← Back

CVE-2019-6629

nvd nist
Published: Jul 3, 2019Modified: Nov 21, 2024

JSON object

Loading...
7.5
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
Exploitability: 3.9 / Impact: 3.6
Source: NVD

Description

On BIG-IP 14.1.0-14.1.0.5, undisclosed SSL traffic to a virtual server configured with a Client SSL profile may cause TMM to fail and restart. The Client SSL profile must have session tickets enabled and use DHE cipher suites to be affected. This only impacts the data plane, there is no impact to the control plane.

Affected (13)

13 products
Big Ip Local Traffic Manager
Big Ip Advanced Firewall Manager
Big Ip Analytics
Big Ip Access Policy Manager
Big Ip Domain Name System
Big Ip Edge Gateway
Big Ip Global Traffic Manager
Big Ip Link Controller
Big Ip Policy Enforcement Manager
Big Ip Webaccelerator
Big Ip Websafe
Configuration A
1 vulnerable
Vulnerable SoftwareAffected Versions
From 14.1.0.1 to 14.1.0.5
Configuration B
1 vulnerable
Vulnerable SoftwareAffected Versions
From 14.1.0.1 to 14.1.0.5
Configuration C
1 vulnerable
Vulnerable SoftwareAffected Versions
From 14.1.0.1 to 14.1.0.5
Configuration D
1 vulnerable
Vulnerable SoftwareAffected Versions
From 14.1.0.1 to 14.1.0.5
Configuration E
1 vulnerable
Vulnerable SoftwareAffected Versions
From 14.1.0.1 to 14.1.0.5
Configuration F
1 vulnerable
Vulnerable SoftwareAffected Versions
From 14.1.0.1 to 14.1.0.5
Configuration G
1 vulnerable
Vulnerable SoftwareAffected Versions
From 14.1.0.1 to 14.1.0.5
Configuration H
1 vulnerable
Vulnerable SoftwareAffected Versions
From 14.1.0.1 to 14.1.0.5
Configuration I
1 vulnerable
Vulnerable SoftwareAffected Versions
From 14.1.0.1 to 14.1.0.5
Configuration J
1 vulnerable
Vulnerable SoftwareAffected Versions
From 14.1.0.1 to 14.1.0.5
Configuration K
1 vulnerable
Vulnerable SoftwareAffected Versions
From 14.1.0.1 to 14.1.0.5
Configuration L
1 vulnerable
Vulnerable SoftwareAffected Versions
From 14.1.0.1 to 14.1.0.5
Configuration M
1 vulnerable
Vulnerable SoftwareAffected Versions
From 14.1.0.1 to 14.1.0.5

References (4)

Timeline

No history available yet.