When on BIG-IP DNS or BIG-IP LTM enabled with DNS Services License, and a TSIG key is created, it is logged in plaintext in the audit log. Note: Software versions which have reached End of Technical Support (EoTS) are not evaluated.
References
Link | Resource |
---|---|
https://my.f5.com/manage/s/article/K98334513 | Vendor Advisory |
https://my.f5.com/manage/s/article/K98334513 | Vendor Advisory |
Configurations
Configuration 1 (hide)
|
History
21 Nov 2024, 08:20
Type | Values Removed | Values Added |
---|---|---|
References | () https://my.f5.com/manage/s/article/K98334513 - Vendor Advisory |
17 Oct 2023, 13:41
Type | Values Removed | Values Added |
---|---|---|
CPE | cpe:2.3:a:f5:big-ip_domain_name_system:*:*:*:*:*:*:*:* cpe:2.3:a:f5:big-ip_local_traffic_manager:*:*:*:*:*:*:*:* |
|
First Time |
F5
F5 big-ip Local Traffic Manager F5 big-ip Domain Name System |
|
References | (MISC) https://my.f5.com/manage/s/article/K98334513 - Vendor Advisory |
10 Oct 2023, 13:41
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2023-10-10 13:15
Updated : 2024-11-21 08:20
NVD link : CVE-2023-41253
Mitre link : CVE-2023-41253
CVE.ORG link : CVE-2023-41253
JSON object : View
Products Affected
f5
- big-ip_local_traffic_manager
- big-ip_domain_name_system
CWE
CWE-532
Insertion of Sensitive Information into Log File