In F5 BIG-IP LTM, AAM, AFM, Analytics, APM, ASM, DNS, GTM, Link Controller, PEM, and WebSafe 11.5.1 HF6 through 11.5.4 HF4, 11.6.0 through 11.6.1 HF1, and 12.0.0 through 12.1.2 on VIPRION platforms only, the script which synchronizes SafeNet External Network HSM configuration elements between blades in a clustered deployment will log the HSM partition password in cleartext to the "/var/log/ltm" log file.
References
Link Resource
http://www.securityfocus.com/bid/101543 Third Party Advisory VDB Entry
http://www.securitytracker.com/id/1039638 Third Party Advisory VDB Entry
https://support.f5.com/csp/article/K74759095 Vendor Advisory
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: f5

Published: 2017-10-20T15:00:00

Updated: 2017-10-25T09:57:01

Reserved: 2017-02-21T00:00:00


Link: CVE-2017-6165

JSON object: View

cve-icon NVD Information

Status : Analyzed

Published: 2017-10-20T15:29:00.537

Modified: 2017-11-15T18:09:21.543


Link: CVE-2017-6165

JSON object: View

cve-icon Redhat Information

No data.

CWE