CVE-2020-27720
published 2020-12-24CVE-2020-27720: On BIG-IP LTM/CGNAT version 16.0.0-16.0.0.1, 15.1.0-15.1.0.5, 14.1.0-14.1.3, and 13.1.0-13.1.3.5, when processing NAT66 traffic with Port Block Allocation…
PriorityP339high7.5CVSS 3.1
AVNACLPRNUINSUCNINAH
EPSS
1.42%
69.9th percentile
On BIG-IP LTM/CGNAT version 16.0.0-16.0.0.1, 15.1.0-15.1.0.5, 14.1.0-14.1.3, and 13.1.0-13.1.3.5, when processing NAT66 traffic with Port Block Allocation (PBA) mode and SP-DAG enabled, and dag-ipv6-prefix-len configured with a value less than the default of 128, an undisclosed traffic pattern may cause the Traffic Management Microkernel (TMM) to restart.
Affected
11 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| big-ip_ltm | cgnat | — | — |
| f5 | big-ip_carrier-grade_nat | 13.1.0 – 13.1.3 | — |
| f5 | big-ip_carrier-grade_nat | >= 14.1.0 < 14.1.3.1 | 14.1.3.1 |
| f5 | big-ip_carrier-grade_nat | >= 15.1.0 < 15.1.1 | 15.1.1 |
| f5 | big-ip_carrier-grade_nat | >= 16.0.0 < 16.0.1 | 16.0.1 |
| f5 | big-ip_cgnat | — | — |
| f5 | big-ip_local_traffic_manager | 13.1.0 – 13.1.3 | — |
| f5 | big-ip_local_traffic_manager | >= 14.1.0 < 14.1.3.1 | 14.1.3.1 |
| f5 | big-ip_local_traffic_manager | >= 15.1.0 < 15.1.1 | 15.1.1 |
| f5 | big-ip_local_traffic_manager | >= 16.0.0 < 16.0.1 | 16.0.1 |
| f5 | big-ip_ltm | — | — |
CVSS provenance
nvdv3.17.5HIGHCVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
nvdv2.04.3MEDIUMAV:N/AC:M/Au:N/C:N/I:N/A:P
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
F5
CVE-2020-27720: On BIG-IP LTM/CGNAT version 16
vendor_f5·2020-12-24·CVSS 7.5
CVE-2020-27720 [HIGH] CVE-2020-27720: On BIG-IP LTM/CGNAT version 16
CVE-2020-27720: On BIG-IP LTM/CGNAT version 16
On BIG-IP LTM/CGNAT version 16.0.0-16.0.0.1, 15.1.0-15.1.0.5, 14.1.0-14.1.3, and 13.1.0-13.1.3.5, when processing NAT66 traffic with Port Block Allocation (PBA) mode and SP-DAG enabled, and dag-ipv6-prefix-len configured with a value less than the default of 128, an undisclosed traffic pattern may cause the Traffic Management Microkernel (TMM) to restart.
Affected Products: BIG-IP CGNAT, BIG-IP LTM
Affected Versions: 13.1.0 - 13.1.3; 14.1.0 - 14.1.3.1; 15.1.0 - 15.1.1; 16.0.0 - 16.0.1
F5 Advisory Articles: K04048104
F5 References: https://support.f5.com/csp/article/K04048104
GHSA
GHSA-hp39-4vrr-9cjg: On BIG-IP LTM/CGNAT version 16
ghsa_unreviewed·2022-05-24
CVE-2020-27720 [HIGH] GHSA-hp39-4vrr-9cjg: On BIG-IP LTM/CGNAT version 16
On BIG-IP LTM/CGNAT version 16.0.0-16.0.0.1, 15.1.0-15.1.0.5, 14.1.0-14.1.3, and 13.1.0-13.1.3.5, when processing NAT66 traffic with Port Block Allocation (PBA) mode and SP-DAG enabled, and dag-ipv6-prefix-len configured with a value less than the default of 128, an undisclosed traffic pattern may cause the Traffic Management Microkernel (TMM) to restart.
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
2020-12-24
Published