Home / bulletins Microsoft Security Advisory (2728973): Unauthorized Digital Certificates Could Allow Spoofing - Version: 1.1
Posted on 12 July 2012
Revision Note: V1.1 (July 11, 2012): Corrected the disallowed certificate list effective date to "Thursday, June 21, 2012 (or later)" in the FAQ entry, "After applying the update, how can I verify the certificates in the Microsoft Untrusted Certificates Store?"
Summary: Microsoft is aware of Microsoft certificate authorities that are outside our recommended secure storage practices. Upon a routine review, we are placing these certificates in the Untrusted Certificate Store, and replacing them with new certificate authorities that meet our high standard of public-key infrastructure (PKI) management. We are unaware of any misuse of the certificate authorities, but are taking pre-emptive action to protect customers. This issue affects all supported releases of Microsoft Windows.