BIG-IP versions 15.0.0-15.0.1 Improper Input Validation Vulnerability

Summary

When the tm.minipfragsize BigDB variable is modified from the default value to a value less than 60 and the packet filter feature is enabled, specifically crafted fragmented TCP packets may cause the Traffic Management Microkernel (TMM) to fail and restart. 

Credit:

The information has been provided by Vendor

The original article can be found at:https://support.f5.com/csp/article/K04897373


Details

On BIG-IP versions 15.0.0-15.0.1, 14.1.0-14.1.2.2, 14.0.0-14.0.1, and 13.1.0-13.1.3.1, the TMM process may restart when the packet filter feature is enabled.

 

Vulnerable Systems:

BIG-IP versions 15.0.0-15.0.1

BIG-IP versions 14.1.0-14.1.2.2

BIG-IP versions 14.0.0-14.0.1

BIG-IP versions 13.1.0-13.1.3.1

 

CVE Information:

CVE-2019-6678

 

Disclosure Timeline:
Published Date:12/23/2019

Categories: News