First published: Thu Jul 12 2018(Updated: )
The svpn component of the F5 BIG-IP APM client prior to version 7.1.7 for Linux and Mac OS X runs as a privileged process and can allow an unprivileged user to assume super-user privileges on the local client host. A malicious local unprivileged user may gain knowledge of sensitive information, manipulate certain data, or disrupt service.
Credit: f5sirt@f5.com
Affected Software | Affected Version | How to fix |
---|---|---|
F5 Big-ip Access Policy Manager | >=7.1.5<=7.1.6.1 | |
F5 Big-ip Access Policy Manager | >=11.5.1<=11.5.6 | |
F5 Big-ip Access Policy Manager | >=12.1.0<=12.1.3 | |
F5 Big-ip Access Policy Manager | >=13.0.0<=13.1.0 | |
F5 Big-ip Edge | >=7101<=7150 | |
Apple Mac OS X | ||
Linux Linux kernel |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.