7.5

CVE-2018-5510

On F5 BIG-IP 11.5.4 HF4-11.5.5, the Traffic Management Microkernel (TMM) may restart when processing a specific sequence of packets on IPv6 virtual servers.

Daten sind bereitgestellt durch National Vulnerability Database (NVD)
F5Big-ip Local Traffic Manager Version11.5.4
F5Big-ip Local Traffic Manager Version11.5.4 Updatehf1
F5Big-ip Local Traffic Manager Version11.5.4 Updatehf2
F5Big-ip Local Traffic Manager Version11.5.4 Updatehf3
F5Big-ip Local Traffic Manager Version11.5.4 Updatehf4
F5Big-ip Local Traffic Manager Version11.5.5
F5Big-ip Application Acceleration Manager Version11.5.4 Updatehf1
F5Big-ip Application Acceleration Manager Version11.5.4 Updatehf2
F5Big-ip Application Acceleration Manager Version11.5.4 Updatehf3
F5Big-ip Application Acceleration Manager Version11.5.4 Updatehf4
F5Big-ip Advanced Firewall Manager Version11.5.4 Updatehf1
F5Big-ip Advanced Firewall Manager Version11.5.4 Updatehf2
F5Big-ip Advanced Firewall Manager Version11.5.4 Updatehf3
F5Big-ip Advanced Firewall Manager Version11.5.4 Updatehf4
F5Big-ip Analytics Version11.5.4
F5Big-ip Analytics Version11.5.4 Updatehf1
F5Big-ip Analytics Version11.5.4 Updatehf2
F5Big-ip Analytics Version11.5.4 Updatehf3
F5Big-ip Analytics Version11.5.4 Updatehf4
F5Big-ip Analytics Version11.5.5
F5Big-ip Access Policy Manager Version11.5.4
F5Big-ip Access Policy Manager Version11.5.4 Updatehf1
F5Big-ip Access Policy Manager Version11.5.4 Updatehf2
F5Big-ip Access Policy Manager Version11.5.4 Updatehf3
F5Big-ip Access Policy Manager Version11.5.4 Updatehf4
F5Big-ip Access Policy Manager Version11.5.5
F5Big-ip Application Security Manager Version11.5.4 Updatehf1
F5Big-ip Application Security Manager Version11.5.4 Updatehf2
F5Big-ip Application Security Manager Version11.5.4 Updatehf3
F5Big-ip Application Security Manager Version11.5.4 Updatehf4
F5Big-ip Edge Gateway Version11.5.4
F5Big-ip Edge Gateway Version11.5.4 Updatehf1
F5Big-ip Edge Gateway Version11.5.4 Updatehf2
F5Big-ip Edge Gateway Version11.5.4 Updatehf3
F5Big-ip Edge Gateway Version11.5.4 Updatehf4
F5Big-ip Edge Gateway Version11.5.5
F5Big-ip Global Traffic Manager Version11.5.4
F5Big-ip Global Traffic Manager Version11.5.4 Updatehf1
F5Big-ip Global Traffic Manager Version11.5.4 Updatehf2
F5Big-ip Global Traffic Manager Version11.5.4 Updatehf3
F5Big-ip Global Traffic Manager Version11.5.4 Updatehf4
F5Big-ip Global Traffic Manager Version11.5.5
F5Big-ip Link Controller Version11.5.4
F5Big-ip Link Controller Version11.5.4 Updatehf1
F5Big-ip Link Controller Version11.5.4 Updatehf2
F5Big-ip Link Controller Version11.5.4 Updatehf3
F5Big-ip Link Controller Version11.5.4 Updatehf4
F5Big-ip Link Controller Version11.5.5
F5Big-ip Policy Enforcement Manager Version11.5.4 Updatehf1
F5Big-ip Policy Enforcement Manager Version11.5.4 Updatehf2
F5Big-ip Policy Enforcement Manager Version11.5.4 Updatehf3
F5Big-ip Policy Enforcement Manager Version11.5.4 Updatehf4
F5Big-ip Webaccelerator Version11.5.4
F5Big-ip Webaccelerator Version11.5.4 Updatehf1
F5Big-ip Webaccelerator Version11.5.4 Updatehf2
F5Big-ip Webaccelerator Version11.5.4 Updatehf3
F5Big-ip Webaccelerator Version11.5.4 Updatehf4
F5Big-ip Webaccelerator Version11.5.5
F5Big-ip Websafe Version11.5.4
F5Big-ip Websafe Version11.5.4 Updatehf1
F5Big-ip Websafe Version11.5.4 Updatehf2
F5Big-ip Websafe Version11.5.4 Updatehf3
F5Big-ip Websafe Version11.5.4 Updatehf4
F5Big-ip Websafe Version11.5.5
F5Big-ip Domain Name System Version11.5.4
F5Big-ip Domain Name System Version11.5.4 Updatehf1
F5Big-ip Domain Name System Version11.5.4 Updatehf2
F5Big-ip Domain Name System Version11.5.4 Updatehf3
F5Big-ip Domain Name System Version11.5.4 Updatehf4
F5Big-ip Domain Name System Version11.5.5
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 0.65% 0.683
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
nvd@nist.gov 7.5 3.9 3.6
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
nvd@nist.gov 5 10 2.9
AV:N/AC:L/Au:N/C:N/I:N/A:P
CWE-20 Improper Input Validation

The product receives input or data, but it does not validate or incorrectly validates that the input has the properties that are required to process the data safely and correctly.