The exploit is being distributed as a Mac OS X package, which includes DNS and ARP spoofing software.
With untrustworthy DNS and ARP, you're essentially clueless about the identity of anyone. DNS maps host names to IP numbers, ARP maps ethernet card IDs to IP numbers. A digital certificate doesn't do any good without a strong means of protecting it.