[Pkg-shadow-devel] Bug#719890: login should fallback to /bin/sh if shell in /etc/passwd fails

Justin Pryzby justinp at norchemlab.com
Fri Aug 16 15:03:16 UTC 2013


severity 719890 wishlist
thanks

That's probably a bad idea, since admins may specify nonextant *or
restricted* shells in order to disable a user.  Specifying a nonextant
shell may not be effective on its own (ssh can still forward ports,
etc); however, if a restricted shell is accidentally removed, or loses
its exec bit, or the partition has an error, or isn't mounted, a user
shouldn't be given additional privileges.



More information about the Pkg-shadow-devel mailing list