F5 Products Multiple Vulnerabilities
RISK: Medium Risk
TYPE: Operating Systems - Networks OS
Multiple vulnerabilities were identified in F5 Products. A remote attacker could exploit some of these vulnerabilities to trigger denial of service condition, remote code execution, security restriction bypass and elevation of privilege on the targeted system.
Impact
- Denial of Service
- Remote Code Execution
- Security Restriction Bypass
- Elevation of Privilege
System / Technologies affected
BIG-IP (all modules)
- version 16.1.0 - 16.1.6
- version 17.1.0 - 17.1.3
- version 17.5.0 - 17.5.1
- version 21.0.0
BIG-IP APM
- version 16.1.0 - 16.1.6
- version 17.1.0 - 17.1.3
- version 17.5.0 - 17.5.1
- version 21.0.0
BIG-IP PEM
- version 16.1.0 - 16.1.6
- version 17.1.0 - 17.1.3
- version 17.5.0 - 17.5.1
- version 21.0.0
BIG-IP Advanced WAF/ASM
- version 16.1.0 - 16.1.6
- version 17.1.0 - 17.1.3
- version 17.5.0 - 17.5.1
- version 21.0.0
BIG-IP Advanced WAF/ASM and BIG-IP DDoS Hybrid Defender
- version 16.1.0 - 16.1.6
- version 17.1.0 - 17.1.3
- version 17.5.0 - 17.5.1
BIG-IQ Centralized Management
- version 8.4.0 - 8.4.1
BIG-IP Next CNF
- version 1.1.0 - 1.4.1
- version 2.0.0 - 2.2.1
BIG-IP Next SPK
- version 1.7.0 - 1.9.2
- version 2.0.0 - 2.0.3
BIG-IP Next for Kubernetes
- version 2.0.0 - 2.1.1
Solutions
Before installation of the software, please visit the vendor web-site for more details.
Apply fixes issued by the vendor:
- https://my.f5.com/manage/s/article/K000156761
- https://my.f5.com/manage/s/article/K000158038
- https://my.f5.com/manage/s/article/K000158082
- https://my.f5.com/manage/s/article/K000158978
- https://my.f5.com/manage/s/article/K000158979
- https://my.f5.com/manage/s/article/K000159034
- https://my.f5.com/manage/s/article/K000160727
- https://my.f5.com/manage/s/article/K000160874
- https://my.f5.com/manage/s/article/K000160875
- https://my.f5.com/manage/s/article/K000160901
- https://my.f5.com/manage/s/article/K000160945
- https://my.f5.com/manage/s/article/K000160971
- https://my.f5.com/manage/s/article/K000160972
- https://my.f5.com/manage/s/article/K000160975
- https://my.f5.com/manage/s/article/K000160979
- https://my.f5.com/manage/s/article/K000161023
- https://my.f5.com/manage/s/article/K000161040
- https://my.f5.com/manage/s/article/K000161056
- https://my.f5.com/manage/s/article/K000161107
Vulnerability Identifier
- CVE-2026-32643
- CVE-2026-32673
- CVE-2026-39455
- CVE-2026-39458
- CVE-2026-40060
- CVE-2026-40067
- CVE-2026-40423
- CVE-2026-40618
- CVE-2026-40629
- CVE-2026-40631
- CVE-2026-41217
- CVE-2026-41218
- CVE-2026-41227
- CVE-2026-41953
- CVE-2026-41956
- CVE-2026-41957
- CVE-2026-42406
- CVE-2026-42409
- CVE-2026-42920
Source
Related Link
- https://my.f5.com/manage/s/article/K000156761
- https://my.f5.com/manage/s/article/K000158038
- https://my.f5.com/manage/s/article/K000158082
- https://my.f5.com/manage/s/article/K000158978
- https://my.f5.com/manage/s/article/K000158979
- https://my.f5.com/manage/s/article/K000159034
- https://my.f5.com/manage/s/article/K000160727
- https://my.f5.com/manage/s/article/K000160874
- https://my.f5.com/manage/s/article/K000160875
- https://my.f5.com/manage/s/article/K000160901
- https://my.f5.com/manage/s/article/K000160945
- https://my.f5.com/manage/s/article/K000160971
- https://my.f5.com/manage/s/article/K000160972
- https://my.f5.com/manage/s/article/K000160975
- https://my.f5.com/manage/s/article/K000160979
- https://my.f5.com/manage/s/article/K000161023
- https://my.f5.com/manage/s/article/K000161040
- https://my.f5.com/manage/s/article/K000161056
- https://my.f5.com/manage/s/article/K000161107
沒有留言:
發佈留言