Summary: | app-crypt/luks-tools-0.0.12 has a PAM file incompatible with PAM 0.99 (pam_stack/pam_timestamp) | ||
---|---|---|---|
Product: | Gentoo Linux | Reporter: | Mike Auty (RETIRED) <ikelos> |
Component: | Current packages | Assignee: | Hanno Böck <hanno> |
Status: | RESOLVED FIXED | ||
Severity: | major | CC: | pam-bugs+disabled |
Priority: | High | ||
Version: | unspecified | ||
Hardware: | All | ||
OS: | Linux | ||
Whiteboard: | |||
Package list: | Runtime testing required: | --- | |
Bug Depends on: | |||
Bug Blocks: | 185203 | ||
Attachments: | luks-tools-0.0.12-pam-config.patch |
Description
Mike Auty (RETIRED)
2007-07-09 19:53:28 UTC
Far from being a "minor" problem, it's a major one, pam 0.78 has to die. The pam.d file installed by luks is also using pam_timestamp that is not present in PAM 0.99. Sounds like whoever wrote it used RedHat or Fedora. It also seems to be pretty much broken from a security point of view as it allows any account without taking into consideration nologin or other restrictions. Well, ping! Created attachment 131242 [details, diff]
luks-tools-0.0.12-pam-config.patch
Updates pam config to what I believe it correct
added patch, thanks |