ZeroHour

CVE-2017-6137

CVSS 3.0
5.9 medium
EPSS
1%p63
Published
()
Modified
Description

In F5 BIG-IP LTM, AAM, AFM, Analytics, APM, ASM, DNS, Edge Gateway, GTM, Link Controller, PEM, PSM, WebAccelerator, and WebSafe 11.6.1 HF1, 12.0.0 HF3, 12.0.0 HF4, and 12.1.0 through 12.1.2, undisclosed traffic patterns received while software SYN cookie protection is engaged may cause a disruption of service to the Traffic Management Microkernel (TMM) on specific platforms and configurations.

Vendors
f5
Products
big-ip local traffic manager, big-ip application acceleration manager, big-ip advanced firewall manager, big-ip analytics, big-ip access policy manager, big-ip application security manager, big-ip domain name system, big-ip global traffic manager, big-ip link controller, big-ip policy enforcement manager, big-ip websafe
Vector
CVSS:3.0/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:H

In the news

No ingested article mentions this CVE yet.