Add a force flag to sudo_auth_cleanup() to force immediate cleanup.
This is used for PAM authentication to make sure pam_end() is called via sudo_auth_cleanup() when the user authenticates successfully but sudoers denies the command. Debian bug #669687
This commit is contained in:
@@ -191,7 +191,7 @@ bsdauth_approval(struct passwd *pw, sudo_auth *auth, bool exempt)
|
||||
}
|
||||
|
||||
int
|
||||
bsdauth_cleanup(struct passwd *pw, sudo_auth *auth)
|
||||
bsdauth_cleanup(struct passwd *pw, sudo_auth *auth, bool force)
|
||||
{
|
||||
struct bsdauth_state *state = auth->data;
|
||||
debug_decl(bsdauth_cleanup, SUDOERS_DEBUG_AUTH);
|
||||
|
Reference in New Issue
Block a user