-
-
Notifications
You must be signed in to change notification settings - Fork 1.7k
Key file last position is remembered after session lock #1151
Copy link
Copy link
Closed
Description
KeepassXC remembers the exact position (directory) of the Key file after session is locked/unlocked, potentially reducing the security of the key file, even if "remember last key files and security dongles" option is disabled.
Expected Behavior
After a session lock / lid closed KeepassXC should point to the user home directory (as for a new instance of KeepassXC) instead of bringing the user to the directory where the last used key file is/was positioned.
Steps to Reproduce (for bugs)
While using a database with also a key file master key:
- De-select "Remember last key files and security dongles"
- Select "Lock databases when session is locked or lid is closed"
- Lock session
- Unlock session
- Browse for the key file
Debug Info
KeePassXC - Version 2.2.2
Revision: 6d46717
Libraries:
- Qt 5.9.2
- libgcrypt 1.8.1
Operating system: Windows 7 SP 1 (6.1)
CPU architecture: x86_64
Kernel: winnt 6.1.7601
Enabled extensions:
- KeePassHTTP
- Auto-Type
- YubiKey
Reactions are currently unavailable