Last Modified: May 29, 2024
Affected Product(s):
BIG-IP ASM
Fixed In:
17.0.0, 16.1.2.2, 15.1.6.1, 14.1.5
Opened: Dec 21, 2021 Severity: 2-Critical Related Article:
K22251611
Under certain condition, ASM may not match signatures as expected.
Signatures not matched as expected.
- base64 violations not configured for blocking
Illegal base64 value violation should be set to blocking. This way if Base64 decoding fails the requests gets blocked.
ASM now processes signature as expected.