F5-K000141052: High severity f5 traffix systems signaling delivery controller vulnerability
Published Sep 13, 2024
·Updated
CPAN.pm before 2.35 does not verify TLS certificates when downloading distributions over HTTPS.
Affected Software
1 affected componentFixes available
F5 Traffix SDC=5.1.0
5.2.0
Event History
Sep 13, 2024
Advisory Published
via F5·04:22 PM
Frequently Asked Questions
1
What is the severity of F5-K000141052?
The F5-K000141052 vulnerability is considered to be of high severity due to its potential impact on system security.
2
How do I fix F5-K000141052?
To fix F5-K000141052, upgrade to CPAN.pm version 2.35 or later, which verifies TLS certificates properly.
3
What systems are affected by F5-K000141052?
F5-K000141052 affects F5 Traffix Systems Signaling Delivery Controller versions 5.1.0 and lower.
4
What issues can arise if F5-K000141052 is not addressed?
If F5-K000141052 is not addressed, it may allow attackers to intercept and modify downloads due to the lack of TLS certificate verification.
5
Is there a workaround for F5-K000141052?
Currently, there are no known workarounds for F5-K000141052 other than upgrading to the patched version.