First published: Wed Nov 13 2013(Updated: )
Microsoft Outlook 2007 SP3, 2010 SP1 and SP2, 2013, and 2013 RT does not properly expand metadata contained in S/MIME certificates, which allows remote attackers to obtain sensitive network configuration and state information via a crafted certificate in an e-mail message, aka "S/MIME AIA Vulnerability."
Credit: secure@microsoft.com
Affected Software | Affected Version | How to fix |
---|---|---|
Microsoft Outlook | =2007-sp3 | |
Microsoft Outlook | =2010-sp1 | |
Microsoft Outlook | =2010-sp1 | |
Microsoft Outlook | =2010-sp2 | |
Microsoft Outlook | =2010-sp2 | |
Microsoft Outlook | =2013 | |
Microsoft Outlook | =2013 | |
Microsoft Outlook | =2013 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.