Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

My Database password changed somehow by Database Settings automatically #10848

Closed
linuxtopia opened this issue Jun 2, 2024 · 3 comments
Closed

Comments

@linuxtopia
Copy link

Overview

I think the title of the issue/bug is obvious to get what happened. Unfortunately I lost the password due to auto assigned password by KeepassXC. I had just want to change my database name, changed and then clicked ok a popup appeared about weak password notice but never typed to password section. Even clicking on "Cancel" that process gone and my password changed somehow automatically!

Thanks to my local backup I recovered my database but because of this annoying issue I had to shred my cloud backup in cryptomator vault. But now when I try to reproduce it just ask "continue without password". Hovering-clicking Security/Password has a serious risk to loose credentials for other users too.

Steps to Reproduce

  1. Database
  2. Database Settings
  3. Misclick Security > Password section
  4. General
  5. Database Metada
  6. Change Database Name
  7. Click OK

image

Expected Behavior

There MUST be check mark against mistype/misclick on Security tab for password changing against this kind of losses.

image

For just visiting Security tab and password section that activates password changing then KeepassXC assumes that you want to / changed it then tries to save over your password.

Actual Behavior

Context

KeePassXC - Version 2.7.8
Revision: f6757d3

Qt 5.15.8
Debugging mode is disabled.

Operating system: openSUSE Leap 15.5
CPU architecture: x86_64
Kernel: linux 5.14.21-150500.55.65-default

Enabled extensions:

  • Auto-Type
  • Browser Integration
  • Passkeys
  • SSH Agent
  • KeeShare
  • YubiKey
  • Secret Service Integration

Cryptographic libraries:

  • Botan 2.19.3

Operating System:
Linux- openSUSE Leap 15.5
Desktop Env: KDE
Windowing System: X11

@linuxtopia linuxtopia added the bug label Jun 2, 2024
@droidmonkey
Copy link
Member

droidmonkey commented Jun 2, 2024

Fixed for 2.7.9: #10821

@droidmonkey
Copy link
Member

droidmonkey commented Jun 2, 2024

FWIW, we won't show the view you screencapped unless you actively click on the button "Change Password"

image

due to auto assigned password by KeepassXC

We don't do that

@linuxtopia
Copy link
Author

I thought a bug caused it. Great to see an enhancement on this issue with new version. Keep it up guys XC is the best client for Keepass.

Thanks

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Projects
None yet
Development

No branches or pull requests

2 participants