Ah gotcha, makes sense, also missed the previously submitted 1.30.2 update. Sorry for the noise. On Sun, May 24, 2026 at 09:25:20AM +0000, Sergey A. Osokin wrote: > On Sun, May 24, 2026 at 07:54:58AM +0000, byteskeptical wrote: > > Howdy ports, > > > > Update to address CVE-2026-9256. > > [...] > > > -VERSION= 1.30.1 > > +VERSION= 1.31.1 > > DISTNAME= nginx-${VERSION} > > OpenBSD ports system supports nginx version from stable branches, > and 1.31.x is the mainline branch. > > Follow that, it's easy to update existing port to 1.30.2, released > to address the CVE-2026-9256 vulnerability. > > Thank you. > > -- > Sergey A. Osokin > -- All desire is the desire to be desired by the subject presumed to know.
OpenBSD Mail Box
BTC:1BsNfN6m7xtT4PqDb9jJHnDDFBb38zS9Yi
Sunday, May 24, 2026
[maintainer update] net/lyrebird
Hi there. I'd like to inform that, unfortunately, I had to switch my server to another OS. At the moment, I don't have enough disk space on my desktop to keep the -current OpenBSD installation, so I won't be able to build new versions of lyrebird. Context: My OpenBSD server was a headless Raspberry Pi 4B running a Tor bridge, but the daemon in ports wasn't kept up-to-date on -stable (not even for security updates), which resulted in my bridge being flagged as "not recommended". I couldn't get any response from the port maintainer so far [2], and I don't think I can build it from source on this device. I've described the issue in more detail on the Tor Project forum [1]. I did learn a lot here. This is an amazing project, nonetheless, and I intend to try it again in the future. Thanks, everyone! [1] https://forum.torproject.org/t/tor-bridge-outdated-and-flagged-as-not-recommended-on-openbsd-7-8/21504 [2] https://marc.info/?l=openbsd-ports&m=177457496717778&w=2