First published: Tue Jan 12 2016(Updated: )
F5 BIG-IP APM 11.4.1 before 11.4.1 HF9, 11.5.x before 11.5.3, and 11.6.0 before 11.6.0 HF4 allow remote attackers to cause a denial of service or execute arbitrary code via unspecified vectors related to processing a Citrix Remote Desktop connection through a virtual server configured with a remote desktop profile, aka an "Out-of-bounds memory vulnerability."
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
F5 Access Policy Manager | =11.2.0 | |
F5 Access Policy Manager | =11.2.1 | |
F5 Access Policy Manager | =11.3.0 | |
F5 Access Policy Manager | =11.4.0 | |
F5 Access Policy Manager | =11.5.0 | |
F5 Access Policy Manager | =11.5.1 | |
F5 Access Policy Manager | =11.6.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2015-8098 is considered a high severity vulnerability due to its potential to allow remote attackers to execute arbitrary code.
To fix CVE-2015-8098, upgrade your F5 BIG-IP APM to the latest patched version recommended by F5.
CVE-2015-8098 affects F5 BIG-IP APM versions 11.4.1 before HF9, 11.5.x before 11.5.3, and 11.6.0 before HF4.
CVE-2015-8098 can facilitate denial of service attacks and may allow for the execution of arbitrary code.
CVE-2015-8098 was disclosed in 2015 and is part of the F5 BIG-IP APM vulnerability series.