In F5 BIG-IP LTM, AAM, AFM, Analytics, APM, ASM, DNS, GTM, Link Controller, PEM and Websafe software version 13.0.0, 12.0.0 to 12.1.2, 11.6.0 to 11.6.1 and 11.5.0 - 11.5.4, an undisclosed sequence of packets sent to BIG-IP High Availability state mirror listeners (primary and/or secondary IP) may cause TMM to restart
Published Dec 21, 2017
7.5
HIGHCVSS 3.0
EPSS 2.54%
Description
In F5 BIG-IP LTM, AAM, AFM, Analytics, APM, ASM, DNS, GTM, Link Controller, PEM and Websafe software version 13.0.0, 12.0.0 to 12.1.2, 11.6.0 to 11.6.1 and 11.5.0 - 11.5.4, an undisclosed sequence of packets sent to BIG-IP High Availability state mirror listeners (primary and/or secondary IP) may cause TMM to restart.
Affected products
-
- Version 11.5.0 - 11.5.4StatusaffectedConstraints-
- Version 11.6.0 - 11.6.1StatusaffectedConstraints-
- Version 12.0.0 - 12.1.2StatusaffectedConstraints-
- Version 13.0.0StatusaffectedConstraints-
- Version
Default status is the baseline for the product, each version can override it (e.g. patched versions marked unaffected).
| Vendor | Product | Default status | Versions | |||||||||||||||
|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
| F5 Networks, Inc. | n/a | n/a |
|
Configuration 1
- ≥ 11.6.0 · ≤ 11.6.1
- ≥ 12.0.0 · ≤ 12.1.2
- 11.5.0
- 11.5.1
- 11.5.2
- 11.5.3
- 11.5.4
- 13.0.0
Configuration 2
- ≥ 11.6.0 · ≤ 11.6.1
- ≥ 12.0.0 · ≤ 12.1.2
- 11.5.0
- 11.5.1
- 11.5.2
- 11.5.3
- 11.5.4
- 13.0.0
Configuration 3
- ≥ 11.6.0 · ≤ 11.6.1
- ≥ 12.0.0 · ≤ 12.1.2
- 11.5.0
- 11.5.1
- 11.5.2
- 11.5.3
- 11.5.4
- 13.0.0
Configuration 4
- ≥ 11.6.0 · ≤ 11.6.1
- ≥ 12.0.0 · ≤ 12.1.2
- 11.5.0
- 11.5.1
- 11.5.2
- 11.5.3
- 11.5.4
- 13.0.0
Configuration 5
- ≥ 11.6.0 · ≤ 11.6.1
- ≥ 12.0.0 · ≤ 12.1.2
- 11.5.0
- 11.5.1
- 11.5.2
- 11.5.3
- 11.5.4
- 13.0.0
Configuration 6
- ≥ 11.6.0 · ≤ 11.6.1
- ≥ 12.0.0 · ≤ 12.1.2
- 11.5.0
- 11.5.1
- 11.5.2
- 11.5.3
- 11.5.4
- 13.0.0
Configuration 7
- ≥ 11.6.0 · ≤ 11.6.1
- ≥ 12.0.0 · ≤ 12.1.2
- 11.5.0
- 11.5.1
- 11.5.2
- 11.5.3
- 11.5.4
- 13.0.0
Configuration 8
- ≥ 11.6.0 · ≤ 11.6.1
- ≥ 12.0.0 · ≤ 12.1.2
- 11.5.0
- 11.5.1
- 11.5.2
- 11.5.3
- 11.5.4
- 13.0.0
Configuration 9
- ≥ 11.6.0 · ≤ 11.6.1
- ≥ 12.0.0 · ≤ 12.1.2
- 11.5.0
- 11.5.1
- 11.5.2
- 11.5.3
- 11.5.4
- 13.0.0
Configuration 10
- ≥ 11.6.0 · ≤ 11.6.1
- ≥ 12.0.0 · ≤ 12.1.2
- 11.5.0
- 11.5.1
- 11.5.2
- 11.5.3
- 11.5.4
- 13.0.0
Configuration 11
- ≥ 11.6.0 · ≤ 11.6.1
- ≥ 12.0.0 · ≤ 12.1.2
- 11.5.0
- 11.5.1
- 11.5.2
- 11.5.3
- 11.5.4
- 13.0.0
No data.
No Red Hat product state for this CVE.
No package ranges for this CVE.
Remediation
No remediation recorded yet.
References (3)
- http://www.securityfocus.com/bid/102333 vdb-entryx_refsource_BIDThird Party AdvisoryVDB Entry
- http://www.securitytracker.com/id/1040049 vdb-entryx_refsource_SECTRACKThird Party AdvisoryVDB Entry
- https://support.f5.com/csp/article/K12044607 x_refsource_CONFIRMIssue TrackingMitigationVendor Advisory
| Link | Providers | Tags |
|---|---|---|
| http://www.securityfocus.com/bid/102333 | vdb-entryx_refsource_BIDThird Party AdvisoryVDB Entry | |
| http://www.securitytracker.com/id/1040049 | vdb-entryx_refsource_SECTRACKThird Party AdvisoryVDB Entry | |
| https://support.f5.com/csp/article/K12044607 | x_refsource_CONFIRMIssue TrackingMitigationVendor Advisory |
Change history (0)
No recorded changes yet.