Vulnerability Description
On F5 BIG-IP DNS 13.1.0-13.1.0.7, 12.1.3-12.1.3.5, DNS Express / DNS Zones accept NOTIFY messages on the management interface from source IP addresses not listed in the 'Allow NOTIFY From' configuration parameter when the db variable "dnsexpress.notifyport" is set to any value other than the default of "0".
CVSS Score
LOW
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| F5 | Big-Ip Domain Name System | >= 12.1.3, <= 12.1.3.5 |
| F5 | Big-Ip Global Traffic Manager | >= 12.1.3, <= 12.1.3.5 |
| F5 | Big-Ip Local Traffic Manager | >= 12.1.3, <= 12.1.3.5 |
| F5 | Big-Ip Link Controller | >= 12.1.3, <= 12.1.3.5 |
References
- https://support.f5.com/csp/article/K45435121MitigationVendor Advisory
- https://support.f5.com/csp/article/K45435121MitigationVendor Advisory
FAQ
What is CVE-2018-5538?
CVE-2018-5538 is a vulnerability with a CVSS score of 3.7 (LOW). On F5 BIG-IP DNS 13.1.0-13.1.0.7, 12.1.3-12.1.3.5, DNS Express / DNS Zones accept NOTIFY messages on the management interface from source IP addresses not listed in the 'Allow NOTIFY From' configurati...
How severe is CVE-2018-5538?
CVE-2018-5538 has been rated LOW with a CVSS base score of 3.7/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2018-5538?
Check the references section above for vendor advisories and patch information. Affected products include: F5 Big-Ip Domain Name System, F5 Big-Ip Global Traffic Manager, F5 Big-Ip Local Traffic Manager, F5 Big-Ip Link Controller.