F5-K000139700: Medium severity F5 BIG-IP vulnerability
Published May 21, 2024
·Updated
drivers/usb/mon/monbin.c in usbmon in the Linux kernel before 5.19.15 and 6.x before 6.0.1 allows a user-space client to corrupt the monitor's internal memory.
Affected Software
6 affected componentsFixes available
F5 BIG-IP=17.5.0, >=17.1.0<=17.1.2
17.5.117.1.3
F5 BIG-IP>=16.1.0<=16.1.6
F5 BIG-IP>=15.1.0<=15.1.10
F5 BIG-IQ Centralized Management>=8.1.0<=8.4.0
8.4.1
F5 F5OS-A=1.8.0, =1.7.0, >=1.5.1<=1.5.2
1.8.3
F5 F5OS-C>=1.6.0<=1.6.2
Event History
May 21, 2024
Advisory Published
via F5·08:59 PM
Data Sourced
via F5·08:59 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of F5-K000139700?
The severity of F5-K000139700 is considered high due to the potential for memory corruption by a user-space client.
2
How do I fix F5-K000139700?
To fix F5-K000139700, upgrade to the latest versions of the affected F5 products as specified in the advisory.
3
Which versions of F5 BIG-IP are affected by F5-K000139700?
F5-K000139700 affects F5 BIG-IP versions 15.1.0 to 15.1.10, 16.1.0 to 16.1.4, and 17.1.0 to 17.1.1.
4
Is F5 BIG-IQ Centralized Management affected by F5-K000139700?
Yes, F5 BIG-IQ Centralized Management versions 8.1.0 to 8.3.0 are susceptible to F5-K000139700.
5
What other products are affected by F5-K000139700?
F5-K000139700 also affects F5OS-A versions 1.5.1 to 1.7.0 and F5OS-C versions 1.6.0 to 1.6.2.