Bug 901586 - pKill -9 gnome-shell allow one to log on the computer without entering password
Summary: pKill -9 gnome-shell allow one to log on the computer without entering password
Keywords:
Status: CLOSED NOTABUG
Alias: None
Product: Fedora
Classification: Fedora
Component: gnome-shell
Version: 18
Hardware: x86_64
OS: Linux
unspecified
urgent
Target Milestone: ---
Assignee: Owen Taylor
QA Contact: Fedora Extras Quality Assurance
URL:
Whiteboard:
Depends On:
Blocks:
TreeView+ depends on / blocked
 
Reported: 2013-01-18 15:13 UTC by Raphaël Flores
Modified: 2013-01-27 16:51 UTC (History)
6 users (show)

Fixed In Version:
Clone Of:
Environment:
Last Closed: 2013-01-27 16:51:38 UTC
Type: ---
Embargoed:


Attachments (Terms of Use)


Links
System ID Private Priority Status Summary Last Updated
GNOME Bugzilla 692627 0 None None None Never
Launchpad 1064584 0 None None None Never

Description Raphaël Flores 2013-01-18 15:13:19 UTC
User-Agent:       Mozilla/5.0 (X11; Linux x86_64; rv:17.0) Gecko/20100101 Firefox/17.0
Build Identifier: 

Description of problem:
If TTY terminal is already logged in, anyone having physical access to the keyboard can bypass the lock screen.

Version-Release number of selected component (if applicable):
Fedora 18
GNOME Shell 3.6.2

How reproducible:
Login tty2, come back to graphical session (TTY1), lock screen, kill gnome-shell session, restart it specifying correct display, comme back to TTY1, you're logged.

Reproducible: Always

Steps to Reproduce:
1. Log in gnome-shell session at startup
2. Go to TTY2 (Ctrl+Alt+F2), log same user
3. Come back to TTY1 (Ctrl+Alt+F1)
4. Lock screen (Ctrl+Alt+l)
5. Go back to TTY2 and execute following command:
  $ pkill -9 gnome-shell && /usr/bin/gnome-shell -r -d :0
6. Come back to TTY1

Actual Results:  
I've bypassed the lock screen and got logged in.

Expected Results:  
Should come back on locked screen.

This bug is conditionned to user misattention but in some case, if TTY2 is already logged in, anyone can access to the graphical session. I believe this is a severe security issue.

Comment 1 Rui Matos 2013-01-27 16:51:38 UTC
As mentioned by Giovanni in gnome's bugzilla this isn't a bug.


Note You need to log in before you can comment on or make changes to this bug.