PT-2017-16906 · F5 · F5 Big-Ip

Published

2017-12-21

·

Updated

2018-01-12

·

CVE-2017-6134

CVSS v3.1

6.5

Medium

VectorAV:A/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions F5 BIG-IP software versions 11.5.1 through 11.6.1 F5 BIG-IP software versions 12.1.0 through 12.1.2 F5 BIG-IP software version 13.0.0
Description The issue arises when an undisclosed sequence of packets from an adjacent network causes TMM to crash in F5 BIG-IP LTM, AAM, AFM, Analytics, APM, ASM, DNS, GTM, Link Controller, PEM, and WebSafe software.
Recommendations For F5 BIG-IP software versions 11.5.1 through 11.6.1, update to a version that is not affected by this issue. For F5 BIG-IP software versions 12.1.0 through 12.1.2, update to a version that is not affected by this issue. For F5 BIG-IP software version 13.0.0, update to a version that is not affected by this issue.

Fix

RCE

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2017-6134

Affected Products

F5 Big-Ip