linux-pam: /sbin/unix_chkpwd not installed setuid root
Excerpts from UNIX_CHKPWD(8):
“unix_chkpwd is a helper program for the pam_unix module that verifies
the password of the current user. […] It is typically installed setuid
root or setgid shadow.”
/sbin/unix_chkpwd should be installed setuid root, otherwise programs using pam and pam_unix.so (i. e. screen lockers) are unable to verify passwords to authenticate users.
(from redmine: issue id 3349, created on 2014-08-28, closed on 2014-10-08)
- Changesets:
- Revision 28dd552b by Natanael Copa on 2014-09-16T17:00:54Z:
main/linux-pam: make unix_chkpwd utility suid shadow
ref #3349
- Revision 243947d1 by Natanael Copa on 2014-09-16T17:02:32Z:
main/linux-pam: make unix_chkpwd utility suid shadow
fixes #3349