[Forgot Password]
Login  Register Subscribe

23631

 
 

126951

 
 

99536

 
 

909

 
 

80128

 
 

109

Paid content will be excluded from the download.


Download | Alert*
CVE
view XML

CVE-2017-6162

Date: (C)2017-10-30   (M)2017-12-07 


In F5 BIG-IP LTM, AAM, AFM, Analytics, APM, ASM, DNS, Edge Gateway, GTM, Link Controller, PEM, Websafe software version 12.0.0 to 12.1.2, 11.6.0 to 11.6.1, 11.4.0 to 11.5.4, 11.2.1, in some cases TMM may crash when processing TCP traffic. This vulnerability affects TMM via a virtual server configured with TCP profile. Traffic processing is disrupted while Traffic Management Microkernel (TMM) restarts. If the affected BIG-IP system is configured to be part of a device group, it will trigger a failover to the peer device.

CVSS Score: 4.3Access Vector: NETWORK
Exploit Score: 8.6Access Complexity: MEDIUM
Impact Score: 2.9Authentication: NONE
 Confidentiality: NONE
 Integrity: NONE
 Availability: PARTIAL





Reference:
BID-101635
SECTRACK-1039673
https://support.f5.com/csp/article/K13421245

CPE    61
cpe:/a:f5:big-ip_access_policy_manager:11.5.3
cpe:/a:f5:big-ip_access_policy_manager:11.5.2
cpe:/a:f5:big-ip_application_acceleration_manager:12.0.0
cpe:/a:f5:big-ip_policy_enforcement_manager:11.5.1
...
CWE    1
CWE-119

© 2013 SecPod Technologies