[Pkg-samba-maint] Bug#1000158: samba: random segfaults since upgrading to bullseye

наб nabijaczleweli at nabijaczleweli.xyz
Thu Nov 18 19:20:55 GMT 2021


Package: samba
Version: 2:4.13.13+dfsg-1~deb11u2
Severity: normal

Dear Maintainer,

This doesn't happen often, but it's started happening since upgrading to
bullseye from buster ‒ I have four panic-action triggers:
Oct 15, Oct 25, Nov 17, and Nov 18.

AFAICT, this isn't tied to any particular explicit client action,
the clients are mostly Windows 10, sid, and Total Commander for Android
(all of them work consistently, without interruption).
This isn't related to other bugs as they seem to be ancient and
printing-related ‒ printing works perfectly ‒ and the backtraces seem to
be different.

I'm including four backtraces and two core-dumps: the Nov 17 and Nov 18
ones. The Nov 17 one (PID 1944247) occurred on samba 2:4.13.5+dfsg-2
(current bullseye). The Nov 18 one (PID 3490753) occurred on samba
2:4.13.13+dfsg-1~deb11u2 (current bullseye-security).

The bullseye one occurred with samba-dbgsym installed, the
bullseye-security didn't, because the security archive doesn't seem to
have debuginfo.

Best,
наб

-- Package-specific info:
* /etc/samba/smb.conf present, and attached
* /var/lib/samba/dhcp.conf present, and attached

-- System Information:
Debian Release: 11.1
  APT prefers stable-updates
  APT policy: (500, 'stable-updates'), (500, 'stable-security'), (500, 'stable-debug'), (500, 'stable')
Architecture: amd64 (x86_64)
Foreign Architectures: i386

Kernel: Linux 5.10.0-9-amd64 (SMP w/24 CPU threads)
Kernel taint flags: TAINT_PROPRIETARY_MODULE, TAINT_FIRMWARE_WORKAROUND, TAINT_OOT_MODULE, TAINT_UNSIGNED_MODULE
Locale: LANG=en_GB.UTF-8, LC_CTYPE=en_GB.UTF-8 (charmap=UTF-8), LANGUAGE=en_GB:en
Shell: /bin/sh linked to /usr/bin/dash
Init: systemd (via /run/systemd/system)
LSM: AppArmor: enabled

Versions of packages samba depends on:
ii  adduser              3.118
ii  dpkg                 1.20.9
ii  init-system-helpers  1.60
ii  libbsd0              0.11.3-1
ii  libc6                2.31-13+deb11u2
ii  libgnutls30          3.7.1-5
ii  libldb2              2:2.2.3-2~deb11u1
ii  libpam-modules       1.4.0-9+deb11u1
ii  libpam-runtime       1.4.0-9+deb11u1
ii  libpopt0             1.18-2
ii  libpython3.9         3.9.2-1
ii  libtalloc2           2.3.1-2+b1
ii  libtasn1-6           4.16.0-2
ii  libtdb1              1.4.3-1+b1
ii  libtevent0           0.10.2-1
ii  libwbclient0         2:4.13.13+dfsg-1~deb11u2
ii  lsb-base             11.1.0
ii  procps               2:3.3.17-5
ii  python3              3.9.2-3
ii  python3-dnspython    2.0.0-1
ii  python3-samba        2:4.13.13+dfsg-1~deb11u2
ii  samba-common         2:4.13.13+dfsg-1~deb11u2
ii  samba-common-bin     2:4.13.13+dfsg-1~deb11u2
ii  samba-libs           2:4.13.13+dfsg-1~deb11u2
ii  tdb-tools            1.4.3-1+b1

Versions of packages samba recommends:
ii  attr                1:2.4.48-6
ii  logrotate           3.18.0-2
ii  python3-markdown    3.3.4-1
ii  samba-dsdb-modules  2:4.13.13+dfsg-1~deb11u2
ii  samba-vfs-modules   2:4.13.13+dfsg-1~deb11u2

Versions of packages samba suggests:
pn  bind9          <none>
pn  bind9utils     <none>
ii  chrony         4.0-8
pn  ctdb           <none>
pn  ldb-tools      <none>
pn  smbldap-tools  <none>
pn  ufw            <none>
pn  winbind        <none>

-- Configuration Files:
/etc/logrotate.d/samba changed [not included]

-- no debconf information
-------------- next part --------------
#======================= Global Settings =======================
[global]
workgroup = nablocal
server string = tarta
dns proxy = no
log level = 1 auth_audit:4
log file = /var/log/samba/%m.log
max log size = 1000
logging = file
panic action = /usr/share/samba/panic-action %d
passdb backend = tdbsam
pam password change = yes
socket options = TCP_NODELAY IPTOS_LOWDELAY
guest account = nobody
restrict anonymous = 2
# ^
printing = CUPS
wide links = yes
allow insecure wide links = yes
unix extensions = yes
server multi channel support = yes
deadtime = 30
use sendfile = yes
aio read size = 1
aio write size = 1
wins support = yes
domain master = yes
# ^
security = user
server signing = mandatory
# ^
smb encrypt = desired
# ^
tls keyfile = /etc/letsencrypt/live/data.smart-transform.pl/fullchain.pem
# ^
server services = -dns, -dnsupdate
server min protocol = SMB2_10
#server min protocol = NT1

[printers]
path = /var/spool/samba
read only = no
printable = yes
valid users = @smb-spool

[homes]
read only = no
browseable = no
inherit acls = yes
# store dos attributes = no
create mask = 0775
directory mask = 0775
valid users = %S


[share]
path = /mnt/filling/share
read only = no
inherit acls = yes
# store dos attributes = no
create mask = 0755
valid users = @smb-share

[smart-transform]
path = /mnt/filling/store/smart-transform
read only = no
store dos attributes = yes
wide links = no
create mask = 0775
directory mask = 0775
valid users = @smb-smart-transform


[root]
path = /
read only = no
browseable = no
inherit acls = yes
# store dos attributes = no
create mask = 0755
valid users = @sudo
-------------- next part --------------
An embedded message was scrubbed...
From: root <root at tarta.nabijaczleweli.xyz>
Subject: Panic or segfault in Samba
Date: Thu, 18 Nov 2021 19:32:53 +0100 (CET)
Size: 5063
URL: <http://alioth-lists.debian.net/pipermail/pkg-samba-maint/attachments/20211118/e86a31dd/attachment-0004.eml>
-------------- next part --------------
An embedded message was scrubbed...
From: root <root at tarta.nabijaczleweli.xyz>
Subject: Panic or segfault in Samba
Date: Wed, 17 Nov 2021 15:11:08 +0100 (CET)
Size: 5392
URL: <http://alioth-lists.debian.net/pipermail/pkg-samba-maint/attachments/20211118/e86a31dd/attachment-0005.eml>
-------------- next part --------------
An embedded message was scrubbed...
From: root <root at tarta.nabijaczleweli.xyz>
Subject: Panic or segfault in Samba
Date: Mon, 25 Oct 2021 13:31:53 +0200 (CEST)
Size: 4117
URL: <http://alioth-lists.debian.net/pipermail/pkg-samba-maint/attachments/20211118/e86a31dd/attachment-0006.eml>
-------------- next part --------------
An embedded message was scrubbed...
From: root <root at tarta.nabijaczleweli.xyz>
Subject: Panic or segfault in Samba
Date: Fri, 15 Oct 2021 19:03:50 +0200 (CEST)
Size: 4134
URL: <http://alioth-lists.debian.net/pipermail/pkg-samba-maint/attachments/20211118/e86a31dd/attachment-0007.eml>
-------------- next part --------------
A non-text attachment was scrubbed...
Name: core.3490753.zst
Type: application/zstd
Size: 2775720 bytes
Desc: not available
URL: <http://alioth-lists.debian.net/pipermail/pkg-samba-maint/attachments/20211118/e86a31dd/attachment-0002.bin>
-------------- next part --------------
A non-text attachment was scrubbed...
Name: core.1944247.zst
Type: application/zstd
Size: 3545637 bytes
Desc: not available
URL: <http://alioth-lists.debian.net/pipermail/pkg-samba-maint/attachments/20211118/e86a31dd/attachment-0003.bin>
-------------- next part --------------
A non-text attachment was scrubbed...
Name: signature.asc
Type: application/pgp-signature
Size: 833 bytes
Desc: not available
URL: <http://alioth-lists.debian.net/pipermail/pkg-samba-maint/attachments/20211118/e86a31dd/attachment-0001.sig>


More information about the Pkg-samba-maint mailing list