First published: Tue Oct 01 2024(Updated: )
Heap-based buffer overflow in the pack function in Perl before 5.26.2 allows context-dependent attackers to execute arbitrary code via a large item count.
Affected Software | Affected Version | How to fix |
---|---|---|
F5 BIG-IP and BIG-IQ Centralized Management | >=17.1.0<=17.1.1 | |
F5 BIG-IP and BIG-IQ Centralized Management | >=16.1.0<=16.1.5 | |
F5 BIG-IP and BIG-IQ Centralized Management | >=15.1.0<=15.1.10 | |
F5 BIG-IP and BIG-IQ Centralized Management | >=8.2.0<=8.3.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
F5-K000141301 is a critical vulnerability due to its ability to execute arbitrary code through a heap-based buffer overflow.
To fix F5-K000141301, upgrade your F5 BIG-IP or BIG-IQ Centralized Management to the latest versions that are not affected by this vulnerability.
F5-K000141301 affects specific versions of F5 BIG-IP from 15.1.0 to 15.1.10, 16.1.0 to 16.1.5, and 17.1.0 to 17.1.1, as well as versions of F5 BIG-IQ Centralized Management from 8.2.0 to 8.3.0.
The F5-K000141301 vulnerability can be exploited by context-dependent attackers, potentially allowing them to manipulate the application under certain conditions.
A heap-based buffer overflow in F5-K000141301 occurs when an attacker sends a large item count to the pack function, leading to memory corruption and potential code execution.