package: libxcrypt version: 1:4.4.22-1 severity: serious justification: breaks login
See bug #992848. Because of the way libpam0g calls libxcrypt any existing sha256 hash will be rejected at login as expired. I'm going to fix this in pam using the linux-pam upstream fix, but libxcrypt should not migrate to testing before the fixed pam is in testing. This bug is intended to block that migration. Feel free to do something else that blocks the migration. If this bug is still open when libpam migrates, I'll close it.
signature.asc
Description: PGP signature