Forum Discussion
Help needed to understand KB of f5
15.1.2.1-0.x.x is within the vulnerable range.
You can also upload a qkview to ihealth and get all the known vulnerabilities for your specific version.
I am very new to f5 BIG-IP in terms of using its features.
Can you please guide how to use ihealth for vulnerabilities? Is this free, or do I need to have the subscription?
- RadekRFeb 07, 2023Altocumulus
iHealth is free but requires registration.
Quick video overview of iHealth:
https://www.youtube.com/watch?v=UFg7_3-HL5AVulnerabilietes can be found in diagnostic tab.
- RockBDFeb 08, 2023Altocumulus
Thanks for the reply.
Thanks for the information on iHealth.
You told me that 15.1.2.1-0.x.x is within the vulnerable range. How may I know, according to K56412001: BIG-IP SSL OCSP Authentication profile vulnerability CVE-2023-22323 has been published https://my.f5.com/manage/s/article/K56412001.
- Amine_KadimiFeb 08, 2023MVP
Because in this case you consider your release to be 15.1.2 which is within the vulnerable range. Quoting from https://my.f5.com/manage/s/article/K51812227:
Versions known to be vulnerable: The range of product versions within each branch that are confirmed by F5 Product Development as vulnerable. Point releases and hotfixes are not listed in this column, unless a vulnerability is specifically introduced in a given point release or hotfix. Vulnerable versions include all point releases or hotfixes for a given software version. For example, if 13.1.0 is listed as vulnerable, then 13.1.0.1 and 13.1.0.2 are also considered vulnerable if neither of those point releases are listed in the Fixes introduced in column.
Recent Discussions
Related Content
* Getting Started on DevCentral
* Community Guidelines
* Community Terms of Use / EULA
* Community Ranking Explained
* Community Resources
* Contact the DevCentral Team
* Update MFA on account.f5.com