BIG-IP versions 15.0.0-15.0.1 Improper Input Validation Vulnerability

Summary

Under certain conditions, when using custom TCP congestion control settings in a TCP profile, TMM stops processing traffic when processed by an iRule.

Credit:

The information has been provided by Vendor

The original article can be found at:https://support.f5.com/csp/article/K06747393


Details

On BIG-IP versions 15.0.0-15.0.1, 14.1.0-14.1.2, 14.0.0-14.0.1, 13.1.0-13.1.3.1, and 12.1.0-12.1.5, under certain conditions when using custom TCP congestion control settings in a TCP profile, TMM stops processing traffic when processed by an iRule.

 

Vulnerable Systems:

BIG-IP versions 15.0.0-15.0.1

BIG-IP versions 14.1.0-14.1.2

BIG-IP versions 14.0.0-14.0.1

BIG-IP versions 13.1.0-13.1.3.1

BIG-IP versions 12.1.0-12.1.5

 

CVE Information:

CVE-2019-6677

 

Disclosure Timeline:
Published Date:12/23/2019

Categories: News