VYPR
Unrated severityNVD Advisory· Published Jun 17, 2012· Updated Jun 16, 2026

CVE-2012-2668

CVE-2012-2668

Description

libraries/libldap/tls_m.c in OpenLDAP, possibly 2.4.31 and earlier, when using the Mozilla NSS backend, always uses the default cipher suite even when TLSCipherSuite is set, which might cause OpenLDAP to use weaker ciphers than intended and make it easier for remote attackers to obtain sensitive information.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

27
  • OpenLDAP/Openldap27 versions
    cpe:2.3:a:openldap:openldap:*:*:*:*:*:*:*:*+ 26 more
    • cpe:2.3:a:openldap:openldap:*:*:*:*:*:*:*:*range: <=2.4.31
    • cpe:2.3:a:openldap:openldap:2.4.10:*:*:*:*:*:*:*
    • cpe:2.3:a:openldap:openldap:2.4.11:*:*:*:*:*:*:*
    • cpe:2.3:a:openldap:openldap:2.4.12:*:*:*:*:*:*:*
    • cpe:2.3:a:openldap:openldap:2.4.13:*:*:*:*:*:*:*
    • cpe:2.3:a:openldap:openldap:2.4.14:*:*:*:*:*:*:*
    • cpe:2.3:a:openldap:openldap:2.4.15:*:*:*:*:*:*:*
    • cpe:2.3:a:openldap:openldap:2.4.16:*:*:*:*:*:*:*
    • cpe:2.3:a:openldap:openldap:2.4.17:*:*:*:*:*:*:*
    • cpe:2.3:a:openldap:openldap:2.4.18:*:*:*:*:*:*:*
    • cpe:2.3:a:openldap:openldap:2.4.19:*:*:*:*:*:*:*
    • cpe:2.3:a:openldap:openldap:2.4.20:*:*:*:*:*:*:*
    • cpe:2.3:a:openldap:openldap:2.4.21:*:*:*:*:*:*:*
    • cpe:2.3:a:openldap:openldap:2.4.22:*:*:*:*:*:*:*
    • cpe:2.3:a:openldap:openldap:2.4.23:*:*:*:*:*:*:*
    • cpe:2.3:a:openldap:openldap:2.4.24:*:*:*:*:*:*:*
    • cpe:2.3:a:openldap:openldap:2.4.25:*:*:*:*:*:*:*
    • cpe:2.3:a:openldap:openldap:2.4.26:*:*:*:*:*:*:*
    • cpe:2.3:a:openldap:openldap:2.4.27:*:*:*:*:*:*:*
    • cpe:2.3:a:openldap:openldap:2.4.28:*:*:*:*:*:*:*
    • cpe:2.3:a:openldap:openldap:2.4.29:*:*:*:*:*:*:*
    • cpe:2.3:a:openldap:openldap:2.4.30:*:*:*:*:*:*:*
    • cpe:2.3:a:openldap:openldap:2.4.6:*:*:*:*:*:*:*
    • cpe:2.3:a:openldap:openldap:2.4.7:*:*:*:*:*:*:*
    • cpe:2.3:a:openldap:openldap:2.4.8:*:*:*:*:*:*:*
    • cpe:2.3:a:openldap:openldap:2.4.9:*:*:*:*:*:*:*
    • (no CPE)range: <=2.4.31

Patches

Vulnerability mechanics

References

15

News mentions

0

No linked articles in our index yet.