PT-2020-16776 · F5 · Big-Ip Afm

Published

2020-12-24

·

Updated

2020-12-28

·

CVE-2020-27714

CVSS v3.1

7.5

High

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions BIG-IP AFM versions 13.1.0 through 13.1.3.5 BIG-IP AFM versions 14.1.0 through 14.1.3 BIG-IP AFM versions 15.1.0 through 15.1.0.5
Description When a Protocol Inspection Profile is attached to a FastL4 virtual server with the protocol field configured to either Other or All Protocols, the TMM may experience a restart if the profile processes non-TCP traffic.
Recommendations For BIG-IP AFM versions 13.1.0 through 13.1.3.5, consider reconfiguring the Protocol Inspection Profile to only process TCP traffic until a fix is available. For BIG-IP AFM versions 14.1.0 through 14.1.3, consider reconfiguring the Protocol Inspection Profile to only process TCP traffic until a fix is available. For BIG-IP AFM versions 15.1.0 through 15.1.0.5, consider reconfiguring the Protocol Inspection Profile to only process TCP traffic until a fix is available.

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-2020-27714

Affected Products

Big-Ip Afm