Package etcd: Information
Source package: etcd
Version: 3.5.23-alt1
Build time: Oct 17, 2025, 10:31 AM
Category: System/Servers
Report package bugHome page: https://etcd.io
License: Apache-2.0
Summary: A highly-available key value store for shared configuration
Description:
Etcd is a distributed key value store that provides a reliable way to store data across a cluster of machines. Etcd gracefully handles leader elections during network partitions and will tolerate machine failure, including the leader.
Maintainer: Alexander Stepchenko
Last changed
Oct. 14, 2025 Alexander Stepchenko 3.5.23-alt1
- 3.5.16 -> 3.5.23 - Fixes: + CVE-2024-45337: Misuse of connection.serverAuthenticate may cause authorization bypass in golang.org/x/crypto + CVE-2024-45338: Non-linear parsing of case-insensitive content in golang.org/x/net/html + CVE-2024-51744: Bad documentation of error handling in ParseWithClaims can lead to potentially dangerous situations in golang-jwt + CVE-2025-22869: Potential denial of service in golang.org/x/crypto + CVE-2025-22870: HTTP Proxy bypass using IPv6 Zone IDs in golang.org/x/net + CVE-2025-22872: Incorrect Neutralization of Input During Web Page Generation in x/net in golang.org/x/net + CVE-2025-30204: jwt-go allows excessive memory allocation during header parsing
May 8, 2025 Alexander Stepchenko 3.5.16-alt4
- Fix systemd service disabling before package deletion (Closes: #49768)
May 7, 2025 Alexander Stepchenko 3.5.16-alt3
- Rename package back to etcd without version in the name