CVE
- Id
- 558
- CVE No.
- CVE-1999-0576
- Status
- Candidate
- Description
- A Windows NT system"s file audit policy does not log an event success or failure for security-critical files or directories.
- Phase
- Proposed (19990721)
- Votes
- ACCEPT(3) Baker, Shostack, Wall | MODIFY(2) Frech, Ozancin | REJECT(1) Northcutt
- Comments
- Northcutt> 1.) Too general are we ready to state what the security-critical files | and directories are | 2.) Does Ataris, Windows CE, PalmOS, Linux have such a capability | Ozancin> Some files and directories are clearly understood to be critical. Others are | unclear. We need to clarify that critical is. | Frech> XF:nt-object-audit