CVE-2012-2132

Gnome Libsoup - Authentication Bypass

Title source: rule

Description

libsoup 2.32.2 and earlier does not validate certificates or clear the trust flag when the ssl-ca-file does not exist, which allows remote attackers to bypass authentication by connecting with a SSL connection.

Scores

EPSS 0.0026
EPSS Percentile 48.8%

Classification

CWE
CWE-287
Status draft

Affected Products (1)

gnome/libsoup

Timeline

Published Aug 20, 2012
Tracked Since Feb 18, 2026