Package samba-ctdb: Information

  • Default inline alert: A new version of the package has been build

    Task #: #342424
    Build time: Mar 11, 2024, 05:54 AM
    New version: 4.19.5-alt1
Binary package: samba-ctdb
Version: 4.17.12-alt2
Architecture: armh
Build time:  Oct 22, 2023, 05:04 PM in the task #332448
Source package: samba
Category: System/Servers
Report package bug
License: GPLv3+ and LGPLv3+
Summary: A Clustered Database based on Samba's Trivial Database (TDB)
Description: 
CTDB is a cluster implementation of the TDB database used by Samba and other
projects to store temporary data. If an application is already using TDB for
temporary data it is very easy to convert that application to be cluster aware
and use CTDB instead.

Maintainer: Evgeny Sinelnikov


Last changed


Oct. 22, 2023 Evgeny Sinelnikov 4.17.12-alt2
- Revert services type from forking to notify.
Oct. 17, 2023 Evgeny Sinelnikov 4.17.12-alt1
- Update to security release of Samba 4.17
- Security fixes (Samba#15422, Samba#15424, Samba#15439, Samba#15473, Samba#15474):
 + CVE-2023-3961:  Unsanitized pipe names allow SMB clients to connect as root
                   to existing unix domain sockets on the file system.
                   https://www.samba.org/samba/security/CVE-2023-3961.html

 + CVE-2023-4091:  SMB client can truncate files to 0 bytes by opening files
                   with OVERWRITE disposition when using the acl_xattr Samba VFS
                   module with the smb.conf setting
                   "acl_xattr:ignore system acls = yes"
                   https://www.samba.org/samba/security/CVE-2023-4091.html

 + CVE-2023-4154:  An RODC and a user with the GET_CHANGES right can view all
                   attributes, including secrets and passwords.  Additionally,
                   the access check fails open on error conditions.
                   https://www.samba.org/samba/security/CVE-2023-4154.html

 + CVE-2023-42669: Calls to the rpcecho server on the AD DC can request that the
                   server block for a user-defined amount of time, denying
                   service.
                   https://www.samba.org/samba/security/CVE-2023-42669.html

 + CVE-2023-42670: Samba can be made to start multiple incompatible RPC
                   listeners, disrupting service on the AD DC.
                   https://www.samba.org/samba/security/CVE-2023-42670.html
Oct. 7, 2023 Evgeny Sinelnikov 4.17.11-alt2
- New build scheme with separate upstream, altlinux and sisyphus branches.