CVE-2005-2069Cleartext Transmission of Sensitive Info in Libnss-ldap

Severity
5.0MEDIUMNVD
EPSS
2.8%
top 13.79%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedJun 30
Latest updateMay 1

Description

pam_ldap and nss_ldap, when used with OpenLDAP and connecting to a slave using TLS, does not use TLS for the subsequent connection if the client is referred to a master, which may cause a password to be sent in cleartext and allows remote attackers to sniff the password.

CVSS vector

AV:N/AC:L/C:P/I:N/A:NExploitability: 10.0 | Impact: 2.9

Affected Packages4 packages

debiandebian/libnss-ldap< libnss-ldap 238-1.1 (bullseye)
debiandebian/libpam-ldap< libnss-ldap 238-1.1 (bullseye)

Patches

🔴Vulnerability Details

2
GHSA
GHSA-fv7v-76vm-38q4: pam_ldap and nss_ldap, when used with OpenLDAP and connecting to a slave using TLS, does not use TLS for the subsequent connection if the client is re2022-05-01
OSV
CVE-2005-2069: pam_ldap and nss_ldap, when used with OpenLDAP and connecting to a slave using TLS, does not use TLS for the subsequent connection if the client is re2005-06-30

📋Vendor Advisories

4
Microsoft
CVE-2005-2069: NIST NVD Details: https://nvd2020-09-08
Ubuntu
PAM/NSS LDAP vulnerabilitiy2005-07-21
Red Hat
security flaw2005-06-28
Debian
CVE-2005-2069: libnss-ldap - pam_ldap and nss_ldap, when used with OpenLDAP and connecting to a slave using T...2005

💬Community

1
Bugzilla
CVE-2005-2069 security flaw2018-08-16