Comment 89 for bug 1255558

Revision history for this message
Umang Varma (umang) wrote :

It seems there hasn't been a discussion on this bug thread about this being a security issue. (See https://bugs.launchpad.net/ubuntu/+source/unity-greeter/+bug/1261818/comments/14)

I can confirm that this is a security issue because the focus seems to be held by an open window "below" LightDM, instead of LightDM, and that window (e.g. terminal or web browser) is able to capture all keystrokes typed on a locked screen.

Like most people here, I've been affected only for the last week or so and it only happens on suspend.