The Active Network
ActiveMac Anonymous | Create a User | Reviews | News | Forums | Advertise  
 

  *  

  Microsoft Security Bulletin MS01-027 : Flaws in Web Server Certificate Validation Could Enable Spoofing
Time: 21:08 EST/02:08 GMT | News Source: Microsoft TechNet Security | Posted By: Will1

A patch is available to eliminate two newly discovered vulnerabilities affecting Internet Explorer 5.01 and 5.5, both of which could enable an attacker to spoof trusted web sites. The first vulnerability involves how digital certificates from web servers are validated. When CRL checking for such certificates is enabled, it could be possible for any or all of the following checks to no longer be performed:

  • Verification that the certificate has not expired
  • Verification that the server name matches the name on the certificate
  • Verification that the issuer of the certificate is trusted

The second vulnerability could enable a web page to display the URL from a different web site in the IE address bar. This spoofing could occur within a valid SSL session with the impersonated site. Both vulnerabilities could be used to convince a user that the attacker’s web site was actually a different one – one that the user presumably trusts and would provide sensitive information to. However, as discussed in the Mitigating Factors section below, there would be significant hurdles to exploiting either vulnerability.

Download locations for this patch: http://www.microsoft.com/windows/ie/download/critical/q295106/default.asp

Write Comment
Return to News

  Displaying 576 through 579 of 579
Prev | First
  The time now is 9:40:43 AM ET.
Any comment problems? E-mail us
#576 By 4240821 (82.115.4.230) at 7/21/2025 5:39:08 AM
https://justpaste.me/ZACb2
https://justpaste.me/cqDO3
https://justpaste.me/cgM91
https://justpaste.me/d0G11
https://justpaste.me/beF31
https://justpaste.me/Ymgt3
https://justpaste.me/Z0aW2
https://justpaste.me/amHb2
https://justpaste.me/cgxJ8
https://justpaste.me/Z8n31

#577 By 4240821 (82.115.4.230) at 7/21/2025 4:59:18 PM
https://www.pillowfort.social/posts/6460578
https://www.pillowfort.social/posts/6450185
https://www.pillowfort.social/posts/6435983
https://www.pillowfort.social/posts/6438410
https://www.pillowfort.social/posts/6461415
https://www.pillowfort.social/posts/6455104
https://www.pillowfort.social/posts/6465639
https://www.pillowfort.social/posts/6451784
https://www.pillowfort.social/posts/6433934
https://www.pillowfort.social/posts/6460368

#578 By 4240821 (82.115.4.230) at 7/23/2025 8:38:09 PM
https://moanio.com/video.php?id=5451
https://moanio.com/video.php?id=2981
https://moanio.com/video.php?id=699
https://moanio.com/video.php?id=1710
https://moanio.com/video.php?id=1554
https://moanio.com/video.php?id=4136
https://moanio.com/video.php?id=4909
https://moanio.com/video.php?id=1016
https://moanio.com/video.php?id=1965
https://moanio.com/video.php?id=3913

#579 By 4240821 (82.115.4.230) at 7/25/2025 12:03:00 PM
https://moanio.com/video.php?id=3144
https://moanio.com/video.php?id=4303
https://moanio.com/video.php?id=4858
https://moanio.com/video.php?id=2576
https://moanio.com/video.php?id=5174
https://moanio.com/video.php?id=3479
https://moanio.com/video.php?id=3233
https://moanio.com/video.php?id=769
https://moanio.com/video.php?id=2247
https://moanio.com/video.php?id=1321

Write Comment
Return to News
  Displaying 576 through 579 of 579
Prev | First
  The time now is 9:40:43 AM ET.
Any comment problems? E-mail us
User name and password:

 

  *  
  *   *