Gnome · Libsoup · CVE-2012-2132
**Name of the Vulnerable Software and Affected Versions**
libsoup versions 2.32.2 and earlier
**Description**
The issue allows remote attackers to bypass authentication by connecting with an SSL connection, as it does not validate certificates or clear the trust flag when the ssl-ca-file does not exist.
**Recommendations**
For versions 2.32.2 and earlier, ensure the ssl-ca-file exists and is properly configured to validate certificates and maintain the trust flag. As a temporary workaround, consider disabling SSL connections until a proper fix is applied.