F5-K000138219: Medium severity F5 BIG-IP vulnerability
Published Jan 13, 2024
·Updated
An issue was discovered in function libssh2packetadd in libssh2 1.10.0 allows attackers to access out of bounds memory.
Affected Software
6 affected componentsFixes available
F5 BIG-IP>=17.1.0<=17.1.2
17.1.2.2
F5 BIG-IP>=16.1.0<=16.1.6
F5 BIG-IP>=15.1.0<=15.1.10
F5 BIG-IQ Centralized Management>=8.0.0<=8.4.0
8.4.1
F5 F5OS-A=1.5.0, =1.4.0, >=1.3.0<=1.3.2
1.7.01.5.2
F5 F5OS-C=1.6.0, >=1.5.0<=1.5.1
1.8.0
Event History
Jan 13, 2024
Advisory Published
via F5·12:06 AM
Frequently Asked Questions
1
What is the severity of F5-K000138219?
The severity of F5-K000138219 is critical due to the potential for attackers to access out of bounds memory.
2
How do I fix F5-K000138219?
To fix F5-K000138219, update affected F5 products to the patched versions specified in the security advisory.
3
What products are affected by F5-K000138219?
F5-K000138219 affects specific versions of F5 BIG-IP, F5 BIG-IQ Centralized Management, and F5OS products.
4
Can F5-K000138219 result in data loss?
Yes, F5-K000138219 could potentially lead to data loss or corruption due to accessing out of bounds memory.
5
What are the consequences of exploiting F5-K000138219?
Exploiting F5-K000138219 could allow an attacker to execute arbitrary code or disrupt service on vulnerable systems.