{"id":4798,"date":"2023-06-12T10:58:07","date_gmt":"2023-06-12T17:58:07","guid":{"rendered":"https:\/\/SUMMALAI.COM\/?p=4798"},"modified":"2023-06-12T10:58:08","modified_gmt":"2023-06-12T17:58:08","slug":"cve-2013-3900-how-to-test-the-improvement-to-authenticode-signature-verification","status":"publish","type":"post","link":"https:\/\/SUMMALAI.COM\/?p=4798","title":{"rendered":"CVE-2013-3900 &#8211; How to Test the Improvement to Authenticode Signature Verification"},"content":{"rendered":"\n<p><\/p>\n\n\n\n<p>Microsoft recommends that customers test how this change to Authenticode signature verification behaves in their environment before fully implementing it. To enable the Authenticode signature verification improvements, modify the registry to add the EnableCertPaddingCheck value as detailed below.<\/p>\n\n\n\n<p><strong>Warning<\/strong>&nbsp;Performing these steps to enable the functionality changes will cause non-conforming binaries to appear unsigned and, therefore, render them untrusted.<\/p>\n\n\n\n<p><strong>Note<\/strong>&nbsp;If you use Registry Editor incorrectly, you may cause serious problems that may require you to reinstall your operating system. Microsoft cannot guarantee that you can solve problems that result from using Registry Editor incorrectly. Use Registry Editor at your own risk.<\/p>\n\n\n\n<p>To enable the functionality to perform the following steps:<\/p>\n\n\n\n<p><strong>For 32-bit versions of Microsoft Windows<\/strong><\/p>\n\n\n\n<p>Paste the following text in a text editor such as Notepad. Then, save the file by using the .reg file name extension (for example, enableAuthenticodeVerification.reg).<\/p>\n\n\n\n<pre class=\"wp-block-code\"><code>Windows Registry Editor Version 5.00  \n&#91;HKEY_LOCAL_MACHINE\\Software\\Microsoft\\Cryptography\\Wintrust\\Config]   \n\"EnableCertPaddingCheck\"=\"1\"  \n<\/code><\/pre>\n\n\n\n<p>You can apply this .reg file to individual systems by double-clicking it.<\/p>\n\n\n\n<p><strong>Note<\/strong>&nbsp;You must restart the system for your changes to take effect.<\/p>\n\n\n\n<p><strong>For 64-bit versions of Microsoft Windows<\/strong><\/p>\n\n\n\n<p>Paste the following text in a text editor such as Notepad. Then, save the file by using the .reg file name extension (for example, enableAuthenticodeVerification64.reg).<\/p>\n\n\n\n<pre class=\"wp-block-code\"><code>Windows Registry Editor Version 5.00  \n&#91;HKEY_LOCAL_MACHINE\\Software\\Microsoft\\Cryptography\\Wintrust\\Config]   \n\"EnableCertPaddingCheck\"=\"1\"\n\n&#91;HKEY_LOCAL_MACHINE\\Software\\Wow6432Node\\Microsoft\\Cryptography\\Wintrust\\Config] \n\"EnableCertPaddingCheck\"=\"1\"\n<\/code><\/pre>\n\n\n\n<p>You can apply this .reg file to individual systems by double-clicking it.<\/p>\n\n\n\n<p><strong>Note<\/strong>&nbsp;You must restart the system for your changes to take effect.<\/p>\n\n\n\n<p><strong>Impact of enabling the functionality change<\/strong>: Non-conforming binaries will appear unsigned and, therefore, be rendered untrusted.<\/p>\n\n\n\n<p><strong>How to disable the functionality<\/strong>. Perform the following to delete the registry value previously added.<\/p>\n\n\n\n<p>For 32-bit versions of Microsoft Windows, paste the following text in a text editor such as Notepad. Then, save the file by using the .reg file name extension (for example, disableAuthenticodeVerification.reg).<\/p>\n\n\n\n<pre class=\"wp-block-code\"><code>Windows Registry Editor Version 5.00  \n&#91;HKEY_LOCAL_MACHINE\\Software\\Microsoft\\Cryptography\\Wintrust\\Config]   \n\"EnableCertPaddingCheck\"=-\n<\/code><\/pre>\n\n\n\n<p>You can apply this .reg file to individual systems by double-clicking it.<\/p>\n\n\n\n<p><strong>Note<\/strong>&nbsp;You must restart the system for your changes to take effect.<\/p>\n\n\n\n<p>For 64-bit versions of Microsoft Windows, paste the following text in a text editor such as Notepad. Then, save the file by using the .reg file name extension (for example, disableAuthenticodeVerification64.reg).<\/p>\n\n\n\n<pre class=\"wp-block-code\"><code>Windows Registry Editor Version 5.00  \n&#91;HKEY_LOCAL_MACHINE\\Software\\Microsoft\\Cryptography\\Wintrust\\Config]   \n\"EnableCertPaddingCheck\"=-\n\n&#91;HKEY_LOCAL_MACHINE\\Software\\Wow6432Node\\Microsoft\\Cryptography\\Wintrust\\Config]   \n\"EnableCertPaddingCheck\"=-\n<\/code><\/pre>\n\n\n\n<p>You can apply this .reg file to individual systems by double-clicking it.<\/p>\n\n\n\n<p><strong>Note<\/strong>\u00a0You must restart the system for your changes to take effect.<\/p>\n\n\n\n<p><\/p>\n\n\n\n<p>Ref: https:\/\/msrc.microsoft.com\/update-guide\/vulnerability\/CVE-2013-3900<\/p>\n","protected":false},"excerpt":{"rendered":"<p>Microsoft recommends that customers test how this change to Authenticode signature verification behaves in their environment before fully implementing it. To enable the Authenticode signature verification improvements, modify the registry to add the EnableCertPaddingCheck value as detailed below. Warning&nbsp;Performing these steps to enable the functionality changes will cause non-conforming binaries to appear unsigned and, therefore, <a class=\"read-more\" href=\"https:\/\/SUMMALAI.COM\/?p=4798\">Read More<\/a><\/p>\n","protected":false},"author":2,"featured_media":0,"comment_status":"closed","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"_bbp_topic_count":0,"_bbp_reply_count":0,"_bbp_total_topic_count":0,"_bbp_total_reply_count":0,"_bbp_voice_count":0,"_bbp_anonymous_reply_count":0,"_bbp_topic_count_hidden":0,"_bbp_reply_count_hidden":0,"_bbp_forum_subforum_count":0,"om_disable_all_campaigns":false,"_monsterinsights_skip_tracking":false,"_monsterinsights_sitenote_active":false,"_monsterinsights_sitenote_note":"","_monsterinsights_sitenote_category":0,"footnotes":""},"categories":[10,15],"tags":[1623,1622],"class_list":["post-4798","post","type-post","status-publish","format-standard","hentry","category-microsoft","category-windows-servers","tag-cve-2013-3900","tag-test-the-improvement-to-authenticode-signature-verification"],"aioseo_notices":[],"_links":{"self":[{"href":"https:\/\/SUMMALAI.COM\/index.php?rest_route=\/wp\/v2\/posts\/4798","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/SUMMALAI.COM\/index.php?rest_route=\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/SUMMALAI.COM\/index.php?rest_route=\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/SUMMALAI.COM\/index.php?rest_route=\/wp\/v2\/users\/2"}],"replies":[{"embeddable":true,"href":"https:\/\/SUMMALAI.COM\/index.php?rest_route=%2Fwp%2Fv2%2Fcomments&post=4798"}],"version-history":[{"count":1,"href":"https:\/\/SUMMALAI.COM\/index.php?rest_route=\/wp\/v2\/posts\/4798\/revisions"}],"predecessor-version":[{"id":4799,"href":"https:\/\/SUMMALAI.COM\/index.php?rest_route=\/wp\/v2\/posts\/4798\/revisions\/4799"}],"wp:attachment":[{"href":"https:\/\/SUMMALAI.COM\/index.php?rest_route=%2Fwp%2Fv2%2Fmedia&parent=4798"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/SUMMALAI.COM\/index.php?rest_route=%2Fwp%2Fv2%2Fcategories&post=4798"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/SUMMALAI.COM\/index.php?rest_route=%2Fwp%2Fv2%2Ftags&post=4798"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}