[Secure-testing-team] Bug#874088: sddm: cannot log in as root

William Melgaard piobair at mindspring.com
Sun Sep 3 02:28:12 UTC 2017


Package: sddm
Version: 0.14.0-4
Severity: serious
Tags: security
Justification: Policy 2.5

Dear Maintainer,

apt-get dist-upgrade from jessie to stretch, followed by synaptic package
manager installation of sddm-theme-elarun provided a splash screen with a blank
block for user.
Providing "root" as the user, with appropriate password did not result in a
login.

Double check of /etc/kde4/kdm/kdmrc found AllowRootLogin=true

Inability to log in as root qualifies as "important" in accordance with the
Debian policy manual section 2.5.




-- System Information:
Debian Release: 9.1
  APT prefers stable
  APT policy: (500, 'stable')
Architecture: amd64 (x86_64)

Kernel: Linux 3.16.0-4-amd64 (SMP w/4 CPU cores)
Locale: LANG=en_US.UTF-8, LC_CTYPE=en_US.UTF-8 (charmap=UTF-8)
Shell: /bin/sh linked to /bin/dash
Init: systemd (via /run/systemd/system)

Versions of packages sddm depends on:
ii  adduser                   3.115
ii  debconf [debconf-2.0]     1.5.61
ii  libc6                     2.24-11+deb9u1
ii  libgcc1                   1:6.3.0-18
ii  libpam0g                  1.1.8-3.6
ii  libqt5core5a              5.7.1+dfsg-3+b1
ii  libqt5dbus5               5.7.1+dfsg-3+b1
ii  libqt5gui5                5.7.1+dfsg-3+b1
ii  libqt5network5            5.7.1+dfsg-3+b1
ii  libqt5qml5                5.7.1-2+b2
ii  libqt5quick5              5.7.1-2+b2
ii  libstdc++6                6.3.0-18
ii  libsystemd0               232-25+deb9u1
ii  libxcb-xkb1               1.12-1
ii  libxcb1                   1.12-1
ii  qml-module-qtquick2       5.7.1-2+b2
ii  x11-common                1:7.7+19
ii  xserver-xephyr [xserver]  2:1.19.2-1+deb9u1
ii  xserver-xorg [xserver]    1:7.7+19

Versions of packages sddm recommends:
ii  libpam-systemd                         232-25+deb9u1
ii  sddm-theme-debian-elarun [sddm-theme]  0.14.0-4
ii  sddm-theme-debian-maui [sddm-theme]    0.14.0-4

Versions of packages sddm suggests:
ii  libpam-kwallet5  5.8.4-1

-- debconf information:
  sddm/daemon_name: /usr/bin/sddm
* shared/default-x-display-manager: sddm



More information about the Secure-testing-team mailing list