[Date Prev][Date Next] [Thread Prev][Thread Next] [Date Index] [Thread Index]

Bug#1108276: general: serious password rejection issue affecting sleep, lock, log out



control: reassign -1 libkscreenlocker6
control: forcemerge 1107481 -1

> On Tue, Jun 24, 2025 at 07:01:20PM +0200, Hoareau J.P. wrote:
> > Here's a serious password rejection issue affecting sleep, lock, log out, and
> > hibernation on my desktop and laptop computers running Linux Debian 13 (Trixie)
> > and Kde Plasma Wayland.
> > 
> > In "user mode," everything works, except for the return from log out, which
> > prompts me for the "root" password, then returns me to "user" where the
> > password is accepted.
> > 
> > In "Root mode," the password is rejected for all these power-saving and
> > security features.
> > 
> > I should add that in recovery mode, it's impossible to log in; the password is
> > rejected.
> > 
> > For your information, the previous update was on June 5, 2025, at 8:00 PM. This
> > one was fine. The one from today, June 24, 2025, has these issues.

Dear Jean Pierre,

a possible workaround was documented in [1], please have a look there.

Running a complete desktop environment as root is highly discouraged since it can make your session an easier target for a wide range of opens a attack vectors.
If something should be changed, I’d be tempted to also disable root login from SDDM in the default configuration and let people who know what they’re doing break their own setup.


[1] https://bugs.debian.org/1107481


Happy hacking,
--
Aurélien


Reply to: