CVE-2017-6134

Severity
6.5MEDIUM
EPSS
1.4%
top 19.50%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedDec 21
Latest updateMay 14

Description

In F5 BIG-IP LTM, AAM, AFM, Analytics, APM, ASM, DNS, GTM, Link Controller, PEM and WebSafe software version 13.0.0, 12.1.0 - 12.1.2 and 11.5.1 - 11.6.1, an undisclosed sequence of packets, sourced from an adjacent network may cause TMM to crash.

CVSS vector

CVSS:3.0/AV:A/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:HExploitability: 2.8 | Impact: 3.6

Affected Packages11 packages

NVDf5/big-ip_link_controller11.5.111.6.1+2
NVDf5/big-ip_websafe11.5.111.6.1+2
NVDf5/big-ip_analytics11.5.111.6.1+2
NVDf5/big-ip_dns11.5.111.6.1+2
NVDf5/big-ip_access_policy_manager11.5.111.6.1+2

🔴Vulnerability Details

2
GHSA
GHSA-v7g4-m33q-4jcc: In F5 BIG-IP LTM, AAM, AFM, Analytics, APM, ASM, DNS, GTM, Link Controller, PEM and WebSafe software version 132022-05-14
CVEList
CVE-2017-6134: In F5 BIG-IP LTM, AAM, AFM, Analytics, APM, ASM, DNS, GTM, Link Controller, PEM and WebSafe software version 132017-12-21

📋Vendor Advisories

1
F5
CVE-2017-6134: In F5 BIG-IP LTM, AAM, AFM, Analytics, APM, ASM, DNS, GTM, Link Controller, PEM and WebSafe software version 132017-12-21
CVE-2017-6134 (MEDIUM CVSS 6.5) | In F5 BIG-IP LTM | cvebase.io