Forum Discussion
OpenSSL vulnerability and Apache Commons FileUpload vulnerability CVE-2014-0050
Hi,
I'm big-ip version 11.5.1 HF2 and my BIG-IP iHealth station featuring some vulnerabilities and am not getting correct.
1 - Configuration utility / Apache Commons FileUpload vulnerability CVE-2014-0050 how to make safe configuration utility, this article did not help me much: SOL15189
2 - COMPAT SSL ciphers / OpenSSL vulnerability CVE-2013-6449 This article also did not help me much to fix these vulnerabilities: sol15147
Anyone know how to fix?
3 Replies
- Rodrigo_N_Soare
Nimbostratus
Ok. Thank you.
- What_Lies_Bene1
Cirrostratus
- is resolved, see here: http://support.f5.com/kb/en-us/solutions/public/15000/100/sol15159.html
- Cory_50405
Noctilucent
As long as you don't allow management access to your BIG-IP appliance over any production links and you have an isolated management network where only trusted/cleared personnel can access, then these risks are mitigated as well as they can be. You don't have any upgrade paths to mitigate these vulnerabilities completely.
Help guide the future of your DevCentral Community!
What tools do you use to collaborate? (1min - anonymous)Recent Discussions
Related Content
* Getting Started on DevCentral
* Community Guidelines
* Community Terms of Use / EULA
* Community Ranking Explained
* Community Resources
* Contact the DevCentral Team
* Update MFA on account.f5.com
