Lucene search

K
f5F5SOL50116122
HistoryDec 01, 2016 - 12:00 a.m.

SOL50116122 - Apache Tomcat vulnerability CVE-2016-6816

2016-12-0100:00:00
support.f5.com
270

0.003 Low

EPSS

Percentile

66.1%

Vulnerability Recommended Actions

If you are running a version listed in the Versions known to be vulnerable column, you can eliminate this vulnerability by upgrading to a version listed in theVersions known to be not vulnerable column. If the table lists only an older version than what you are currently running, or does not list a non-vulnerable version, then no upgrade candidate currently exists.

Mitigation

BIG-IP and Enterprise Manager

To mitigate this vulnerability, you can limit access to the Configuration utility to only use secure networks.

ARX and Traffix SDC

To mitigate this vulnerability, you can limit access to the ARX GUI and Traffix SDC Management Console to only use secure networks.

Supplemental Information

  • SOL9970: Subscribing to email notifications regarding F5 products
  • SOL9957: Creating a custom RSS feed to view new and updated documents
  • SOL4602: Overview of the F5 security vulnerability response policy
  • SOL4918: Overview of the F5 critical issue hotfix policy