Lucene search

K
f5F5SOL6634
HistoryOct 19, 2006 - 12:00 a.m.

SOL6634 - pam_ldap vulnerability - CVE-2005-2641

2006-10-1900:00:00
support.f5.com
24

0.021 Low

EPSS

Percentile

89.3%

This security advisory describes a pam_ldap vulnerability. Clients who are referred to a different server than the server on which they were originally authenticated, with a different TLS encryption requirement, could possibly bypass the new server’s TLS requirements.

Information about this advisory is available at the following location:

<http://cve.mitre.org/cgi-bin/cvename.cgi?name=CAN-2005-2641&gt;

F5 Product Development tracked this issue as CR54024 and CR68903 and it was fixed in BIG-IP 9.1.3 and 9.2.2. For information about upgrading, refer to the BIG-IP LTM or ASM release notes.

CPENameOperatorVersion
big-ip ltmle9.2.0
big-ip asmle9.2.0