Bug 60213
Summary: | Authentication failure for long DES passwords (fix included) | ||||||
---|---|---|---|---|---|---|---|
Product: | [Retired] Red Hat Linux | Reporter: | Need Real Name <sstrollo> | ||||
Component: | pam | Assignee: | Nalin Dahyabhai <nalin> | ||||
Status: | CLOSED ERRATA | QA Contact: | Aaron Brown <abrown> | ||||
Severity: | medium | Docs Contact: | |||||
Priority: | medium | ||||||
Version: | 7.2 | ||||||
Target Milestone: | --- | ||||||
Target Release: | --- | ||||||
Hardware: | i686 | ||||||
OS: | Linux | ||||||
URL: | http://sourceforge.net/tracker/?func=detail&atid=306663&aid=521318&group_id=6663 | ||||||
Whiteboard: | |||||||
Fixed In Version: | Doc Type: | Bug Fix | |||||
Doc Text: | Story Points: | --- | |||||
Clone Of: | Environment: | ||||||
Last Closed: | 2002-02-22 18:58:53 UTC | Type: | --- | ||||
Regression: | --- | Mount Type: | --- | ||||
Documentation: | --- | CRM: | |||||
Verified Versions: | Category: | --- | |||||
oVirt Team: | --- | RHEL 7.3 requirements from Atomic Host: | |||||
Cloudforms Team: | --- | Target Upstream Version: | |||||
Embargoed: | |||||||
Attachments: |
|
Description
Need Real Name
2002-02-22 03:16:26 UTC
Created attachment 46420 [details]
Here is a patch against the latest version of support.c and unix_chkpwd.c in pam_unix
The patch uploaded is the same as I posted on sourceforge (but I couldn't upload it there...) See http://sourceforge.net/tracker/?func=detail&atid=306663&aid=521318&group_id=6663 and http://sourceforge.net/tracker/?func=detail&atid=106663&aid=521314&group_id=6663 Sorry, that won't work right. If the current password is "*", crypt() will actually return "*", even though it's an invalid salt, and strncmp() will return a successful code. The current errata for RHL 7.2 (0.75-19) should fix this correctly. Please reopen this bug ID if that is not the case. |