F5-K000150749: Low severity f5 big-ip and big-iq centralized management vulnerability
The “ipaddress” module contained incorrect information about whether certain IPv4 and IPv6 addresses were designated as “globally reachable” or “private”. This affected the isprivate and isglobal properties of the ipaddress.IPv4Address, ipaddress.IPv4Network, ipaddress.IPv6Address, and ipaddress.IPv6Network classes, where values wouldn’t be returned in accordance with the latest information from the IANA Special-Purpose Address Registries. CPython 3.12.4 and 3.13.0a6 contain updated information from these registries and thus have the intended behavior.
Affected Software
Event History
Frequently Asked Questions
What is the severity of F5-K000150749?
The F5-K000150749 vulnerability is classified as a medium severity issue.
How do I fix F5-K000150749?
To fix F5-K000150749, ensure you upgrade to the latest patched version of F5 BIG-IP or apply the recommended workarounds.
Which versions are affected by F5-K000150749?
F5-K000150749 affects F5 BIG-IP versions 17.5.0 and 17.1.0 to 17.1.2, as well as other versions not specifically listed.
What systems are impacted by F5-K000150749?
The vulnerable systems include F5 BIG-IP and BIG-IQ Centralized Management solutions.
What does F5-K000150749 involve?
F5-K000150749 involves incorrect information regarding the classification of certain IPv4 and IPv6 addresses as globally reachable or private.