CVE-2017-6166
22.11.2017, 16:29
In BIG-IP LTM, AAM, AFM, Analytics, APM, ASM, DNS, Link Controller, PEM, and WebSafe software 12.0.0 to 12.1.1, in some cases the Traffic Management Microkernel (TMM) may crash when processing fragmented packets. This vulnerability affects TMM through a virtual server configured with a FastL4 profile. Traffic processing is disrupted while TMM restarts. If the affected BIG-IP system is configured as part of a device group, it will trigger a failover to the peer device.Enginsight
Vendor | Product | Version |
---|---|---|
f5 | big-ip_afm | 12.0.0 ≤ 𝑥 ≤ 12.1.1 |
f5 | big-ip_analytics | 12.0.0 ≤ 𝑥 ≤ 12.1.1 |
f5 | big-ip_apm | 12.0.0 ≤ 𝑥 ≤ 12.1.1 |
f5 | big-ip_application_acceleration_manager | 12.0.0 ≤ 𝑥 ≤ 12.1.1 |
f5 | big-ip_asm | 12.0.0 ≤ 𝑥 ≤ 12.1.1 |
f5 | big-ip_dns | 12.0.0 ≤ 𝑥 ≤ 12.1.1 |
f5 | big-ip_link_controller | 12.0.0 ≤ 𝑥 ≤ 12.1.1 |
f5 | big-ip_ltm | 12.0.0 ≤ 𝑥 ≤ 12.1.1 |
f5 | big-ip_pem | 12.0.0 ≤ 𝑥 ≤ 12.1.1 |
f5 | f5_websafe | 12.0.0 ≤ 𝑥 ≤ 12.1.1 |
f5 | linerate | 2.5.0 ≤ 𝑥 ≤ 2.6.2 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration