PalmOS 3.5.2 and earlier uses weak encryption to store the user password, which allows attackers with physical access to the Palm device to decrypt the password and gain access to the device.
References
Link | Resource |
---|---|
http://www.atstake.com/research/advisories/2000/a092600-1.txt | Exploit Patch Vendor Advisory |
http://www.securityfocus.com/bid/1715 | Exploit Patch Vendor Advisory |
http://www.atstake.com/research/advisories/2000/a092600-1.txt | Exploit Patch Vendor Advisory |
http://www.securityfocus.com/bid/1715 | Exploit Patch Vendor Advisory |
Configurations
History
20 Nov 2024, 23:33
Type | Values Removed | Values Added |
---|---|---|
References | () http://www.atstake.com/research/advisories/2000/a092600-1.txt - Exploit, Patch, Vendor Advisory | |
References | () http://www.securityfocus.com/bid/1715 - Exploit, Patch, Vendor Advisory |
Information
Published : 2000-12-11 05:00
Updated : 2024-11-20 23:33
NVD link : CVE-2000-1008
Mitre link : CVE-2000-1008
CVE.ORG link : CVE-2000-1008
JSON object : View
Products Affected
palm
- palm_os
CWE