From Mageia wiki
Jump to: navigation, search

MGASA-2012-0126

Date: June 27th, 2012
Affected releases: 1


Description:
Updated libsoup packages fix security vulnerability:

libsoup considered all ssl connections as trusted even if no
CA certificates were configured (CVE-2012-2132).


Updated Packages:
lib(64)soup-2.4_1-2.32.2-4.2.mga1
lib(64)soup-2.4-devel-2.32.2-4.2.mga1


References:
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2012-2132
http://lists.opensuse.org/opensuse-updates/2012-05/msg00013.html
https://bugs.mageia.org/show_bug.cgi?id=5482