Released on: 2012-06-03
Updated on:
Affected Systems:
Microsoft Windows XP
Microsoft Server 2008
Microsoft Windows 7
Microsoft Server 2003
Description:
--------------------------------------------------------------------------------
Bugtraq id: 53760
Microsoft Windows is a popular computer operating system.
Microsoft Windows has a security vulnerability when using an illegal digital certificate from a Microsoft Certificate Authority. Unauthorized certificates can be used to fool content, perform phishing attacks, or perform man-in-the-middle attacks.
<* Source: vendor
Link: http://technet.microsoft.com/en-us/security/advisory/2718704
Http://technet.microsoft.com/en-us/security/advisory/2718704
*>
Suggestion:
--------------------------------------------------------------------------------
Vendor patch:
Microsoft
---------
Microsoft has released a Security Bulletin (2718704) and corresponding patches for this purpose:
2718704: Unauthorized Digital Certificates cocould Allow Spoofing
Link: http://technet.microsoft.com/en-us/security/advisory/2718704