Blame SPECS/pam-1.1.3-nouserenv.patch

Packit 7e982e
diff -up pam/modules/pam_env/pam_env.c.nouserenv pam/modules/pam_env/pam_env.c
Packit 7e982e
--- pam/modules/pam_env/pam_env.c.nouserenv	2010-10-20 09:59:30.000000000 +0200
Packit 7e982e
+++ pam/modules/pam_env/pam_env.c	2010-11-01 14:42:01.000000000 +0100
Packit 7e982e
@@ -10,7 +10,7 @@
Packit 7e982e
 #define DEFAULT_READ_ENVFILE    1
Packit 7e982e
 
Packit 7e982e
 #define DEFAULT_USER_ENVFILE    ".pam_environment"
Packit 7e982e
-#define DEFAULT_USER_READ_ENVFILE 1
Packit 7e982e
+#define DEFAULT_USER_READ_ENVFILE 0
Packit 7e982e
 
Packit 7e982e
 #include "config.h"
Packit 7e982e
 
Packit 7e982e
diff -up pam/modules/pam_env/pam_env.8.xml.nouserenv pam/modules/pam_env/pam_env.8.xml
Packit 7e982e
--- pam/modules/pam_env/pam_env.8.xml.nouserenv	2010-10-20 09:59:30.000000000 +0200
Packit 7e982e
+++ pam/modules/pam_env/pam_env.8.xml	2010-11-01 14:42:01.000000000 +0100
Packit 7e982e
@@ -147,7 +147,10 @@
Packit 7e982e
         <listitem>
Packit 7e982e
           <para>
Packit 7e982e
             Turns on or off the reading of the user specific environment
Packit 7e982e
-            file. 0 is off, 1 is on. By default this option is on.
Packit 7e982e
+            file. 0 is off, 1 is on. By default this option is off as user
Packit 7e982e
+            supplied environment variables in the PAM environment could affect
Packit 7e982e
+            behavior of subsequent modules in the stack without the consent
Packit 7e982e
+            of the system administrator.
Packit 7e982e
           </para>
Packit 7e982e
         </listitem>
Packit 7e982e
       </varlistentry>