PT-2020-18822 · F5 · F5 Big-Ip Apm
Published
2020-08-26
·
Updated
2021-07-21
·
CVE-2020-5924
CVSS v3.1
5.3
Medium
| Vector | AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L |
Name of the Vulnerable Software and Affected Versions
F5 BIG-IP APM versions 11.6.1 through 11.6.5.2
F5 BIG-IP APM versions 12.1.0 through 12.1.5.1
Description
The issue is related to RADIUS authentication, where memory is leaked when the
username for authentication is not set.Recommendations
For F5 BIG-IP APM versions 11.6.1 through 11.6.5.2, ensure that the
username is always set during RADIUS authentication to prevent memory leaks.
For F5 BIG-IP APM versions 12.1.0 through 12.1.5.1, ensure that the username is always set during RADIUS authentication to prevent memory leaks.Fix
Memory Leak
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
F5 Big-Ip Apm