Skip site navigation (1)Skip section navigation (2)
Date:      Mon, 01 Nov 1999 17:25:54 +0300
From:      VicTor Ponomarev <vick@unet.ru>
To:        security@freebsd.org
Subject:   PAM and security hole in 3.3 stable
Message-ID:  <381DA2F1.5CA8A8D@unet.ru>

next in thread | raw e-mail | index | archive | help
Comment  line
login auth required pam_unix.so   try_first_pas
in pam.conf and you can login from any terminal without password.

It seems that pam_cleartext_pass_ok.so library opens a security hole
to the box.

Bye,
Vick.



To Unsubscribe: send mail to majordomo@FreeBSD.org
with "unsubscribe freebsd-security" in the body of the message




Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?381DA2F1.5CA8A8D>