Main > Utilities > Patches and Updates >

Microsoft Win2000 Protected Store Key Length vulnerability patch 6-8-2000

Microsoft Win2000 Protected Store Key Length vulnerability patch 6-8-2000

Sponsored Links

Microsoft Win2000 Protected Store Key Length vulnerability patch 6-8-2000 Ranking & Summary

RankingClick at the star to rank
Ranking Level
User Review: 0 (0 times)
File size: 1K
Platform: Windows 9X/ME/NT/2K/2003/XP/Vista
License: Freeware
Price:
Downloads: 3427
Date added: 2000-06-08
Publisher: Microsoft

Microsoft Win2000 Protected Store Key Length vulnerability patch 6-8-2000 description

Microsoft has released a patch and a tool that eliminate a security vulnerability in Microsoft® Windows® 2000. The vulnerability could make it easier for a malicious user who hadcomplete control over a Windows 2000 machine to compromise users sensitive information. A Protected Store is provided as part of CryptoAPI, in order to provide secure storage for sensitive information such as private keysand certificates. By design, the Protected Store should always encrypt the information using the strongest cryptography available on the machine. However, the Windows 2000 implementation uses 40-bit key to encrypt the Protected Store, even if stronger cryptography is installed onthe machine. This vulnerability weakens the protection onthe Protected Store, but does not eliminate it. An attacker would need to gain complete administrative control over the machine that houses the Protected Store in order to gainaccess to it, and even then would still need to mount a brute-force cryptographic attack against it. However, customers who follow the recommended remediation for this vulnerabilitycan ensure that such an attack would be significantly more difficult, if not impossible. The patch package to eliminate this vulnerability contains a new version of PBASE.DLL, the module that provides the Protected Store functionality, and a tool named Keymigrt.exe. Installing PBASE.DLL will ensure that all future additions to theProtected Store are encrypted using the strongest cryptography available on the machine. However, the Keymigrt tool also needs to be run, in order to re-encrypt all items currently in the Protected Store. We recommend that system administrators place the Keymigrt tool into users logonscripts to ensure that the tool is run the next time they log on.

Microsoft Win2000 Protected Store Key Length vulnerability patch 6-8-2000 Screenshot

Advertisements

Microsoft Win2000 Protected Store Key Length vulnerability patch 6-8-2000 Keywords

Bookmark Microsoft Win2000 Protected Store Key Length vulnerability patch 6-8-2000

Hyperlink code:
Link for forum:

Microsoft Win2000 Protected Store Key Length vulnerability patch 6-8-2000 Copyright

WareSeeker periodically updates pricing and software information of Microsoft Win2000 Protected Store Key Length vulnerability patch 6-8-2000 full version from the publisher, so some information may be slightly out-of-date. You should confirm all information before relying on it. Software piracy is theft, Using crack, password, serial numbers, registration codes, key generators is illegal and prevent future development of Microsoft Win2000 Protected Store Key Length vulnerability patch 6-8-2000 Edition. Download links are directly from our publisher sites, torrent files or links from rapidshare.com, yousendit.com or megaupload.com are not allowed

Allok Video Splitter 2.2.0 Review:

Name (Required)
Email(Required)
Captcha
Featured Software

Want to place your software product here?
Please contact us for consideration.

Contact WareSeeker.com
Related Software
Microsoft has released a patch that eliminates a security vulnerability in the HTML Help facility that ships with Microsoft® Internet Explorer. Under certain conditions,the vulnerability could allow Free Download
Microsoft XML Core Services (MSXML) includes the XMLHTTP ActiveX control, which allows web pages rendering in the browser to send or receive XML data via HTTP operations such as POST, GET, and PUT Free Download
Microsoft XML Core Services (MSXML) includes the XMLHTTP ActiveX control, which allows web pages rendering in the browser to send or receive XML data via HTTP operations such as POST, GET, and PUT Free Download
Microsoft has released a patch that eliminates a security vulnerability in Microsoft® Internet Information Server 4.0. The vulnerability could allow a malicious user to consume all resources on a web Free Download
This update resolves the "Protected Store Key Length" security vulnerability in Windows 2000. Download now to prevent a malicious user from compromising sensitive information on your computer Free Download
Microsoft has released a patch that eliminates a security vulnerability in the Microsoft® virtual machine (Microsoft VM). The vulnerability could enable a malicious web site operatorto read files fro Free Download
Microsoft has released a patch that eliminates a security vulnerability in web applications associated with Microsoft® Site Server 3.0, Commerce Edition. These applications are provided as samples an Free Download
Update for Security Vulnerabilities in "Scriptlet.typlib" and "Eyedog" ActiveX Controls. This update eliminates the "scriptlet.typlib/eyedog" security vulnerability Free Download