← Back

CVE-2019-6682

nvd nist
Published: Dec 23, 2019Modified: Nov 21, 2024

JSON object

Loading...
7.5
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
Exploitability: 3.9 / Impact: 3.6
Source: NVD

Description

On versions 15.0.0-15.0.1.1, 14.0.0-14.1.2.2, 13.1.0-13.1.3.1, 12.1.0-12.1.5, and 11.5.2-11.6.5.1, the BIG-IP ASM system may consume excessive resources when processing certain types of HTTP responses from the origin web server. This vulnerability is only known to affect resource-constrained systems in which the security policy is configured with response-side features, such as Data Guard or response-side learning.

Affected (5)

1 product
Configuration A
5 vulnerable
Vulnerable SoftwareAffected Versions
F5
From 11.5.2 to 11.6.5
From 12.1.0 to 12.1.5
From 13.1.0 to 13.1.3.2
From 14.1.0 to 14.1.2.3
From 15.0.0 to 15.1.0

References (2)

Source: f5sirt@f5.com
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory

Timeline

No history available yet.