Description On F5 BIG-IP systems running 13.0.0, 12.1.0 - 12.1.3.1, or 11.6.1 - 11.6.2, every Multipath TCP (MCTCP) connection established leaks a small amount of memory. Virtual server using TCP profile with Multipath TCP (MCTCP) feature enabled will be affected by this issue.
CVSS vector CVSS:3.0/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:H Exploitability: 2.2 | Impact: 3.6 Attack Vector: Network
Complexity: High
Privileges: None
User Interaction: None
Scope: Unchanged
Confidentiality: None
Integrity: None
Availability: High
Affected Packages13 packages Show 8 more packages
🔴 Vulnerability Details2 GHSA GHSA-6jjh-35m4-xm42: On F5 BIG-IP systems running 13 ↗ 2022-05-14 ▶ CVEList CVE-2018-5500: On F5 BIG-IP systems running 13 ↗ 2018-03-01 ▶
💥 Exploits & PoCs2 Exploit-DB Cisco Adaptive Security Appliance - Path Traversal ↗ 2018-06-28 ▶ Exploit-DB DualDesk 20 - 'Proxy.exe' Denial of Service ↗ 2018-03-02 ▶
📋 Vendor Advisories5 Cisco Cisco NX-OS Software for Nexus 5500, 5600, and 6000 Series Switches Precision Time Protocol Denial of Service Vulnerability ↗ 2018-10-17 ▶ Cisco Cisco IOS XE Software and Cisco ASA 5500-X Series Adaptive Security Appliance IPsec Denial of Service Vulnerability ↗ 2018-09-26 ▶ Cisco Cisco Wireless LAN Controller IP Fragment Reassembly Denial of Service Vulnerability ↗ 2018-05-02 ▶ Cisco Cisco 5500 and 8500 Series Wireless LAN Controller Information Disclosure Vulnerability ↗ 2018-05-02 ▶ F5 CVE-2018-5500: On F5 BIG-IP systems running 13 ↗ 2018-03-01 ▶