KB899587
KB899587 – Windows XP Security Update (August 2005) – Kerberos aand PKINIT Vulnerabilities.
Applies to: Windows XP with Service Pack 1 or Service Pack 2 Requirements Windows XP with Service Pack 1 or Service Pack 2 File Size 0.7MB
File Name WindowsXP-KB899587-x86-ENU.exe
Author/Supplier Microsoft
PKINIT is a public key cryptography system used for initial authentication in Kerberos.
The security hole can make a network appear secure when in fact it is compromised. According to Microsoft, it would still require an intruder to have a valid login and ‘inject themselves into the middle of an authentication session between a client and a domain controller.
It is not a likely event, but hackers often like these kind of challenges. Information on Kerberos and PKINIT Vulnerabilities – KB899587
