In LemonLDAP::NG (aka lemonldap-ng) through 2.0.8, validity of the X.509 certificate is not checked by default when connecting to remote LDAP backends, because the default configuration of the Net::LDAPS module for Perl is used.
Metrics
Affected Vendors & Products
Advisories
Source | ID | Title |
---|---|---|
![]() |
DLA-3284-1 | libapache-session-ldap-perl security update |
![]() |
DLA-3285-1 | libapache-session-browseable-perl security update |
![]() |
DLA-3287-1 | lemonldap-ng security update |
![]() |
EUVD-2020-8060 | In LemonLDAP::NG (aka lemonldap-ng) through 2.0.8, validity of the X.509 certificate is not checked by default when connecting to remote LDAP backends, because the default configuration of the Net::LDAPS module for Perl is used. |
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
No history.

Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-08-04T13:37:53.067Z
Reserved: 2020-07-28T00:00:00
Link: CVE-2020-16093

No data.

Status : Modified
Published: 2022-07-18T00:15:08.193
Modified: 2024-11-21T05:06:45.193
Link: CVE-2020-16093

No data.

No data.