F5-K000136185: High severity f5 big-ip access policy manager vulnerability
Published Oct 10, 2023
·Updated
The BIG-IP Edge Client Installer on macOS does not follow best practices for elevating privileges during the installation process.
Affected Software
6 affected componentsFixes available
F5 BIG-IP APM=17.1.0
F5 BIG-IP APM>=16.1.0<=16.1.4, =3
F5 BIG-IP APM>=15.1.0<=15.1.10, =3
F5 BIG-IP APM>=14.1.0<=14.1.5, =3
F5 BIG-IP APM>=13.1.0<=13.1.5
F5 APM Clients>=7.2.3<=7.2.4
7.2.4.4
Event History
Oct 10, 2023
Advisory Published
via F5·10:25 AM
Frequently Asked Questions
1
What is the severity of F5-K000136185?
The severity of F5-K000136185 is considered high due to improper privilege escalation during the installation process.
2
How do I fix F5-K000136185?
To fix F5-K000136185, upgrade to a patched version of the BIG-IP Edge Client Installer as specified in the advisory.
3
Which versions are affected by F5-K000136185?
F5-K000136185 affects F5 BIG-IP APM versions 17.1.0 and versions 16.1.0 to 16.1.4, among others.
4
What products are impacted by F5-K000136185?
The products impacted by F5-K000136185 include the F5 BIG-IP APM and F5 APM Clients.
5
Is there a workaround for F5-K000136185?
Currently, there is no official workaround for F5-K000136185; updating to the latest version is recommended.