Savitech has released a new driver package to address the issue. Savitech drivers version 2.8.0.3 or later do not install the root CA certificate.
Users still must remove any previously installed certificate manually.
- SaviAudio root certificate #1
- Validity: Thursday, May 31, 2012 – Tuesday, December 30, 2036
- Serial number: 579885da6f791eb24de819bb2c0eeff0
- Thumbprint: cb34ebad73791c1399cb62bda51c91072ac5b050
- SaviAudio root certificate #2
- Validity: Thursday, December 31, 2015 – Tuesday, December 30, 2036
- Serial number: 972ed9bce72451bb4bd78bfc0d8b343c
- Thumbprint: 23e50cd42214d6252d65052c2a1a591173daace5
Source: [WayBack] Vulnerability Note VU#446847 – Savitech USB audio drivers install a new root CA certificate
Background: [WayBack] Inaudible Subversion – Did your Hi-Fi just subv… | RSA Link: While threat hunting, RSA FirstWatch came across a curious exposure in Windows PCs, involving driver packages provided by a certain manufacture…
Via:
- [WayBack] Mit Code Signing, hieß es schon bei Microsoft vor 20 Jahren, kommt alles in Ordnung und ActiveX ist übrigens komplett sicher. Dann wurden auch Gerätetreiber signiert, und alles wurde noch sicherer. So wie hier. – Kristian Köhntopp – Google+
- [WayBack] We have reached Peak Internet… Oder wie +Nils Magnus sagen würde: Alles klar, Herr Kommissar. – Alexander Gabert – Google+
–jeroen