Announcements

At our core, we address business challenges using cutting-edge technology and firmly believe in the significance of communicating our efforts towards integrating, automating, innovating, and revolutionizing the industry. Stay updated with the most recent advancements and exclusive insights.

CVE-2023-4863
libwebp zero-day vulnerability

This is informational. In case you are not aware, there’s a critical vulnerability (CVSS score 10) identified as CVE-2023-4863.

It affects not only Google Chrome but also other browsers like Firefox, Safari, and Edge that use the WebP codec via the libwebp library, along with any applications using this library.

If your applications are affected it is recommended to apply patches/upgrades ASAP.

Bug ID 654873: ASM Auto-Sync Device Group

Last Modified: Sep 13, 2023

Affected Product(s): BIG-IP ASM

Known Affected Versions: 12.1.2, 12.1.3, 12.1.3.1, 13.0.0, 13.0.0 HF1, 13.0.0 HF2, 13.0.0 HF3
Fixed In: 13.1.0, 13.0.1, 12.1.3.2
Opened: Apr 02, 2017

Severity: 3-Major

SymptomsSome messages that were meant to be sent to peers in a device group are not successfully sent.
Impact
1) Overuse of full sync between devices.
2) Possible inconsitencies between devices.
3) Possibility of memory leak in rare cases.
Conditions
A mix of the following uses in GUI or REST API:
1) Creating/importing/deleting policies.
2) Accepting many suggestions at once.
3) Possibility of memory leak in rare cases.
Workaround Use manual sync groups for ASM sync.

Fix InformationCommunication for auto-sync groups repaired.

Guides & referencesK10134038: F5 Bug Tracker Filter Names and Tips

Ready to learn more?

Preparation and success go hand in hand.

Connect with us or use the form.

    By clicking submit below, you consent to allow Cyberlocke to store and process the personal information submitted above to provide you the content requested. Any questions refer to Our Privacy Policy.