← Back

CVE-2013-6016

nvd nist
Published: Oct 26, 2013Modified: Apr 29, 2026

JSON object

Loading...
7.8
Vector
AV:N/AC:L/Au:N/C:N/I:N/A:C
Exploitability: 10.0 / Impact: 6.9
Source: NVD

Description

The Traffic Management Microkernel (TMM) in F5 BIG-IP LTM, APM, ASM, Edge Gateway, GTM, Link Controller, and WOM 10.0.0 through 10.2.2 and 11.0.0; Analytics 11.0.0; PSM 9.4.0 through 9.4.8, 10.0.0 through 10.2.4, and 11.0.0 through 11.4.1; and WebAccelerator 9.4.0 through 9.4.8, 10.0.0 through 10.2.4, and 11.0.0 through 11.3.0 might change a TCP connection to the ESTABLISHED state before receiving the ACK packet, which allows remote attackers to cause a denial of service (SIGFPE or assertion failure and TMM restart) via unspecified vectors.

Affected (86)

9 products
Big Ip Global Traffic Manager
Big Ip Webaccelerator
Big Ip Local Traffic Manager
Big Ip Access Policy Manager
Big Ip Wan Optimization Manager
Big Ip Edge Gateway
Big Ip Protocol Security Module
Big Ip Link Controller
Configuration A
7 vulnerable
Vulnerable SoftwareAffected Versions
F5
Version 10.0.0
Version 10.0.1
Version 10.1.0
Version 10.2.0
Version 10.2.1
Version 10.2.2
Version 11.0.0
Configuration B
22 vulnerable
Vulnerable SoftwareAffected Versions
F5
Version 10.0.0
Version 10.0.1
Version 10.1.0
Version 10.2.0
Version 10.2.1
Version 10.2.2
Version 10.2.3
Version 10.2.4
Version 11.0.0
Version 11.1.0
Version 11.2.0
Version 11.2.1
Version 11.3.0
Version 9.4.0
Version 9.4.1
Version 9.4.2
Version 9.4.3
Version 9.4.4
Version 9.4.5
Version 9.4.6
Version 9.4.7
Version 9.4.8
Configuration C
7 vulnerable
Vulnerable SoftwareAffected Versions
F5
Version 10.0.0
Version 10.0.1
Version 10.1.0
Version 10.2.0
Version 10.2.1
Version 10.2.2
Version 11.0.0
Configuration D
7 vulnerable
Configuration E
5 vulnerable
Vulnerable SoftwareAffected Versions
F5
Version 10.1.0
Version 10.2.0
Version 10.2.1
Version 10.2.2
Version 11.0.0
Configuration F
7 vulnerable
Configuration G
5 vulnerable
Vulnerable SoftwareAffected Versions
F5
Version 10.1.0
Version 10.2.0
Version 10.2.1
Version 10.2.2
Version 11.0.0
Configuration H
19 vulnerable
Configuration I
7 vulnerable
Vulnerable SoftwareAffected Versions
F5
Version 10.0.0
Version 10.0.1
Version 10.1.0
Version 10.2.0
Version 10.2.1
Version 10.2.2
Version 11.0.0

References (8)

Source: cret@cert.org
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108

Timeline

No history available yet.