Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2017-6161


In F5 BIG-IP LTM, AAM, AFM, Analytics, APM, ASM, DNS, Edge Gateway, GTM, Link Controller, PEM, WebAccelerator software version 12.0.0 - 12.1.2, 11.6.0 - 11.6.1, 11.4.0 - 11.5.4, 11.2.1, when ConfigSync is configured, attackers on adjacent networks may be able to bypass the TLS protections usually used to encrypted and authenticate connections to mcpd. This vulnerability may allow remote attackers to cause a denial-of-service (DoS) attack via resource exhaustion.


Published

2017-10-27T14:29:00.390

Last Modified

2025-04-20T01:37:25.860

Status

Deferred

Source

[email protected]

Severity

CVSSv3.0: 5.3 (MEDIUM)

CVSSv2 Vector

AV:A/AC:M/Au:N/C:N/I:N/A:P

  • Access Vector: ADJACENT_NETWORK
  • Access Complexity: MEDIUM
  • Authentication: NONE
  • Confidentiality Impact: NONE
  • Integrity Impact: NONE
  • Availability Impact: PARTIAL
Exploitability Score

5.5

Impact Score

2.9

Weaknesses
  • Type: Primary
    CWE-400

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Application f5 big-ip_local_traffic_manager ≤ 11.5.4 Yes
Application f5 big-ip_local_traffic_manager 11.2.1 Yes
Application f5 big-ip_local_traffic_manager 11.6.0 Yes
Application f5 big-ip_local_traffic_manager 11.6.1 Yes
Application f5 big-ip_local_traffic_manager 12.0.0 Yes
Application f5 big-ip_local_traffic_manager 12.1.0 Yes
Application f5 big-ip_local_traffic_manager 12.1.1 Yes
Application f5 big-ip_local_traffic_manager 12.1.2 Yes
Application f5 big-ip_application_acceleration_manager ≤ 11.5.4 Yes
Application f5 big-ip_application_acceleration_manager 11.2.1 Yes
Application f5 big-ip_application_acceleration_manager 11.6.0 Yes
Application f5 big-ip_application_acceleration_manager 11.6.1 Yes
Application f5 big-ip_application_acceleration_manager 12.0.0 Yes
Application f5 big-ip_application_acceleration_manager 12.1.0 Yes
Application f5 big-ip_application_acceleration_manager 12.1.1 Yes
Application f5 big-ip_application_acceleration_manager 12.1.2 Yes
Application f5 big-ip_advanced_firewall_manager ≤ 11.5.4 Yes
Application f5 big-ip_advanced_firewall_manager 11.2.1 Yes
Application f5 big-ip_advanced_firewall_manager 11.6.0 Yes
Application f5 big-ip_advanced_firewall_manager 11.6.1 Yes
Application f5 big-ip_advanced_firewall_manager 12.0.0 Yes
Application f5 big-ip_advanced_firewall_manager 12.1.0 Yes
Application f5 big-ip_advanced_firewall_manager 12.1.1 Yes
Application f5 big-ip_advanced_firewall_manager 12.1.2 Yes
Application f5 big-ip_access_policy_manager ≤ 11.5.4 Yes
Application f5 big-ip_access_policy_manager 11.2.1 Yes
Application f5 big-ip_access_policy_manager 11.6.0 Yes
Application f5 big-ip_access_policy_manager 11.6.1 Yes
Application f5 big-ip_access_policy_manager 12.0.0 Yes
Application f5 big-ip_access_policy_manager 12.1.0 Yes
Application f5 big-ip_access_policy_manager 12.1.1 Yes
Application f5 big-ip_access_policy_manager 12.1.2 Yes
Application f5 big-ip_application_security_manager ≤ 11.5.4 Yes
Application f5 big-ip_application_security_manager 11.2.1 Yes
Application f5 big-ip_application_security_manager 11.6.0 Yes
Application f5 big-ip_application_security_manager 11.6.1 Yes
Application f5 big-ip_application_security_manager 12.0.0 Yes
Application f5 big-ip_application_security_manager 12.1.0 Yes
Application f5 big-ip_application_security_manager 12.1.1 Yes
Application f5 big-ip_application_security_manager 12.1.2 Yes
Application f5 big-ip_link_controller ≤ 11.5.4 Yes
Application f5 big-ip_link_controller 11.2.1 Yes
Application f5 big-ip_link_controller 11.6.0 Yes
Application f5 big-ip_link_controller 11.6.1 Yes
Application f5 big-ip_link_controller 12.0.0 Yes
Application f5 big-ip_link_controller 12.1.0 Yes
Application f5 big-ip_link_controller 12.1.1 Yes
Application f5 big-ip_link_controller 12.1.2 Yes
Application f5 big-ip_policy_enforcement_manager ≤ 11.5.4 Yes
Application f5 big-ip_policy_enforcement_manager 11.2.1 Yes
Application f5 big-ip_policy_enforcement_manager 11.6.0 Yes
Application f5 big-ip_policy_enforcement_manager 11.6.1 Yes
Application f5 big-ip_policy_enforcement_manager 12.0.0 Yes
Application f5 big-ip_policy_enforcement_manager 12.1.0 Yes
Application f5 big-ip_policy_enforcement_manager 12.1.1 Yes
Application f5 big-ip_policy_enforcement_manager 12.1.2 Yes
Application f5 big-ip_domain_name_system ≤ 11.5.4 Yes
Application f5 big-ip_domain_name_system 11.2.1 Yes
Application f5 big-ip_domain_name_system 11.6.0 Yes
Application f5 big-ip_domain_name_system 11.6.1 Yes
Application f5 big-ip_domain_name_system 12.0.0 Yes
Application f5 big-ip_domain_name_system 12.1.0 Yes
Application f5 big-ip_domain_name_system 12.1.1 Yes
Application f5 big-ip_domain_name_system 12.1.2 Yes
Application f5 big-ip_edge_gateway 11.2.1 Yes
Application f5 big-ip_edge_gateway 11.4.0 Yes
Application f5 big-ip_edge_gateway 11.4.1 Yes
Application f5 big-ip_edge_gateway 11.5.0 Yes
Application f5 big-ip_edge_gateway 11.5.1 Yes
Application f5 big-ip_edge_gateway 11.5.2 Yes
Application f5 big-ip_edge_gateway 11.5.3 Yes
Application f5 big-ip_edge_gateway 11.5.4 Yes
Application f5 big-ip_edge_gateway 11.5.5 Yes
Application f5 big-ip_edge_gateway 11.6.0 Yes
Application f5 big-ip_edge_gateway 11.6.1 Yes
Application f5 big-ip_edge_gateway 12.0.0 Yes
Application f5 big-ip_edge_gateway 12.1.0 Yes
Application f5 big-ip_edge_gateway 12.1.1 Yes
Application f5 big-ip_edge_gateway 12.1.2 Yes
Application f5 big-ip_global_traffic_manager 11.2.1 Yes
Application f5 big-ip_global_traffic_manager 11.4.0 Yes
Application f5 big-ip_global_traffic_manager 11.4.1 Yes
Application f5 big-ip_global_traffic_manager 11.5.0 Yes
Application f5 big-ip_global_traffic_manager 11.5.1 Yes
Application f5 big-ip_global_traffic_manager 11.5.2 Yes
Application f5 big-ip_global_traffic_manager 11.5.3 Yes
Application f5 big-ip_global_traffic_manager 11.5.4 Yes
Application f5 big-ip_global_traffic_manager 11.6.0 Yes
Application f5 big-ip_global_traffic_manager 11.6.1 Yes
Application f5 big-ip_global_traffic_manager 12.0.0 Yes
Application f5 big-ip_global_traffic_manager 12.1.0 Yes
Application f5 big-ip_global_traffic_manager 12.1.1 Yes
Application f5 big-ip_global_traffic_manager 12.1.2 Yes
Application f5 big-ip_webaccelerator 11.2.1 Yes
Application f5 big-ip_webaccelerator 11.4.0 Yes
Application f5 big-ip_webaccelerator 11.4.1 Yes
Application f5 big-ip_webaccelerator 11.5.0 Yes
Application f5 big-ip_webaccelerator 11.5.1 Yes
Application f5 big-ip_webaccelerator 11.5.2 Yes
Application f5 big-ip_webaccelerator 11.5.3 Yes
Application f5 big-ip_webaccelerator 11.5.4 Yes
Application f5 big-ip_webaccelerator 11.5.5 Yes
Application f5 big-ip_webaccelerator 11.6.0 Yes
Application f5 big-ip_webaccelerator 11.6.1 Yes
Application f5 big-ip_webaccelerator 11.6.2 Yes
Application f5 big-ip_webaccelerator 12.0.0 Yes
Application f5 big-ip_webaccelerator 12.1.0 Yes
Application f5 big-ip_webaccelerator 12.1.1 Yes
Application f5 big-ip_webaccelerator 12.1.2 Yes

References