[linux-pam] pam_rootok: use rootok permission instead of passwd permission in SELinux check.