CVE-2017-6136
5.9
Vector
CVSS:3.0/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:H
Exploitability: 2.2 / Impact: 3.6
Source: NVD
Description
In F5 BIG-IP LTM, AAM, AFM, Analytics, APM, ASM, DNS, GTM, Link Controller, PEM and WebSafe software version 13.0.0 and 12.0.0 - 12.1.2, undisclosed traffic patterns sent to BIG-IP virtual servers, with the TCP Fast Open and Tail Loss Probe options enabled in the associated TCP profile, may cause a disruption of service to the Traffic Management Microkernel (TMM).
Affected (22)
Products: F5: Big Ip Local Traffic Manager, Big Ip Application Acceleration Manager, Big Ip Advanced Firewall Manager, Big Ip Analytics, Big Ip Access Policy Manager, Big Ip Application Security Manager, Big Ip Dns, Big Ip Global Traffic Manager, Big Ip Link Controller, Big Ip Policy Enforcement Manager, Big Ip Websafe
Configuration A
| Vulnerable Software | Affected Versions |
|---|---|
| From 12.1.0 to 12.1.2 |
Configuration B
| Vulnerable Software | Affected Versions |
|---|---|
| From 12.1.0 to 12.1.2 |
Configuration C
| Vulnerable Software | Affected Versions |
|---|---|
| From 12.1.0 to 12.1.2 |
Configuration D
| Vulnerable Software | Affected Versions |
|---|---|
| From 12.1.0 to 12.1.2 |
Configuration E
| Vulnerable Software | Affected Versions |
|---|---|
| From 12.1.0 to 12.1.2 |
Configuration F
| Vulnerable Software | Affected Versions |
|---|---|
| From 12.1.0 to 12.1.2 |
Configuration G
| Vulnerable Software | Affected Versions |
|---|---|
| From 12.1.0 to 12.1.2 |
Configuration H
| Vulnerable Software | Affected Versions |
|---|---|
| From 12.1.0 to 12.1.2 |
Configuration I
| Vulnerable Software | Affected Versions |
|---|---|
| From 12.1.0 to 12.1.2 |
Configuration J
| Vulnerable Software | Affected Versions |
|---|---|
| From 12.1.0 to 12.1.2 |
Configuration K
| Vulnerable Software | Affected Versions |
|---|---|
| From 12.1.0 to 12.1.2 |
References (4)
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party AdvisoryVDB Entry
Source: af854a3a-2127-422b-91ae-364da2661108
Issue TrackingVendor Advisory
Timeline
No history available yet.