[Bug 206339] New: screen should be locked before suspending the system not after
Ambroz Bizjak
ambro at b4ever.net
Sat Sep 5 09:55:32 BST 2009
https://bugs.kde.org/show_bug.cgi?id=206339
Summary: screen should be locked before suspending the system
not after
Product: kde
Version: unspecified
Platform: Gentoo Packages
OS/Version: Linux
Status: UNCONFIRMED
Severity: normal
Priority: NOR
Component: general
AssignedTo: unassigned-bugs at kde.org
ReportedBy: ambro at b4ever.net
Version: (using KDE 4.3.0)
OS: Linux
Installed from: Gentoo Packages
In Powerdevil there is an option called "Lock screen on resume". This feature
has a security issue, because the screen should really be locked before
suspending, not after waking up. Several times after the system woke up I was
able to see and use my desktop for a few seconds before the screen locked. An
attacker might even be able to prevent the screen from getting locked, e.g. by
issuing "killall kded4" during that time.
It might seem impossible that it takes that long to lock the screen, but it
happens fairly often. This is because the operating system might lose all its
page cache when it is suspended, so programs work much slower immediately after
waking up.
--
Configure bugmail: https://bugs.kde.org/userprefs.cgi?tab=email
------- You are receiving this mail because: -------
You are the assignee for the bug.
More information about the Unassigned-bugs
mailing list