severity 440955 important
thanks

Le mercredi 05 septembre 2007 à 13:12 -0500, Marcos Pinto a écrit :
> Package: gnome-screensaver
> Severity: grave
> Justification: renders package unusable
> 
> when using pam_unix2 for better security, gnome-screensaver fails
> to unlock and always reports an invalid password.  this is because
> /etc/shadow is "-rw-r----- 1 root shadow" and gnome-screensaver
> is not in the shadow group by default and apparently cant read
> the file

Erm, I fail to see how making a binary setgid to give it the right to
read passwords would actually *improve* security...

-- 
 .''`.           Josselin Mouette        /\./\
: :' :           [EMAIL PROTECTED]
`. `'                        [EMAIL PROTECTED]
  `-  Debian GNU/Linux -- The power of freedom

Attachment: signature.asc
Description: Ceci est une partie de message numériquement signée

Reply via email to