https://bugzilla.novell.com/show_bug.cgi?id=274197 Summary: Screensaver only activates after resuming system suspend Product: SUSE Linux 10.1 Version: Final Platform: Other OS/Version: Other Status: NEW Severity: Normal Priority: P5 - None Component: Security AssignedTo: security-team@suse.de ReportedBy: s.handgraaf@xs4all.nl QAContact: qa@suse.de As part of a security review I noticed the Gnome screensaver is activated after a resume of a system suspend. This leaves a small window of opportunity for unauthorized users to view the content of the screen between the time a system resumes out of suspend/hibernation and the moment the screensaver is activated.
From security perspective this in unwanted behaviour since this can disclose sensitive information and might even allow access to the user environment.
My suggestion is to activate the screensaver by default when the system is given the command to suspend/hibernate and make sure the screen is already locked before the system suspends. -- Configure bugmail: https://bugzilla.novell.com/userprefs.cgi?tab=email ------- You are receiving this mail because: ------- You are on the CC list for the bug, or are watching someone who is.