W***@gmx.de
2007-02-17 09:46:33 UTC
Hello,
This is a second try.
Perhaps last time, i dont explain it correctly.
This patch pretends a remote user from using the pam_libthinkfinger
mechanism.
Scenario:
User logined with ssh to your machine with a normal user account.
(here we can pretend it by removing it from the SSH PAM queue)
Than the remote User call "su -"
And he asked to type password or swipe Finger.
(now, he can get root rights, if the local user swipe finger, without
knowing that this authentication is for another user)
This isnt pretenend by PAM in any version.
Hope this patch helps someone.
It's against SVN Revision 73.
In best regards,
Gabor Janak
This is a second try.
Perhaps last time, i dont explain it correctly.
This patch pretends a remote user from using the pam_libthinkfinger
mechanism.
Scenario:
User logined with ssh to your machine with a normal user account.
(here we can pretend it by removing it from the SSH PAM queue)
Than the remote User call "su -"
And he asked to type password or swipe Finger.
(now, he can get root rights, if the local user swipe finger, without
knowing that this authentication is for another user)
This isnt pretenend by PAM in any version.
Hope this patch helps someone.
It's against SVN Revision 73.
In best regards,
Gabor Janak