Re: IE https certificate attack

From: Geoff Joy (geoff@windowmeister.com)
Date: 12/27/01


From: Geoff Joy <geoff@windowmeister.com>
To: <bugtraq@securityfocus.com>
Date: Wed, 26 Dec 2001 18:00:09 -0800

Internet Explorer 6.0.2600.0000 with the latest Critical Updates
including Q306121; Q312461; Q313675 is VULNERABLE.

Tested in Windows 2000 Professional 5.0.2195 SP2:
                Patch Found MS00-077 Q299796
                Patch Found MS00-079 Q276471
                Patch Found MS01-007 Q285851
                Patch Found MS01-013 Q285156
                NOTE MS01-022 Q296441
                Patch Found MS01-025 Q296185
                Patch Found MS01-031 Q299553
                Patch Found MS01-037 Q302755
                Patch Found MS01-041 Q298012
                Patch Found MS01-043 Q303984
                Patch Found MS01-046 Q252795

Manually checking the certificate reveals that the domain issued to
the certificate does not match the domain of the web site.



Relevant Pages

  • Re: "Page can not be displayed" - certificate issue
    ... You can also get to the Internet Explorer newsgroups via this web site: ... He is> using a certificate to access the web site. ... He was able to access the> certificate and suddenly, ...
    (microsoft.public.windows.inetexplorer.ie6_outlookexpress)
  • [NT] Cumulative Security Update for Internet Explorer (MS06-021)
    ... The following security advisory is sent to the securiteam mailing list, and can be found at the SecuriTeam web site: http://www.securiteam.com ... Get your security news from a reliable source. ... Improper memory and user input handling with Internet Explorer allows ... A remote code execution vulnerability exists in the way Internet Explorer ...
    (Securiteam)
  • [NT] Cumulative Security Update for Internet Explorer (MS05-038)
    ... The following security advisory is sent to the securiteam mailing list, and can be found at the SecuriTeam web site: http://www.securiteam.com ... Get your security news from a reliable source. ... A buffer overflow vulnerability within Internet Explorer allows attackers ...
    (Securiteam)
  • [NT] Cumulative Security Update for Internet Explorer (MS06-013)
    ... The following security advisory is sent to the securiteam mailing list, and can be found at the SecuriTeam web site: http://www.securiteam.com ... Get your security news from a reliable source. ... Microsoft Internet Explorer allow attackers to execute arbitrary code, ... A remote code execution vulnerability exists in the way Internet Explorer ...
    (Securiteam)
  • [NT] Vulnerability in Visual Studio 2005 Could Allow Remote Code Execution (MS06-073)
    ... The following security advisory is sent to the securiteam mailing list, and can be found at the SecuriTeam web site: http://www.securiteam.com ... Get your security news from a reliable source. ... allow-list for ActiveX controls in Internet Explorer 7. ...
    (Securiteam)