Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2012-2668

Опубликовано: 17 июн. 2012
Источник: ubuntu
Приоритет: medium
EPSS Низкий
CVSS2: 4.3

Описание

libraries/libldap/tls_m.c in OpenLDAP, possibly 2.4.31 and earlier, when using the Mozilla NSS backend, always uses the default cipher suite even when TLSCipherSuite is set, which might cause OpenLDAP to use weaker ciphers than intended and make it easier for remote attackers to obtain sensitive information.

РелизСтатусПримечание
devel

not-affected

hardy

DNE

lucid

not-affected

natty

not-affected

oneiric

not-affected

precise

not-affected

upstream

needs-triage

Показывать по

EPSS

Процентиль: 72%
0.00736
Низкий

4.3 Medium

CVSS2

Связанные уязвимости

redhat
около 13 лет назад

libraries/libldap/tls_m.c in OpenLDAP, possibly 2.4.31 and earlier, when using the Mozilla NSS backend, always uses the default cipher suite even when TLSCipherSuite is set, which might cause OpenLDAP to use weaker ciphers than intended and make it easier for remote attackers to obtain sensitive information.

nvd
около 13 лет назад

libraries/libldap/tls_m.c in OpenLDAP, possibly 2.4.31 and earlier, when using the Mozilla NSS backend, always uses the default cipher suite even when TLSCipherSuite is set, which might cause OpenLDAP to use weaker ciphers than intended and make it easier for remote attackers to obtain sensitive information.

debian
около 13 лет назад

libraries/libldap/tls_m.c in OpenLDAP, possibly 2.4.31 and earlier, wh ...

github
больше 3 лет назад

libraries/libldap/tls_m.c in OpenLDAP, possibly 2.4.31 and earlier, when using the Mozilla NSS backend, always uses the default cipher suite even when TLSCipherSuite is set, which might cause OpenLDAP to use weaker ciphers than intended and make it easier for remote attackers to obtain sensitive information.

oracle-oval
около 13 лет назад

ELSA-2012-1151: openldap security and bug fix update (LOW)

EPSS

Процентиль: 72%
0.00736
Низкий

4.3 Medium

CVSS2