BIG-IP LTM, AAM, AFM, Analytics, APM, ASM, Link Controller, and PEM 12.0.0 before HF1, when the TCP profile for a virtual server is configured with Congestion Metrics Cache enabled, allow remote attackers to cause a denial of service (Traffic Management Microkernel (TMM) restart) via crafted ICMP packets, related to Path MTU (PMTU) discovery.
2016-01-12T20:59:01.370
2025-04-12T10:46:40.837
Deferred
CVSSv3.0: 3.7 (LOW)
AV:N/AC:M/Au:N/C:N/I:N/A:P
8.6
2.9
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Application | f5 | big-ip_analytics | 12.0.0 | Yes |
Application | f5 | big-ip_application_acceleration_manager | 12.0.0 | Yes |
Application | f5 | big-ip_link_controller | 12.0.0 | Yes |
Application | f5 | big-ip_advanced_firewall_manager | 12.0.0 | Yes |
Application | f5 | big-ip_policy_enforcement_manager | 12.0.0 | Yes |
Application | f5 | big-ip_local_traffic_manager | 12.0.0 | Yes |
Application | f5 | big-ip_access_policy_manager | 12.0.0 | Yes |
Application | f5 | big-ip_application_security_manager | 12.0.0 | Yes |