Bug 2451

Summary: pwdb_chkpwd should not be setuid root
Product: [Retired] Red Hat Linux Reporter: monnier+lists/redhat/bugs
Component: pamAssignee: Cristian Gafton <gafton>
Status: CLOSED WONTFIX QA Contact:
Severity: low Docs Contact:
Priority: low    
Version: 6.0   
Target Milestone: ---   
Target Release: ---   
Hardware: All   
OS: Linux   
Whiteboard:
Fixed In Version: Doc Type: Bug Fix
Doc Text:
Story Points: ---
Clone Of: Environment:
Last Closed: 1999-07-30 15:57:15 UTC Type: ---
Regression: --- Mount Type: ---
Documentation: --- CRM:
Verified Versions: Category: ---
oVirt Team: --- RHEL 7.3 requirements from Atomic Host:
Cloudforms Team: --- Target Upstream Version:
Embargoed:

Description monnier+lists/redhat/bugs 1999-04-30 22:32:46 UTC
pwdb_chkpwd doesn't need to be setuid root as far as I can
see.  setgid `shadow' should be sufficient, just like
utempter is only setgid `utmp'.

Comment 1 Chris Evans 1999-05-08 12:46:59 UTC
Good point, I agree completely :-)

Comment 2 Cristian Gafton 1999-07-30 15:57:59 UTC
Not all sites implement setgid shadow scheme.