Bug#295526: libpam-unix2 only works as root

2008-05-19 Thread Steve Kemp
On Fri May 16, 2008 at 17:24:43 -0700, Ivan Kohler wrote: > Please ask if members of the Security Audit project could review the > setuid program in the bugreport and Cc: [EMAIL PROTECTED] with any > findings or discussion. (As this is a non-Debian mailing list requiring > subscription to post

Bug#295526: libpam-unix2 only works as root

2008-05-16 Thread Ivan Kohler
On Fri, May 16, 2008 at 04:58:41PM -0700, Steve Langasek wrote: > On Thu, May 15, 2008 at 01:16:05PM -0700, Ivan Kohler wrote: > > On Thu, May 15, 2008 at 12:30:21PM -0700, Steve Langasek wrote: > > > On Wed, May 14, 2008 at 07:36:14PM -0700, Ivan Kohler wrote: > > > > On Tue, May 13, 2008 at 10:36

Bug#295526: libpam-unix2 only works as root

2008-05-16 Thread Steve Langasek
On Thu, May 15, 2008 at 01:16:05PM -0700, Ivan Kohler wrote: > On Thu, May 15, 2008 at 12:30:21PM -0700, Steve Langasek wrote: > > On Wed, May 14, 2008 at 07:36:14PM -0700, Ivan Kohler wrote: > > > On Tue, May 13, 2008 at 10:36:33AM +0200, Christoph Pleger wrote: > > > > Hello, > > > > > - The pat

Bug#295526: libpam-unix2 only works as root

2008-05-15 Thread Ivan Kohler
On Thu, May 15, 2008 at 12:30:21PM -0700, Steve Langasek wrote: > On Wed, May 14, 2008 at 07:36:14PM -0700, Ivan Kohler wrote: > > On Tue, May 13, 2008 at 10:36:33AM +0200, Christoph Pleger wrote: > > > Hello, > > > > > - The patch needs to be updated to apply against the current package in > > >

Bug#295526: libpam-unix2 only works as root

2008-05-15 Thread Steve Langasek
On Wed, May 14, 2008 at 07:36:14PM -0700, Ivan Kohler wrote: > On Tue, May 13, 2008 at 10:36:33AM +0200, Christoph Pleger wrote: > > Hello, > > > - The patch needs to be updated to apply against the current package in > > > unstable. > > Done. I have attached a patch for unix_auth.c > > > and, i

Bug#295526: libpam-unix2 only works as root

2008-05-14 Thread Christoph Pleger
Hello, > >> - The patch needs to be updated to apply against the current package in > >> unstable. >> Done. I have attached a patch for unix_auth.c Here are the .diff.gz and the .dsc file for my current version of libpam-unix2. I created a separate subdirectory for unix2_chkpwd (which will app

Bug#295526: libpam-unix2 only works as root

2008-05-14 Thread Christoph Pleger
Hello, > I have Cc:'ed [EMAIL PROTECTED], the PAM maintainers: Here are the .dsc and the .diff.gz file for my current version of libpam-unix2. I have included unix2_chkpwd.c and unix2_chkpwd.8 in a separate subdirectory (which will appear when dpatching), wrote a Makefile, added the necessary

Bug#295526: libpam-unix2 only works as root

2008-05-14 Thread Ivan Kohler
On Tue, May 13, 2008 at 10:36:33AM +0200, Christoph Pleger wrote: > Hello, > > > - The patch needs to be updated to apply against the current package in > > unstable. > > Done. I have attached a patch for unix_auth.c > > > and, importantly: > > > > - we need some some code review/feedback/signof

Bug#295526: libpam-unix2 only works as root

2008-05-13 Thread Christoph Pleger
Hello, > > - The patch needs to be updated to apply against the current package in > > unstable. > > Done. I have attached a patch for unix_auth.c The unnecessary extra empty lines at the end of the file came in by mistake and can be deleted. Regards Christoph -- To UNSUBSCRIBE, email to

Bug#295526: libpam-unix2 only works as root

2008-05-13 Thread Christoph Pleger
Hello, > - The patch needs to be updated to apply against the current package in > unstable. Done. I have attached a patch for unix_auth.c > and, importantly: > > - we need some some code review/feedback/ignoff from the Debian folks > maintaining PAM and other related components. I am *NOT* goi

Bug#295526: libpam-unix2 only works as root

2008-05-09 Thread Ivan Kohler
On Thu, May 08, 2008 at 05:25:24PM +0200, Christoph Pleger wrote: > Hello, > > >> The former seems to make more sense to me. > > >Myself as well, but I'm hesitant to blindly include the old patch unless > >someone picks it up, updates or rewrites it for current code, and gets > >some code revie

Bug#295526: libpam-unix2 only works as root

2008-05-08 Thread Christoph Pleger
Hello, >> The former seems to make more sense to me. >Myself as well, but I'm hesitant to blindly include the old patch unless >someone picks it up, updates or rewrites it for current code, and gets >some code review from current PAM folks. As far as I can see, my old changes should still appl

Bug#295526: libpam-unix2 only works as root

2008-04-07 Thread Ivan Kohler
tags 295526 help thanks On Mon, Apr 07, 2008 at 08:58:25PM +0100, Charles Darke wrote: > Just wanted to check status on this and whether the suggested approach > will be used for libpam-unix2? Refer to bug #440955. > > Looks like the options are to make the changes in libpam-unix2 where the >

Bug#295526: libpam-unix2 only works as root

2008-04-07 Thread Charles Darke
Just wanted to check status on this and whether the suggested approach will be used for libpam-unix2? Refer to bug #440955. Looks like the options are to make the changes in libpam-unix2 where the setuid executable can be contained in a small specific file (unix2_chkpwd) or whether the other o

Bug#295526: libpam-unix2 only works as root

2006-06-01 Thread Christoph Pleger
Hello, After a long time I just revisited my bug report for libpam-unix2 and the following discussion. > If you'd like to help, please run the changes by the current PAM > policy maintainer Sam Hartman <[EMAIL PROTECTED]>, and also > upstream, Thorsten Kukuk <[EMAIL PROTECTED]> - I'm curious if