CVE-2018-15318
published 2018-10-31CVE-2018-15318: In BIG-IP 14.0.0-14.0.0.2, 13.1.0.4-13.1.1.1, or 12.1.3.4-12.1.3.6, If an MPTCP connection receives an abort signal while the initial flow is not the primary…
PriorityP336high7.5CVSS 3.0
AVNACLPRNUINSUCNINAH
EPSS
1.34%
68.2th percentile
In BIG-IP 14.0.0-14.0.0.2, 13.1.0.4-13.1.1.1, or 12.1.3.4-12.1.3.6, If an MPTCP connection receives an abort signal while the initial flow is not the primary flow, the initial flow will remain after the closing procedure is complete. TMM may restart and produce a core file as a result of this condition.
Affected
52 ranges· showing 25
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| f5 | big-ip_aam | — | — |
| f5 | big-ip_access_policy_manager | 12.1.3.4 – 12.1.3.6 | — |
| f5 | big-ip_access_policy_manager | 13.0.0 – 13.1.1.1 | — |
| f5 | big-ip_access_policy_manager | 14.0.0 – 14.0.0.2 | — |
| f5 | big-ip_advanced_firewall_manager | 12.1.3.4 – 12.1.3.6 | — |
| f5 | big-ip_advanced_firewall_manager | 13.0.0 – 13.1.1.1 | — |
| f5 | big-ip_advanced_firewall_manager | 14.0.0 – 14.0.0.2 | — |
| f5 | big-ip_afm | — | — |
| f5 | big-ip_analytics | — | — |
| f5 | big-ip_analytics | 12.1.3.4 – 12.1.3.6 | — |
| f5 | big-ip_analytics | 13.0.0 – 13.1.1.1 | — |
| f5 | big-ip_analytics | 14.0.0 – 14.0.0.2 | — |
| f5 | big-ip_apm | — | — |
| f5 | big-ip_application_acceleration_manager | 12.1.3.4 – 12.1.3.6 | — |
| f5 | big-ip_application_acceleration_manager | 13.0.0 – 13.1.1.1 | — |
| f5 | big-ip_application_acceleration_manager | 14.0.0 – 14.0.0.2 | — |
| f5 | big-ip_dns | — | — |
| f5 | big-ip_domain_name_system | 12.1.3.4 – 12.1.3.6 | — |
| f5 | big-ip_domain_name_system | 13.0.0 – 13.1.1.1 | — |
| f5 | big-ip_domain_name_system | 14.0.0 – 14.0.0.2 | — |
| f5 | big-ip_edge_gateway | — | — |
| f5 | big-ip_edge_gateway | 12.1.3.4 – 12.1.3.6 | — |
| f5 | big-ip_edge_gateway | 13.0.0 – 13.1.1.1 | — |
| f5 | big-ip_edge_gateway | 14.0.0 – 14.0.0.2 | — |
| f5 | big-ip_fps | — | — |
CVSS provenance
nvdv3.07.5HIGHCVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
nvdv2.07.8HIGHAV:N/AC:L/Au:N/C:N/I:N/A:C
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-fp95-3grv-5vhw: In BIG-IP 14
ghsa_unreviewed·2022-05-14
CVE-2018-15318 [HIGH] CWE-20 GHSA-fp95-3grv-5vhw: In BIG-IP 14
In BIG-IP 14.0.0-14.0.0.2, 13.1.0.4-13.1.1.1, or 12.1.3.4-12.1.3.6, If an MPTCP connection receives an abort signal while the initial flow is not the primary flow, the initial flow will remain after the closing procedure is complete. TMM may restart and produce a core file as a result of this condition.
F5
CVE-2018-15318: In BIG-IP 14
vendor_f5·2018-10-31·CVSS 7.5
CVE-2018-15318 [HIGH] CWE-20 CVE-2018-15318: In BIG-IP 14
CVE-2018-15318: In BIG-IP 14
In BIG-IP 14.0.0-14.0.0.2, 13.1.0.4-13.1.1.1, or 12.1.3.4-12.1.3.6, If an MPTCP connection receives an abort signal while the initial flow is not the primary flow, the initial flow will remain after the closing procedure is complete. TMM may restart and produce a core file as a result of this condition.
Affected Products: BIG-IP AAM, BIG-IP AFM, BIG-IP APM, BIG-IP Analytics, BIG-IP DNS, BIG-IP Edge Gateway, BIG-IP FPS, BIG-IP GTM, BIG-IP LTM, BIG-IP Link Controller, BIG-IP PEM, BIG-IP WebAccelerator, Big-Ip Protocol Security Module
Affected Versions: 12.1.3.4 - 12.1.3.6; 13.0.0 - 13.1.1.1; 14.0.0 - 14.0.0.2
F5 Advisory Articles: K16248201
F5 References: https://support.f5.com/csp/article/K16248201
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
2018-10-31
Published