CVE-2009-4420

F5 Networks BIG-IP ASM/PSM <10.0.2 - Buffer Overflow

Title source: llm
STIX 2.1

Description

Buffer overflow in the bd daemon in F5 Networks BIG-IP Application Security Manager (ASM) 9.4.4 through 9.4.7 and 10.0.0 through 10.0.1, and Protocol Security Manager (PSM) 9.4.5 through 9.4.7 and 10.0.0 through 10.0.1, allows remote attackers to cause a denial of service (crash) via unknown vectors. NOTE: some of these details are obtained from third party information.

References (7)

Core 7
Core References
Third Party Advisory, VDB Entry vdb-entry x_refsource_sectrack
http://www.securitytracker.com/id?1023386
Third Party Advisory, VDB Entry vdb-entry x_refsource_osvdb
http://osvdb.org/61297
Third Party Advisory, VDB Entry vdb-entry x_refsource_xf
https://exchange.xforce.ibmcloud.com/vulnerabilities/55005
Vendor Advisory vdb-entry x_refsource_vupen
http://www.vupen.com/english/advisories/2009/3627
Vendor Advisory third-party-advisory x_refsource_secunia
http://secunia.com/advisories/37805
Third Party Advisory, VDB Entry vdb-entry x_refsource_bid
http://www.securityfocus.com/bid/37452

Scores

EPSS 0.0265
EPSS Percentile 86.0%

Details

CWE
CWE-119
Status published
Products (11)
f5/big-ip_application_security_manager 9.4.4
f5/big-ip_application_security_manager 9.4.5
f5/big-ip_application_security_manager 9.4.6
f5/big-ip_application_security_manager 9.4.7
f5/big-ip_application_security_manager 10.0.0
f5/big-ip_application_security_manager 10.0.1
f5/big-ip_protocol_security_manager 9.4.5
f5/big-ip_protocol_security_manager 9.4.6
f5/big-ip_protocol_security_manager 9.4.7
f5/big-ip_protocol_security_manager 10.0.1
... and 1 more
Published Dec 24, 2009
Tracked Since Feb 18, 2026