CVE-2017-0129High

Microsoft Lync for Mac Certificate Validation Vulnerability

Published
March 14, 2017
Last Modified
—

🔗 CVE IDs covered (1)

📋 Description

A security feature bypass exists when the Lync for Mac 2011 client fails to properly validate certificates. An attacker who successfully exploited this vulnerability could tamper with trusted communications between the server and target client. To exploit the vulnerability, an attacker would need to intercept and tamper with network traffic. The security update addresses the vulnerability by correcting how the Lync for Mac 2011 client validates certificates.

🎯 Affected products1

  • Microsoft Lync for Mac 2011

✅ Remediation

KB4012487 (Security Update)

🔗 References (2)