F5 hurriedly squashes BIG-IP remote code execution bug

United Kingdom News News

F5 hurriedly squashes BIG-IP remote code execution bug
United Kingdom Latest News,United Kingdom Headlines
  • 📰 TheRegister
  • ⏱ Reading Time:
  • 36 sec. here
  • 2 min. at publisher
  • 📊 Quality Score:
  • News: 18%
  • Publisher: 61%

Fixes came earlier than scheduled as vulnerability became known to outsiders

Researchers at Praetorian first discovered the authentication bypass flaw in BIG-IP's configuration utility and published their findings this week of what is the third major RCE bug to impact BIG-IP since 2020.

Weber revealed that F5 originally didn't plan to address the issues after being made aware of them at the start of October, but quickly U-turned after realizing that knowledge of the flaw may exist outside of those involved in the disclosure. "Then last night at 8PM ET, we get an email that they're dropping the advisory and hotfix in 16 hours. We asked why and were told 'we believe this vulnerability is now known outside of F5 and Praetorian thus forcing our hands at an immediate disclosure'."

After deploying a default F5 installation using an AWS Marketplace template, the researchers started scanning its attack surface, first discovering that it ran on CentOS 7.5-1804.

We have summarized this news so that you can read it quickly. If you are interested in the news, you can read the full text here. Read more:

TheRegister /  🏆 67. in UK

United Kingdom Latest News, United Kingdom Headlines

Similar News:You can also read news stories similar to this one that we have collected from other news sources.

Cyberpunk 2077's latest update includes over 70 fixes on XboxCyberpunk 2077's latest update includes over 70 fixes on XboxCD Projekt Red is now rolling out Patch 2.02 for Cyberpunk 2077 and Phantom Liberty, which makes performance improvements on Xbox and squashes a lot of bugs.
Read more »

Big Oil's Mega Acquisitions Raise Questions About Peak Oil DemandBig Oil's Mega Acquisitions Raise Questions About Peak Oil DemandThe recent megamergers from ExxonMobil and Chevron didn't come out of nowhere, but pundits are now wondering whether these long-term strategies combine with peak oil demand forecasts
Read more »

Big Brother's Hallie breaks down over nominations as fans slam Yinrun punishmentBig Brother's Hallie breaks down over nominations as fans slam Yinrun punishmentWednesday's Big Brother saw tears all around with both Hallie and Yinrun in tears over nominations, with viewers also in uproar after the latter faced punishment for breaking the rules
Read more »

13-year Google privacy settlement pays litigants the equivalent of a Big Mac meal13-year Google privacy settlement pays litigants the equivalent of a Big Mac mealChocolate Factory agrees $23m guilt-free settlement
Read more »

Big Brother's Makosi Musambasi's life now from health battle to career moveBig Brother's Makosi Musambasi's life now from health battle to career moveBig Brother legend Makosi Musambasi is best known for her steamy hot tub antics with Anthony Hutton, but she's since set the record straight on the controversial sex scene
Read more »

BOOM-TASTIC OFFER: More bang for your buck with 10% off Yorkshire's Big Shotter FireworksBOOM-TASTIC OFFER: More bang for your buck with 10% off Yorkshire's Big Shotter FireworksLight up the night sky with a sparkling offer and save 10 per cent on Big Shotter Fireworks to celebrate Bonfire Night.
Read more »



Render Time: 2025-02-16 07:58:19