The shadow group allows system programs which require access the ability to read the /etc/shadow file. No users should be assigned to the shadow group.
Solution
Remove all users from the shadow group, and change the primary group of any users with shadow as their primary group.