Bug 614765 - PAM truncates /var/log/faillog on upgrade
Summary: PAM truncates /var/log/faillog on upgrade
Keywords:
Status: CLOSED ERRATA
Alias: None
Product: Red Hat Enterprise Linux 5
Classification: Red Hat
Component: pam
Version: 5.4
Hardware: All
OS: Linux
high
high
Target Milestone: rc
: ---
Assignee: Tomas Mraz
QA Contact: Dalibor Pospíšil
URL:
Whiteboard:
Depends On:
Blocks: 798457 743405
TreeView+ depends on / blocked
 
Reported: 2010-07-15 08:01 UTC by Tomas Mraz
Modified: 2018-11-30 22:58 UTC (History)
6 users (show)

Fixed In Version: pam-0.99.6.2-9.el5
Doc Type: Bug Fix
Doc Text:
A mistake in the %post script in the pam package truncated the /var/log/faillog and /var/log/tallylog files on upgrade. The user authentication failure records were lost due to this bug. The mistake was corrected so the files are not truncated anymore. The user authentication failure records are no longer lost on upgrades of the pam package.
Clone Of:
: 614766 (view as bug list)
Environment:
Last Closed: 2013-01-08 07:15:37 UTC
Target Upstream Version:
Embargoed:


Attachments (Terms of Use)


Links
System ID Private Priority Status Summary Last Updated
Red Hat Product Errata RHBA-2013:0032 0 normal SHIPPED_LIVE pam bug fix and enhancement update 2013-01-07 15:28:39 UTC

Description Tomas Mraz 2010-07-15 08:01:57 UTC
pam package truncates /var/log/faillog and /var/log/tallylog on upgrade.

The script in %post contains incorrect test whether the files already exist or not making it overwriting the files with a zero length file unconditionally.

There is no reason to make extra errata for this problem but it needs to be fixed in case of future PAM errata including Z-stream erratas.

Comment 2 RHEL Program Management 2010-08-09 18:12:22 UTC
This request was evaluated by Red Hat Product Management for
inclusion in the current release of Red Hat Enterprise Linux.
Because the affected component is not scheduled to be updated in the
current release, Red Hat is unfortunately unable to address this
request at this time. Red Hat invites you to ask your support
representative to propose this request, if appropriate and relevant,
in the next release of Red Hat Enterprise Linux.

Comment 3 RHEL Program Management 2011-01-11 20:02:29 UTC
This request was evaluated by Red Hat Product Management for
inclusion in the current release of Red Hat Enterprise Linux.
Because the affected component is not scheduled to be updated in the
current release, Red Hat is unfortunately unable to address this
request at this time. Red Hat invites you to ask your support
representative to propose this request, if appropriate and relevant,
in the next release of Red Hat Enterprise Linux.

Comment 4 RHEL Program Management 2011-01-11 23:20:18 UTC
This request was erroneously denied for the current release of
Red Hat Enterprise Linux.  The error has been fixed and this
request has been re-proposed for the current release.

Comment 10 RHEL Program Management 2011-05-31 13:36:18 UTC
This request was evaluated by Red Hat Product Management for
inclusion in the current release of Red Hat Enterprise Linux.
Because the affected component is not scheduled to be updated in the
current release, Red Hat is unfortunately unable to address this
request at this time. Red Hat invites you to ask your support
representative to propose this request, if appropriate and relevant,
in the next release of Red Hat Enterprise Linux.

Comment 11 RHEL Program Management 2011-09-23 00:16:41 UTC
This request was evaluated by Red Hat Product Management for
inclusion in the current release of Red Hat Enterprise Linux.
Because the affected component is not scheduled to be updated in the
current release, Red Hat is unfortunately unable to address this
request at this time. Red Hat invites you to ask your support
representative to propose this request, if appropriate and relevant,
in the next release of Red Hat Enterprise Linux.

Comment 17 Tomas Mraz 2012-06-12 07:04:18 UTC
    Technical note added. If any revisions are required, please edit the "Technical Notes" field
    accordingly. All revisions will be proofread by the Engineering Content Services team.
    
    New Contents:
A mistake in the %post script in the pam package truncated the /var/log/faillog and /var/log/tallylog files on upgrade.
The user authentication failure records were lost due to this bug.
The mistake was corrected so the files are not truncated anymore.
The user authentication failure records are no longer lost on upgrades of the pam package.

Comment 20 errata-xmlrpc 2013-01-08 07:15:37 UTC
Since the problem described in this bug report should be
resolved in a recent advisory, it has been closed with a
resolution of ERRATA.

For information on the advisory, and where to find the updated
files, follow the link below.

If the solution does not work for you, open a new bug report.

http://rhn.redhat.com/errata/RHBA-2013-0032.html


Note You need to log in before you can comment on or make changes to this bug.