[Bug 206339] New: screen should be locked before suspending the system not after

Ambroz Bizjak ambro at b4ever.net
Sat Sep 5 09:55:32 BST 2009


https://bugs.kde.org/show_bug.cgi?id=206339

           Summary: screen should be locked before suspending the system
                    not after
           Product: kde
           Version: unspecified
          Platform: Gentoo Packages
        OS/Version: Linux
            Status: UNCONFIRMED
          Severity: normal
          Priority: NOR
         Component: general
        AssignedTo: unassigned-bugs at kde.org
        ReportedBy: ambro at b4ever.net


Version:            (using KDE 4.3.0)
OS:                Linux
Installed from:    Gentoo Packages

In Powerdevil there is an option called "Lock screen on resume". This feature
has a security issue, because the screen should really be locked before
suspending, not after waking up. Several times after the system woke up I was
able to see and use my desktop for a few seconds before the screen locked. An
attacker might even be able to prevent the screen from getting locked, e.g. by
issuing "killall kded4" during that time.

It might seem impossible that it takes that long to lock the screen, but it
happens fairly often. This is because the operating system might lose all its
page cache when it is suspended, so programs work much slower immediately after
waking up.

-- 
Configure bugmail: https://bugs.kde.org/userprefs.cgi?tab=email
------- You are receiving this mail because: -------
You are the assignee for the bug.



More information about the Unassigned-bugs mailing list