Forum Discussion

1 Reply

  • THi's avatar
    THi
    Icon for Nimbostratus rankNimbostratus

    The HF release notes are also on the download site container where you download the HF image. It may take a bit longer to get the edited SOL to the AskF5 support site.

     

    Have a look on: https://downloads.f5.com/esd/eula.sv?sw=BIG-IP&pro=big-ip_v11.x&ver=11.5.1&container=Hotfix-BIGIP-11.5.1.8.0.175-HF8&path=&file=&B1=I+Accept (You need to log in to the downloads site).

     

    The 11.5.1HF8 includes the Ghost vulnerability fix and seems to have the following new fixes (above HF7):

     

    Hotfix Release Information

     

    Version: BIGIP-11.5.1 Build: 175.0 Hotfix Rollup: 8

     

    TMOS Fixes

     

    ID NumberDescription 481410-2 Automated Phone Home update check time is randomized to prevent intermittent problem when all machines would access the service at once.

     

    492809-1 Ensured the APM stats code no longer leaks memory.

     

    494078-2 The fix strengthens certificate validation, including hostname verification.

     

    503237-6 CVE-2015-0235 : glibc vulnerability known as Ghost.

     

    453489 Suppressed extraneous warning messages caused by ssh connections from peers on the 127.0.0.0/8 subnet.

     

    Application Security Manager Fixes

     

    ID NumberDescription 496849-4 We fixed a vulnerability in the ASM/DPI/FPS signature update mechanism.