Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-jw28-8r7j-mr5p

Опубликовано: 20 окт. 2022
Источник: github
Github: Не прошло ревью
CVSS3: 3.7

Описание

On specific hardware platforms, on BIG-IP versions 16.1.x before 16.1.3.1, 15.1.x before 15.1.7, 14.1.x before 14.1.5.1, and all versions of 13.1.x, while Intel QAT (QuickAssist Technology) and the AES-GCM/CCM cipher is in use, undisclosed conditions can cause BIG-IP to send data unencrypted even with an SSL Profile applied.

On specific hardware platforms, on BIG-IP versions 16.1.x before 16.1.3.1, 15.1.x before 15.1.7, 14.1.x before 14.1.5.1, and all versions of 13.1.x, while Intel QAT (QuickAssist Technology) and the AES-GCM/CCM cipher is in use, undisclosed conditions can cause BIG-IP to send data unencrypted even with an SSL Profile applied.

EPSS

Процентиль: 33%
0.0013
Низкий

3.7 Low

CVSS3

Дефекты

CWE-319

Связанные уязвимости

CVSS3: 3.7
nvd
больше 3 лет назад

On specific hardware platforms, on BIG-IP versions 16.1.x before 16.1.3.1, 15.1.x before 15.1.7, 14.1.x before 14.1.5.1, and all versions of 13.1.x, while Intel QAT (QuickAssist Technology) and the AES-GCM/CCM cipher is in use, undisclosed conditions can cause BIG-IP to send data unencrypted even with an SSL Profile applied.

EPSS

Процентиль: 33%
0.0013
Низкий

3.7 Low

CVSS3

Дефекты

CWE-319