PT-2009-6541 · F5 · Big-Ip Application Security Manager+1

Published

2009-12-24

·

Updated

2019-06-06

·

CVE-2009-4420

CVSS v2.0

7.8

High

VectorAV:N/AC:L/Au:N/C:N/I:N/A:C
Name of the Vulnerable Software and Affected Versions F5 Networks BIG-IP Application Security Manager (ASM) versions 9.4.4 through 9.4.7 F5 Networks BIG-IP Application Security Manager (ASM) versions 10.0.0 through 10.0.1 F5 Networks BIG-IP Protocol Security Manager (PSM) versions 9.4.5 through 9.4.7 F5 Networks BIG-IP Protocol Security Manager (PSM) versions 10.0.0 through 10.0.1
Description A buffer overflow issue in the bd daemon allows remote attackers to cause a denial of service, resulting in a crash, via unknown vectors.
Recommendations For F5 Networks BIG-IP Application Security Manager (ASM) versions 9.4.4 through 9.4.7, update to a version outside of this range to resolve the issue. For F5 Networks BIG-IP Application Security Manager (ASM) versions 10.0.0 through 10.0.1, update to a version outside of this range to resolve the issue. For F5 Networks BIG-IP Protocol Security Manager (PSM) versions 9.4.5 through 9.4.7, update to a version outside of this range to resolve the issue. For F5 Networks BIG-IP Protocol Security Manager (PSM) versions 10.0.0 through 10.0.1, update to a version outside of this range to resolve the issue.

Fix

Buffer Overflow

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2009-4420

Affected Products

Big-Ip Application Security Manager
Big-Ip Protocol Security Manager