diff options
Diffstat (limited to 'loginutils')
-rw-r--r-- | loginutils/login.c | 4 |
1 files changed, 3 insertions, 1 deletions
diff --git a/loginutils/login.c b/loginutils/login.c index 31b25a43e..ed2ab7f80 100644 --- a/loginutils/login.c +++ b/loginutils/login.c | |||
@@ -409,7 +409,9 @@ int login_main(int argc UNUSED_PARAM, char **argv) | |||
409 | break; /* success, continue login process */ | 409 | break; /* success, continue login process */ |
410 | 410 | ||
411 | pam_auth_failed: | 411 | pam_auth_failed: |
412 | bb_error_msg("pam_%s call failed: %s (%d)", failed_msg, | 412 | /* syslog, because we don't want potential attacker |
413 | * to know _why_ login failed */ | ||
414 | syslog(LOG_WARNING, "pam_%s call failed: %s (%d)", failed_msg, | ||
413 | pam_strerror(pamh, pamret), pamret); | 415 | pam_strerror(pamh, pamret), pamret); |
414 | safe_strncpy(username, "UNKNOWN", sizeof(username)); | 416 | safe_strncpy(username, "UNKNOWN", sizeof(username)); |
415 | #else /* not PAM */ | 417 | #else /* not PAM */ |