F5 Networks BIG-IP : BIG-IP DNS Cache vulnerability (K48224824)
Medium Nessus Plugin ID 118670
SynopsisThe remote device is missing a vendor-supplied security patch.
DescriptionOn F5 BIG-IP 13.0.0, 12.1.0-12.1.2, 11.6.0-18.104.22.168, or 11.2.1-11.5.6 a domain name cached within the DNS Cache of TMM may continue to be resolved by the cache even after the parent server revokes the record, if the DNS Cache is receiving a stream of requests for the cached name. (CVE-2018-5532)
The BIG-IP system may continue to serve responses from the DNS Cachefor as long as the system receives requests for the cached name, even though the authoritative nameserver removed the name.
SolutionUpgrade to one of the non-vulnerable versions listed in the F5 Solution K48224824.