Virtual servers in F5 BIG-IP 11.5.4, when SSL profiles are enabled, allow remote attackers to cause a denial of service (resource consumption and Traffic Management Microkernel restart) via an SSL alert during the handshake.
2016-06-07T18:59:04.603
2025-04-12T10:46:40.837
Deferred
CVSSv3.0: 7.5 (HIGH)
AV:N/AC:L/Au:N/C:N/I:N/A:P
10.0
2.9
| Type | Vendor | Product | Version/Range | Vulnerable? |
|---|---|---|---|---|
| Application | f5 | big-ip_application_acceleration_manager | 11.5.4 | Yes |
| Application | f5 | big-ip_advanced_firewall_manager | 11.5.4 | Yes |
| Application | f5 | big-ip_local_traffic_manager | 11.5.4 | Yes |
| Application | f5 | big-ip_analytics | 11.5.4 | Yes |
| Application | f5 | big-ip_global_traffic_manager | 11.5.4 | Yes |
| Application | f5 | big-ip_policy_enforcement_manager | 11.5.4 | Yes |
| Application | f5 | big-ip_link_controller | 11.5.4 | Yes |
| Application | f5 | big-ip_access_policy_manager | 11.5.4 | Yes |
| Application | f5 | big-ip_application_security_manager | 11.5.4 | Yes |