cbcvebase.
CVE-2020-5881
published 2020-04-30

CVE-2020-5881: On versions 15.0.0-15.1.0.1, 14.1.0-14.1.2.3, and 13.1.0-13.1.3.3, when the BIG-IP Virtual Edition (VE) is configured with VLAN groups and there are devices…

high7.5CVSS 3.1
AVNACLPRNUINSUCNINAH
On versions 15.0.0-15.1.0.1, 14.1.0-14.1.2.3, and 13.1.0-13.1.3.3, when the BIG-IP Virtual Edition (VE) is configured with VLAN groups and there are devices configured with OSPF connected to it, the Network Device Abstraction Layer (NDAL) Interfaces can lock up and in turn disrupting the communication between the mcpd and tmm processes.

Affected

44 ranges· showing 25
VendorProductVersion rangeFixed in
f5big-ip_aam
f5big-ip_access_policy_manager13.1.0 – 13.1.3.3
f5big-ip_access_policy_manager14.1.0 – 14.1.2.3
f5big-ip_access_policy_manager15.0.0 – 15.1.0.1
f5big-ip_advanced_firewall_manager13.1.0 – 13.1.3.3
f5big-ip_advanced_firewall_manager14.1.0 – 14.1.2.3
f5big-ip_advanced_firewall_manager15.0.0 – 15.1.0.1
f5big-ip_afm
f5big-ip_analytics
f5big-ip_analytics13.1.0 – 13.1.3.3
f5big-ip_analytics14.1.0 – 14.1.2.3
f5big-ip_analytics15.0.0 – 15.1.0.1
f5big-ip_apm
f5big-ip_application_acceleration_manager13.1.0 – 13.1.3.3
f5big-ip_application_acceleration_manager14.1.0 – 14.1.2.3
f5big-ip_application_acceleration_manager15.0.0 – 15.1.0.1
f5big-ip_application_security_manager13.1.0 – 13.1.3.3
f5big-ip_application_security_manager14.1.0 – 14.1.2.3
f5big-ip_application_security_manager15.0.0 – 15.1.0.1
f5big-ip_asm
f5big-ip_dns
f5big-ip_domain_name_system13.1.0 – 13.1.3.3
f5big-ip_domain_name_system14.1.0 – 14.1.2.3
f5big-ip_domain_name_system15.0.0 – 15.1.0.1
f5big-ip_fps