CVE-2018-5539: CSRF
Under certain conditions, on F5 BIG-IP ASM 13.0.0-13.1.0.7, 12.1.0-12.1.3.5, 11.6.0-11.6.3.1, 11.5.1-11.5.6, or 11.2.1, when processing CSRF protections, the BIG-IP ASM bd process may restart and produce a core file.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2018-5539?
CVE-2018-5539 has a medium severity rating due to the potential for denial-of-service conditions.
How do I fix CVE-2018-5539?
To fix CVE-2018-5539, you should upgrade to a fixed version of the F5 BIG-IP Application Security Manager that is not affected by this vulnerability.
What are the affected versions for CVE-2018-5539?
CVE-2018-5539 affects F5 BIG-IP Application Security Manager versions 11.2.1, 11.5.1 to 11.6.3, and 12.1.0 to 13.1.0.
What happens when CVE-2018-5539 is exploited?
Exploitation of CVE-2018-5539 can lead to the BIG-IP ASM bd process restarting and generating a core file.
Is there a workaround for CVE-2018-5539?
There are no documented workarounds for CVE-2018-5539, so the recommended action is to update to a secure version.