CVE-2005-2069

Source
https://cve.org/CVERecord?id=CVE-2005-2069
Import Source
https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2005-2069.json
JSON Data
https://api.osv.dev/v1/vulns/CVE-2005-2069
Downstream
Published
2005-06-30T04:00:00Z
Modified
2026-04-10T03:38:07.238498Z
Summary
[none]
Details

pamldap and nssldap, when used with OpenLDAP and connecting to a slave using TLS, does not use TLS for the subsequent connection if the client is referred to a master, which may cause a password to be sent in cleartext and allows remote attackers to sniff the password.

References

Affected packages