Multiple vulnerabilities have been identified in Microsoft Windows, which could be exploited by remote attackers to bypass security restrictions or compromise a vulnerable system.
The first issue is caused by an integer overflow error in Windows HTTP Services (WinHTTP) when processing specific values that are returned by a remote Web server, which could be exploited by attackers to execute arbitrary code via a malicious web server.
The second vulnerability is caused due to Windows HTTP Services not properly validating the distinguished name in a digital certificate when setting up a connection to a remote Web server, which could allow attackers to spoof the digital certificate of a Web site.
The third issue is caused due to an error in the way that Windows HTTP Services handle NTLM credentials when a user connects to a Web server, which could allow an attacker to replay the user's credentials and execute code in the context of the logged-on user.