Issue 7285 - Mozilla NSS: default cipher suite always selected Status: VERIFIED FIXED Product: OpenLDAP Component: slapd Version: unspecified Hardware: All All Importance: normal Assignee: OpenLDAP project Summary: Reported: When using NSS, the default cipher suite selection is used even when TLSCipherSuite is explicitly specified. This behavior was introduced in the patch provided in ITS#6790. Fix: The patch is fine, and the fix has been confirmed and applied to the master branch. The issue was closed after successful testing and release. Key Information: Vulnerability: The default cipher suite is always selected, overriding the explicitly specified cipher suite when using NSS. CVE: Not specified in the screenshot. Mitigation: Applied a patch that resolves the issue in the master branch. Additional: The issue was reported, fixed, and closed over a period from June 2012 to August 2014.