CVE-2017-6163
 
Severity Score
Exploit Likelihood
Affected Versions
Public Exploits
0Exploited in Wild
-Decision
Descriptions
In F5 BIG-IP LTM, AAM, AFM, APM, ASM, Link Controller, PEM, PSM software version 12.0.0 to 12.1.2, 11.6.0 to 11.6.1, 11.4.0 to 11.5.4, when a virtual server uses the standard configuration of HTTP/2 or SPDY profile with Client SSL profile, and the client initiates a number of concurrent streams beyond the advertised limit can cause a disruption of service. Remote client initiating stream beyond the advertised limit can cause a disruption of service. The Traffic Management Microkernel (TMM) data plane is exposed to this issue; the control plane is not exposed.
En F5 BIG-IP LTM, AAM, AFM, APM, ASM, Link Controller, PEM, PSM en versiones de software de la 12.0.0 a la 12.1.2, de la 11.6.0 a la 11.6.1 y de la 11.4.0 a la 11.5.4, cuando un servidor virtual utiliza la configuración estándar de los perfiles SPDY o HTTP/2 con un perfil Client SSL y el cliente inicia un número de transmisiones concurrentes superior al límite establecido, se puede provocar una interrupción del servicio. El cliente remoto que inicia una transmisión más allá del límite establecido puede provocar una interrupción del servicio. El plano de datos del TMM (Traffic Management Kernel) está expuesto a este problema. El plano de control no está expuesto.
CVSS Scores
SSVC
- Decision:-
Timeline
- 2017-02-21 CVE Reserved
- 2017-10-27 CVE Published
- 2023-06-16 EPSS Updated
- 2024-09-16 CVE Updated
- ---------- Exploited in Wild
- ---------- KEV Due Date
- ---------- First Exploit
CWE
- CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer
CAPEC
References (3)
URL | Tag | Source |
---|---|---|
http://www.securityfocus.com/bid/101606 | Third Party Advisory | |
http://www.securitytracker.com/id/1039671 | Third Party Advisory |
URL | Date | SRC |
---|
URL | Date | SRC |
---|
URL | Date | SRC |
---|---|---|
https://support.f5.com/csp/article/K22541983 | 2017-11-16 |
Affected Vendors, Products, and Versions
Vendor | Product | Version | Other | Status | ||||||
---|---|---|---|---|---|---|---|---|---|---|
Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status |
F5 Search vendor "F5" | Big-ip Local Traffic Manager Search vendor "F5" for product "Big-ip Local Traffic Manager" | >= 11.4.0 <= 11.5.3 Search vendor "F5" for product "Big-ip Local Traffic Manager" and version " >= 11.4.0 <= 11.5.3" | - |
Affected
| ||||||
F5 Search vendor "F5" | Big-ip Local Traffic Manager Search vendor "F5" for product "Big-ip Local Traffic Manager" | 11.6.0 Search vendor "F5" for product "Big-ip Local Traffic Manager" and version "11.6.0" | - |
Affected
| ||||||
F5 Search vendor "F5" | Big-ip Local Traffic Manager Search vendor "F5" for product "Big-ip Local Traffic Manager" | 11.6.1 Search vendor "F5" for product "Big-ip Local Traffic Manager" and version "11.6.1" | - |
Affected
| ||||||
F5 Search vendor "F5" | Big-ip Local Traffic Manager Search vendor "F5" for product "Big-ip Local Traffic Manager" | 12.0.0 Search vendor "F5" for product "Big-ip Local Traffic Manager" and version "12.0.0" | - |
Affected
| ||||||
F5 Search vendor "F5" | Big-ip Local Traffic Manager Search vendor "F5" for product "Big-ip Local Traffic Manager" | 12.1.0 Search vendor "F5" for product "Big-ip Local Traffic Manager" and version "12.1.0" | - |
Affected
| ||||||
F5 Search vendor "F5" | Big-ip Local Traffic Manager Search vendor "F5" for product "Big-ip Local Traffic Manager" | 12.1.1 Search vendor "F5" for product "Big-ip Local Traffic Manager" and version "12.1.1" | - |
Affected
| ||||||
F5 Search vendor "F5" | Big-ip Local Traffic Manager Search vendor "F5" for product "Big-ip Local Traffic Manager" | 12.1.2 Search vendor "F5" for product "Big-ip Local Traffic Manager" and version "12.1.2" | - |
Affected
| ||||||
F5 Search vendor "F5" | Big-ip Application Acceleration Manager Search vendor "F5" for product "Big-ip Application Acceleration Manager" | >= 11.4.0 <= 11.5.4 Search vendor "F5" for product "Big-ip Application Acceleration Manager" and version " >= 11.4.0 <= 11.5.4" | - |
Affected
| ||||||
F5 Search vendor "F5" | Big-ip Application Acceleration Manager Search vendor "F5" for product "Big-ip Application Acceleration Manager" | 11.6.0 Search vendor "F5" for product "Big-ip Application Acceleration Manager" and version "11.6.0" | - |
Affected
| ||||||
F5 Search vendor "F5" | Big-ip Application Acceleration Manager Search vendor "F5" for product "Big-ip Application Acceleration Manager" | 11.6.1 Search vendor "F5" for product "Big-ip Application Acceleration Manager" and version "11.6.1" | - |
Affected
| ||||||
F5 Search vendor "F5" | Big-ip Application Acceleration Manager Search vendor "F5" for product "Big-ip Application Acceleration Manager" | 12.0.0 Search vendor "F5" for product "Big-ip Application Acceleration Manager" and version "12.0.0" | - |
Affected
| ||||||
F5 Search vendor "F5" | Big-ip Application Acceleration Manager Search vendor "F5" for product "Big-ip Application Acceleration Manager" | 12.1.0 Search vendor "F5" for product "Big-ip Application Acceleration Manager" and version "12.1.0" | - |
Affected
| ||||||
F5 Search vendor "F5" | Big-ip Application Acceleration Manager Search vendor "F5" for product "Big-ip Application Acceleration Manager" | 12.1.1 Search vendor "F5" for product "Big-ip Application Acceleration Manager" and version "12.1.1" | - |
Affected
| ||||||
F5 Search vendor "F5" | Big-ip Application Acceleration Manager Search vendor "F5" for product "Big-ip Application Acceleration Manager" | 12.1.2 Search vendor "F5" for product "Big-ip Application Acceleration Manager" and version "12.1.2" | - |
Affected
| ||||||
F5 Search vendor "F5" | Big-ip Advanced Firewall Manager Search vendor "F5" for product "Big-ip Advanced Firewall Manager" | >= 11.4.0 <= 11.5.4 Search vendor "F5" for product "Big-ip Advanced Firewall Manager" and version " >= 11.4.0 <= 11.5.4" | - |
Affected
| ||||||
F5 Search vendor "F5" | Big-ip Advanced Firewall Manager Search vendor "F5" for product "Big-ip Advanced Firewall Manager" | 11.6.0 Search vendor "F5" for product "Big-ip Advanced Firewall Manager" and version "11.6.0" | - |
Affected
| ||||||
F5 Search vendor "F5" | Big-ip Advanced Firewall Manager Search vendor "F5" for product "Big-ip Advanced Firewall Manager" | 11.6.1 Search vendor "F5" for product "Big-ip Advanced Firewall Manager" and version "11.6.1" | - |
Affected
| ||||||
F5 Search vendor "F5" | Big-ip Advanced Firewall Manager Search vendor "F5" for product "Big-ip Advanced Firewall Manager" | 12.0.0 Search vendor "F5" for product "Big-ip Advanced Firewall Manager" and version "12.0.0" | - |
Affected
| ||||||
F5 Search vendor "F5" | Big-ip Advanced Firewall Manager Search vendor "F5" for product "Big-ip Advanced Firewall Manager" | 12.1.0 Search vendor "F5" for product "Big-ip Advanced Firewall Manager" and version "12.1.0" | - |
Affected
| ||||||
F5 Search vendor "F5" | Big-ip Advanced Firewall Manager Search vendor "F5" for product "Big-ip Advanced Firewall Manager" | 12.1.1 Search vendor "F5" for product "Big-ip Advanced Firewall Manager" and version "12.1.1" | - |
Affected
| ||||||
F5 Search vendor "F5" | Big-ip Advanced Firewall Manager Search vendor "F5" for product "Big-ip Advanced Firewall Manager" | 12.1.2 Search vendor "F5" for product "Big-ip Advanced Firewall Manager" and version "12.1.2" | - |
Affected
| ||||||
F5 Search vendor "F5" | Big-ip Access Policy Manager Search vendor "F5" for product "Big-ip Access Policy Manager" | >= 11.5.0 <= 11.5.4 Search vendor "F5" for product "Big-ip Access Policy Manager" and version " >= 11.5.0 <= 11.5.4" | - |
Affected
| ||||||
F5 Search vendor "F5" | Big-ip Access Policy Manager Search vendor "F5" for product "Big-ip Access Policy Manager" | 11.6.0 Search vendor "F5" for product "Big-ip Access Policy Manager" and version "11.6.0" | - |
Affected
| ||||||
F5 Search vendor "F5" | Big-ip Access Policy Manager Search vendor "F5" for product "Big-ip Access Policy Manager" | 11.6.1 Search vendor "F5" for product "Big-ip Access Policy Manager" and version "11.6.1" | - |
Affected
| ||||||
F5 Search vendor "F5" | Big-ip Access Policy Manager Search vendor "F5" for product "Big-ip Access Policy Manager" | 12.0.0 Search vendor "F5" for product "Big-ip Access Policy Manager" and version "12.0.0" | - |
Affected
| ||||||
F5 Search vendor "F5" | Big-ip Access Policy Manager Search vendor "F5" for product "Big-ip Access Policy Manager" | 12.1.0 Search vendor "F5" for product "Big-ip Access Policy Manager" and version "12.1.0" | - |
Affected
| ||||||
F5 Search vendor "F5" | Big-ip Access Policy Manager Search vendor "F5" for product "Big-ip Access Policy Manager" | 12.1.1 Search vendor "F5" for product "Big-ip Access Policy Manager" and version "12.1.1" | - |
Affected
| ||||||
F5 Search vendor "F5" | Big-ip Access Policy Manager Search vendor "F5" for product "Big-ip Access Policy Manager" | 12.1.2 Search vendor "F5" for product "Big-ip Access Policy Manager" and version "12.1.2" | - |
Affected
| ||||||
F5 Search vendor "F5" | Big-ip Application Security Manager Search vendor "F5" for product "Big-ip Application Security Manager" | >= 11.5.0 <= 11.5.4 Search vendor "F5" for product "Big-ip Application Security Manager" and version " >= 11.5.0 <= 11.5.4" | - |
Affected
| ||||||
F5 Search vendor "F5" | Big-ip Application Security Manager Search vendor "F5" for product "Big-ip Application Security Manager" | 11.6.0 Search vendor "F5" for product "Big-ip Application Security Manager" and version "11.6.0" | - |
Affected
| ||||||
F5 Search vendor "F5" | Big-ip Application Security Manager Search vendor "F5" for product "Big-ip Application Security Manager" | 11.6.1 Search vendor "F5" for product "Big-ip Application Security Manager" and version "11.6.1" | - |
Affected
| ||||||
F5 Search vendor "F5" | Big-ip Application Security Manager Search vendor "F5" for product "Big-ip Application Security Manager" | 12.0.0 Search vendor "F5" for product "Big-ip Application Security Manager" and version "12.0.0" | - |
Affected
| ||||||
F5 Search vendor "F5" | Big-ip Application Security Manager Search vendor "F5" for product "Big-ip Application Security Manager" | 12.1.0 Search vendor "F5" for product "Big-ip Application Security Manager" and version "12.1.0" | - |
Affected
| ||||||
F5 Search vendor "F5" | Big-ip Application Security Manager Search vendor "F5" for product "Big-ip Application Security Manager" | 12.1.1 Search vendor "F5" for product "Big-ip Application Security Manager" and version "12.1.1" | - |
Affected
| ||||||
F5 Search vendor "F5" | Big-ip Application Security Manager Search vendor "F5" for product "Big-ip Application Security Manager" | 12.1.2 Search vendor "F5" for product "Big-ip Application Security Manager" and version "12.1.2" | - |
Affected
| ||||||
F5 Search vendor "F5" | Big-ip Link Controller Search vendor "F5" for product "Big-ip Link Controller" | >= 11.5.0 <= 11.5.4 Search vendor "F5" for product "Big-ip Link Controller" and version " >= 11.5.0 <= 11.5.4" | - |
Affected
| ||||||
F5 Search vendor "F5" | Big-ip Link Controller Search vendor "F5" for product "Big-ip Link Controller" | 11.6.0 Search vendor "F5" for product "Big-ip Link Controller" and version "11.6.0" | - |
Affected
| ||||||
F5 Search vendor "F5" | Big-ip Link Controller Search vendor "F5" for product "Big-ip Link Controller" | 11.6.1 Search vendor "F5" for product "Big-ip Link Controller" and version "11.6.1" | - |
Affected
| ||||||
F5 Search vendor "F5" | Big-ip Link Controller Search vendor "F5" for product "Big-ip Link Controller" | 12.0.0 Search vendor "F5" for product "Big-ip Link Controller" and version "12.0.0" | - |
Affected
| ||||||
F5 Search vendor "F5" | Big-ip Link Controller Search vendor "F5" for product "Big-ip Link Controller" | 12.1.0 Search vendor "F5" for product "Big-ip Link Controller" and version "12.1.0" | - |
Affected
| ||||||
F5 Search vendor "F5" | Big-ip Link Controller Search vendor "F5" for product "Big-ip Link Controller" | 12.1.1 Search vendor "F5" for product "Big-ip Link Controller" and version "12.1.1" | - |
Affected
| ||||||
F5 Search vendor "F5" | Big-ip Link Controller Search vendor "F5" for product "Big-ip Link Controller" | 12.1.2 Search vendor "F5" for product "Big-ip Link Controller" and version "12.1.2" | - |
Affected
| ||||||
F5 Search vendor "F5" | Big-ip Policy Enforcement Manager Search vendor "F5" for product "Big-ip Policy Enforcement Manager" | >= 11.5.0 <= 11.5.4 Search vendor "F5" for product "Big-ip Policy Enforcement Manager" and version " >= 11.5.0 <= 11.5.4" | - |
Affected
| ||||||
F5 Search vendor "F5" | Big-ip Policy Enforcement Manager Search vendor "F5" for product "Big-ip Policy Enforcement Manager" | 11.6.0 Search vendor "F5" for product "Big-ip Policy Enforcement Manager" and version "11.6.0" | - |
Affected
| ||||||
F5 Search vendor "F5" | Big-ip Policy Enforcement Manager Search vendor "F5" for product "Big-ip Policy Enforcement Manager" | 11.6.1 Search vendor "F5" for product "Big-ip Policy Enforcement Manager" and version "11.6.1" | - |
Affected
| ||||||
F5 Search vendor "F5" | Big-ip Policy Enforcement Manager Search vendor "F5" for product "Big-ip Policy Enforcement Manager" | 12.0.0 Search vendor "F5" for product "Big-ip Policy Enforcement Manager" and version "12.0.0" | - |
Affected
| ||||||
F5 Search vendor "F5" | Big-ip Policy Enforcement Manager Search vendor "F5" for product "Big-ip Policy Enforcement Manager" | 12.1.0 Search vendor "F5" for product "Big-ip Policy Enforcement Manager" and version "12.1.0" | - |
Affected
| ||||||
F5 Search vendor "F5" | Big-ip Policy Enforcement Manager Search vendor "F5" for product "Big-ip Policy Enforcement Manager" | 12.1.1 Search vendor "F5" for product "Big-ip Policy Enforcement Manager" and version "12.1.1" | - |
Affected
| ||||||
F5 Search vendor "F5" | Big-ip Policy Enforcement Manager Search vendor "F5" for product "Big-ip Policy Enforcement Manager" | 12.1.2 Search vendor "F5" for product "Big-ip Policy Enforcement Manager" and version "12.1.2" | - |
Affected
| ||||||
F5 Search vendor "F5" | Big-ip Protocol Security Module Search vendor "F5" for product "Big-ip Protocol Security Module" | > 11.4.0 <= 11.5.4 Search vendor "F5" for product "Big-ip Protocol Security Module" and version " > 11.4.0 <= 11.5.4" | - |
Affected
| ||||||
F5 Search vendor "F5" | Big-ip Protocol Security Module Search vendor "F5" for product "Big-ip Protocol Security Module" | 11.6.0 Search vendor "F5" for product "Big-ip Protocol Security Module" and version "11.6.0" | - |
Affected
| ||||||
F5 Search vendor "F5" | Big-ip Protocol Security Module Search vendor "F5" for product "Big-ip Protocol Security Module" | 11.6.1 Search vendor "F5" for product "Big-ip Protocol Security Module" and version "11.6.1" | - |
Affected
| ||||||
F5 Search vendor "F5" | Big-ip Protocol Security Module Search vendor "F5" for product "Big-ip Protocol Security Module" | 12.0.0 Search vendor "F5" for product "Big-ip Protocol Security Module" and version "12.0.0" | - |
Affected
| ||||||
F5 Search vendor "F5" | Big-ip Protocol Security Module Search vendor "F5" for product "Big-ip Protocol Security Module" | 12.1.0 Search vendor "F5" for product "Big-ip Protocol Security Module" and version "12.1.0" | - |
Affected
| ||||||
F5 Search vendor "F5" | Big-ip Protocol Security Module Search vendor "F5" for product "Big-ip Protocol Security Module" | 12.1.1 Search vendor "F5" for product "Big-ip Protocol Security Module" and version "12.1.1" | - |
Affected
| ||||||
F5 Search vendor "F5" | Big-ip Protocol Security Module Search vendor "F5" for product "Big-ip Protocol Security Module" | 12.1.2 Search vendor "F5" for product "Big-ip Protocol Security Module" and version "12.1.2" | - |
Affected
|