CVE

Id
558  
CVE No.
CVE-1999-0576  
Status
Candidate  
Description
A Windows NT system"s file audit policy does not log an event success or failure for security-critical files or directories.  
Phase
Proposed (19990721)  
Votes
ACCEPT(3) Baker, Shostack, Wall | MODIFY(2) Frech, Ozancin | REJECT(1) Northcutt  
Comments
Northcutt> 1.) Too general are we ready to state what the security-critical files | and directories are | 2.) Does Ataris, Windows CE, PalmOS, Linux have such a capability | Ozancin> Some files and directories are clearly understood to be critical. Others are | unclear. We need to clarify that critical is. | Frech> XF:nt-object-audit