CVE

Id
3811  
CVE No.
CVE-2001-1007  
Status
Candidate  
Description
Starfish Truesync Desktop 2.0b as used on the REX 5000 PDA uses a small keyspace for device keys and does not impose a delay when an incorrect key is entered, which allows attackers to more quickly guess the key via a brute force attack.  
Phase
Proposed (20020131)  
Votes
ACCEPT(1) Green | MODIFY(1) Frech | NOOP(4) Armstrong, Cole, Foat, Wall  
Comments
CHANGE> [Frech changed vote from REVIEWING to MODIFY] | Frech> XF:truesync-desktop-devicekeys-bruteforce(8712)