F5-K000132665: High severity F5 BIG-IP vulnerability
Prior to Apache HTTP Server 2.4.55, a malicious backend can cause the response headers to be truncated early, resulting in some headers being incorporated into the response body. If the later headers have any security purpose, they will not be interpreted by the client.
Affected Software
Event History
Frequently Asked Questions
What is the severity of F5-K000132665?
The severity of F5-K000132665 is critical due to the potential exposure of security-related headers.
How do I fix F5-K000132665?
To fix F5-K000132665, update your system to Apache HTTP Server version 2.4.55 or later.
Which products are affected by F5-K000132665?
F5-K000132665 affects versions of F5 BIG-IP, F5OS-A, F5OS-C, and Traffix SDC before specific versions as detailed in the advisory.
What are the risks associated with F5-K000132665?
The risks associated with F5-K000132665 include possible exposure of critical security headers in the response body to clients, compromising security.
How can I identify if I'm affected by F5-K000132665?
You can identify if you are affected by F5-K000132665 by checking the version of Apache HTTP Server and associated F5 products in use.