QID 376468
Date Published: 2022-03-22
QID 376468: F5 BIG-IP Application Security Manager (ASM) Security update for The Attack Signature Check Failure (K30911244)
The F5 Advanced Web Application Firewall (Advanced WAF), BIG-IP ASM, and NGINX App Protect attack signature check may fail to detect and block certain HTTP requests when some signatures are disabled on the security policy and wildcard header.
Vulnerable Component: BIG-IP ASM
Affected Versions:
16.1.0 - 16.1.1
15.1.0 - 15.1.4
14.1.0 - 14.1.4
13.1.0 - 13.1.4
QID Detection Logic(Authenticated):
This QID checks for the vulnerable versions of F5 BIG-IP devices using the tmsh command.
The attack signature check fails to detect and block such requests, as expected of a security policy.
Solution
For more information about patch details please refer to K30911244
Vendor References
- K30911244 -
support.f5.com/csp/article/K30911244
CVEs related to QID 376468
Software Advisories
| Advisory ID | Software | Component | Link |
|---|---|---|---|
| K30911244 |
|