CVE-2018-5517

On F5 BIG-IP 13.1.0-13.1.0.5, malformed TCP packets sent to a self IP address or a FastL4 virtual server may cause an interruption of service. The control plane is not exposed to this issue. This issue impacts the data plane virtual servers and self IPs.
References
Link Resource
http://www.securitytracker.com/id/1040805 Third Party Advisory VDB Entry
https://support.f5.com/csp/article/K25573437 Vendor Advisory
Configurations

Configuration 1 (hide)

cpe:2.3:a:f5:big-ip_local_traffic_manager:*:*:*:*:*:*:*:*

Configuration 2 (hide)

cpe:2.3:a:f5:big-ip_application_acceleration_manager:*:*:*:*:*:*:*:*

Configuration 3 (hide)

cpe:2.3:a:f5:big-ip_advanced_firewall_manager:*:*:*:*:*:*:*:*

Configuration 4 (hide)

cpe:2.3:a:f5:big-ip_analytics:*:*:*:*:*:*:*:*

Configuration 5 (hide)

cpe:2.3:a:f5:big-ip_access_policy_manager:*:*:*:*:*:*:*:*

Configuration 6 (hide)

cpe:2.3:a:f5:big-ip_application_security_manager:*:*:*:*:*:*:*:*

Configuration 7 (hide)

cpe:2.3:a:f5:big-ip_edge_gateway:*:*:*:*:*:*:*:*

Configuration 8 (hide)

cpe:2.3:a:f5:big-ip_global_traffic_manager:*:*:*:*:*:*:*:*

Configuration 9 (hide)

cpe:2.3:a:f5:big-ip_link_controller:*:*:*:*:*:*:*:*

Configuration 10 (hide)

cpe:2.3:a:f5:big-ip_policy_enforcement_manager:*:*:*:*:*:*:*:*

Configuration 11 (hide)

cpe:2.3:a:f5:big-ip_webaccelerator:*:*:*:*:*:*:*:*

Configuration 12 (hide)

cpe:2.3:a:f5:big-ip_websafe:*:*:*:*:*:*:*:*

Configuration 13 (hide)

cpe:2.3:a:f5:big-ip_domain_name_system:*:*:*:*:*:*:*:*

History

No history.

Information

Published : 2018-05-02 13:29

Updated : 2023-12-10 12:30


NVD link : CVE-2018-5517

Mitre link : CVE-2018-5517

CVE.ORG link : CVE-2018-5517


JSON object : View

Products Affected

f5

  • big-ip_edge_gateway
  • big-ip_websafe
  • big-ip_analytics
  • big-ip_domain_name_system
  • big-ip_access_policy_manager
  • big-ip_webaccelerator
  • big-ip_local_traffic_manager
  • big-ip_application_acceleration_manager
  • big-ip_link_controller
  • big-ip_policy_enforcement_manager
  • big-ip_application_security_manager
  • big-ip_global_traffic_manager
  • big-ip_advanced_firewall_manager
CWE
CWE-20

Improper Input Validation