CVE Vulnerabilities

CVE-2012-1493

Published: Jul 09, 2012 | Modified: Jul 10, 2012
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
7.8 HIGH
AV:N/AC:L/Au:N/C:C/I:N/A:N
RedHat/V2
RedHat/V3
Ubuntu

F5 BIG-IP appliances 9.x before 9.4.8-HF5, 10.x before 10.2.4, 11.0.x before 11.0.0-HF2, and 11.1.x before 11.1.0-HF3, and Enterprise Manager before 2.1.0-HF2, 2.2.x before 2.2.0-HF1, and 2.3.x before 2.3.0-HF3, use a single SSH private key across different customers installations and do not properly restrict access to this key, which makes it easier for remote attackers to perform SSH logins via the PubkeyAuthentication option.

Affected Software

Name Vendor Start Version End Version
Big-ip_application_security_manager F5 9.2.0 (including) 9.2.0 (including)
Big-ip_application_security_manager F5 9.2.0-hf4 (including) 9.2.0-hf4 (including)
Big-ip_application_security_manager F5 9.4.4 (including) 9.4.4 (including)
Big-ip_application_security_manager F5 9.4.5 (including) 9.4.5 (including)
Big-ip_application_security_manager F5 9.4.6 (including) 9.4.6 (including)
Big-ip_application_security_manager F5 9.4.7 (including) 9.4.7 (including)
Big-ip_application_security_manager F5 9.4.8 (including) 9.4.8 (including)
Big-ip_application_security_manager F5 10.0.0 (including) 10.0.0 (including)
Big-ip_application_security_manager F5 10.0.1 (including) 10.0.1 (including)
Big-ip_application_security_manager F5 10.2.3-hf1 (including) 10.2.3-hf1 (including)
Big-ip_application_security_manager F5 11.0.0 (including) 11.0.0 (including)
Big-ip_application_security_manager F5 11.0.0-hf1 (including) 11.0.0-hf1 (including)
Big-ip_application_security_manager F5 11.1.0 (including) 11.1.0 (including)
Big-ip_application_security_manager F5 11.1.0-hf2 (including) 11.1.0-hf2 (including)
Big-ip_global_traffic_manager F5 * *
Big-ip_global_traffic_manager F5 9.2.2 (including) 9.2.2 (including)
Big-ip_global_traffic_manager F5 9.4.8-hf4 (including) 9.4.8-hf4 (including)
Big-ip_global_traffic_manager F5 10.0.0 (including) 10.0.0 (including)
Big-ip_global_traffic_manager F5 10.2.3-hf1 (including) 10.2.3-hf1 (including)
Big-ip_global_traffic_manager F5 11.0.0 (including) 11.0.0 (including)
Big-ip_global_traffic_manager F5 11.0.0-hf1 (including) 11.0.0-hf1 (including)
Big-ip_global_traffic_manager F5 11.1.0 (including) 11.1.0 (including)
Big-ip_global_traffic_manager F5 11.1.0-hf2 (including) 11.1.0-hf2 (including)
Big-ip_local_traffic_manager F5 * *
Big-ip_local_traffic_manager F5 9.0.0 (including) 9.0.0 (including)
Big-ip_local_traffic_manager F5 9.4.8-hf4 (including) 9.4.8-hf4 (including)
Big-ip_local_traffic_manager F5 10.0.0 (including) 10.0.0 (including)
Big-ip_local_traffic_manager F5 10.2.3-hf1 (including) 10.2.3-hf1 (including)
Big-ip_local_traffic_manager F5 11.0.0 (including) 11.0.0 (including)
Big-ip_local_traffic_manager F5 11.0.0-hf1 (including) 11.0.0-hf1 (including)
Big-ip_local_traffic_manager F5 11.1.0 (including) 11.1.0 (including)
Big-ip_local_traffic_manager F5 11.1.0-hf2 (including) 11.1.0-hf2 (including)
Tmos F5 * *
Tmos F5 2.0 (including) 2.0 (including)
Tmos F5 4.0 (including) 4.0 (including)
Tmos F5 4.2 (including) 4.2 (including)
Tmos F5 4.3 (including) 4.3 (including)
Tmos F5 4.4 (including) 4.4 (including)
Tmos F5 4.5 (including) 4.5 (including)
Tmos F5 4.5.6 (including) 4.5.6 (including)
Tmos F5 4.5.9 (including) 4.5.9 (including)
Tmos F5 4.5.10 (including) 4.5.10 (including)
Tmos F5 4.5.11 (including) 4.5.11 (including)
Tmos F5 4.5.12 (including) 4.5.12 (including)
Tmos F5 4.6 (including) 4.6 (including)
Tmos F5 4.6.2 (including) 4.6.2 (including)
Tmos F5 9.0 (including) 9.0 (including)
Tmos F5 9.0.1 (including) 9.0.1 (including)
Tmos F5 9.0.2 (including) 9.0.2 (including)
Tmos F5 9.0.3 (including) 9.0.3 (including)
Tmos F5 9.0.4 (including) 9.0.4 (including)
Tmos F5 9.0.5 (including) 9.0.5 (including)
Tmos F5 9.1 (including) 9.1 (including)
Tmos F5 9.1.1 (including) 9.1.1 (including)
Tmos F5 9.1.2 (including) 9.1.2 (including)
Tmos F5 9.1.3 (including) 9.1.3 (including)
Tmos F5 9.2 (including) 9.2 (including)
Tmos F5 9.2.2 (including) 9.2.2 (including)
Tmos F5 9.2.3 (including) 9.2.3 (including)
Tmos F5 9.2.4 (including) 9.2.4 (including)
Tmos F5 9.2.5 (including) 9.2.5 (including)
Tmos F5 9.3 (including) 9.3 (including)
Tmos F5 9.3.1 (including) 9.3.1 (including)
Tmos F5 9.4 (including) 9.4 (including)
Tmos F5 9.4.1 (including) 9.4.1 (including)
Tmos F5 9.4.2 (including) 9.4.2 (including)
Tmos F5 9.4.3 (including) 9.4.3 (including)
Tmos F5 9.4.4 (including) 9.4.4 (including)
Tmos F5 9.4.5 (including) 9.4.5 (including)
Tmos F5 9.4.6 (including) 9.4.6 (including)
Tmos F5 9.4.7 (including) 9.4.7 (including)
Tmos F5 9.4.8 (including) 9.4.8 (including)
Tmos F5 9.6.0 (including) 9.6.0 (including)
Tmos F5 9.6.1 (including) 9.6.1 (including)
Tmos F5 10.0.0 (including) 10.0.0 (including)
Tmos F5 10.0.1 (including) 10.0.1 (including)
Tmos F5 10.1.0 (including) 10.1.0 (including)
Tmos F5 10.2.0 (including) 10.2.0 (including)

References