F5-K000137204: Medium severity f5 big-ip and big-iq centralized management vulnerability
Published Oct 11, 2023
·Updated
Insufficient control flow management in the BIOS firmware for some Intel(R) Processors may allow a privileged user to potentially enable denial of service via local access.
Affected Software
7 affected componentsFixes available
F5 BIG-IP>=17.1.0<=17.1.1
F5 BIG-IP>=16.1.0<=16.1.4
F5 BIG-IP>=15.1.0<=15.1.10
F5 BIG-IP>=14.1.0<=14.1.5
F5 BIG-IP>=13.1.0<=13.1.5
F5 F5OS-A=1.7.0, >=1.5.0<=1.5.2, =1.4.0, >=1.3.0<=1.3.2
1.8.0
F5 F5OS-C>=1.6.0<=1.6.2, >=1.5.0<=1.5.1
Event History
Oct 11, 2023
Advisory Published
via F5·06:29 PM
Frequently Asked Questions
1
What is the severity of F5-K000137204?
The severity of F5-K000137204 is classified as a potential denial of service due to insufficient control flow management.
2
How do I fix F5-K000137204?
To fix F5-K000137204, upgrade your F5 BIG-IP or F5OS firmware to the recommended versions that mitigate the vulnerability.
3
Which F5 products are affected by F5-K000137204?
F5-K000137204 affects various versions of F5 BIG-IP and F5OS-A and F5OS-C products.
4
Can a privileged user exploit F5-K000137204?
Yes, a privileged user with local access may exploit F5-K000137204 to potentially cause a denial of service.
5
Is remote access needed to exploit F5-K000137204?
No, exploitation of F5-K000137204 requires local access, not remote access.