#VU66095 Out-of-bounds read in BIG-IP - CVE-2022-33968
Published: August 4, 2022
BIG-IP
F5 Networks
Description
The vulnerability allows a remote attacker to gain access to potentially sensitive information.
The vulnerability exists due to a boundary condition when handling NTLM packets with configured LTM monitor or APM SSO. A remote attacker can send a specially crafted request to the system, trigger an out-of-bounds read error and read contents of memory on the system.