F5-K000159891: Medium severity F5 BIG-IP Next for Kubernetes vulnerability
Validating certificate chains which contain DSA public keys can cause programs to panic, due to a interface cast that assumes they implement the Equal method. This affects programs which validate arbitrary certificate chains.
Affected Software
Event History
Frequently Asked Questions
What is the severity of F5-K000159891?
The severity of F5-K000159891 is critical due to the potential for program panic during certificate chain validation.
How do I fix F5-K000159891?
To fix F5-K000159891, upgrade to the non-vulnerable version 2.2.0 or higher of F5 BIG-IP Next for Kubernetes.
What platforms are affected by F5-K000159891?
F5-K000159891 affects F5 BIG-IP Next for Kubernetes specifically on version 2.1.0.
What issue does F5-K000159891 address?
F5-K000159891 addresses issues with validating certificate chains that include DSA public keys, which can lead to program crashes.
Is there a workaround for F5-K000159891?
There is no documented workaround for F5-K000159891, the recommended action is to upgrade to the latest version.