[Bug 900836] New: GNOME lock screen unlocks without password if fprintd is installed
http://bugzilla.opensuse.org/show_bug.cgi?id=900836 Bug ID: 900836 Summary: GNOME lock screen unlocks without password if fprintd is installed Classification: openSUSE Product: openSUSE Factory Version: 201410* Hardware: Other OS: Other Status: NEW Severity: Major Priority: P5 - None Component: Security Assignee: security-team@suse.de Reporter: rbrown@suse.com QA Contact: qa-bugs@suse.de Found By: --- Blocker: --- Using the latest openSUSE Factory snapshot (also present in openSUSE 13.2 RC1) GNOME automatically unlocks if fprintd is present The user never gets asked for a password The user never has an opportunity to enter their fingerprint journal shows fprintd starting each time the lock screen is activated, but no errors or warnings to imply it's misbehaving Removing fprintd 'resolves' the issue but disables fingerprint authentication Current theories to resolve this include - Using the same gdm-fingerprint pam configuration as Fedora https://git.gnome.org/browse/gdm/tree/data/pam-redhat/gdm-fingerprint.pam Enabling split-authentication in the gdm package (currently being built in my OBS home) -- You are receiving this mail because: You are on the CC list for the bug.
http://bugzilla.opensuse.org/show_bug.cgi?id=900836
Richard Brown
http://bugzilla.opensuse.org/show_bug.cgi?id=900836
Bruno Pesavento
http://bugzilla.opensuse.org/show_bug.cgi?id=900836
Andrew Wafaa
http://bugzilla.opensuse.org/show_bug.cgi?id=900836
Andrew Wafaa
http://bugzilla.opensuse.org/show_bug.cgi?id=900836
John Doe
http://bugzilla.opensuse.org/show_bug.cgi?id=900836
Dominique Leuenberger
http://bugzilla.opensuse.org/show_bug.cgi?id=900836
--- Comment #6 from Dominique Leuenberger
Assigning to a maintainer of fprintd
Reason being that fprintd seems to mess up the PAM stack badly enough to have it pass through -- You are receiving this mail because: You are on the CC list for the bug.
http://bugzilla.opensuse.org/show_bug.cgi?id=900836
Marcus Rückert
http://bugzilla.opensuse.org/show_bug.cgi?id=900836
--- Comment #7 from Marcus Rückert
http://bugzilla.opensuse.org/show_bug.cgi?id=900836
Derek Cordeiro
http://bugzilla.opensuse.org/show_bug.cgi?id=900836
Michael Weirauch
http://bugzilla.opensuse.org/show_bug.cgi?id=900836
Marcus Rückert
http://bugzilla.opensuse.org/show_bug.cgi?id=900836
Bjørn Lie
http://bugzilla.opensuse.org/show_bug.cgi?id=900836
Andreas Stieger
Update released for 13.2, Factory already fixed.
Thanks, we'll keep it open for SLE just now. -- You are receiving this mail because: You are on the CC list for the bug.
http://bugzilla.opensuse.org/show_bug.cgi?id=900836
Andreas Stieger
participants (1)
-
bugzilla_noreply@novell.com