Packet Sequence Issue in F5 BIG-IP Products
CVE-2017-6134

6.5MEDIUM

What is CVE-2017-6134?

In the F5 BIG-IP series, specifically across several versions including 13.0.0, a specific sequence of packets originating from an adjacent network can lead to instability, causing the Traffic Management Microkernel (TMM) to crash. This behavior exposes critical components of the network to disruption, potentially leading to service interruptions and impact on operations for users relying on these products. It is essential for organizations using affected F5 BIG-IP products to assess and apply available patches to mitigate this risk.

Affected Version(s)

BIG-IP LTM, AAM, AFM, Analytics, APM, ASM, DNS, GTM, Link Controller, PEM, WebSafe 13.0.0

BIG-IP LTM, AAM, AFM, Analytics, APM, ASM, DNS, GTM, Link Controller, PEM, WebSafe 12.1.0 - 12.1.2

BIG-IP LTM, AAM, AFM, Analytics, APM, ASM, DNS, GTM, Link Controller, PEM, WebSafe 11.5.1 - 11.6.1

References

CVSS V3.1

Score:
6.5
Severity:
MEDIUM
Confidentiality:
None
Integrity:
None
Availability:
None
Attack Vector:
Adjacent Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.