https://bugs.kde.org/show_bug.cgi?id=425823

            Bug ID: 425823
           Summary: Lock wallet when machine goes to suspend
           Product: frameworks-kwallet
           Version: 5.70.0
          Platform: Other
                OS: Linux
            Status: REPORTED
          Severity: normal
          Priority: NOR
         Component: general
          Assignee: va...@kde.org
          Reporter: p...@ralfj.de
                CC: kdelibs-b...@kde.org
  Target Milestone: ---

SUMMARY
The wallet should get locked when the machine goes to suspend, to protect
secrets against memory-readout attacks. (It might even be a good idea to do
this any time the screen is locked.)

STEPS TO REPRODUCE
1. Open and unlock the wallet.
2. Suspend machine.
3. Resume machine.

OBSERVED RESULT
The wallet is still unlocked.

EXPECTED RESULT
The wallet should be locked.

SOFTWARE/OS VERSIONS
Operating System: Debian GNU/Linux 
KDE Plasma Version: 5.17.5
KDE Frameworks Version: 5.70.0
Qt Version: 5.14.2
Kernel Version: 5.6.13
OS Type: 64-bit
Processors: 8 × Intel® Xeon® CPU E3-1505M v5 @ 2.80GHz
Memory: 15,5 GiB of RAM


ADDITIONAL INFORMATION
See https://blog.freesources.org//posts/2020/08/cryptsetup-suspend/ for some
more discussion of security around system suspend.

-- 
You are receiving this mail because:
You are watching all bug changes.

Reply via email to