Bug 24231

Summary: [CVE-2008-6792] users-admin sets up maximum 8 character password
Product: system-tools-backends Reporter: Emilio Pozuelo Monfort <pochu27>
Component: usersAssignee: Carlos Garnacho Parro <carlosg>
Status: RESOLVED WONTFIX QA Contact: Carlos Garnacho Parro <carlosg>
Severity: normal    
Priority: medium    
Version: unspecified   
Hardware: Other   
OS: All   
Whiteboard:
i915 platform: i915 features:
Attachments: Fix issues in do_get_use_md5() to return 1 when appropriate

Description Emilio Pozuelo Monfort 2009-09-30 12:44:57 UTC
Hi,

The attached patch from CVE-2008-6792 fixes an issue where users-admin limits the password length to eight characters. I'm not very good at perl, but the patch looks fine to me so I've thought I'd let you know about the issue and judge the patch by yourself.

http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2008-6792
Comment 1 Emilio Pozuelo Monfort 2009-09-30 12:46:09 UTC
Created attachment 29955 [details] [review]
Fix issues in do_get_use_md5() to return 1 when appropriate
Comment 2 Adam Jackson 2018-06-29 19:59:38 UTC
Project has been inactive for seven years, none of this is getting fixed. Closing remaining bugs and disabling the bz product.

Use of freedesktop.org services, including Bugzilla, is subject to our Code of Conduct. How we collect and use information is described in our Privacy Policy.