APP    = $(DIR_SRC)/$(THISAPP)
 TARGET     = $(DIR_INFO)/$(THISAPP)
 PROG       = fetchmail
-PAK_VER    = 27
+PAK_VER    = 28
 
 DEPS       =
 
@@ -48,7 +48,7 @@ objects = $(DL_FILE)
 
 $(DL_FILE) = $(DL_FROM)/$(DL_FILE)
 
-$(DL_FILE)_BLAKE2 = 5c0a974b67e4c3392ab4de2b14eb5e34a0bff8eac48d2a5f412bfb500333df601e563d41dc26b897534a705c253222d13eb16e23dbefd0f82e945ae94cbf66ba
+$(DL_FILE)_BLAKE2 = 5477413b3b90ebf90e33893e942f6c79e9995f7ed3578c05a15ed980b9aae1464b7674eebabfe63d50688e12a38a92b2a85a83a1a94b94b3b269a26945de3567
 
 install : $(TARGET)
 
-- 
2.55.0



^ permalink raw reply	[flat|nested] 9+ messages in thread

* [PATCH] harfbuzz: Update to version 14.5.1
  2026-10-07 10:56 [PATCH] bird: Update to version 3.3.3 Adolf Belka
                   ` (4 preceding siblings ...)
  2026-10-07 10:56 ` [PATCH] fetchmail: Update to version 6.6.9 Adolf Belka
@ 2026-10-07 10:56 ` Adolf Belka
  2026-10-07 10:56 ` [PATCH] lvm2: Update to version 2.03.43 Adolf Belka
  2026-10-07 10:56 ` [PATCH] python3-msgpack: Update to version 1.2.1 Adolf Belka
  7 siblings, 0 replies; 9+ messages in thread
From: Adolf Belka @ 2026-10-07 10:56 UTC (permalink / raw)
  To: development; +Cc: Adolf Belka

- Update from version 14.5.0 to 14.5.1
- Update of rootfile
- Changelog
14.5.1
	- Map the `fonupa` (Uralic Phonetic Alphabet) BCP 47 variant to the `UPPH`
	  OpenType language system tag.
	- Produce smaller `cmap` subtables and drop no-op variation device tables when
	  subsetting.
	- Fix possible deadlock in `hb_font_destroy()` after `hb_ft_font_set_funcs()`,
	  a regression from 14.5.0.
	- Fix signed integer overflows when scaling glyph extents and applying
	  synthetic slant and emboldening.
	- Fix float-to-int overflow in `VARC` component axis coordinates with
	  malformed fonts.
	- Fix a memory leak in the experimental WebAssembly shaper when shaping with
	  features.
	- Fix accumulator overflows in the experimental raster library when rendering
	  glyphs with very many overlapping edges.
	- Fix heap buffer overflow in the experimental GPU library with malicious
	  `COLR` fonts.
	- Various build and CI fixes.

Signed-off-by: Adolf Belka <adolf.belka@ipfire.org>
---
 config/rootfiles/common/harfbuzz | 14 +++++++-------
 lfs/harfbuzz                     |  4 ++--
 2 files changed, 9 insertions(+), 9 deletions(-)

diff --git a/config/rootfiles/common/harfbuzz b/config/rootfiles/common/harfbuzz
index 47d5d757d..8bfea5ad1 100644
--- a/config/rootfiles/common/harfbuzz
+++ b/config/rootfiles/common/harfbuzz
@@ -54,25 +54,25 @@ usr/include/harfbuzz/hb-script-list.h
 #usr/lib/cmake/harfbuzz/harfbuzz-config.cmake
 #usr/lib/libharfbuzz-cairo.so
 usr/lib/libharfbuzz-cairo.so.0
-usr/lib/libharfbuzz-cairo.so.0.61450.0
+usr/lib/libharfbuzz-cairo.so.0.61451.0
 #usr/lib/libharfbuzz-gobject.so
 usr/lib/libharfbuzz-gobject.so.0
-usr/lib/libharfbuzz-gobject.so.0.61450.0
+usr/lib/libharfbuzz-gobject.so.0.61451.0
 #usr/lib/libharfbuzz-gpu.so
 usr/lib/libharfbuzz-gpu.so.0
-usr/lib/libharfbuzz-gpu.so.0.61450.0
+usr/lib/libharfbuzz-gpu.so.0.61451.0
 #usr/lib/libharfbuzz-raster.so
 usr/lib/libharfbuzz-raster.so.0
-usr/lib/libharfbuzz-raster.so.0.61450.0
+usr/lib/libharfbuzz-raster.so.0.61451.0
 #usr/lib/libharfbuzz-subset.so
 usr/lib/libharfbuzz-subset.so.0
-usr/lib/libharfbuzz-subset.so.0.61450.0
+usr/lib/libharfbuzz-subset.so.0.61451.0
 #usr/lib/libharfbuzz-vector.so
 usr/lib/libharfbuzz-vector.so.0
-usr/lib/libharfbuzz-vector.so.0.61450.0
+usr/lib/libharfbuzz-vector.so.0.61451.0
 #usr/lib/libharfbuzz.so
 usr/lib/libharfbuzz.so.0
-usr/lib/libharfbuzz.so.0.61450.0
+usr/lib/libharfbuzz.so.0.61451.0
 #usr/lib/pkgconfig/harfbuzz-cairo.pc
 #usr/lib/pkgconfig/harfbuzz-gobject.pc
 #usr/lib/pkgconfig/harfbuzz-gpu.pc
diff --git a/lfs/harfbuzz b/lfs/harfbuzz
index f77e0b5d2..b02597103 100644
--- a/lfs/harfbuzz
+++ b/lfs/harfbuzz
@@ -24,7 +24,7 @@
 
 include Config
 
-VER        = 14.5.0
+VER        = 14.5.1
 
 THISAPP    = harfbuzz-$(VER)
 DL_FILE    = $(THISAPP).tar.xz
@@ -40,7 +40,7 @@ objects = $(DL_FILE)
 
 $(DL_FILE) = $(DL_FROM)/$(DL_FILE)
 
-$(DL_FILE)_BLAKE2 = cde386fc963c56c3e2d352cb66419094bad64348752072a94856e3229d0910d127c5922bbc980b8a663ce138529e7c2ac2a6715c5fa468057148c126e40e4164
+$(DL_FILE)_BLAKE2 = dbf71466ca677b1a5d221f98ae8e11fe19abbc26d29bec97f91dac21d631ad0fcfd517ccb5e4f0c34116032886294fa9a986d6c59cff928d46a0a41d59643393
 
 install : $(TARGET)
 
-- 
2.55.0



^ permalink raw reply	[flat|nested] 9+ messages in thread

* [PATCH] lvm2: Update to version 2.03.43
  2026-10-07 10:56 [PATCH] bird: Update to version 3.3.3 Adolf Belka
                   ` (5 preceding siblings ...)
  2026-10-07 10:56 ` [PATCH] harfbuzz: Update to version 14.5.1 Adolf Belka
@ 2026-10-07 10:56 ` Adolf Belka
  2026-10-07 10:56 ` [PATCH] python3-msgpack: Update to version 1.2.1 Adolf Belka
  7 siblings, 0 replies; 9+ messages in thread
From: Adolf Belka @ 2026-10-07 10:56 UTC (permalink / raw)
  To: development; +Cc: Adolf Belka

- Update from version 2.03.42 to 2.03.43
- No change in rootfile
- Changelog
2.03.43
  Wipe stale signatures before formatting a VDO data LV on thin storage.
  Warn on non-power-of-2 thin pool chunk size; prompt when --chunksize is used.
  Fix lvmpolld shutdown when reaping a finished client thread.
  Fix dmeventd raid repair after partial replacement or resync completion.
  Retry failed dmeventd snapshot extension with exponential backoff.
  Fix dmeventd snapshot threshold advance when lvextend failed.
  Fix dmeventd snapshot unmount on Invalid/Overflow, not 100% usage alone.
  Reject undersized --pooldatavdo conversion before allocating pool metadata.
  Allow lvchange --refresh and properties on hidden thin and cache pool sub LVs.
  Allow 4K stripe size smaller than page size (except on DAX and MD RAID).
  Set recursion limit to 1024 LVs when processing device tree.
  Remove cmirrord and clustered mirror log daemon support.
  Remove legacy vgimportclone.sh script (superseded by native vgimportclone).
  Respect /run/mdadm/creating-<md_dev_name> in 69-dm-lvm.rules.
  Add `lvmconfig --edit Section/Field=Value` to set an lvm.conf setting.
  Add `lvmconfig --edit Section/Field=-` to remove an lvm.conf setting.
  Fix use-after-free of host tag list on toolcontext refresh.
  Fix memleak of config tree list nodes on toolcontext refresh.
  Fix lvmconfig output of merged and unregistered config nodes.
  Recurse into subsections when merging config trees.
  Make lvmpersist reject non-block devices and unsupported device types.
  Make lvmpersist validate `--vg`/`--device` and key options before use.
  Make lvmpersist check for required PR tools (sg_persist, nvme, mpathpersist, jq).
  Make lvmpersist clean up registered keys when interrupted during start/takeover.
  Make lvmpersist report failures from start, stop, clear, remove and query commands.
  Fix lvmpersist `--vg` device list splitting to avoid pathname expansion.

Signed-off-by: Adolf Belka <adolf.belka@ipfire.org>
---
 lfs/lvm2 | 4 ++--
 1 file changed, 2 insertions(+), 2 deletions(-)

diff --git a/lfs/lvm2 b/lfs/lvm2
index 3d8ce3d25..d4f8b5075 100644
--- a/lfs/lvm2
+++ b/lfs/lvm2
@@ -24,7 +24,7 @@
 
 include Config
 
-VER        = 2.03.42
+VER        = 2.03.43
 
 THISAPP    = LVM2.$(VER)
 DL_FILE    = $(THISAPP).tgz
@@ -40,7 +40,7 @@ objects = $(DL_FILE)
 
 $(DL_FILE) = $(DL_FROM)/$(DL_FILE)
 
-$(DL_FILE)_BLAKE2 = 1eaa2ab5867adf37e9a8fb62b46d0b79568bf344d5d4ea2e785477a5f1099b8a61443e29dfc3baa4e4bcb5166815fda921a5cf8d2459878fe2e020b0a267c36f
+$(DL_FILE)_BLAKE2 = 2d0c5dadb6c9795b98b9c53dc834bf6d3cd3a82a3247e79f9ec70b917c966474fdcb382b2c07e39e37208ed969a9ba823f53a32280cc2c727ad8d286cc82d764
 
 install : $(TARGET)
 
-- 
2.55.0



^ permalink raw reply	[flat|nested] 9+ messages in thread

* [PATCH] python3-msgpack: Update to version 1.2.1
  2026-10-07 10:56 [PATCH] bird: Update to version 3.3.3 Adolf Belka
                   ` (6 preceding siblings ...)
  2026-10-07 10:56 ` [PATCH] lvm2: Update to version 2.03.43 Adolf Belka
@ 2026-10-07 10:56 ` Adolf Belka
  7 siblings, 0 replies; 9+ messages in thread
From: Adolf Belka @ 2026-10-07 10:56 UTC (permalink / raw)
  To: development; +Cc: Adolf Belka

- Updated from version 1.1.0 to 1.2.1
- msgpack is used with borgbackup which defines the latest version that can be used.
   Currently that is 1.2.1
- Update of rootfile
- Changelog
1.2.1
	Fix a segfault when calling Unpacker.unpack() or Unpacker.skip() after an
	 unpacking failure. But note that reusing the same Unpacker instance after an
	 unpacking failure is not supported. Please create a new Unpacker instance
	 instead. GHSA-6v7p-g79w-8964
1.2.0
	Support free threaded Python. #654, #686
	Dropped support for Python 3.9. #656
	Fix missing error checks in C code. #665, #666, #667, #672
	Fix strict_map_key option didn't work for object_pairs_hook. #673
	Increase DEFAULT_RECURSE_LIMIT of Unpacker to 1024. #676
	Fix memory leak when Unpacker returns error for invalid input. #671
	Fix Packer.pack_ext_type() ignored autoreset option. #663
	Fix Timestamp.from_datetime() returning wrong value for pre-epoch datetimes. #662
	Fix use-after-free in unpackb() and Unpacker.unpack() for non-contiguous
	 input. #677
	Fix possible memory leak when calling Unpacker.__init__() several times. #687
1.1.2
	Update Cython to v3.1.4
	Update cibuildwheel to v3.2.0
	Drop Python 3.8
	Add Python 3.14
	Add windows-arm
1.1.1
	No change from 1.1.1rc1.
1.1.1rc1
	Update Cython to 3.1.1 and cibuildwheel to 2.23.3.

Signed-off-by: Adolf Belka <adolf.belka@ipfire.org>
---
 config/rootfiles/packages/python3-msgpack | 10 +++++-----
 lfs/python3-msgpack                       |  8 ++++----
 2 files changed, 9 insertions(+), 9 deletions(-)

diff --git a/config/rootfiles/packages/python3-msgpack b/config/rootfiles/packages/python3-msgpack
index 74fe2f1aa..ab75477ad 100644
--- a/config/rootfiles/packages/python3-msgpack
+++ b/config/rootfiles/packages/python3-msgpack
@@ -1,9 +1,9 @@
 usr/lib/python3.10/site-packages/msgpack
-#usr/lib/python3.10/site-packages/msgpack-1.1.0-py3.10.egg-info
-#usr/lib/python3.10/site-packages/msgpack-1.1.0-py3.10.egg-info/PKG-INFO
-#usr/lib/python3.10/site-packages/msgpack-1.1.0-py3.10.egg-info/SOURCES.txt
-#usr/lib/python3.10/site-packages/msgpack-1.1.0-py3.10.egg-info/dependency_links.txt
-#usr/lib/python3.10/site-packages/msgpack-1.1.0-py3.10.egg-info/top_level.txt
+#usr/lib/python3.10/site-packages/msgpack-1.2.1-py3.10.egg-info
+#usr/lib/python3.10/site-packages/msgpack-1.2.1-py3.10.egg-info/PKG-INFO
+#usr/lib/python3.10/site-packages/msgpack-1.2.1-py3.10.egg-info/SOURCES.txt
+#usr/lib/python3.10/site-packages/msgpack-1.2.1-py3.10.egg-info/dependency_links.txt
+#usr/lib/python3.10/site-packages/msgpack-1.2.1-py3.10.egg-info/top_level.txt
 usr/lib/python3.10/site-packages/msgpack/__init__.py
 usr/lib/python3.10/site-packages/msgpack/_cmsgpack.cpython-310-xxxMACHINExxx-linux-gnu.so
 usr/lib/python3.10/site-packages/msgpack/exceptions.py
diff --git a/lfs/python3-msgpack b/lfs/python3-msgpack
index 0917d3b78..0cc0ce29d 100644
--- a/lfs/python3-msgpack
+++ b/lfs/python3-msgpack
@@ -1,7 +1,7 @@
 ###############################################################################
 #                                                                             #
 # IPFire.org - A linux based firewall                                         #
-# Copyright (C) 2007-2025  IPFire Team  <info@ipfire.org>                     #
+# Copyright (C) 2007-2026  IPFire Team  <info@ipfire.org>                     #
 #                                                                             #
 # This program is free software: you can redistribute it and/or modify        #
 # it under the terms of the GNU General Public License as published by        #
@@ -24,7 +24,7 @@
 
 include Config
 
-VER        = 1.1.0
+VER        = 1.2.1
 SUMMARY    = Python module for reading and writing MessagePack data
 
 THISAPP    = msgpack-$(VER)
@@ -33,7 +33,7 @@ DL_FROM    = $(URL_IPFIRE)
 DIR_APP    = $(DIR_SRC)/$(THISAPP)
 TARGET     = $(DIR_INFO)/$(THISAPP)
 PROG       = python3-msgpack
-PAK_VER    = 6
+PAK_VER    = 7
 
 DEPS       =
 # borgbackup only works with specific versions of python3-msgpack - check when updating
@@ -48,7 +48,7 @@ objects = $(DL_FILE)
 
 $(DL_FILE) = $(DL_FROM)/$(DL_FILE)
 
-$(DL_FILE)_BLAKE2 = fd6497ce248fabae481de41cb27bccf001e75425564f16caff9f5dceb52d82949481589a92635f4c25178f03002daf604073fc2bb07c8133e81a8ee2f1ccb7c4
+$(DL_FILE)_BLAKE2 = 3fca10a89d0259ba6bcc26d9e98a69e64b82662f3bec852e26073d581c4df7f6d5f9655d94e23c172d9d8e57de5850da9df87de61fc7ffeae13a9870f21e1488
 
 install : $(TARGET)
 
-- 
2.55.0



^ permalink raw reply	[flat|nested] 9+ messages in thread

end of thread, other threads:[~2026-10-07 10:57 UTC | newest]

Thread overview: 9+ messages (download: mbox.gz / follow: Atom feed)
-- links below jump to the message on this page --
2026-10-07 10:56 [PATCH] bird: Update to version 3.3.3 Adolf Belka
2026-10-07 10:56 ` [PATCH] borgbackup: patch forgotten in 1.4.5 update Adolf Belka
2026-10-07 10:56 ` [PATCH] borgbackup: Update to version 1.4.5 Adolf Belka
2026-10-07 10:56 ` [PATCH] cifs-utils: Update to version 7.8 Adolf Belka
2026-10-07 10:56 ` [PATCH] expat: Update to version 2.9.0 Adolf Belka
2026-10-07 10:56 ` [PATCH] fetchmail: Update to version 6.6.9 Adolf Belka
2026-10-07 10:56 ` [PATCH] harfbuzz: Update to version 14.5.1 Adolf Belka
2026-10-07 10:56 ` [PATCH] lvm2: Update to version 2.03.43 Adolf Belka
2026-10-07 10:56 ` [PATCH] python3-msgpack: Update to version 1.2.1 Adolf Belka

This is a public inbox, see mirroring instructions
for how to clone and mirror all data and code used for this inbox