bareos: bareos-19.2 1d61a410
Author | Committer | Branch | Timestamp | Parent | |
---|---|---|---|---|---|
arogge | arogge | bareos-19.2 | 2022-03-10 11:31 | bareos-19.2 c960841f | Pending |
Changeset | dir: check account authorization during PAM login Fixes CVE-2022-24755 Previously, when a user logged in via PAM, Bareos did only check for authentication (i.e. the "auth" section in PAM). No authorization checks were made (the "account" section in PAM). This patch now adds the proper check. This will break existing PAM configuration! (cherry picked from commit abe462037388635193f3b5b71575f32596c3b69d) |
||||
mod - core/src/dird/auth_pam.cc | Diff File |