CVE Vulnerabilities

CVE-2018-5524

Published: Jun 01, 2018 | Modified: Nov 21, 2024
CVSS 3.x
5.3
MEDIUM
Source:
NVD
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L
CVSS 2.x
5 MEDIUM
AV:N/AC:L/Au:N/C:N/I:N/A:P
RedHat/V2
RedHat/V3
Ubuntu
root.io logo minimus.io logo echo.ai logo

Under certain conditions, on F5 BIG-IP 13.0.0-13.1.0.5, 12.1.0-12.1.3.1, or 11.6.1 HF2-11.6.3.1, virtual servers configured with Client SSL or Server SSL profiles which make use of network hardware security module (HSM) functionality are exposed and impacted by this issue.

Affected Software

NameVendorStart VersionEnd Version
Big-ip_application_acceleration_managerF511.6.1 (including)11.6.3 (including)
Big-ip_application_acceleration_managerF512.1.0 (including)12.1.3 (including)
Big-ip_application_acceleration_managerF513.0.0 (including)13.0.1 (including)

References