tags 496620 confirmed
thanks

On Tue, Aug 26, 2008 at 10:11:13AM +0200, Svante Signell wrote:
> Package: libpam-modules
> Version: 1.0.1-3
> Severity: normal

> The following los are created when uncloking xscreensaver in unstable 
> and gnome-screensaver in testing (on another box):
> Aug 26 08:11:28 em2 unix_chkpwd[20714]: password check failed for user (me)

> This problem is related to the resolved bug #496457. unix_ckkpwd is 
> sgid shadow and shadow have the right permissions:
> -rwxr-sr-x 1 root shadow 26372 Aug 20 21:24 /sbin/unix_chkpwd
> -rw-r----- 1 root shadow 1104 Jun 12 17:26 /etc/shadow

> The screen unlocks, contrary to #496457, but the log entry remains.

This bug is related to the use of the nullok_secure option to pam_unix,
which causes an additional call to unix_chkpwd to check whether the user has
a null password.  I can reproduce this quite easily with any service that
doesn't run as root.

I'll look into what's needed to fix this.

-- 
Steve Langasek                   Give me a lever long enough and a Free OS
Debian Developer                   to set it on, and I can move the world.
Ubuntu Developer                                    http://www.debian.org/
[EMAIL PROTECTED]                                     [EMAIL PROTECTED]



-- 
To UNSUBSCRIBE, email to [EMAIL PROTECTED]
with a subject of "unsubscribe". Trouble? Contact [EMAIL PROTECTED]

Reply via email to