Description
Platform dependent weakness. This issue only impacts iSeries platforms. On these platforms, in BIG-IP (LTM, AAM, AFM, Analytics, APM, ASM, DNS, Edge Gateway, FPS, GTM, Link Controller, PEM, WebAccelerator) versions 14.0.0-14.1.0.1, 13.0.0-13.1.1.3, and 12.1.1 HF2-12.1.4, the secureKeyCapable attribute was not set which causes secure vault to not use the F5 hardware support to store the unit key. Instead the unit key is stored in plaintext on disk as would be the case for Z100 systems. Additionally this causes the unit key to be stored in UCS files taken on these platforms.
Published: 2019-04-15
Score: 9.8 Critical
EPSS: < 1% Very Low
KEV: No
Impact: n/a
Action: n/a
AI Analysis

No analysis available yet.

Remediation

No remediation available yet.

Tracking

Sign in to view the affected projects.

Advisories
Source ID Title
EUVD EUVD EUVD-2019-16168 Platform dependent weakness. This issue only impacts iSeries platforms. On these platforms, in BIG-IP (LTM, AAM, AFM, Analytics, APM, ASM, DNS, Edge Gateway, FPS, GTM, Link Controller, PEM, WebAccelerator) versions 14.0.0-14.1.0.1, 13.0.0-13.1.1.3, and 12.1.1 HF2-12.1.4, the secureKeyCapable attribute was not set which causes secure vault to not use the F5 hardware support to store the unit key. Instead the unit key is stored in plaintext on disk as would be the case for Z100 systems. Additionally this causes the unit key to be stored in UCS files taken on these platforms.
History

No history.

Subscriptions

F5 Big-ip Access Policy Manager Big-ip Advanced Firewall Manager Big-ip Analytics Big-ip Application Acceleration Manager Big-ip Application Security Manager Big-ip Domain Name System Big-ip Edge Gateway Big-ip Fraud Protection Service Big-ip Global Traffic Manager Big-ip I10600 Big-ip I10800 Big-ip I11600 Big-ip I11800 Big-ip I15600 Big-ip I15800 Big-ip I2000s Big-ip I2200s Big-ip I4000s Big-ip I4200v Big-ip I5000s Big-ip I5050s Big-ip I5200v Big-ip I5250v Big-ip I5250v Fips Big-ip I7000 Big-ip I7050s Big-ip I7055s Big-ip I7200v Big-ip I7200v-ssl Big-ip I7200v Fips Big-ip I7250v Big-ip I7255s Big-ip Link Controller Big-ip Local Traffic Manager Big-ip Policy Enforcement Manager Big-ip Webaccelerator Big-ip Webaccelerator12.1.1
cve-icon MITRE

Status: PUBLISHED

Assigner: f5

Published:

Updated: 2024-08-04T20:23:22.059Z

Reserved: 2019-01-22T00:00:00.000Z

Link: CVE-2019-6609

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2019-04-15T15:29:00.920

Modified: 2024-11-21T04:46:47.907

Link: CVE-2019-6609

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.

Weaknesses