Lucene search

K
f5F5SOL52349521
HistoryApr 27, 2016 - 12:00 a.m.

SOL52349521 - OpenSSL vulnerability CVE-2016-2842

2016-04-2700:00:00
support.f5.com
65

0.769 High

EPSS

Percentile

98.2%

Vulnerability Recommended Actions

If you are running a version listed in the Versions known to be vulnerable column, you can eliminate this vulnerability by upgrading to a version listed in theVersions known to be not vulnerable column. If the table lists only an older version than what you are currently running, or does not list a non-vulnerable version, then no upgrade candidate currently exists.

BIG-IP, BIG-IQ, Enterprise Manager, LineRate, and Traffix SDC

To mitigate this vulnerability, you should ensure that any custom BIG-IP monitor or custom configurations that rely on OpenSSL utilities (which depend on the function specified in this vulnerability) are only interacting with trusted systems in your environment.

Supplemental Information

  • SOL9970: Subscribing to email notifications regarding F5 products
  • SOL9957: Creating a custom RSS feed to view new and updated documents
  • SOL4602: Overview of the F5 security vulnerability response policy
  • SOL22334603: OpenSSL vulnerability CVE-2016-0799