Zetetic Secure Tool for Recalling Important Passwords (STRIP) 0.5 and earlier for the PalmOS allows a local attacker to recover passwords via a brute force attack. This attack is made feasible by STRIPs use of SysRandom, which is seeded by TimeGetTicks, and an implementation flaw which vastly reduces the password search space.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Strip | Zetetic_enterprises | * | 0.5 (including) |
Strip | Zetetic_enterprises | 0.3 (including) | 0.3 (including) |
Strip | Zetetic_enterprises | 0.4 (including) | 0.4 (including) |