Screensaver leaks password key-presses through to applications

Bug #1306970 reported by Alan Pope 🍺🐧🐱 🦄
12
This bug affects 2 people
Affects Status Importance Assigned to Milestone
Unity
Fix Released
High
Unassigned
unity (Ubuntu)
Fix Released
High
Unassigned

Bug Description

On more than one occasion I have been unable to focus on the password field. I typed my password in but it didn't appear. Eventually I managed to get focus on the password field, and unlocked. When I did, I found the active window had a copy of my password and some other keys I mashed only during the lock screen.

Just had a friend confirm this happened to them.

We shouldn't allow keypresses to leak through from the lock screen.

ProblemType: Bug
DistroRelease: Ubuntu 14.04
Package: lightdm 1.10.0-0ubuntu3
ProcVersionSignature: Ubuntu 3.13.0-24.46-generic 3.13.9
Uname: Linux 3.13.0-24-generic x86_64
NonfreeKernelModules: nvidia
ApportVersion: 2.14.1-0ubuntu2
Architecture: amd64
CurrentDesktop: Unity
Date: Sat Apr 12 16:24:59 2014
EcryptfsInUse: Yes
InstallationDate: Installed on 2012-01-02 (830 days ago)
InstallationMedia: Ubuntu 12.04 LTS "Precise Pangolin" - Alpha amd64 (20120102)
SourcePackage: lightdm
UpgradeStatus: Upgraded to trusty on 2013-12-09 (124 days ago)

Revision history for this message
Alan Pope 🍺🐧🐱 🦄 (popey) wrote :
affects: lightdm (Ubuntu) → unity (Ubuntu)
Revision history for this message
Launchpad Janitor (janitor) wrote :

Status changed to 'Confirmed' because the bug affects multiple users.

Changed in unity (Ubuntu):
status: New → Confirmed
Revision history for this message
Dave Wickham (dave.wickham) wrote :

I suspect I am said friend, I have also had this a couple of times, but I'm not able to reproduce at will, nor am I sure how the system has been locked; I have a feeling the screen may have auto-locked after a timeout.

Revision history for this message
Dave Gilbert (ubuntu-treblig) wrote :

Two questions (without particular ideas of where it's going):
  1) Which apps are the keys leaking into - are they any apps or more specific?
  2) Have you any idea how you get it into the state where it won't take the focus?

Revision history for this message
Iain Lane (laney) wrote :

The lock screen is Unity. What version of that were you running when you last saw this? (If you upgraded you won't be running the new one until you restart your session)

Revision history for this message
Alan Pope 🍺🐧🐱 🦄 (popey) wrote :

Last I saw this was today (12/04/2014), then immediately did a dist-upgrade before filing this bug.

Attached my dpkg.log which I think shows my unity upgrade...

2014-04-12 13:18:51 upgrade unity:amd64 7.2.0+14.04.20140410.1-0ubuntu1 7.2.0+14.04.20140411-0ubuntu1

Revision history for this message
Alan Pope 🍺🐧🐱 🦄 (popey) wrote :
Revision history for this message
Alan Pope 🍺🐧🐱 🦄 (popey) wrote :

@Dave Gilbert, for me the keys leaked into a terminal (terminator) window which was the window which had focus.
I don't know how it got the state. I could have locked it manually, it could have come out of suspend, or it could have suspended / locked itself.

Revision history for this message
Dave Wickham (dave.wickham) wrote :

I rebooted on Saturday morning (so had a fresh Unity session) and I got it today too, my Unity is 7.2.0+14.04.20140411-0ubuntu1. I'm afraid I can't remember how I locked it this time either, however this time I did notice that alt+tab would bring up the unity application switcher menu on top of the lock screen. I also managed to change my keyboard layout to US somehow.

(In other news, I forgot to subscribe myself to this bug report. Fixing that.)

tags: added: lockscreen
Revision history for this message
Mark Duncan (eattheapple) wrote :

This bug might be related to bug 1306417 which was supposedly fixed the other day (unity package version 7.2.0+14.04.20140411-0ubuntu1).

Revision history for this message
Sebastien Bacher (seb128) wrote :

Is that still an issue? Quite some fixes went in since the bug was reported

Revision history for this message
Dave Wickham (dave.wickham) wrote :

I have yet to reproduce it again since doing updates soon after the report, so I assume this has been fixed.

Changed in unity:
status: New → Fix Committed
milestone: none → 7.2.1
Changed in unity (Ubuntu):
status: Confirmed → Fix Released
Stephen M. Webb (bregma)
Changed in unity:
status: Fix Committed → Fix Released
Changed in unity:
importance: Undecided → High
Changed in unity (Ubuntu):
importance: Undecided → High
To post a comment you must log in.
This report contains Public information  
Everyone can see this information.

Other bug subscribers

Remote bug watches

Bug watches keep track of this bug in other bug trackers.