[Pkg-shadow-devel] Bug#719890: login should fallback to /bin/sh if shell in /etc/passwd fails
Justin Pryzby
justinp at norchemlab.com
Fri Aug 16 15:03:16 UTC 2013
severity 719890 wishlist
thanks
That's probably a bad idea, since admins may specify nonextant *or
restricted* shells in order to disable a user. Specifying a nonextant
shell may not be effective on its own (ssh can still forward ports,
etc); however, if a restricted shell is accidentally removed, or loses
its exec bit, or the partition has an error, or isn't mounted, a user
shouldn't be given additional privileges.
More information about the Pkg-shadow-devel
mailing list