Public bug reported:
Binary package hint: libpam-runtime
This is not a problem that affects users and/or current configuration, but it
could be improved for the sake of clarity
and preventing mistakes in the future (especially when users/admin decide to
modify pam.d/*).
Right now there's a set if requires in pam configuration, but there's no
default 'require pam_deny.so' in any
common-auth/common-password/common-session/common-account file. Rather than
assuming there's going to
be a required entry which will make the stack fail eventually it would be safe
to include pam_deny.so as a requirement
for a safe fallback.
** Affects: pam (Ubuntu)
Importance: Undecided
Status: New
--
pam configuration could use safer defaults
https://bugs.launchpad.net/bugs/152912
You received this bug notification because you are a member of Ubuntu
Bugs, which is the bug contact for Ubuntu.
--
ubuntu-bugs mailing list
[email protected]
https://lists.ubuntu.com/mailman/listinfo/ubuntu-bugs